Skip Menu |
 

Download (untitled) / with headers
text/plain 2.1KiB
From nemo@gratuitous.org Sun Jul 14 15:08:53 2002
Received: from fort-point-station.mit.edu (FORT-POINT-STATION.MIT.EDU [18.7.7.76])
by rt-11.mit.edu (8.9.3/8.9.3) with ESMTP id PAA13111
for <bugs@RT-11.mit.edu>; Sun, 14 Jul 2002 15:08:53 -0400 (EDT)
Received: from xanthine.gratuitous.org (xanthine.gratuitous.org [199.232.39.35])
by fort-point-station.mit.edu (8.9.2/8.9.2) with ESMTP id PAA26260;
Sun, 14 Jul 2002 15:08:51 -0400 (EDT)
Received: from nemo by xanthine.gratuitous.org with local; Sun, 14 Jul 2002 15:08:50 -0400
Message-Id: <E17Toji-0003mU-00@xanthine.gratuitous.org>
Date: Sun, 14 Jul 2002 15:08:50 -0400
From: nemo@mit.edu
To: krb5-bugs@mit.edu
Cc: nemo@mit.edu
Subject: kdc acl documentation sucks
X-Send-Pr-Version: 3.99

Show quoted text
>Number: 1135
>Category: krb5-doc
>Synopsis: kdc acl documentation sucks
>Confidential: no
>Severity: non-critical
>Priority: low
>Responsible: jenselby
>State: open
>Class: doc-bug
>Submitter-Id: unknown
>Arrival-Date: Sun Jul 14 15:09:00 EDT 2002
>Last-Modified: Sun Jul 14 15:11:39 EDT 2002
>Originator: Joel N. Weber II
>Organization:
Gratuitous Organization for Gratuitous Software Enhancement
Show quoted text
>Release: krb5-1.2.5
>Environment:

System: NetBSD xanthine.gratuitous.org 1.5.2 NetBSD 1.5.2 (XANTHINE) #5: Tue Dec 11 20:30:12 EST 2001 nemo@xanthine.gratuitous.org:/usr/src/sys/arch/i386/compile/XANTHINE i386


Show quoted text
>Description:
The documentation doesn't describe all of the things that can be put in
the kadm5.acl file. For example, hartmans asserts that it's easy to
configure things so that foo/root can change the password for foo's own null
instance for each value of foo, but the documentation doesn't make this clear.
Show quoted text
>How-To-Repeat:
>Fix:
>Audit-Trail:

Responsible-Changed-From-To: krb5-unassigned->jenselby
Responsible-Changed-By: hartmans
Responsible-Changed-When: Sun Jul 14 15:10:12 2002
Responsible-Changed-Why:
nemo is right here. We accepted a patch to allow you to do things like
*/root@SUCHDAMAGE.ORG ac *1@SUCHDAMAGE.ORG

But we don't have docs for it.

Well there may have been docs when the patch was submitted, but I don't think they made it anywhere useful.

Show quoted text
>Unformatted:
Subject: kdc acl documentation sucks
checked in on trunk prior to 1.3 branch
Subject: kdc acl documentation sucks
The documentation for Kerberos 5 v1.3 contains an updated (and hopefully
more clear) explanation of the kadm5.acl file.

--
Jen Selby