[30569] in Kerberos
Re: AS_REQ Return code 60 for principal expired?
daemon@ATHENA.MIT.EDU (Tom Yu)
Fri Dec 19 14:36:00 2008
To: Mike Friedman <mikef@berkeley.edu>
From: Tom Yu <tlyu@MIT.EDU>
Date: Fri, 19 Dec 2008 14:35:22 -0500
In-Reply-To: <alpine.BSF.1.10.0812111239030.81298@brillig.security.berkeley.edu>
(Mike Friedman's message of "Thu,
11 Dec 2008 12:54:23 -0800 (PST)")
Message-ID: <ldvr644nekl.fsf@cathode-dark-space.mit.edu>
MIME-Version: 1.0
Cc: MIT Kerberos Mailing List <kerberos@MIT.EDU>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@MIT.EDU
Mike Friedman <mikef@berkeley.edu> writes:
> I've been doing some testing of my programs that use the MIT API against a
> KDC running 1.6.1 on a Linux system. On all prior systems where I've run
> a KDC, and according to the Kerberos docs, a principal expired condition
> should set a return code of 1. But on this test system, it seems I'm
> getting back a 60, which the docs define as a 'generic error'.
I am unable to reproduce this condition. Is the krb5-1.6.1 KDC
possibly built using the --with-vague-errors option?
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos