f



Configuration Problems



Hi,

I'm trying to perform SSH authentication using Kerberos but I am a  
beginner.
The steps I followed are those in this guide:

http://www.visolve.com/security/ssh_kerberos.php#Configuring_the_Kerberos_environment

but I definitely made some wrong step and I can not understand where.
My lab is composed of :
server KDC		realm.sso1.sociale.it 10.43.165.10
server SSH		ldap2.sso1.sociale.it 10.43.165.36
client SSH		my machine MacOSX	  10.43.130.100

servers are both on the DNS.

###############################################
On server KDC:

cat /etc/krb5.conf
[logging]
  default = FILE:/var/log/krb5libs.log
  kdc = FILE:/var/log/krb5kdc.log
  admin_server = FILE:/var/log/kadmind.log

[libdefaults]
  default_realm = REALM.SSO1.SOCIALE.IT
  default_keytab_name = FILE:/etc/krb5.keytab
  dns_lookup_realm = false
  dns_lookup_kdc = false
  ticket_lifetime = 24h
  forwardable = yes

[realms]
  REALM.SSO1.SOCIALE.IT = {
   kdc = realm.sso1.sociale.it:88
   admin_server = realm.sso1.sociale.it:749
   default_domain = sso1.sociale.it
  }

[domain_realm]
  realm.sso1.sociale.it = REALM.SSO1.SOCIALE.IT

[kdc]
profile = /var/kerberos/krb5kdc/kdc.conf

[appdefaults]
  pam = {
    debug = false
    ticket_lifetime = 36000
    renew_lifetime = 36000
    forwardable = true
    krb4_convert = false
  }

-------------------------------------------------------

kadmin:  listprincs
K/M@REALM.SSO1.SOCIALE.IT
admin/admin@REALM.SSO1.SOCIALE.IT
host/ldap2.sso1.sociale.it@REALM.SSO1.SOCIALE.IT
kadmin/admin@REALM.SSO1.SOCIALE.IT
kadmin/changepw@REALM.SSO1.SOCIALE.IT
kadmin/history@REALM.SSO1.SOCIALE.IT
kadmin/realm.sso1.sociale.it@REALM.SSO1.SOCIALE.IT
krbtgt/REALM.SSO1.SOCIALE.IT@REALM.SSO1.SOCIALE.IT
preside@REALM.SSO1.SOCIALE.IT
###############################################

###############################################
On the server SSH

cat /etc/krb5.conf
[logging]
  default = FILE:/var/log/krb5libs.log
  kdc = FILE:/var/log/krb5kdc.log
  admin_server = FILE:/var/log/kadmind.log

[libdefaults]
  default_realm = REALM.SSO1.SOCIALE.IT
  default_keytab_name = FILE:/etc/krb5.keytab
  dns_lookup_realm = false
  dns_lookup_kdc = false
  ticket_lifetime = 24h
  forwardable = yes

[realms]
  REALM.SSO1.SOCIALE.IT = {
   kdc = realm.sso1.sociale.it:88
   admin_server = realm.sso1.sociale.it:749
   default_domain = sso1.sociale.it
  }

[domain_realm]
realm.sso1.sociale.it = REALM.SSO1.SOCIALE.IT

[appdefaults]
  pam = {
    debug = true
    ticket_lifetime = 36000
    renew_lifetime = 36000
    forwardable = true
    krb4_convert = false
  }

-------------------------------------------------------

kadmin:  ktadd -k /etc/krb5.keytab host/ldap2.sso1.sociale.it@REALM.SSO1.SOCIALE.IT

-------------------------------------------------------

cat /etc/ssh/sshd_config
#	$OpenBSD: sshd_config,v 1.73 2005/12/06 22:38:28 reyk Exp $

# This is the sshd server system-wide configuration file.  See
# sshd_config(5) for more information.

# This sshd was compiled with PATH=/usr/local/bin:/bin:/usr/bin

# The strategy used for options in the default sshd_config shipped with
# OpenSSH is to specify options with their default value where
# possible, but leave them commented.  Uncommented options change a
# default value.

#Port 22
#Protocol 2,1
Protocol 2
#AddressFamily any
#ListenAddress 0.0.0.0
#ListenAddress ::

# HostKey for protocol version 1
#HostKey /etc/ssh/ssh_host_key
# HostKeys for protocol version 2
#HostKey /etc/ssh/ssh_host_rsa_key
#HostKey /etc/ssh/ssh_host_dsa_key

# Lifetime and size of ephemeral version 1 server key
#KeyRegenerationInterval 1h
#ServerKeyBits 768

# Logging
# obsoletes QuietMode and FascistLogging
#SyslogFacility AUTH
SyslogFacility AUTHPRIV
#LogLevel INFO
LogLevel DEBUG3

# Authentication:

#LoginGraceTime 2m
#PermitRootLogin yes
#StrictModes yes
#MaxAuthTries 6

#RSAAuthentication yes
#PubkeyAuthentication yes
#AuthorizedKeysFile	.ssh/authorized_keys

# For this to work you will also need host keys in /etc/ssh/ 
ssh_known_hosts
#RhostsRSAAuthentication no
# similar for protocol version 2
#HostbasedAuthentication no
# Change to yes if you don't trust ~/.ssh/known_hosts for
# RhostsRSAAuthentication and HostbasedAuthentication
#IgnoreUserKnownHosts no
# Don't read the user's ~/.rhosts and ~/.shosts files
#IgnoreRhosts yes

# To disable tunneled clear text passwords, change to no here!
#PasswordAuthentication yes
#PermitEmptyPasswords no
PasswordAuthentication yes

# Change to no to disable s/key passwords
#ChallengeResponseAuthentication yes
ChallengeResponseAuthentication no

# Kerberos options
#KerberosAuthentication no
KerberosAuthentication yes
#KerberosOrLocalPasswd yes
#KerberosTicketCleanup yes
#KerberosGetAFSToken no

# GSSAPI options
#GSSAPIAuthentication no
GSSAPIAuthentication yes
#GSSAPICleanupCredentials yes
GSSAPICleanupCredentials yes

# Set this to 'yes' to enable PAM authentication, account processing,
# and session processing. If this is enabled, PAM authentication will
# be allowed through the ChallengeResponseAuthentication mechanism.
# Depending on your PAM configuration, this may bypass the setting of
# PasswordAuthentication, PermitEmptyPasswords, and
# "PermitRootLogin without-password". If you just want the PAM account  
and
# session checks to run without PAM authentication, then enable this  
but set
# ChallengeResponseAuthentication=no
UsePAM no
## UsePAM yes

# Accept locale-related environment variables
AcceptEnv LANG LC_CTYPE LC_NUMERIC LC_TIME LC_COLLATE LC_MONETARY  
LC_MESSAGES
AcceptEnv LC_PAPER LC_NAME LC_ADDRESS LC_TELEPHONE LC_MEASUREMENT
AcceptEnv LC_IDENTIFICATION LC_ALL
#AllowTcpForwarding yes
#GatewayPorts no
#X11Forwarding no
X11Forwarding yes
#X11DisplayOffset 10
#X11UseLocalhost yes
#PrintMotd yes
#PrintLastLog yes
#TCPKeepAlive yes
#UseLogin no
#UsePrivilegeSeparation yes
#PermitUserEnvironment no
#Compression delayed
#ClientAliveInterval 0
#ClientAliveCountMax 3
#ShowPatchLevel no
#UseDNS yes
#PidFile /var/run/sshd.pid
#MaxStartups 10
#PermitTunnel no
#ChrootDirectory none

# no default banner path
#Banner /some/path

# override default of no subsystems
Subsystem	sftp	/usr/libexec/openssh/sftp-server
###############################################

###############################################

cat /Library/Preferences/edu.mit.Kerberos
[logging]
  default = FILE:/var/log/krb5libs.log
  kdc = FILE:/var/log/krb5kdc.log
  admin_server = FILE:/var/log/kadmind.log

[libdefaults]
  default_realm = REALM.SSO1.SOCIALE.IT
  default_keytab_name = FILE:/etc/krb5.keytab
  dns_lookup_realm = false
  dns_lookup_kdc = false
  ticket_lifetime = 24h
  forwardable = yes

[realms]
  REALM.SSO1.SOCIALE.IT = {
   kdc = realm.sso1.sociale.it:88
   admin_server = realm.sso1.sociale.it:749
   default_domain = sso1.sociale.it
  }

[domain_realm]
realm.sso1.sociale.it = REALM.SSO1.SOCIALE.IT

[appdefaults]
  pam = {
    debug = true
    ticket_lifetime = 36000
    renew_lifetime = 36000
    forwardable = true
    krb4_convert = false
  }

###############################################

 From my machine I do:

kinit preside
Please enter the password for preside@REALM.SSO1.SOCIALE.IT:

klist
Kerberos 5 ticket cache: 'API:Initial default ccache'
Default principal: preside@REALM.SSO1.SOCIALE.IT

Valid Starting     Expires            Service Principal
04/28/10 11:32:52  04/29/10 11:32:52  krbtgt/REALM.SSO1.SOCIALE.IT@REALM.SSO1.SOCIALE.IT
	renew until 04/28/10 11:32:52
	
But when I do

ssh preside@ldap2.sso1.sociale.it

the operation is not good, asks me the password.
if I do it again:

klist
Kerberos 5 ticket cache: 'API:Initial default ccache'
Default principal: preside@REALM.SSO1.SOCIALE.IT

Valid Starting     Expires            Service Principal
04/28/10 11:32:52  04/29/10 11:32:52  krbtgt/REALM.SSO1.SOCIALE.IT@REALM.SSO1.SOCIALE.IT
	renew until 04/28/10 11:32:52
04/28/10 11:36:26  04/29/10 11:32:52  host/ldap2.sso1.sociale.it@
	renew until 04/28/10 11:32:52
	
On the server SSH, in the log file /var/log/secure, the lines that I  
think are significant are:

Apr 28 11:15:59 ldap2 sshd[4375]: debug1: userauth-request for user  
preside service ssh-connection method none
Apr 28 11:15:59 ldap2 sshd[4375]: debug1: attempt 0 failures 0
Apr 28 11:15:59 ldap2 sshd[4375]: debug3: mm_getpwnamallow entering
Apr 28 11:15:59 ldap2 sshd[4375]: debug3: mm_request_send entering:  
type 7
Apr 28 11:15:59 ldap2 sshd[4375]: debug3: mm_getpwnamallow: waiting  
for MONITOR_ANS_PWNAM
Apr 28 11:15:59 ldap2 sshd[4374]: debug3: monitor_read: checking  
request 7
Apr 28 11:15:59 ldap2 sshd[4375]: debug3: mm_request_receive_expect  
entering: type 8
Apr 28 11:15:59 ldap2 sshd[4374]: debug3: mm_answer_pwnamallow
Apr 28 11:15:59 ldap2 sshd[4375]: debug3: mm_request_receive entering
Apr 28 11:15:59 ldap2 sshd[4374]: debug3: auth_shadow_acctexpired:  
today 14727 sp_expire -1 days left -14728
Apr 28 11:15:59 ldap2 sshd[4374]: debug3: account expiration disabled
Apr 28 11:15:59 ldap2 sshd[4374]: debug3: mm_answer_pwnamallow:  
sending MONITOR_ANS_PWNAM: 1
Apr 28 11:15:59 ldap2 sshd[4374]: debug3: mm_request_send entering:  
type 8
Apr 28 11:15:59 ldap2 sshd[4375]: debug2: input_userauth_request:  
setting up authctxt for preside
Apr 28 11:15:59 ldap2 sshd[4374]: debug2: monitor_read: 7 used once,  
disabling now
Apr 28 11:15:59 ldap2 sshd[4375]: debug3: mm_inform_authserv entering
Apr 28 11:15:59 ldap2 sshd[4374]: debug3: mm_request_receive entering
Apr 28 11:15:59 ldap2 sshd[4375]: debug3: mm_request_send entering:  
type 3
Apr 28 11:15:59 ldap2 sshd[4375]: debug3: mm_inform_authrole entering
Apr 28 11:15:59 ldap2 sshd[4374]: debug3: monitor_read: checking  
request 3
Apr 28 11:15:59 ldap2 sshd[4375]: debug3: mm_request_send entering:  
type 4
Apr 28 11:15:59 ldap2 sshd[4374]: debug3: mm_answer_authserv:  
service=ssh-connection, style=
Apr 28 11:15:59 ldap2 sshd[4375]: debug2: input_userauth_request: try  
method none
Apr 28 11:15:59 ldap2 sshd[4374]: debug2: monitor_read: 3 used once,  
disabling now
Apr 28 11:16:00 ldap2 sshd[4375]: debug1: userauth-request for user  
preside service ssh-connection method gssapi-with-mic
Apr 28 11:16:00 ldap2 sshd[4374]: debug3: mm_request_receive entering
Apr 28 11:16:00 ldap2 sshd[4375]: debug1: attempt 1 failures 1
Apr 28 11:16:00 ldap2 sshd[4374]: debug3: monitor_read: checking  
request 4
Apr 28 11:16:00 ldap2 sshd[4375]: debug2: input_userauth_request: try  
method gssapi-with-mic
Apr 28 11:16:00 ldap2 sshd[4374]: debug3: mm_answer_authrole: role=
Apr 28 11:16:00 ldap2 sshd[4375]: debug3: mm_request_send entering:  
type 38
Apr 28 11:16:00 ldap2 sshd[4374]: debug2: monitor_read: 4 used once,  
disabling now
Apr 28 11:16:00 ldap2 sshd[4375]: debug3: mm_request_receive_expect  
entering: type 39
Apr 28 11:16:00 ldap2 sshd[4374]: debug3: mm_request_receive entering
Apr 28 11:16:00 ldap2 sshd[4375]: debug3: mm_request_receive entering
Apr 28 11:16:00 ldap2 sshd[4374]: debug3: monitor_read: checking  
request 38
Apr 28 11:16:00 ldap2 sshd[4374]: debug3: mm_request_send entering:  
type 39
Apr 28 11:16:00 ldap2 sshd[4374]: debug3: mm_request_receive entering
Apr 28 11:16:00 ldap2 sshd[4375]: debug3: Normalising mapped IPv4 in  
IPv6 address
Apr 28 11:16:00 ldap2 sshd[4375]: Postponed gssapi-with-mic for  
preside from 10.43.130.100 port 50310 ssh2
Apr 28 11:16:00 ldap2 sshd[4375]: debug3: mm_request_send entering:  
type 40
Apr 28 11:16:00 ldap2 sshd[4375]: debug3: mm_request_receive_expect  
entering: type 41
Apr 28 11:16:00 ldap2 sshd[4374]: debug3: monitor_read: checking  
request 40
Apr 28 11:16:00 ldap2 sshd[4375]: debug3: mm_request_receive entering
Apr 28 11:16:00 ldap2 sshd[4374]: debug1: Unspecified GSS failure.   
Minor code may provide more information\nUnknown code krb5 144\n
Apr 28 11:16:00 ldap2 sshd[4374]: debug1: Got no client credentials
Apr 28 11:16:00 ldap2 sshd[4374]: debug3: mm_request_send entering:  
type 41
Apr 28 11:16:00 ldap2 sshd[4374]: debug3: mm_request_receive entering
Apr 28 11:16:00 ldap2 sshd[4375]: debug1: userauth-request for user  
preside service ssh-connection method gssapi-with-mic
Apr 28 11:16:00 ldap2 sshd[4375]: debug1: attempt 2 failures 2
Apr 28 11:16:00 ldap2 sshd[4375]: debug2: input_userauth_request: try  
method gssapi-with-mic
Apr 28 11:16:01 ldap2 sshd[4375]: debug1: userauth-request for user  
preside service ssh-connection method gssapi-with-mic
Apr 28 11:16:01 ldap2 sshd[4375]: debug1: attempt 3 failures 3
Apr 28 11:16:01 ldap2 sshd[4375]: debug2: input_userauth_request: try  
method gssapi-with-mic
Apr 28 11:16:01 ldap2 sshd[4375]: debug1: userauth-request for user  
preside service ssh-connection method publickey
Apr 28 11:16:01 ldap2 sshd[4375]: debug1: attempt 4 failures 4
Apr 28 11:16:01 ldap2 sshd[4375]: debug2: input_userauth_request: try  
method publickey
Apr 28 11:16:01 ldap2 sshd[4375]: debug1: test whether pkalg/pkblob  
are acceptable


On the server KDC, in the log file /var/log/krb5kdc.log I have the  
following line the first time
I try to connect after I've done kinit :

realm.sso1.sociale.it krb5kdc[2546](info): TGS_REQ (7 etypes {18 17 16  
23 1 3 2}) 10.43.130.100: ISSUE: authtime 1272447967, etypes {rep=16  
tkt=16 ses=16}, preside@REALM.SSO1.SOCIALE.IT for host/ldap2.sso1.sociale.it@REALM.SSO1.SOCIALE.IT

If after the first time, I try to connect again and when the server  
asks me for my password,
I block the transaction, in the log file do not see anything
but if I enter the password in the file log I have:

realm.sso1.sociale.it krb5kdc[2546](info): AS_REQ (12 etypes {18 17 16  
23 1 3 2 11 10 15 12 13}) 10.43.165.36: ISSUE: authtime 1272448910,  
etypes {rep=16 tkt=16 ses=16}, preside@REALM.SSO1.SOCIALE.IT for krbtgt/REALM.SSO1.SOCIALE.IT@REALM.SSO1.SOCIALE.IT
realm.sso1.sociale.it krb5kdc[2546](info): TGS_REQ (7 etypes {18 17 16  
23 1 3 2}) 10.43.165.36: ISSUE: authtime 1272448910, etypes {rep=16  
tkt=16 ses=16}, preside@REALM.SSO1.SOCIALE.IT for host/ldap2.sso1.sociale.it@REALM.SSO1.SOCIALE.IT

someone help me know....... I'm going crazy
Thanks






Ing. Stefano Elmopi
Gruppo Darco - Resp. ICT Sistemi
Via Ostiense 131/L Corpo B, 00154 Roma

cell. 3466147165
tel.  0657060500
email:stefano.elmopi@sociale.it

"Ai sensi e per effetti della legge sulla tutela  della  riservatezza  
personale
(D.lgs n. 196/2003),  questa @mail e' destinata  unicamente alle  
persone sopra
indicate e le informazioni in essa contenute sono da considerarsi  
strettamente
riservate. E' proibito leggere, copiare, usare o diffondere il  
contenuto della
presente @mail  senza  autorizzazione. Se avete ricevuto  questo  
messaggio per
errore, siete pregati di rispedire la stessa al mittente. Grazie"

0
4/28/2010 10:09:59 AM
comp.protocols.kerberos 5541 articles. 1 followers. jwinius (31) is leader. Post Follow

0 Replies
494 Views

Similar Articles

[PageSpeed] 57

Reply:

Similar Artilces:

problems problems problems
(The short(?) summary) I've got an Access MDB file and a DAO connect with it.. Problem 1 of 2 The below gives me a runtime error 91 Object variable or With block variable not set. I've got the db stuff after the form.show (to make sure all the objects on the form are loaded before attempting to utilize/manipulate them) But it doesn't like it when I use the data object in the form load anyway for some reason.. pffft. Private Sub Form_Load() frmTest1Project.Show datGallery.Recordset.MoveLast datGallery.Recordset.MoveFirst Call LockTextBoxes(frmTest1Project, "TextBox") End Sub Problem 2 of 2 In the data object properties, I have set BOFAction = 0 - Move First EOFAction = 0 - Move Last Yet still, If I go beyond the last record, or before the first record, I get one blank record, and then an error when moving yet one more time in the beyond or before direction. Runtime error 3021 No current record found Why aren't my BOF/EOF actions kicking in? Any assistance would be appreciated :) :) :) Tony! I think that I had a problem like this once I think it was that you needed to moe to the last record then check against EOF/BOF and if true move first/last I think thats how I fixed it sorry if I'm way off base "Tony" <none@none.com> wrote in message news:flhogvkg46rj97c1bsqq0bp4dl5jpkt1sj@4ax.com... > (The short(?) summary) > > I've got an Access ...

Problem configuring kerberos delegation on a windows 2003 domain
Hi all, I�ve been trying to configure Kerberos delegation on a Windows 2003 domain but I haven't got any good result yet. I followed a Microsoft Document on [1] to configure Kerberos in order to build a .NET 2.0 SOA solution. The following is the Kerberos trace when I try to access page A in a scenario like this: IE -----> Page_A.aspx ----> Service_A.asmx WebApp on IIS WebService on IIS Server A The same server A App pool on domain App pool on domain account A account B Kerberos trace: --------------- 500.652> Kerb-Bnd: Calling kdc 129.170.140.8 for real...

BIG PROBLEM : Configuration Boot Problem Stratix
hi, we've got some Stratix DSP development kit EP1S25 where at the power-on don't load the flash memory to the FPGA !!! We've seen that the EPLD MAX 7064 often fail the programmation of the FPGA... We've seen that the RESET of this EPLD is in the same time that the 3.3 V power-on... Did someone have this this problem yet... and how to boot at any time on power-on ? Perhaps it's be better if the RESET is after the 3.3V power-on ? We utilizes 3 board in a big system and we have this problem now of non programming at boot.. Thanks "Patrick" <patrick.melet...

Installation after configure: Problems with make install when using configure.
This is a multi-part message in MIME format. --------------030902030107020705080109 Content-Type: text/plain; charset=us-ascii; format=flowed Content-Transfer-Encoding: 7bit ACE VERSION: 5.4.2 ( downloaded 20 Dec 2004 ) HOST MACHINE and OPERATING SYSTEM: SuSE Linux 9.1 and 9.2, Intel P4 COMPILER NAME AND VERSION: GCC 3.3.3 Config: Generated by configure. See attachement. Platform macros: NA, Not generated during configure? AREA/CLASS/EXAMPLE AFFECTED: Installation during make install, after using ./configure method. mv: cannot stat `libACE_RMCast.5.4.2': No such file or directory SYNOPSIS: Make install fails at the libACE_RMCast.5.4.2 library. It also appears that the libraries that are installed ( libACE ) do not have .so extensions. DESCRIPTION: See attached log. Ken. --------------030902030107020705080109 Content-Type: text/x-c-header; name="config.h" Content-Transfer-Encoding: 7bit Content-Disposition: inline; filename="config.h" /* ace/config.h. Generated by configure. */ /* ace/config.h.in. Generated from configure.ac by autoheader. */ #ifndef ACE_CONFIG_H #define ACE_CONFIG_H // ACE configuration header file /* Compiler/platform standard C++ auto_ptr implementation lacks reset() method */ /* #undef ACE_AUTO_PTR_LACKS_RESET */ /* Enable ACE_Timeprobes */ /* #undef ACE_COMPILE_TIMEPROBES */ /* */ #define ACE_DEFAULT_BASE_ADDR ((char *) 0x80000000) /* */ /* #...

configure problems
hi all: My appologies for such a newbie questin, but, I'm not familiar with this topic enough.. Iv just upgraded my linux - acctually reinstalled on new system - version 9. Now, back in ver 7, I was simply able to run "configure" to setup new apps such as qpopper... now in ver 9, configure seems to be missing... i.e. $configure configure: command not found. is it hidding somewhere? any help would be greatly appriciated. Thanks Richard On Sun, 10 Oct 2004 15:03:24 -0700, "Morrison" <lycergic2003@hotmail.com> wrote: >configure >s...

Is this a configuration problem?
The problem is that my Internet connection and any network capability is cut off when I restart my laptop computer but not on every single restart. When my laptop starts the wirelesss connectoid tells me that I have a good signal but I have no network and no Internet. My wireless network is connected to a wired network. I have converted my wireless router to an access point and have assigned it a static IP address out of the range of the wired router. The wired router has been converted to a switch because I have dialup and have assigned my gateway computer with 192.168.0.1 so that I c...

Kerberos Configuration
Hi, I need to setup a Kerberos Authentication to execute some test cases. Basically I need to configure my Domain control for kerberos authenticataion. And a client box which authenticates thro kerberos, for this I guess I need to run KSetup on the client machine. This is what I did... 1. Set all the default values in the Kerberos Policy Parameters 2. Ran Ksetup.exe on the client machine, got the following error Default realm: testmachine.com (NT Domain) Failed to create kerberos key: 5 (0x5) Do I need to configure any thing for key Distribution Center (KDC) before I run KSetup? Can any ...

More Configuration Problems
Configurations seem to be causing quite a few problems at the moment. Could anyone help with mine? I have an entity with two architectures and want my test bench to instantiate and instance of each. However both instances are being bound to the same architecture. It seems just to be picking up the default configuration, as if I reorder the the architectures in the file it "picks up" the last one to be declared I am using Active HDL 7.1 Thanks in advance. Graeme architecture TB of CKT_TB is component comb_ckt is port( input1: in std_logic; input2: in std_logic; input3: in std...

Kerberos Configuration
Sir/Madam, I have installed RH Linux 9.0 and I want to configure Kerberos on my machine.But I am a newbie in Kerberos section and I want to know fully how to configure it on my linux box with an example or is there any other good document available in the net to do this ?.Also please mention the pros and cons of using this service in a linux box ?.This is not for any production environment or any other purpose.This is just to study myself.Please help. Thanks in Advance, Sekhar Hari ...

configure problem
I am trying to install per 5.8.3 on a Linux Mandrake 9.2 system and failing at the confiuration stage. It seems that regardless of the options that I select, I end up with the following: The command the script builds to run a test file is: gcc -0 try try.c -lnsl -lndbm -ldb -ldl -lm -lcrypt -lutil -lc ./try The output: /usr/lib/libndbm.so undefined reference to 'errno' collect2: ld returned 1 exit status Can anyone put me sraight? TIA Alan >> On Sun, 15 Feb 2004 17:03:56 +0000, >> Alan secker <alan@asandco.co.uk> said: > I am trying to install per 5....

configure problems
hi all: My appologies for such a newbie questin, but, I'm not familiar with this topic enough.. Iv just upgraded my linux - acctually reinstalled on new system - version 9. Now, back in ver 7, I was simply able to run "configure" to setup new apps such as qpopper... now in ver 9, configure seems to be missing... i.e. $configure configure: command not found. is it hidding somewhere? any help would be greatly appriciated. Thanks Richard ...

./configure problem
hi! I'm trying to compile karamba for a rh8.0, but ./configure gives this error: configure:21805: error: Qt (>= Qt 3.0) (library qt-mt) not found. Please check your installation! For more details about this problem, look at the end of config.log. Make sure that you have compiled Qt with thread support! I do have these lib in /usr/lib/qt-3.1/lib. All paths are ok. What's going on? Why doesen't it find them? Thanx! On Sun, 13 Jul 2003 23:07:28 +0000, tudor wrote: > hi! > I'm trying to compile karamba for a rh8.0, but ./configure gives this error: > > config...

