Subject: Kerberos help
To: None <port-mac68k@NetBSD.org>
From: Herb Singleton <hls@uac.com>
List: port-mac68k
Date: 09/08/1999 23:21:00
I'm trying to get Kerberos up and running on a NetBSD 1.4 box so I can have
encrypted telnet sessions between my MacOS box and the NetBSD box.

I've enabled Kerberos in /etc/rc.conf, and have configured krb.conf and
krb.realms in /etc/kerberos. Following the tutorials in various websites,
I've created a masterkey, a couple of accounts and I can kinit/kdestroy
from my NetBSD shell.  I've commented out login and shell in inetd.conf and
enabled all of the kerberos services. I've also edited telnetd to use the
-s switch.

On the Mac side I'm using Nifty Telnet, and Authentication Manager 1.2.0.

When I try to telnet from my Mac to the NetBSD box, Authentication Manager
prompts me for my Kerberos username and password.  This appears to be
working correctly; if I input the wrong password or username Authentication
Manager gives me an error, and the correct values appear to grant a ticket.

At this point, NiftyTelnet appears to establish an unencrypted session (the
little lock is still open). 

If anyone can resolve this, or point me to a web site somewhere, I would
appreciate it.  None of the websites I've found seem to discuss how to
configure a kerberos telnet server other than to say "enable Kerberos on
the unix box" and/or "use Authentication Manager on the Mac machine." I
found mention of a "Kerberos on NetBSD tutorial" on the list archives, but
the site isn't there anymore :(

Herb 
________________________________________________________
Herb Singleton
hls@uac.com, hsingleton@hmmh.com
http://www.hmmh.com/audio