Hi,

When gss_acquire_cred is called with GSS_ACCEPT flag, it
returns a cred-handle corresponding to the given principal name. This
cred-handle is a handle to the keytab-entry corresponding to the given
principal.

But, the keytab-entry corresponds to the entry which has the
highest key version number, not necessarily of higher key-type.

Is there any particular reason, it is implemented this way.

Thanks,
Preetam
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos