[30569] in Kerberos

home help back first fref pref prev next nref lref last post

Re: AS_REQ Return code 60 for principal expired?

daemon@ATHENA.MIT.EDU (Tom Yu)
Fri Dec 19 14:36:00 2008

To: Mike Friedman <mikef@berkeley.edu>
From: Tom Yu <tlyu@MIT.EDU>
Date: Fri, 19 Dec 2008 14:35:22 -0500
In-Reply-To: <alpine.BSF.1.10.0812111239030.81298@brillig.security.berkeley.edu>
	(Mike Friedman's message of "Thu,
	11 Dec 2008 12:54:23 -0800 (PST)")
Message-ID: <ldvr644nekl.fsf@cathode-dark-space.mit.edu>
MIME-Version: 1.0
Cc: MIT Kerberos Mailing List <kerberos@MIT.EDU>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@MIT.EDU

Mike Friedman <mikef@berkeley.edu> writes:

> I've been doing some testing of my programs that use the MIT API against a 
> KDC running 1.6.1 on a Linux system.  On all prior systems where I've run 
> a KDC, and according to the Kerberos docs, a principal expired condition 
> should set a return code of 1.  But on this test system, it seems I'm 
> getting back a 60, which the docs define as a 'generic error'.

I am unable to reproduce this condition.  Is the krb5-1.6.1 KDC
possibly built using the --with-vague-errors option?
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post