home *** CD-ROM | disk | FTP | other *** search
- Newsgroups: comp.protocols.kerberos
- Path: sparky!uunet!stanford.edu!nersc.gov!ramus
- From: ramus@nersc.gov (Joe Ramus)
- Subject: New User Accounts
- Message-ID: <9209020104.AA25528@windsail.nersc.gov>
- Sender: news@shelby.stanford.edu (USENET News System)
- Organization: Internet-USENET Gateway at Stanford University
- Date: Wed, 2 Sep 1992 01:04:54 GMT
- Lines: 16
-
-
- I do not see a good way to handle new user accounts in MIT Kerberos 4.
-
- On some of our systems now, we have the concept of an expired password.
- When we add a new user, the assigned password is expired and can only
- be used to get a new password. We then use some off-line method to inform
- the new user of the assigned password. The user must then get a new
- password which is known only to that user.
-
- Kerberos 4 has the concept of an expiration date for a principal.
- When that date is reached, the principal is no longer able to get a
- ticket and cannot change the password.
-
- How do other sites manage new accounts and assigned passwords?
-
- Joe Ramus NERSC Livermore (510) 423-8917 ramus@nersc.gov
-