[29400] in Kerberos
Re: Kerberos V5 refuses authentication because Kerberos checksum
daemon@ATHENA.MIT.EDU (Victor Sudakov)
Sat Mar 1 00:30:17 2008
From: Victor Sudakov <vas@mpeks.no-spam-here.tomsk.su>
Date: Sat, 1 Mar 2008 05:09:43 +0000 (UTC)
Message-ID: <fqaoen$30fd$1@relay.tomsk.ru>
X-Complaints-To: noc@sibptus.tomsk.ru
X-Comment-To: Victor Sudakov <vas@mpeks.no-spam-here.tomsk.su>
To: kerberos@mit.edu
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu
Victor Sudakov wrote:
> What could be the reason that I cannot telnet from FreeBSD to Solaris 10
> with the following error:
> Connected to oracle.sibptus.tomsk.ru.
> Escape character is '^]'.
> [ Trying mutual KERBEROS5 (host/oracle.sibptus.tomsk.ru@SIBPTUS.TOMSK.RU)... ]
> [ Kerberos V5 refuses authentication because Kerberos checksum verification failed: Bad encryption type ]
> [ Trying KERBEROS5 (host/oracle.sibptus.tomsk.ru@SIBPTUS.TOMSK.RU)... ]
> [ Kerberos V5 refuses authentication because Kerberos checksum verification failed: Bad encryption type ]
> Password:
> Kerberized telnet and ssh work fine between FreeBSD systems, but
> Solaris is a problem.
You will laugh but ssh (gssapi-with-mic) from FreeBSD to the same
Solaris 10 host and back also works perfectly. The "checksum
verification failed" problem seems to exist only with telnet.
I can certainly live without telnet if I have a working ssh. However I
still would like to know the cause of the telnet problem out of academic
interest.
Is there a way to obtain more debug information from Kerberized telnet?
--
Victor Sudakov, VAS4-RIPE, VAS47-RIPN
2:5005/49@fidonet http://vas.tomsk.ru/
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos