[22508] in Kerberos

home help back first fref pref prev next nref lref last post

Re: PAM_KRB5 Issue

daemon@ATHENA.MIT.EDU (Tyson Oswald)
Mon Sep 20 15:39:02 2004

Message-ID: <20040920181409.68255.qmail@web81504.mail.yahoo.com>
Date: Mon, 20 Sep 2004 11:14:09 -0700 (PDT)
From: Tyson Oswald <oswaldt@ameritech.net>
To: Norbert Klasen <norbert.klasen@avinci.de>, kerberos@mit.edu
In-Reply-To: <2CFA262F2EAFAC4E7323A732@[10.110.20.166]>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Errors-To: kerberos-bounces@mit.edu



Norbert Klasen <norbert.klasen@avinci.de> wrote:


--On Freitag, 17. September 2004 10:26 -0700 Tyson Oswald 
wrote:

> I have successult gotten SEAM -> AD to work on our Solaris 8 machines,
> and am now trying to get it to work on our Solaris 9 servers. I have
> setup the krb5.conf file exactly the same. I am unable to login with
> my AD crednetials. I find this error in /var/adm/messages
>
> PAM_KRB5 (auth): error reading service ticket (authentication failed):
> No such file or directory
>
> I also get an error referring to a not being able to fine the
> credentials for the host on the default keytab file which I don't
> understand, as I do not have a KDC server setup.

Do you have an entry for the "host" principal in the system's keytab? Does 
the system's keytab (usually /etc/krb5.keytab) exists at all?

Norbert


I do not actually.  I never had to do that with Solaris 8, so I was wondering.  I'm in the process of gettign user IDs created in AD for the system.

-Tyson

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post