Skip Menu |

Download (untitled) / with headers
text/plain 2.7KiB
From jhawk@MIT.EDU Sat Oct 5 18:48:09 1996
Received: from MIT.EDU (PACIFIC-CARRIER-ANNEX.MIT.EDU []) by rt-11.MIT.EDU (8.7.5/8.7.3) with SMTP id SAA29255 for <bugs@RT-11.MIT.EDU>; Sat, 5 Oct 1996 18:48:08 -0400
Received: from STEVE-DALLAS.MIT.EDU by MIT.EDU with SMTP
id AA05419; Sat, 5 Oct 96 18:48:07 EDT
Received: by steve-dallas.MIT.EDU (940816.SGI.8.6.9/4.7) id SAA15333; Sat, 5 Oct 1996 18:48:07 -0400
Message-Id: <199610052248.SAA15333@steve-dallas.MIT.EDU>
Date: Sat, 5 Oct 1996 18:48:07 -0400
To: krb5-bugs@MIT.EDU
Subject: Confusion about the admin port number

Show quoted text
>Number: 61
>Category: krb5-doc
>Synopsis: Confusion about the admin port number
>Confidential: no
>Severity: serious
>Priority: high
>Responsible: bjaspan
>State: closed
>Class: sw-bug
>Submitter-Id: unknown
>Arrival-Date: Sat Oct e 18:49:00 EDT 1996
>Last-Modified: Mon Nov 04 16:56:10 EST 1996
>Originator: John Hawkinson
BBN Planet
Show quoted text
>Release: beta-7
System: SunOS all-purpo 4.1.4 4 sun4m
Architecture: sun4

Show quoted text
Beta 7 is confused about what the admin port number is supposed
to be. The documentation and config-files/services.append state:

kerberos-adm 749/tcp # Kerberos 5 admin/changepw
kerberos-adm 749/udp # Kerberos 5 admin/changepw

But the default kdc.conf uses:

kadmind_port = 3761

Show quoted text

Umm, trying to use kadmin?!?!!?

Show quoted text
Make them all consistent.

Show quoted text

Responsible-Changed-From-To: bjaspan->krb5-unassigned
Responsible-Changed-By: bjaspan
Responsible-Changed-When: Wed Oct 16 15:41:47 1996

The documentation should not tell people to add kerberos-adm to
/etc/services on kadm5's behalf. If some other admin code uses it, no
problem, but kadm5 uses krb5.conf and kdc.conf for that information,
and falls back to the hard-coded default 749.

From: "Barry Jaspan" <bjaspan@MIT.EDU>
Cc: krb5-bugs@MIT.EDU
Subject: Re: krb5-admin/61: Confusion about the admin port number
Date: Wed, 16 Oct 1996 15:41:34 -0400

I removed the bogus line from the default kdc.conf. The entries in
/etc/services are irrelevant, because kadm5 never looks there.

Responsible-Changed-From-To: krb5-unassigned->bjaspan
Responsible-Changed-By: bjaspan
Responsible-Changed-When: Fri Nov 1 17:04:36 1996

State-Changed-From-To: open-closed
State-Changed-By: bjaspan
State-Changed-When: Mon Nov 4 16:55:31 1996

There is no harm in leaving the kerberos_adm 749 entries in
install.texinfo. KADM5 never uses them, but the simple
password-changing daemon does, so we shouldn't remove them, anyway.

Show quoted text