kerberos_derive_salting_principal() is bogus code

Jeremy Allison jra at
Wed Jul 5 23:13:20 GMT 2006

On Wed, Jul 05, 2006 at 05:42:05PM -0500, Gerald (Jerry) Carter wrote:
> You miss the point though.  This is done when running
> 'net ads join'.  That code has nothing to do with non-MS
> realms.  I'm not saying that DES keys are not useful, I'm
> saying the derive salting principal code is broken on
> systems with RC4-HMAC support.

Ah ok - can we easily avoid it doing net ads join then ?


More information about the samba-technical mailing list