Security with Samba 3.0 and Kerberos

Andrew Bartlett abartlet at samba.org
Sat Apr 5 00:31:09 GMT 2003


On Sat, 2003-04-05 at 10:15, Luke Howard wrote:
> 
> Also, historically it's the responsibility of the Kerberos client
> library to manage a replay cache. I don't believe Heimdal has one,
> though.

So where would it normally maintain such a cache?  In-memory won't work
due to the fork()ed nature of smbd...

It would be good to be able to address this somehow.

Andrew Bartlett

-- 
Andrew Bartlett                                 abartlet at pcug.org.au
Manager, Authentication Subsystems, Samba Team  abartlet at samba.org
Student Network Administrator, Hawker College   abartlet at hawkerc.net
http://samba.org     http://build.samba.org     http://hawkerc.net
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba-technical/attachments/20030405/f00f4336/attachment.bin


More information about the samba-technical mailing list