bugzilla-daemon at mindrot.org
2002-Jun-29  23:17 UTC
[Bug 324] New: privsep break KRB4 auth, KRB4 TGT forwarding and AFS token forwarding
http://bugzilla.mindrot.org/show_bug.cgi?id=324
           Summary: privsep break KRB4 auth, KRB4 TGT forwarding and AFS
                    token forwarding
           Product: Portable OpenSSH
           Version: -current
          Platform: All
        OS/Version: All
            Status: NEW
          Severity: normal
          Priority: P2
         Component: sshd
        AssignedTo: openssh-unix-dev at mindrot.org
        ReportedBy: jan.iven at cern.ch
Since all of KRB4/KRB5 authentication (in protocol 1), TGT and AFS token
forwarding are priviledged operations, all fail with privsep.
The attached patch seems to fix this at least for KRB4 auth, KRB4 TGTs and AFS
tokens (cannot try KRB5 here).
Please review and consider for future inclusion.
Thanks,
Jan
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.
Possibly Parallel Threads
- [Bug 324] privsep break KRB4 auth, KRB4 TGT forwarding and AFS token forwarding
- Problem compiling openssh on Solaris 2.6 with AFS-krb4 (fwd)
- [Bug 44] Can't pass KRB4 TGT on RH7.2 due to glibc mkstemp
- [Bug 44] Can't pass KRB4 TGT on RH7.2 due to glibc mkstemp
- [Bug 508] Krb4/AFS token passing doesn't work because of mkstemp
