Return-Path: Received: from pch.mit.edu (PCH.MIT.EDU [18.7.21.90]) by krbdev.mit.edu (Postfix) with ESMTP id C5B003E928; Mon, 27 Aug 2012 14:27:32 -0400 (EDT) Received: from pch.mit.edu (pch.mit.edu [127.0.0.1]) by pch.mit.edu (8.13.6/8.12.8) with ESMTP id q7RIRVfn013564; Mon, 27 Aug 2012 14:27:31 -0400 Received: from mailhub-dmz-1.mit.edu (MAILHUB-DMZ-1.MIT.EDU [18.9.21.41]) by pch.mit.edu (8.13.6/8.12.8) with ESMTP id q7Q3P5Fx012610 for ; Sat, 25 Aug 2012 23:25:05 -0400 Received: from dmz-mailsec-scanner-8.mit.edu (DMZ-MAILSEC-SCANNER-8.MIT.EDU [18.7.68.37]) by mailhub-dmz-1.mit.edu (8.13.8/8.9.2) with ESMTP id q7Q3Oxwk023670 for ; Sat, 25 Aug 2012 23:25:05 -0400 X-Auditid: 12074425-b7f9b6d0000008c4-03-503997103bf7 Authentication-Results: symauth.service.identifier Received: from seraph.oankali.net (seraph.oankali.net [209.9.237.222]) by dmz-mailsec-scanner-8.mit.edu (Symantec Messaging Gateway) with SMTP id 49.20.02244.01799305; Sat, 25 Aug 2012 23:25:04 -0400 (EDT) Received: from [192.168.1.2] (darwin.oankali.net [98.113.78.28]) (authenticated bits=0) by seraph.oankali.net (8.14.3/8.14.3/Debian-5+lenny1) with ESMTP id q7Q3P2He016440 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO) for ; Sat, 25 Aug 2012 23:25:04 -0400 Date: Sat, 25 Aug 2012 23:25:02 -0400 (EDT) From: Richard Silverman To: Kerberos Bugs Subject: key_stash_file inhibits krb5kdc -m Message-ID: User-Agent: Alpine 2.00 (OSX 1167 2008-08-23) MIME-Version: 1.0 Content-Type: TEXT/PLAIN; format=flowed; charset=US-ASCII X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFnrBIsWRWlGSWpSXmKPExsVykfPtPV2B6ZYBBnNfm1o0PDzO7sDo0XTm KHMAYxSXTUpqTmZZapG+XQJXxvSn8xgLDjFXHHlwj7WB8SlTFyMnh4SAicStzmVgNqOAkcTu c69YIeJiEhfurWfrYuTiEBI4zyhx+uZ2RghnHZPEjRNHmUGqWAS0JY5tnQXWzSagJvHk7Ws2 EFtYQE7i+I1TYHERAVWJ3b8uM0PEtSW+fT4EVsMr4CLxvGku2DZRAV2J17fvs0PEBSVOznzC AmIzC1hK/Fv7i3UCI98sJKlZSFILGJlWMcqm5Fbp5iZm5hSnJusWJyfm5aUW6Vro5WaW6KWm lG5iBAaTELuL6g7GCYeUDjEKcDAq8fDuLbIMEGJNLCuuzD3EKMnBpCTKO6EXKMSXlJ9SmZFY nBFfVJqTWnyIUYKDWUmEN6odKMebklhZlVqUD5OS5mBREue9kXLTX0ggPbEkNTs1tSC1CCbL xMF+iFGGg0NJgld8GlC3YFFqempFWmZOCbIaThDBBbKGB2jNn6kga4oLEnOLM9Mhik4xKkqJ 8/4ESQiAJDJK8+AGgBJA/f///y8xykoJ8zIyMDAI8QBdAPQ4Qh6UQF4xigM9LQwxniczrwRu +iugxUxAi8tdzUEWlyQipKQaGJM/RHhN5mzIuRXB8r1vZWhg8O2DhWXravbe6NA4c1/6sErc +18nJzxZa3ywbdNMtq8qOxKdJ580rZu1sIf/U8ixGkspbses78XX195M+Oe9JPe9qmqbCWMk n8iK9wVf/ByzY3XyIr9cvXfizp5J14WlL0p7engtfMBs3H/xg7yV7x3lF//WLVViKc5INNRi LipOBACxE/yG+wIAAA== X-Mailman-Approved-At: Mon, 27 Aug 2012 14:27:13 -0400 X-Beenthere: krb5-bugs-incoming@mailman.mit.edu X-Mailman-Version: 2.1.6 Precedence: list Sender: krb5-bugs-incoming-bounces@PCH.mit.edu Errors-To: krb5-bugs-incoming-bounces@PCH.mit.edu X-RT-Original-Encoding: us-ascii Content-Length: 439 Hello, If I give a key_stash_file in my realm configuration, krb5kdc starts up correctly on its own using that file. However, krb5kdc -m insists on using the configured stash file anyway; I have to remove the key_stash_file setting in order to use krb5kdc -m. This seems wrong, and in any event is not true of kadmin.local or kdb5_util. (MIT Kerberos 1.10.3 built on Debian squeeze) Thanks, -- Richard E. Silverman res@qoxp.net