configure problems
hi all: My appologies for such a newbie questin, but, I'm not familiar with this topic enough.. Iv just upgraded my linux - acctually reinstalled on new system - version 9. Now, back in ver 7, I was simply able to run "configure" to setup new apps such as qpopper... now in ver 9, configure seems to be missing... i.e. $configure configure: command not found. is it hidding somewhere? any help would be greatly appriciated. Thanks Richard Hello Morrison (<lycergic2003@hotmail.com>) wrote: > My appologies for such a newbie questin, but, I'm not familiar with > this topic enough.. Iv just upgraded my linux - acctually reinstalled > on new system - version 9. That version is actually quite old already. Is there still support for RH9? Maybe you want to switch to Fedora Core 2 or 3. > Now, back in ver 7, I was simply able to > run "configure" to setup new apps such as qpopper... > now in ver 9, configure seems to be missing... i.e. $configure > configure: command not found. > > is it hidding somewhere? any help would be greatly appriciated. configure is not a system program, it comes with the source code. You should be able to call it using ../configure (perhaps the current directory is not in the PATH). Maybe the source code does not have a configure script. Check the documentation, like the README and/or INSTALL files. best regards Andreas Janssen ...

Is this a configuration problem?
The problem is that my Internet connection and any network capability is cut off when I restart my laptop computer but not on every single restart. When my laptop starts the wirelesss connectoid tells me that I have a good signal but I have no network and no Internet. My wireless network is connected to a wired network. I have converted my wireless router to an access point and have assigned it a static IP address out of the range of the wired router. The wired router has been converted to a switch because I have dialup and have assigned my gateway computer with 192.168.0.1 so that I c...

Configuration problems
Hi to all, I downloaded wxWindows 2.4.1. and compiled it. Everything OK. Compilation of minimal sample OK. I would like to use Dev-C++ 4.9.8.0 for my litle project but my configuration is wrong. I get the following errors: Compiler: Default compiler Building Makefile: "C:\Documents and Settings\Marko\My Documents\C++\Programi\Grid\grid1\Makefile.win" Executing make... make.exe -f "C:\Documents and Settings\Marko\My Documents\C++\Programi\Grid\grid1\Makefile.win" all g++.exe -c ../gri.cpp -o ../gri.o -I"C:/wx241/include" -I"C:/wx241/include/wx...

configuration problem
Hello, I am trying to learn pascal and I downloaded the IDEnvironment Dev-Pascal. When I start a new project and try to compile, I always get the message: Resource File. Icon file not found(please change it in Project Options). And I think that I have not done the configuration right. What do I need to do, so I can compile programs? Can anyone give me some advice? Thank you in advance... On 14 Sep 2004 11:58:19 -0700, evanthh@yahoo.com (evanthh) wrote: >Hello, >I am trying to learn pascal and I downloaded the IDEnvironment >Dev-Pascal. >When I start a new project and try to co...

Having some kerberos problem
I am getting some errors related with kerberos such that after su to some KRB5LDAP users I am creating files and then setting acls to that files but the files are creating with "nobody nobody" in the user and group field instead of creating with actual user and group name.And then I am trying to set acls using aclput command and it is failing with the following errors aclput:operation not permitted. NOTE: I am executing testcase through the client machine which is having kerberos client and LDAP client setup.And also it is a NFS client. More details ========== The domain ...

configuration problem
I am using the Ensim Site Administrator 3.1.0-25. I had deleted the catch-all Alias but now want to reinstate it. However I can't change it back to catch-all because it will not accept the - (dash) character. It will accept _ (underscore) but that has no effect in receiving mail. My overall problem is that I've installed a php mysql database program and no mail is being redirected from users filling in forms at the php website to my email address. > (reason: 553 5.1.8 <apache@ensim.tierranova.com>... Domain of sender > address apache@ensim.tierranova.com does not exist...

./configure problem
uname -a Linux localhost.localdomain 2.4.18-14 #1 Wed Sep 4 13:35:50 EDT 2002 i686 i686 i386 GNU/Linux ------------------------ from /var/log/boot.log OS Kernel: Linux version 2.4.18-14 (bhcompile@stripples.devel.redhat.com) (gcc version 3.2 20020903 (Red Hat Linux 8.0 3.2-7)) ------------------------- I am running RedHat 9.0 on my laptop Pentium II And I have the following problem when I try to install ruby 1.8.1. /configure checking build system type... Invalid configuration `i686-pc-linux-oldld': machine `i686-pc-linux' not recognized configure: error: /bin/sh ./config.sub i686-pc...

Problem with configure
Hi, I'm new to building software on Macs. In fact, this question is about building on someone else's Mac, because I don't normally have access to one. I have a software package written in C and built with the standard GNU make utilities. It compiles and links on GNU/Linux. When I tried to compile the package on OS X after a ./configure, it won't go looking for include files in /sw/include. Is there something special I need to do within my makefiles to automagically force the compiler to look in /sw/include - and, looking ahead, to pick up libraries in /sw/lib? Thanks! C ...

