Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 21 Dec 2022 03:30:36 +0000
From:      bugzilla-noreply@freebsd.org
To:        bugs@FreeBSD.org
Subject:   [Bug 268186] Kerberos authentication fails with a Linux/FreeIPA KDC
Message-ID:  <bug-268186-227-rSqGs0GsJ8@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-268186-227@https.bugs.freebsd.org/bugzilla/>
References:  <bug-268186-227@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D268186

--- Comment #39 from amendlik@gmail.com ---
(In reply to Cy Schubert from comment #38)

I never said I couldn't apply a patch, only that I had never done it before=
. I
also build my own ports, so I'm not sure why it's important that I'm a bina=
ry
package user. I'm open to try any suggestion. I am just having a very hard =
time
following the conversation because it's not clear to me how you are reaching
your conclusions.

My research shows that we need to use OpenSSH with GSSAPI to use service ti=
cket
based-authentication. But I see you saying that we need to disable GSSAPI a=
nd
use PAM instead. I provided the documentation that says PAM is not what we
need, so it would be helpful if you could explain your thoughts on this or =
tell
me what I'm missing.

BTW, I have downloaded the source code and applied the patch. I still need =
to
figure out how to "activate" it, and the rest should be pretty easy.

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-268186-227-rSqGs0GsJ8>