[36592] in Kerberos

home help back first fref pref prev next nref lref last post

RE: Regarding MIT KDC server setup

daemon@ATHENA.MIT.EDU (Baghel, Gaurav)
Fri Oct 31 13:49:33 2014

From: "Baghel, Gaurav" <Gaurav.Baghel@netapp.com>
To: Benjamin Kaduk <kaduk@mit.edu>
Date: Thu, 30 Oct 2014 21:41:36 +0000
Message-ID: <39e6136f75db4e568a8b36b847a65a61@hioexcmbx03-prd.hq.netapp.com>
In-Reply-To: <alpine.GSO.1.10.1410301738110.27826@multics.mit.edu>
Content-Language: en-US
MIME-Version: 1.0
Cc: "kerberos@mit.edu" <kerberos@mit.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Agree. 
But If I want to setup a new fresh KDC on new machine, could you please help me and share the steps that one should follow.



-Gaurav

-----Original Message-----
From: Benjamin Kaduk [mailto:kaduk@MIT.EDU] 
Sent: Friday, October 31, 2014 3:09 AM
To: Baghel, Gaurav
Cc: kerberos@mit.edu
Subject: Re: Regarding MIT KDC server setup

On Wed, 29 Oct 2014, Baghel, Gaurav wrote:

> Hi MIT Team,
>
> I am doing setup for MIT KDC on solaris machine. I searched a lot over internet, but couldn't find any appropriate doc for the KDC setup.
> Request you to please give me all the steps or link to setup MIT KDC 
> over solaris. Also on one of the KDC I am getting below error:-
>
> bash-3.00#
> bash-3.00# kadmin.local
> Authenticating as principal root/admin@SSQA.GDL.ENGLAB.NETAPP.COM with password.
> kadmin.local:
> kadmin.local:  list_principals
> get_principals: Database record is incomplete or corrupted while retrieving list.
> kadmin.local:
> kadmin.local:  add_principal -e "des-cbc-crc:normal 
> des-cbc-md5:normal" -randkey 
> nfs/f3170-29-203.gdl.englab.netapp.com@SSQA.GDL.ENGLAB.NETAPP.COM
> WARNING: no policy specified for 
> nfs/f3170-29-203.gdl.englab.netapp.com@SSQA.GDL.ENGLAB.NETAPP.COM; 
> defaulting to no policy Segmentation Fault (core dumped) bash-3.00#

That log is different than the transcript from the previous mail you sent to a different list.

It seems unlikely that anyone will be able to help without a complete understanding of what has happened to the system in question, Kerberos-wise, starting from kdb5_util create.

-Ben Kaduk

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post