[krbdev.mit.edu #7761] Documentation__Retiring DES
Georg Sluyterman via RT
rt-comment at krbdev.mit.edu
Thu Nov 7 11:44:36 EST 2013
http://web.mit.edu.ezproxyberklee.flo.org/kerberos/krb5-devel/doc/admin/advanced/retiring-des.html
"If there remain legacy services which do not support non-DES enctypes (such as AFS), allow_weak_crypto must remain enabled on the KDC."
This is not true any more (since July 2013). See OpenAFS.org.
--
Regards
Georg Sluyterman
More information about the krb5-bugs
mailing list