[35920] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Client keytab ignored

daemon@ATHENA.MIT.EDU (steve)
Wed Mar 26 13:39:53 2014

Message-ID: <1395855572.3968.2.camel@hh16.hh3.site>
From: steve <steve@steve-ss.com>
To: kerberos@mit.edu
Date: Wed, 26 Mar 2014 18:39:32 +0100
In-Reply-To: <trinity-9afaca67-dbbc-4068-b457-175fd708d48d-1395851694388@3capp-gmx-bs20>
Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

On Wed, 2014-03-26 at 17:34 +0100, Michael-O wrote:
> Hi,
> 
> I am trying to obtain a service ticket with a client keytab for my account. Unfortunately it fails. I wanted to narrow this down and tried to peform the very same operation with
> $ kinit -k -t my.keytab
> and it says kinit: Keytab contains no suitable keys for host/fqdn@REALM while getting initial credentials.
> 
> The question is, why does it completely ignore my keytab and tries the default one in /etc?

It isn't, is it? Does your keytab have the host key? It is not only you
who must authenticate, but also the machine upon which you are working.
HTH
Steve


________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post