Skip Menu |

Download (untitled) / with headers
text/plain 6.8KiB
From Sat Nov 30 22:28:47 1996
Received: from MIT.EDU (PACIFIC-CARRIER-ANNEX.MIT.EDU []) by rt-11.MIT.EDU (8.7.5/8.7.3) with SMTP id WAA27246 for <bugs@RT-11.MIT.EDU>; Sat, 30 Nov 1996 22:28:45 -0500
Received: from by MIT.EDU with SMTP
id AA21323; Sat, 30 Nov 96 22:27:46 EST
Received: from ([]) by (5.x/SMI-SVR4)
id AA13825; Sun, 1 Dec 1996 11:26:41 +0800
Received: from by (SMI-8.6/SMI-SVR4)
id LAA28449; Sun, 1 Dec 1996 11:25:05 +0800
Message-Id: <>
Date: Sun, 1 Dec 1996 11:25:05 +0800
From: YingZhaoHui <>
To: krb5-bugs@MIT.EDU
Subject: Request Help

Show quoted text
>Number: 265
>Category: pending
>Synopsis: Request Help
>Confidential: yes
>Severity: serious
>Priority: medium
>Responsible: gnats-admin
>State: closed
>Class: sw-bug
>Submitter-Id: unknown
>Arrival-Date: Sat Nov 30 22:29:01 EST 1996
>Last-Modified: Thu Dec 05 15:46:15 EST 1996

State-Changed-From-To: open-closed
State-Changed-By: bjaspan
State-Changed-When: Thu Dec 5 15:42:51 1996

Kerberos 5 beta 5 is out of date and never worked very well; it was
released in the middle of substantial changes to the source code and
was unstable. The current release, beta 7, is much better, and a new
release is imminent.

Note that since you are in China, you may not be able to retrieve
Kerberos legally without an export license; so sayeth the US
Goverment. Also, for the same reasons, as I US citizen I am not
legally allowed to answer your questions about Kerberos. I suggest
that you contact a commercial Kerberos vendor with an export license
if you want further assistance. Sorry.

Barry Jaspan,

Show quoted text
Content-Type: text/plain; charset="us-ascii"

Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
Content-Disposition: attachment; filename="MAILTM"

dear sir:
When I installed Kerberos edition BETA 5 on a workstation
(Sun 4/75 SPARCstation 2,OS is SunOS Release 5.4 Generic),I've met the
following problems.
1. When I executed the sample program as a command,it is proper.The=
result is:

sun8% sserver 4500
sun8% sclient sun8 4500
sendauth succeeded, reply is:
reply len 26, contents:
You are kerb5@NUDT.EDU.CN


but when I treated the "sserver" as a daemon,it is wrong.Here is the=

sun8% sclient sun8
sclient: Software caused connection abort while using sendauth

The line in file inetd.conf is as follows:

nowait root /home/sun8/kerb5/src/appl/sample/sserver/sserver sserver

2. When I executed the simple "sim_client" in first time, the display=20
is as follows:

sun8% sim_client sun8
Got credentials for sample.
Sent authentication data: 421 bytes
Sent checksummed message: 122 bytes
Segmentation Fault (core dumped)

and when I executed it after the first time,the display=20
is proper.
When I treated the sim_server as a command,the display is:

sun8% sim_client sun8
Got credentials for sample.
Sent authentication data: 421 bytes
Sent checksummed message: 122 bytes
Sent encrypted message: 123 bytes

sun8% sim_server sun8
Received 421 bytes
sim_server: Wrong principal in request while reading request

The line in file inetd.conf is:
udp wait root /home/sun8/kerb5/src/appl/simple/server/sim_server sim_server

3. When I create an account, using "login.krb5" as the login shell,it=

Login incorrect

when I debug the program login.krb5, I found the packet=20
(will send to kdc) is:

"\004\002tmeng\000\000NUDT.EDU.CN\0002=A0=DEV`krbtgt\000NUDT.EDU.CN", '\000
after send the packet,the return packet is:

=AF0=D1W=B5=FF=A3\230^=A1", '\000
Here is the debug's detail step by step:

(gdb) run
The program being debugged has been started already.
Start it from the beginning? (y or n) y
Starting program: /home/sun8/kerb5/src/appl/bsd/login.krb5=20
login: tmeng
Breakpoint 1, send_recv (pkt=3D0xefffe5a8, rpkt=3D0xefffe0b8, f=3D3,=20
_to=3D0xefffe020, addrs=3D0x38180) at send_to_kdc.c:328
328 if ((numsent =3D sendto(f,(char *)(pkt->dat), pkt->length, 0,=20
(gdb) print *pkt
$4 =3D {length =3D 45,=20
dat =3D "\004\002tmeng\000\000NUDT.EDU.CN\0002=A0=DEV`krbtgt\000NUDT.EDU.C=
N", '\000' <repeats 12 times>, "=EF\177+p", '\000' <repeats 36 times>,=
"=EF\177+p", '\000' <repeats 92 times>, "=EF\177+p", '\000' <repeats 43=
Show quoted text
'\000' <repeats 20 times>,=
0\000\000"..., mbz =3D 0}
(gdb) c
Breakpoint 2, send_recv (pkt=3D0xefffde70, rpkt=3D0xefffe0b8, f=3D3,=20
_to=3D0x8, addrs=3D0x38180) at send_to_kdc.c:365
365 recvresult =3D recvfrom(f, (char *)(rpkt->dat), sizeof(rpkt->dat),=
(gdb) next
367 if (recvresult < 0) {
(gdb) print *rpkt
$5 =3D {length =3D 0,=20
dat =3D=
=AF0=D1W=B5=FF=A3\230^=A1", '\000' <repeats 1112 times>,=20
mbz =3D 0}
(gdb) c
Login incorrect

4.I also want to know whether there is any special way to debug the=
daemon "krb5kdc".
5. I don't know what's the uses of some dirctory and configes except=
krb5.conf. For example: \athena, \\kerberos\\k_in_tkts,
/etc/krbhst,and so forth.
so I ask you which I must create. where can I find informations about them.
6. After I install Kerberos on this workstation. I'll install appropriate
part on other machine,include=20
SPARCstation 2, OS is SUNOS Release 4.1.3(generic)
PC , OS is Windows for Workgroup
so I want to ask you whether there is some notes I should take?
I'm looking forward to your help. My e-mail is

Thank you!