[37039] in Kerberos
RE: A client name with an '@'
daemon@ATHENA.MIT.EDU (Nordgren, Bryce L -FS)
Mon Jun 1 19:03:10 2015
From: "Nordgren, Bryce L -FS" <bnordgren@fs.fed.us>
To: Nico Williams <nico@cryptonector.com>
Date: Mon, 1 Jun 2015 23:02:17 +0000
Message-ID: <82E7C9A01FD0764CACDD35D10F5DFB6E7DFD63@001FSN2MPN1-046.001f.mgd2.msft.net>
In-Reply-To: <20150601224823.GC17122@localhost>
Content-Language: en-US
MIME-Version: 1.0
Cc: "kerberos@mit.edu" <kerberos@mit.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu
> $ kinit '12001000550281\@fedidcard.gov@FEDIDCARD.GOV'
Thanks! Making progress!
It now prints a single backslash when describing the principal, both in errors emitted from kinit and the "listprincs" command in kadmin.local. However, I'm back to "client name mismatch" out of kinit, presumably because the MS User Principal Name in the certificate lacks the backslash.
Bryce
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos