[36768] in Kerberos
Re: How to set renewal lifetime
daemon@ATHENA.MIT.EDU (Greg Hudson)
Tue Feb 10 10:04:15 2015
Message-ID: <54DA1D7D.8000308@mit.edu>
Date: Tue, 10 Feb 2015 10:02:21 -0500
From: Greg Hudson <ghudson@mit.edu>
MIME-Version: 1.0
To: Gergely Czuczy <gergely.czuczy@harmless.hu>, kerberos@mit.edu
In-Reply-To: <54D9DD01.5060303@harmless.hu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu
On 02/10/2015 05:27 AM, Gergely Czuczy wrote:
> Anyone has any idea why I'm not getting a proper renew-until timestamp 
> for the acquired tickets? I'm running out of ideas and googling what 
> might be wrong here.
You didn't mention setting a maxrenewlife on krbtgt/REALM; that is also
necessary if you didn't have the max_renewable_life setting in kdc.conf
at the time of realm creation.
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos