[30694] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Prob: failed to verify krb5 credentials: Server not found in=20

daemon@ATHENA.MIT.EDU (=?ISO-8859-1?Q?Michael_Str=F6der?=)
Thu Feb 5 12:14:23 2009

From: =?ISO-8859-1?Q?Michael_Str=F6der?= <michael@stroeder.com>
Date: Wed, 04 Feb 2009 00:22:05 +0100
Message-ID: <t50n56-234.ln1@nb2.stroeder.com>
Mime-Version: 1.0
X-Complaints-To: usenet-abuse@t-online.de
In-Reply-To: <mailman.36.1233701398.5762.kerberos@mit.edu>
To: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

slaindevil@kabelmail.de wrote:
> @Paul Moore: What do you mean, with "an AD account with that SPN"?

He meant an AD user entry for this service with the appropriate service
principal name set in (LDAP attribute) 'servicePrincipalName'.

> I had created an extra user and password at the AD. This login is
> saved inside of the keytab together with the SPN:
> HTTP/wiki.test.lan@SRV.TEST.LAN

I guess you used setspn.exe or ktpass.exe to map the AD user account to
the service principal name?

Ciao, Michael.
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post