Issues bringing 'new SPENGO' to MIT Kerberos 1.8 builds

Andrew Bartlett abartlet at samba.org
Mon Feb 13 21:50:13 MST 2012


On Tue, 2012-02-14 at 13:42 +1100, Luke Howard wrote:
> What do you need gss_krb5_export_lucid_sec_context for? Can you use GSS_C_INQ_SSPI_SESSION_KEY?

We used it to determine if CFX was used, and therefore that the new
(returning the mechListMic) SPENGO should be used, as we implement
SPNEGO outside GSSAPI.

Andrew Bartlett

-- 
Andrew Bartlett                                http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org



More information about the samba-technical mailing list