[23130] in Kerberos
Re: More Kerberos Issues
daemon@ATHENA.MIT.EDU (Markus Moeller)
Fri Jan 7 15:38:30 2005
From: "Markus Moeller" <huaraz@moeller.plus.com>
Date: Fri, 7 Jan 2005 18:36:01 -0000
Message-ID: <41ded697$0$44542$ed2619ec@ptn-nntp-reader02.plus.net>
To: kerberos@MIT.EDU
Errors-To: kerberos-bounces@MIT.EDU
Tyson,
you might need to add -desonly to your ktpass line.
Regards
Markus
"Tyson Oswald" <oswaldt@ameritech.net> wrote in message
news:20050107180150.27233.qmail@web81502.mail.yahoo.com...
>I created a keytab with ktpass on Win 2003 for my SEAM client. I importd it
>into the /etc/krb5/krb5.conf and when I try and authentication through SSH
>I get the following error in my messages
>
> PAM-KRB5 (auth): end: Authentication failed
> PAM-KRB5 (auth): pam_sm_authenticate flags=1
> PAM-KRB5 (auth): attempt_krb5_auth: start: user='cbrown'
> PAM-KRB5 (auth): attempt_krb5_auth: krb5_get_init_creds_password returns:
> SUCCESS
> PAM-KRB5 (auth): krb5_verify_init_creds failed: Key table entry not found
> PAM-KRB5 (auth): clearing initcreds in pam_authenticate()
> PAM-KRB5 (auth): attempt_krb5_auth returning 9
>
> my ktpass line looks similar to this
>
> ktpass -princ host/snoopy@peanuts.com@PEANUTS.COM -mapuser AD\SNOOPY -pass
> "password" -crypto des-cbc-MD5 -out snoopy.keytab
>
> Does anyone know what I am doing wrong?
>
> thanks,
> Tyson
> ________________________________________________
> Kerberos mailing list Kerberos@mit.edu
> https://mailman.mit.edu/mailman/listinfo/kerberos
>
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos