summaryrefslogtreecommitdiff
path: root/security/ssh/patches/patch-bn
blob: f178eefb4cd00336d86a3940bb3029466dc62bc2 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
$NetBSD: patch-bn,v 1.1 1999/12/25 05:28:37 kim Exp $

--- README.AFS-KERBEROS.orig	Wed Dec 31 19:00:00 1969
+++ README.AFS-KERBEROS	Fri Dec 24 21:50:03 1999
@@ -0,0 +1,44 @@
+
+ssh-1.2.27-afs-kerberos.patch-1
+AFS, Kerberos v4 support for SSH
+
+Here are the extra flags to configure, and what they do:
+
+--with-krb4[=PATH]	Compile in Kerberos v4 support:
+			Kerberos v4 authentication
+			Kerberos v4 password authentication
+			Kerberos v4 ~/.klogin authorization
+
+These are all enabled by the 'KerberosAuthentication' config option.
+Kerberos v4 and Kerberos v5 support are mutually exclusive for now.
+PATH default is /usr/kerberos.
+
+--with-hesiod[=PATH]	Compile in support for Hesiod:
+			getpwnam(), getpwuid() replacements
+
+--with-afs		Compile in AFS support (requires KTH krb4):
+			ticket/token passing
+			process authentication groups
+			local Xauthority files (for AFS home dirs)
+			/ticket TKT_ROOT directory (if it exists)
+
+Binaries built with AFS support will work just fine on non-AFS machines!
+You will need to use the KTH krb4 libs (ftp://ftp.pdc.kth.se/pub/krb/src), 
+or just their libkafs, also available separately from CMU as libkrbafs 
+(http://andrew2.andrew.cmu.edu/dist/krbafs.html).
+
+Additional Kerberos client and server config options (and their defaults):
+
+	 KerberosAuthentication	     	yes
+	 KerberosOrLocalPasswd		no
+	 KerberosTgtPassing		yes
+	 AFSTokenPassing		yes
+	 KerberosTicketCleanup		yes
+
+See sshd(8) and ssh(1) for details.
+
+The latest version of this patch can be found at
+
+    http://www.monkey.org/~dugsong/ssh-afs-kerberos.html
+
+dugsong@monkey.org