f



key table entry not found #2

Hello ,
I have Virtual Network configured to use Kerberos authentication.The setup
is as follows:
Windows Server 2008 Standard SP2 (DC,DNS) (FQDN) labserver.lab.com;
Debian Linux 5.0(lenny) (WebServer-Apache) (FQDN) debian.lab.com;
Windows XP Prof. (client) (FQDN) zdravko.lab.com;
They are in the DNS lookup zone.I create one test user account for accessing
the client machine under given domain(lab.com).The user name is "achimtest1"
and its password never expires,and it's not going to be prompted for
changing.After that I create one "dummy" user which will be used for
SPN(service principal name mapping to it).It's called "http-test" and the
same flags are used as in "achimtest1" user + one more:"This account
supports AES 256 bit encryption".I continued with creating the keytab file:
c:\>ktpass /princ HTTP/debian.lab.com@LAB.COM /mapuser
http-test@lab.com/pass Debian26 /crypto AES256-SHA1 /ptype
KRB5_NT_SRV_HST /out
http-test.keytab
the keytab is successfully created and I have checked it with the following
command:c:\>setspn -L http-test->I have the service principal name:HTTP/
debian.lab.com registered to it.I copy the "http-test.keytab" file via pscp
to the Debian box in /etc/apache2/keytab/ directory.In /etc/hosts file in
Debian I've deleted "127.0.0.1" line and replaced it with:"192.168.100.103
debian.lab.com debian";192.168.100.103 is the linux box's IP.
In /etc/resolf.conf file I have made the following changes:
domain lab.com
search lab.com
nameserver 192.168.100.102
-192.168.100.102 is the DNS's IP.
The packages versions are the following:
krb5-config:1.22;
krb5-user:1.6.dfsg.4-beta1-5lenny4;
krb5-clients:1.6dfsg.4-beta1-5lenny4;
libapache2-mod-auth-kerb:5.3-5;The following lines will be from
/etc/krb5.conf :

[libdefaults]
default_realm = LAB.COM
default_keytab_name = FILE:/etc/apache2/keytab/http-test.keytab
krb4_congig = /etc/krb.conf
krb4_realms = /etc/krb.realms
kdc_timesync = 1
ccache_type = 4
forwardable = true
proxiable = true
default_tgs_enctypes = aes256-cts-hmac-sha1-96
default_tkt_enctypes = aes256-cts-hmac-sha1-96
permitted_enctypes = aes256-cts-hmac-sha1-96

[realms]
LAB.COM = {
kdc = labserver.lab.com
admin_server = labserver.lab.com
default_domain = lab.com
}

[domain_realm]
..lab.com = LAB.COM
lab.com = LAB.COM

[login]
krb4_convert = true
krb4_get_tickets = false

The following lines will be from /etc/apache2/sites-enabled/000-default

<VirtualHost *:80>
ServerAdmin webmaster@localhost
<Directory /var/www/>
AuthType Kerberos
KrbMethodNegotiate on
KrbMethodK5Passwd off
KrbAuthRealms LAB.COM
Krb5Keytab /etc/apache2/keytab/http-test.keytab
KrbVerifyKDC on
KrbServiceName Any
AuthName "Kerberos Login"
Require valid-user
Options FollowSymLinks
AllowOverride None
</Directory>
I did all kind of testing in Debian with the "kinit" command(mind you that
I'm not doing this for the first time-so every question like:"Did u checked
the kvno" is unnecessary).Every test with the kvno,e-type is performed and
is as expected-positive.
I'm logged in as root,the keytab file is readable by root,so is the apache
process.After I log in in my client machine(XP) I setup the IExplorer using
the Achim's tutorial.The error that is occurring when I try to access
http://debian.lab.com is Authorization Required(401).
The kerbtray activated on my client shows that the tickets that are received
from the server are encrypted with ArcFour(RC4) encryption and that the
etype=0.
Nothing matches with my setup.There is no trace of AES256-SHA1 encryption
mechanism.The Apache /var/log/apache2/error.log writes the following lines:
[debug]src/mod_auth_kerb.c(1579):[client 192.168.100.126]
kerb_authenticate_user entered with user4 (NULL) and auth_type Kerberos
[debug]mod_deflate.c(615):[client 192.168.100.126] Zlib: Compressed 594 to
399 : URL /
[debug]src/mod_auth_kerb.c(1579): [client 192.168.100.126]
kerb_authenticate_user entered with user (NULL) and auth_type Kerberos
[debug]src/mod_auth_kerb.c(1407): [client 192.168.100.126] Verifying client
data using KRB5 GSS-API
[debug]src/mod_auth_kerb.c(1423): [client 192.168.100.126] Verification
returned code 851968
[error] [client 192.168.100.126] gss_accept_sec_context()Unspecified GSS
failure (Key table entry not found)
[debug]mod_deflate.c(615):[client 192.168.100.126] Zlib:Compressed 594 to
399 : URL /

Sorry about the long post:)


Regards
0
dita.bt (2)
8/24/2010 1:01:31 PM
comp.protocols.kerberos 5541 articles. 1 followers. jwinius (31) is leader. Post Follow

0 Replies
624 Views

Similar Articles

[PageSpeed] 43

Reply:

Similar Artilces:

Problem with kerberos working correct due to 2 Domains gss_accept_sec_context() failed: Unspecified GSS failure. Minor code may provide more information (, Key table entry not found)
Hi guys, I'm working about 3 days at this problem and I can't fix it and now I have no more ideas: Customers environment: Windowsdomain with DC where all Users are: contoso.local Sless11 for Webapplication is in a domain: contoso.lan (this is not a Windowsdomain - just the server is configured for this And thats the problem. I don't know - how to manage these two domains. URL to access to the Webapplication is: When I now try to access from a Windowsmachine wich is in the Domain contoso.local at URL http://sless11.contoso.lan/webapp there comes a 401 from the apach...

kinit: Key table entry not found while getting initial credentials #2
Hello newsgroup, We followed the instructions on http://grolmsnet.de/kerbtut/ kinit -k -t /etc/apache2/httpotrskeytab OTRS/ server.test.local@TEST.LOCAL produces the following error: kinit: Key table entry not found while getting initial credentials we are using mit kerberos 1.9.1 on sles10 we created the keytabfile on windows 2008 r2 server with the following command: ktpass -princ OTRS/server.test.local@TEST.LOCAL -mapuser httpotrs@TEST.LOCAL -crypto RC4-HMAC-NT -ptype KRB5_NT_PRINCIPAL -pass secretpassword -out c:\temp\httpotrskeytab we copied the file to the linux server to /etc/apache2 directory manual ticket creation works fine: server:/ # kinit OTRS/server.test.local Password for OTRS/server.test.local@TEST.LOCAL: server:/ # klist Ticket cache: FILE:/tmp/krb5cc_0 Default principal: OTRS/server.test.local@TEST.LOCAL Valid starting Expires Service principal 06/07/11 13:40:15 06/07/11 23:40:15 krbtgt/TEST.LOCAL@TEST.LOCAL renew until 06/08/11 13:40:15 server:/ # kvno OTRS/server.test.local@TEST.LOCAL OTRS/server.test.local@TEST.LOCAL: kvno =3D 11 any ideas what went wrong with our installation? G=FCnter g� <guenter.huerkamp@gmail.com> writes: > Hello newsgroup, > > We followed the instructions on http://grolmsnet.de/kerbtut/ > > > kinit -k -t /etc/apache2/httpotrskeytab OTRS/ > server.test.local@TEST.LOCAL > produces the following error: > kinit: Key table entry not found while getting initial credenti...

kerberos and Windows 2008R2
Hello Kerberos List, I'm trying to set a Kerberos ticket between a Unix and a Windows 2008 R2 se= rver. I've created a user on windows and used the ktpass to generate the Kerberos= keytab: C:\Windows\System32\ktpass princ host/jc1lqaldap.testdomain.com@TESTDOMAIN.= COM mapuser TESTDOMAIN\host_jc1lqaldap -crypto DES-CBC-MD5 -pass * -ptype K= RB5_NT_PRINCIPAL out c:\nis_data\host_jc1lqaldap.keytab I did make sure that "User Kerberos DES encryption types for this account" = was checked. First I was getting: root@jc1lqaldap:/etc# kinit -V -k -t /etc/krb5.keytab -c /tmp/krb5cc_0 host= /jc1lqaldap.testdomain.com kinit: KDC has no support for encryption type while getting initial credent= ials So I've checked "Do not require Kerberos preauthentication" and I get: root@jc1lqaldap:/etc# kinit -V -k -t /etc/krb5.keytab -c /tmp/krb5cc_0 host= /jc1lqaldap.testdomain.com kinit: Key table entry not found while getting initial credentials Where should that key table entry be located ? I cannot go forward with this. Is there a way to get more verbose logging s= o I can troubleshoot this. Klist root@jc1lqaldap:/etc# klist -ke -t /etc/krb5.keytab Keytab name: WRFILE:/etc/krb5.keytab KVNO Timestamp Principal ---- ----------------- ----------------------------------------------------= ---- 12 12/31/69 19:00:00 host/jc1lqaldap.testdomain.com@TESTDOMAIN.COM (DES c= bc mode with RSA-MD5) Cat /etc/krb5.conf [logging] default =3D FILE...

Key table entry not found
Hello, I'm setting up a test KDC running on Solaris 9. The version I'm running is 5.1.3.1. I have successfully installed and setup my KDC server. I have tested it out on RH9 and everything is working there, as in being authenticated and such. I'm now trying to get kerberos authentication to work on another Solaris 9 box. But am running into problems. On the Solaris 9 box I have modified the pam.conf file to kerberos, copied the krb5.conf file from my kdc and ran kadmin as follows kadmin - admin/admin : ktadd host/machine_name.domain : quit When I t...

Key table entry not found #3
Hi the list, I have two servers. One hosting a kerberos master and ldap master (server.lan) , one other hosting a kerberos slave and ldap replica (replica.lan). Kerberos is used by ldap for authentication SASL/GSSAPI. The kerberos realm is SERVER.LAN. All was running. But since some time, i get error messages with ldapsearch command. With the debug activated, i get the following message of ldapsearch: server:~ admin$ldapsearch -d 1 -b cn=mounts,dc=server,dc=lan .... res_errno: 80, res_error:<SASL(-1): generic failure: GSSAPI Error: Unspecified GSS failure. Minor code may provide more information (Key table entry not found)>, res_matched:<> .... (Remark : As information i provide the entire debug at the end of this message) Because of the message "keytable entry not found", i tried to use kadmin and check if principle with root exists. But by using kadmin i get now this message : server:~ admin$ kadmin -proot@SERVER.LAN Couldn't open log file /var/log/krb5kdc/kadmin.log: Permission denied Authenticating as principalroot@SERVER.LAN with password. Password forroot@SERVER.LAN: kadmin: Communication failure with server while initializing kadmin interface server:~ admin$ I check the logfile owner, group owner, and permission. Then i compared with one other kerberos server. Permission and owner was different. I set permission identically. But nothing was changed. With kadmin.local i checked androot@SERVER.LAN exists in the list. ...

Key table entry not found-this time with Heimdal
Hello, this is the same setup like in my previous post from this month,but this time I'm using heimdal-clients.I have removed all of the MIT packages that I have installed: krb5-user,krb5-clients. I have Virtual Network configured to use Kerberos authentication.The setup is as follows: Windows Server 2008 Standard SP2 (DC,DNS) (FQDN) labserver.lab.com; Debian Linux 5.0(lenny) (WebServer-Apache) (FQDN) debian.lab.com; Windows XP Prof. (client) (FQDN) zdravko.lab.com; [Windows Server 2008 Settings] They are in the DNS lookup zone.I create one test user account for accessing the client machine under given domain(lab.com).The user name is "zdravko1" and its password never expires,and it's not going to be prompted for changing.After that I create one "dummy" user which will be used for SPN(service principal name mapping to it).It's called "http" and the same flags are used as in "zdravko1": -User cannot change password; -Password never expires; -This account supports AES 256 bit encryption; I continued with creating the keytab file: c:\>ktpass /princ HTTP/debian.lab.com@LAB.COM <http://lab.com/> /mapuser http@LAB.COM /pass Debian26 /crypto AES256-SHA1 /ptype KRB5_NT_PRINCIPAL /out http.keytab Keytab version: 0x502 keysize 78 HTTP/debian.lab.com@LAB.COM <http://lab.com/> ptype 1 (KRB5_NT_PRINCIPAL) vno 3 etype 0x12 (AES256-SHA1) keylength 32 (0x......) The keytab is successfully created and I have checke...

