Kerberos Client Version E.1.6.2.09 Release Notes (5990-1526, January 2011)

Table 1 Kerberos Client PA-RISC and Itanium Libraries (continued)
FunctionalityLibrary Name / LocationArchitecture
Encrypt (DES, 3DES, AES, and
RC4) and decrypt all
communication between users to
ensure privacy and data integrity.
32–bit
/usr/lib/hpux32/libk5crypto.so -> /usr/lib/
hpux32/libk5crypto.so.1
/usr/lib/hpux32/libk5crypto.so.1 -> /opt/
krb5client/lib/hpux32/libk5crypto.so.1
64–bit
/usr/lib/hpux64/libk5crypto.so -> /usr/lib/
hpux64/libk5crypto.so.1
/usr/lib/hpux64/libk5crypto.so.1 -> /opt/
krb5client/lib/hpux64/libk5crypto.so.1
Kerberos-mechanism specific
library used by GSSAPI (/usr/
lib/libgss.sl)
32–bit
/usr/lib/hpux32/libgss.so –> /usr/lib/
hpux32/libgss.so.1
/usr/lib/hpux32/libgss.so.1 –> /opt/
krb5client/lib/hpux32/gss/
libgssapi_krb5.so.1
64–bit
/usr/lib/hpux64/libgss.so -> /usr/lib/
hpux64/libgss.so.1
/usr/lib/hpux64/libgss.so.1 -> /opt/
krb5client/lib/hpux64/gss/
libgssapi_krb5.so.1
Itanium
Ensures thread-safety for all the
Kerberos libraries
32–bit
/usr/lib/hpux32/libkrb5support.so –> /opt/
krb5client/lib/hpux32/libkrb5support.so.1
64–bit
/usr/lib/hpux64/libkrb5support.so -> /opt/
krb5client/lib/hpux64/libkrb5support.so.1
The client libraries are based on MIT Kerberos V5 1.6.2 release. The KRB5-Client libraries support
DES, 3DES, RC4, and AES, as specified in RFC 1510 of the IETF. This release of Kerberos Client
is interoperable with Microsoft Windows ® 2000 and 2003.
Table 2 lists and describes the utilities that Kerberos Client includes.
Table 2 Kerberos Client utilities
FunctionUtility
Obtains and caches the Kerberos ticket-granting ticket/usr/bin/kinit ->/opt/krb5client/bin/kinit
1
Lists cached Kerberos tickets/usr/bin/klist -> /opt/krb5client/bin/klist
Prints key version numbers of Kerberos principals/usr/bin/kvno -> /opt/krb5client/bin/kvno
Changes a user’s Kerberos password/usr/bin/kpasswd -> /opt/krb5client/bin/
kpasswd
Maintains the Kerberos keytab file/usr/sbin/ktutil -> /opt/krb5client/sbin/
ktutil
Destroys the user’s active Kerberos tickets/usr/bin/kdestroy -> /opt/krb5client/bin/
kdestroy
Copies the service ticket between credential caches/usr/bin/kcpytkt ->/opt/krb5client/bin/kcpykt
Deletes the service ticket from the credential cache/usr/bin/kdeltkt ->/opt/krb5client/bin/kdeltkt
6 Kerberos Client E.1.6.2.09 release notes