[1050] in Kerberos
Re: inter-realm authentication
daemon@ATHENA.MIT.EDU (Tasha Alfonso)
Thu Jul 12 22:49:13 1990
Date: Thu, 12 Jul 90 18:18:22 PDT
From: alfonso%agena.usc.edu@usc.edu (Tasha Alfonso)
To: jon@MIT.EDU
Cc: alfonso@agena.usc.edu, kerberos@ATHENA.MIT.EDU, cocchi@JERICO.usc.edu
In-Reply-To: Jon A. Rochlis's message of Thu, 12 Jul 90 13:23:05 EDT <9007121723.AA10813@delwin.MIT.EDU>
Jon, thanks for your reply.
It's very important that krbtgt.USC2.EDU@USC.EDU and
krbtgt.USC.EDU@USC2.EDU both have the same private keys. Is this the
case? It isn't clear to me from your message if you did that
part correctly.
Yes, krbtgt.USC2.EDU@USC.EDU and krbtgt.USC.EDU@USC2.EDU have the same
private key.
Which of these tickets do you get? What do the kerberos.log files on
both servers say?
-- Jon
We get only the first ticket:
Principal: root@USC.EDU
Issued Expires Principal
Jul 12 17:58:11 Jul 13 01:58:11 krbtgt.USC.EDU@USC.EDU
The kerberos log on USC.EDU reads:
12-Jul-90 17:57:49 Getting key for USC.EDU
12-Jul-90 17:58:08 Initial ticket request Host: 128.125.51.1 User:
"root" ""
12-Jul-90 17:58:45 APPL Request root.@USC.EDU on 128.125.51.1 for visa.pompei
12-Jul-90 17:58:45 UNKNOWN "visa" "pompei"
Thanks,
Tasha