gss-server: Key table entry not found
Hi, I cannot get gss-server worked. I have tried adding (using addprinc and ktadd) different combinations of name/host (klist -k confirms the successful addition) but still getting the same error: key table entry not found. Can you please tell me what entry it is looking for and how to resolve the problem? If you need any information about my system in order to help, kindly let me know. Thanks in advance. Regards, David. ...

kprop: Key table entry not found while getting initial ticket
I try to take good notes so that I can reproduce my problems and successes. This week is the first time I have ever touched kerberos. I am using Red Hat ES3 and the default rpms. The short of it: kdb5_util dump /var/kerberos/krb5kdc/dump kprop -f /var/kerberos/krb5kdc/dump mail.eamc.net kprop: Key table entry not found while getting initial ticket Now what? My guess is that I am not asking for the correct ticket for kpropd. A normal inetd.conf entry would be: krb5_prop stream tcp nowait root /usr/kerberos/sbin/kpropd kpropd My thinking is that the second kpropd is my principal. Howeve...

aklog:Key table entry not found while getting AFS tickets
I an trying to automatically obtain the AFS tokens upon login on a Mac 10.2.6 system. I have successfully configured the kerberos v5 and the OpenAFS 1.2.10 clients. I can login with kerberos and successfully verify its ticket with the klist command. I can also execute klog, obtain an AFS token and sucessfully access my AFS space. However, if I login with kerberos and try to execute "aklog", I receive the following messages: aklog: Couldn't get asu.edu AFS tickets: aklog:Key table entry not found while getting AFS tickets Any ideas on how to resolve this problem? Thanks! Jame...

kinit: Key table entry not found while getting initial credentials
Hi Kerberos experts, could anyone help me in addressing this issue since I am a T-O-T-A-L newbie in Kerberos. I have to retrieve kerberos credential in Solaris 5.8 (SEAM 1.0.1) using a windows2003 Active Directory as KDC, and I am compelled to use the credential of a user different from Solaris' user. Let's say I work with user appadm on Solaris and user domuser@resource.corp in AD. AD administrator generated a keytab for my Solaris user in this way: Ktpass -princ kerberos/domuser.resource.corp@RESOURCE.CORP -mapuser domuser -pass [passwd of domuser] -out domuser.keytab and gave me the domuser.keytab file. I configured krb5.conf and stored the content of this keytab file in /etc/krb5/krb5.keytab via ktutil: ktutil: rkt domuser.keytab ktutil: l slot KVNO Principal ---- ---- -------------------------------------------------------------------------- 1 4 kerberos/domuser.resource.corp@RESOURCE.CORP ktutil: wkt /etc/krb5/krb5.keytab ktutil: q Now I think my krb5.conf is correct since I am able to get a TGT via kinit in this way: kinit kerberos/domuser.resource.corp@RESOURCE.CORP then I enter domuser's password and with klist I can see the TGT. But I need to obtain the credentials without entering a password since the kinit command has to be put in the startup script of an application. So I tried this: appadm 99% kinit -k kerberos/domuser.resource.corp@RESOURCE.CORP kinit: Key table entry not found while getting initial credentials :-S ...nothing us...

ssh gssapi-with-mic and "Key table entry not found"
Hi, I'm trying to get ssh working using gssapi-with-mic authentication. I have about 40 machines running CentOS 5.7. (My bigger goal is to use NFSv4 mounts with "krb5p" security. All these machines mount the same NFSv4 share (think home directories) so my users need to be able to forward their TGT around.) What I'm ultimately running into is sshd complaining "Key table entry not found" on *most* of the servers---a random handful work, and I can't figure out how the working ones are different. So, here's an example: I'm trying to ssh from "lnxsvr3" to "lnxsvr11" using gssapi-with-mic authentication. Here's the output of trying to ssh: [matt@lnxsvr3 ~]$ ssh -v -o"PreferredAuthentications gssapi-with-mic" lnxsvr11 OpenSSH_4.3p2, OpenSSL 0.9.8e-fips-rhel5 01 Jul 2008 debug1: Reading configuration data /etc/ssh/ssh_config debug1: Applying options for * debug1: Connecting to lnxsvr11 [192.168.187.67] port 22. debug1: Connection established. debug1: identity file /mnt/home/matt/.ssh/identity type -1 debug1: identity file /mnt/home/matt/.ssh/id_rsa type 1 debug1: identity file /mnt/home/matt/.ssh/id_dsa type -1 debug1: loaded 3 keys debug1: Remote protocol version 2.0, remote software version OpenSSH_4.3 debug1: match: OpenSSH_4.3 pat OpenSSH* debug1: Enabling compatibility mode for protocol 2.0 debug1: Local version st...

"Key table entry not found while verifying ticket for server"
This is an OpenPGP/MIME signed message (RFC 2440 and 3156) --------------enig07FDE7C699B5FF20AD258797 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Just added a new system tonight to our Kerberos realm, and was getting the following error when ksu'ing: "ksu: Key table entry not found while verifying ticket for server" Tried Googling for the error to no avail; what is the meaning of this error and how do I clear it? Best Wishes - Peter --=20 Peter_Losher@isc.org | ISC | OpenPGP 0xE8048D08 | "The bits must flow" --------------enig07FDE7C699B5FF20AD258797 Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (Darwin) iD8DBQFGtXWzPtVx9OgEjQgRAve6AJ97hWoo/FDyvCC27oHOamy1UiN6TQCfbcjm 8b550EYBPn8jKX8rHMDtmME= =znqF -----END PGP SIGNATURE----- --------------enig07FDE7C699B5FF20AD258797-- ...

Re: How to update one table with info found in another table #2
On Mon, 17 Dec 2007 17:33:36 -0500, Tom White <tw2@MAIL.COM> wrote: >Hello SAS-L, > >I have two tables that look like this: > >****TABLE1*** > >MERCHANT ID DATE ... (many more fields) >1271 434 17AUG2005 >1335 038 24FEB2003 >1435 038 25SEP2007 >1435 038 04JUL2005 >220 038 31MAY2004 >220 263 11oct2006 > >The MERCHANT field in this table is of no importance. I just have it there to show you >this table has many more fields than the field I am interested in, n...

How to delete level 2 toc entry for Table of Contents in SAS v9.2
Dear All, I am starting to use SAS v9.2. But I find that the Table of Contents created in v9.2 are different than v9.1 There is an extra level 2 toc entry in the Table of Contents now. I know that I can use VBScript to delete those entries in word files. But I want to do it in SAS way. Anyone know how to remove the level 2 toc entry in SAS v9.2? 1. VBScript Code: '''''''''''''''''''''''''''''' '''''''''''''''...

Re: TABLES TABLES TABLES #2
OHHH went there, did that, got the t-shirt, even. I tried everything in the book. This person is extremely LITERAL and looking for the letter of the law, or something........maybe my trying so hard just egged him on, or his stubbornness that kept his feet in concrete, but I don't think so. He truly believes that. -----Original Message----- From: David L Cassell <davidlcassell@MSN.COM> To: SAS-L@LISTSERV.UGA.EDU Sent: Sun, 27 Nov 2005 11:55:12 -0800 Subject: Re: TABLES TABLES TABLES sasbum@AOL.COM wrote: >How would you best describe to a retiscent SAS student that the concept...

[rfc-dist] RFC 5106 on The Extensible Authentication Protocol-Internet Key Exchange Protocol version 2 (EAP-IKEv2) Method
A new Request for Comments is now available in online RFC libraries. RFC 5106 Title: The Extensible Authentication Protocol-Internet Key Exchange Protocol version 2 (EAP-IKEv2) Method Author: H. Tschofenig, D. Kroeselberg, A. Pashalidis, Y. Ohba, F. Bersani Status: Experimental Date: February 2008 Mailbox: Hannes.Tschofenig@nsn.com, Dirk.Kroeselberg@nsn.com, pashalidis@nw.neclab.eu, yohba@tari.toshiba.com, florent.ftrd@gmail.com Pages: 33 Characters: 76645 Updates/Obsoletes/SeeAlso: None I-D Tag: draft-tschofenig-eap-ikev2-15.txt URL: http://www.rfc-editor.org/rfc/rfc5106.txt This document specifies EAP-IKEv2, an Extensible Authentication Protocol (EAP) method that is based on the Internet Key Exchange (IKEv2) protocol. EAP-IKEv2 provides mutual authentication and session key establishment between an EAP peer and an EAP server. It supports authentication techniques that are based on passwords, high-entropy shared keys, and public key certificates. EAP-IKEv2 further provides support for cryptographic ciphersuite negotiation, hash function agility, identity confidentiality (in certain modes of operation), fragmentation, and an optional "fast reconnect" mode. This mem...

Kerberos session key #2
Good day! I have an important question. How is the session key encoded? Is there anyway I can extract it? and use it in line with my program? Thanks __________________________________________________ Do You Yahoo!? Tired of spam? Yahoo! Mail has the best spam protection around http://mail.yahoo.com ________________________________________________ Kerberos mailing list Kerberos@mit.edu https://mailman.mit.edu/mailman/listinfo/kerberos ...

no kerberos environment found #2
I want to compile mod_auth_kerb in a windows 2003 OS but I get an error when running configure. Kerberos is installed on c:\kerberos and I'm using cygwin. The error I get is "No Kerberos environment found" see below. My goal is to kerberize apache running on Windows 2003 using mod_auth_kerb. I'm able to get a ticket using kinit within a windows shell. Any clue what else I need to do? Thanks for any help you can provide. $ ./configure --with-krb5=/cygdrive/c/kerberos --with-krb4=no --with-apache=//cygdrive/c/ptc/Apache checking for gcc... gcc checking for C compiler default output file name... a.exe checking whether the C compiler works... yes checking whether we are cross compiling... no checking for suffix of executables... .exe checking for suffix of object files... o checking whether we are using the GNU C compiler... yes checking whether gcc accepts -g... yes checking for gcc option to accept ANSI C... none needed checking whether make sets $(MAKE)... yes checking for main in -lresolv... yes checking how to run the C preprocessor... gcc -E checking for egrep... grep -E checking for ANSI C header files... yes checking for sys/types.h... yes checking for sys/stat.h... yes checking for stdlib.h... yes checking for string.h... yes checking for memory.h... yes checking for strings.h... yes checking for inttypes.h... yes checking for stdint.h... yes checking for unistd.h... yes checking limits.h usability... yes checking limits.h presence... yes ...

Widget Table slider not hiding when small table[2,2] is given
Hi Friends, I have a problem in using the widget table. My aim is to remove the slider bars since it is not required when data size is small (can be seen inside the small table) It is mentioned in IDL HELP for Widget_Table as " If the width or height specified is less than the size of the table, scroll bars are added automatically. " But the data i have given is 2*2 data and there should be no x & y slider bars .. But it is showing the slider bars always even if the xwidth=2/ yheight=2 The source code is attached...... #######################################...

Re: Intersection of 2 Tables [was No Subject] #2 #2
Howard/All, Just a clarification/elaboration, if you would... INTERSECT compares complete rows, meaning that every variable must match. This would seem to limit its utility to finding duplicate rows in two or more tables. Is there additional utility that I am missing? Compare the results of this slighly modified example (I changed one of the income values) with and without the keep options: data one ; infile cards ; input name $ income date ; cards ; xyz 97897 16457 abc 997090 16458 efg 576575 16459 ; run ; data two ; infile cards ; input name $ income date ; cards ; xyz 99999 16457 xyz 97...

Multiple Foreign Keys on Same Table #2
Hi, I have an Orders Table that has Employee1 and Employee2 (one is the sales rep the other is the telemarketing rep) Both of these fields need to cascade update against the Employees table. I can't seem to create the desired relationship in a Diagram and I'm not sure how best to set this up. Any ideas? Thanks in advance... ...

