Bug 32292 - univention-squid-kerberos should set attribute saltPrincipal in secrets.ldb
univention-squid-kerberos should set attribute saltPrincipal in secrets.ldb
Status: CLOSED FIXED
Product: UCS
Classification: Unclassified
Component: Squid
UCS 3.1
Other Linux
: P5 normal (vote)
: UCS 3.2-1-errata
Assigned To: Felix Botner
Arvid Requate
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2013-08-21 19:15 CEST by Arvid Requate
Modified: 2014-04-16 16:12 CEST (History)
2 users (show)

See Also:
What kind of report is it?: ---
What type of bug is this?: ---
Who will be affected by this bug?: ---
How will those affected feel about the bug?: ---
User Pain:
Enterprise Customer affected?:
School Customer affected?:
ISV affected?:
Waiting Support:
Flags outvoted (downgraded) after PO Review:
Ticket number:
Bug group (optional):
Max CVSS v3 score:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Arvid Requate univentionstaff 2013-08-21 19:15:36 CEST
univention-squid-kerberos should set attribute saltPrincipal in secrets.ldb, otherwise this does not work properly:

root@master81:~# kinit --keytab=/var/lib/samba/private/http-proxy-master81.keytab http-proxy-master81
kinit: Password incorrect


Maybe that is important at some point.
Comment 1 Felix Botner univentionstaff 2014-03-03 15:22:32 CET
2014-03-03-univention-squid-kerberos.yaml

-> kinit --keytab=http-proxy-master.keytab http-proxy-master
-> klist 
Credentials cache: FILE:/tmp/krb5cc_0
        Principal: http-proxy-master@W2K12.TEST
Comment 2 Arvid Requate univentionstaff 2014-04-07 17:59:29 CEST
Ok works, advisory is up to date too.
Comment 3 Moritz Muehlenhoff univentionstaff 2014-04-16 16:12:04 CEST
http://errata.univention.de/ucs/3.2/90.html