[Bug 723840] Re: krb5-1.8 fails to verify MS PAC Checksum when AES 256 is used
Chuck Short
chuck.short at canonical.com
Tue May 31 14:02:58 UTC 2011
This should be fixed in oneiric now.
** Changed in: krb5 (Ubuntu)
Status: Fix Committed => Fix Released
** Also affects: krb5 (Ubuntu Lucid)
Importance: Undecided
Status: New
--
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to krb5 in Ubuntu.
https://bugs.launchpad.net/bugs/723840
Title:
krb5-1.8 fails to verify MS PAC Checksum when AES 256 is used
Status in “krb5” package in Ubuntu:
Fix Released
Status in “krb5” source package in Lucid:
New
Status in “krb5” package in Debian:
Fix Released
Bug description:
Binary package hint: libkrb5-3
libkrb5-3 in Lucid does not work properly when mediating between a
Windows 7 client and a 2008R2 KDC after applying MS hotfix KB2425227.
The bug has been reported previously here:
http://mailman.mit.edu/pipermail/krbdev/2010-July/009148.html
And here:
http://www.mail-archive.com/squid-users@squid-cache.org/msg75789.html
However, it's only since the MS hotfix that it has become a problem
for us.
Basically, the bug has been fixed in libkrb5-3 version 1.8.3, so all
you have to do is update the package.
I'm guessing you're going to get a lot more bug reports on this, trust
MS to keep changing the goal posts and making our jobs harder.
More information about the foundations-bugs
mailing list