BUG #1055: no keys in inherited table with primary key when inserting into inheriting table
The following bug has been logged online: Bug reference: 1055 Logged by: Agri Email address: agri@desnol.ru PostgreSQL version: 7.4 Operating system: PC-linux-gnu Description: no keys in inherited table with primary key when inserting into inheriting table Details: let me desribe a bug in the term of sql commands: create table first (id int primary key ); create table second (f2 int) inherits (first); create table third (ref_id int); alter table third add constraint third_ref_first foreign key (ref_id) references first; insert int...

Client not found in Kerberos database #2
Hi, I have an Intel xseve 10.4.9 server bound to AD and also have OD configured on the same server for Mac management. Other services running are AFP and WINDOWS. I will also be using the same server as a file server for both Mac and Windows. Below are my issues. When the WINDOWS service starts on our Intel Xserve with 10.4.9 installed I receive the below error message. I have tested single sign on "SSO" from Mac and Windows systems and everything seems to work, but am concerned that this error may cause an issue at a later date. I also have an issue with windows users suddenly not being able to connect to a share on the Intel Xserve via SMB which is strange as the same user on a Mac could still connect via AFP or SMB a restart of the WINDOWS service seems to clear this problem, not sure if this is related to the below error but it's a real issue and seems to be very random. When this happen I seem to receive "broken pipe" errors in the "smbd.conf" log. I checked the "secrets.tdb" and found that this did not have the "\00" on the end of the "SECRETS/MACHINE_PASSWORD/", so I ran the script at "afp548" site under forum "10.4.8 Intel - AD, Samba kerberos machine password" which added the "\00". The strange thing is that all seemed to still work even thought the "secrets.tdb" was not correct, perhaps this could be the cause of the SMB dropouts? Below is from the SMBD.LOG...

Tying up Port Login table entries with Port Table Entries in CISCO SNMP
In a monitoring app I am writing I plan on using SNMP to obtain for each port on an MDS9000 CISCO switch the remote host WWN and remote port WWN, with the aim of producing a table as follows: Port Port Remote Remote No WWN Host WWN Port WWN 1 a.b.c d.e.f g.h.i 2 j.k.l - - <-- not connected 3 m.n.o p.q.r s.t.u ::::::::::::::::::::::::::::: I _thought_ this information could be obtained by referring to a couple of tables in CISCO-FC-FE-MIB: * The Port table, which is .1.3.6.1.4...

Web resources about - key table entry not found #2 - comp.protocols.kerberos

Table tennis - Wikipedia, the free encyclopedia
Table tennis , also known as ping-pong , is a sport in which two or four players hit a lightweight, hollow ball back and forth using table tennis ...

Premier League: Leicester City go five points clear on table after Watford win
​Leicester City took advantage of a draw between challengers Tottenham and Arsenal on Saturday to open up a five-point lead at the top of the ...

Has the mystery of the broken marble table finally been solved?
... the saga in her new book, has solved one of Canberra's best kept secrets. Has the mystery of the culprit behind the broken marble table finally ...

Has the mystery of the broken marble table finally been solved?
... new book, has solved one of Canberra's best kept secrets. The former treasurer was apparently the one who hopped onto the Italian marble table ...

'America's Got Talent': Simon Cowell Takes A Seat At The Judges Table
"America's Got Talent" creator and executive producer Simon Cowell is taking a seat at the judges table alongside Heidi Klum, Howie Mandel and ...

An AnandTech Round Table with ASUS: 10 Years of the Republic of Gamers
... Rajinder 'Raja' Gill Technical PR Manager, ASUS USA AnandTech Motherboard Senior Editor 2008-2010 Ian Cutress 10 Years of ROG Round Table ...

Lithuanian Designer Launches Standing App For His Funky Table
... at the office. His back started to hurt and his productivity seemed to decrease. "That was the time when I started my hunt for a suitable standing ...

Table for one: How to play board games without a group
From solo games to apps and virtual tabletops, there's a world of options.

Erin Andrews video was played at Marriott ownership rep’s table at Nashville restaurant
... hit outside the courtroom Wednesday, when West End Hotel Partners representative Neal Peskind admitted to being present at a restaurant table ...

How to Make a Paris-Inspired Gold Leaf Table
... with the Paris Hamper . Then with the Vintage Rooster French Commode . And now with my latest makeover, this Paris-Inspired Gold Leaf Table… ...

Resources last updated: 3/10/2016 9:37:21 PM