[36574] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Cannot contact any KDC for realm

daemon@ATHENA.MIT.EDU (Lars Hanke)
Fri Oct 24 16:21:50 2014

Message-ID: <544AA197.9020207@lhanke.de>
Date: Fri, 24 Oct 2014 20:59:35 +0200
From: Lars Hanke <debian@lhanke.de>
MIME-Version: 1.0
To: Benjamin Kaduk <kaduk@mit.edu>
In-Reply-To: <alpine.GSO.1.10.1410241246200.27826@multics.mit.edu>
Cc: kerberos@mit.edu
Reply-To: debian@lhanke.de
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

>> During boot of my system (Debian Wheezy) k5start is invoked to supply a
>> ticket for accessing the AD DC by nslcd. However, during boot it fails:

Thanks for the answers. At least I interpreted the message correctly. I 
filed a bug to Debian already.

> Do you have kdc entries explicitly listed in the appropriate [realms]
> section in your krb5.conf, or do you rely on DNS SRV records?

I have it listed in the [realms] section, but of course DNS would be 
required to resolve the name. Probably startup is faster than dhclient 
sets up resolv.conf.

It works nice on my Centrino test client, which is considerably slower 
to start.I fear my workstation is outrunning the network.

- lars.

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post