#1961 the 'Keytab:' field in "ipa user-show" output is misleading
Closed: Fixed None Opened 12 years ago by nalin.

The "Keytab" field in the output of "ipa user-show" indicates whether or not the server has Kerberos keys on file for the user in question.

'keytab' is the jargon for a flat file which contains a set of keys for a principal, which are used to allow it to accept authentication from clients and obtain credentials which allow it to behave as a client.

If we're not extracting and storing copies of the user's keys in a flat file, we should change the label because it's confusing, and actually somewhat alarming to people who are used to administering traditional KDC setups.


What would you recommend?

"Kerberos Keys available" True/False

Metadata Update from @nalin:
- Issue assigned to ohamada
- Issue set to the milestone: FreeIPA 3.0 Core Effort - 2011/11

7 years ago

Login to comment on this ticket.

Metadata