[36574] in Kerberos
Re: Cannot contact any KDC for realm
daemon@ATHENA.MIT.EDU (Lars Hanke)
Fri Oct 24 16:21:50 2014
Message-ID: <544AA197.9020207@lhanke.de>
Date: Fri, 24 Oct 2014 20:59:35 +0200
From: Lars Hanke <debian@lhanke.de>
MIME-Version: 1.0
To: Benjamin Kaduk <kaduk@mit.edu>
In-Reply-To: <alpine.GSO.1.10.1410241246200.27826@multics.mit.edu>
Cc: kerberos@mit.edu
Reply-To: debian@lhanke.de
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu
>> During boot of my system (Debian Wheezy) k5start is invoked to supply a
>> ticket for accessing the AD DC by nslcd. However, during boot it fails:
Thanks for the answers. At least I interpreted the message correctly. I
filed a bug to Debian already.
> Do you have kdc entries explicitly listed in the appropriate [realms]
> section in your krb5.conf, or do you rely on DNS SRV records?
I have it listed in the [realms] section, but of course DNS would be
required to resolve the name. Probably startup is faster than dhclient
sets up resolv.conf.
It works nice on my Centrino test client, which is considerably slower
to start.I fear my workstation is outrunning the network.
- lars.
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos