[16966] in Kerberos-V5-bugs
[krbdev.mit.edu #9136] S4U2Proxy API error
daemon@ATHENA.MIT.EDU (Rajbir Chahal via RT)
Thu Aug 22 15:15:48 2024
From: "Rajbir Chahal via RT" <rt-comment@kerborg-prod-app-1.mit.edu>
In-Reply-To: <SJ0PR10MB5744F37321D9413EF852534A828F2@SJ0PR10MB5744.namprd10.prod.outlook.com>
Message-ID: <rt-4.4.3-2-13933-1724354139-1696.9136-4-0@kerborg-prod-app-1.mit.edu>
To: "AdminCc of krbdev.mit.edu Ticket #9136":;
Date: Thu, 22 Aug 2024 15:15:39 -0400
MIME-Version: 1.0
Reply-To: rt-comment@kerborg-prod-app-1.mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: krb5-bugs-bounces@mit.edu
Thu Aug 22 15:15:39 2024: Request 9136 was acted upon.
Transaction: Ticket created by rajbir.chahal@oracle.com
Queue: krb5
Subject: S4U2Proxy API error
Owner: Nobody
Requestors: rajbir.chahal@oracle.com
Status: new
Ticket <URL: http://kerborg-prod-app-1.mit.edu/rt/Ticket/Display.html?id=9136 >
Hello,
I am testing Kerberos S4U2Proxy API (krb5_get_credentials_for_proxy()).
Client is MIT Kerberos (version 5-1.21.2) test program, krb5-1.21.2/src/tests/s4u2proxy.c. Kerberos KDC is Active Directory (on Windows Server 2016).
On making this API call, the client receives error "-1765328371, KDC can't fulfill requested option".
Has this functionality been tested with Active Directory? Has it been tested with any other KDCs?
Please share guidance about resolving this issue.
I have reviewed the krb5-bugs archive and did not find a previous bug related to this issue.
thanks,
Rajbir
_______________________________________________
krb5-bugs mailing list
krb5-bugs@mit.edu
https://mailman.mit.edu/mailman/listinfo/krb5-bugs