[33368] in Kerberos

home help back first fref pref prev next nref lref last post

PKINIT and NAT

daemon@ATHENA.MIT.EDU (Bram Cymet)
Wed May 4 23:33:21 2011

Message-ID: <4DC21A77.2050705@cbnco.com>
Date: Wed, 04 May 2011 23:33:11 -0400
From: Bram Cymet <bcymet@cbnco.com>
MIME-Version: 1.0
To: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hi,

I am having this odd problem where if I do a kinit from behind a nat
with a password it works just fine. However if I use certs with pkinit
then I can see all the verification being done and I can see the server
granting the ticket but then when it goes to send back the ticket to the
client it can't reach the client any more and fails.

Is this a known problem? Is there anything I can do to fix it?

Thanks,
-- 
Bram Cymet
Software Developer
Canadian Bank Note Co. Ltd.
613-608-9752
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post