Sam Hartman <[EMAIL PROTECTED]> writes: > OK. A lot of this looks like issues finding the right key for a service > key. It seems like fixing the library code there is a better fix than > including a domain_realm entry. In particular how much of r19598 would > help?
It looks like this fixes some of the problems, but it still doesn't fix the problem for ksu. Running ksu without a domain_realm setting for the local hostname fails: wanderer:~> ksu WARNING: Your password may be exposed if you enter it here and are logged in remotely using an unsecure (non-encrypted) channel. Kerberos password for rra/[EMAIL PROTECTED]: : ksu: Wrong principal in request while verifying ticket for server Authentication failed. I'm still trying to figure out why. -- Russ Allbery ([EMAIL PROTECTED]) <http://www.eyrie.org/~eagle/> -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]