[39164] in Kerberos

home help back first fref pref prev next nref lref last post

"Socket type not supported" with OTP

daemon@ATHENA.MIT.EDU (BuzzSaw Code)
Mon Jan 9 23:20:50 2023

MIME-Version: 1.0
From: BuzzSaw Code <buzzsaw.code@gmail.com>
Date: Mon, 9 Jan 2023 23:15:43 -0500
Message-ID: <CAJhaRZ+tk-We5sLHzbiROwpBAty3jznONphXQt5dksALfDRuxg@mail.gmail.com>
To: Kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

I've setup some new RHEL8 KDCs that will use the otp feature - I have
this working on RHEL7 without issues.

But on the RHEL8 hosts I'm getting "preauth (otp) verify failure:
Socket type not supported" errors.

Each KDC has a local radius server listening on the IPv6 loopback, so
the kdc.conf has this for the otp config:

[otp]
   DEFAULT = {
        server = localhost6:1812
        secret = mysecret
        strip_realm = true
   }

Is there a way to debug the KDC process further to see why it doesn't
like that loopback without building a custom debug kdc ?
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post