Problem with Kerberos
Hi, This is Krishna. I am using Kerberos for authentication purpose in my application. I am facing a problem when I add a new user id. The problem is that the Kerberos Admin Server is returning me "FAILED addding '460280.rdba' (Database read error)." This strangely occurs when I try to add a user with the ID:460280 (in HEX Format) i.e. 4588160 (in Decimal Format). This is causing a serious issue in my production system. Can anyone help me out with this as this is a service impacting issue in my System. Any help is appreciated. Thanks in advance, Krishna _________________...

Configuration problem
I'm working on two 2970s. I cannot get them to ping out, get anything to ping in, or get them to be able to ping themselves. gi0/1 on both switches is up/up and connected to a working 2924 2970_1#sh run Building configuration... Current configuration : 1509 bytes ! ! Last configuration change at 15:09:42 UTC Mon May 15 2006 ! version 12.2 no service pad service timestamps debug uptime service timestamps log uptime no service password-encryption ! hostname 2970_1 ! enable secret 5 XXXXXXXXXXXXXXXXXXXXXXXXXXXX enable password XXXXXXXX ! no aaa new-model ip subnet-zero ! ! ! ! no file ver...

Problem with configuration
Hello, First a bit of information on what we are using: Cisco Call manager 4 7940 series telephones, These phones have two incoming lines that can be used. Now we have the following situation: Caller A has an active telephone call. On the same number(second line) she is getting an second incoming call(Caller C). Now we want to create the following situation: 1. Caller A can hear that she is getting an second incoming call.(Fixed) 2. Caller C can hear that caller A has an other line(e.g. busy tone) 3. The phone of Caller A registers the phone call as an missed call(Fixed) Part 1 we already have created with changing the Ring Setting of Busy Station. Part 2 is the great mystery to us. Part 3. At this point this is already fixed. We want that Caller C can hear that Caller A has an active phone call. So that he can choose to wait: for Caller A to accept his phone call the Voicemail or decide to hang up. Preferably we want to use an other tone then the busy tone. If this isn't possible then the busy tone will do too. Is there anyone who has experience with this our knows an solution? Thanks in advance, E. Konta ...

protocol problem
"protocol handler start failed", this is is the problem i got when i start up tomcat . before installing the oracle9i i dont have any problem. so that i am not able to run the web applications, becos it is asking for "connect local host" user name and password, can any one please help me in this?...... pratheesh72@gmail.com wrote: > "protocol handler start failed", > this is is the problem i got when i start up tomcat . before installing > the oracle9i i dont have any problem. so that i am not able to run the > web applications, becos it is asking ...

Web resources about - Configuration Problems - comp.protocols.kerberos

Pusher configuration - Wikipedia, the free encyclopedia
In a craft with a pusher configuration the propeller (s) are mounted behind their respective engine(s). According to Bill Gunston , a "pusher ...

Facebook Simplifies XCode Configuration, Adds App Events To IOS SDK
Facebook released a new software-development kit for iOS , version 3.6 , the social network announced in a post on its developer blog . continued… ...

Safe Gadget - Secure Your Computer and Smartphones with Easy to Follow Security Configuration Tips on ...
Get Safe Gadget - Secure Your Computer and Smartphones with Easy to Follow Security Configuration Tips on the App Store. See screenshots and ...

The Promise of System Configuration - YouTube
Google Tech Talks November 5, 2008 ABSTRACT In 1993 cfengine was one of the first open source configuration management systems for Unix, and ...

IBM: The PC is the new mainframe - Apple, Configuration / maintenance, Data Center, hardware systems ...
"The PC is dead!" We've heard that message a lot since the birth of Apple's iPad, but when one of the creators of IBM's first PC added his voice ...

Cloud BI vendor Birst bags $38 million in venture funding - SaaS, Configuration / maintenance, Birst ...
Birst, a San Francisco company that offers cloud-based business intelligence services, has scored a US$38 million venture investment led by existing ...

EMC teams with Avaya (not Cisco) on communication pods - unified communications, Configuration / maintenance ...
Two stalwarts in the enterprise IT market joined forces today to release a unified communications stack that integrates hardware from EMC, virtualization ...

Qualcomm Announces Snapdragon 820 Modem Configuration
... program. While we have some information about various bits and pieces of Snapdragon 820, the real points of interest like the exact CPU configuration, ...

All configurations of Nexus 6p back in stock at Google Store
... variants. Considering the fact the Nexus 6p hasn’t been on the market very long just yet, we wouldn’t be surprised if some of these configurations ...

Killer 5-Day Deal: Free AppleCare with all early-2015 13" MacBook Pros & $119-$200 off custom configurations ...
... free plus instant discounts on all of Apple's standard early-2015 13" MacBook Pros, or save between $119 and $200 on select custom configurations ...

Resources last updated: 3/7/2016 10:26:05 AM