f



KRB5 error code 52 while getting initial credentials #2

Hello all,

i am Sunil C. i have a domain named xx.com which has a KDC.
i also have a domain co.yy where my server is. there is no KDC in it.=20

users are in xx.com domain.

but my servers are in (co.yy) domain.

i had set up a test scenario with a user and a server in domain (xx.com)
since KDc was setup i got ticket and was able to authenticate well using
kerberos.

my issue is that all my production servers are in domain (co.yy) which
doesnt have a KDC. i want to authenticate and use the server services in
that domain.
setting up KDC is not feasible in both domains for me.

now i have done some configuration in krb5.conf file on my server
(test.co.yy)=20

[domain_realm]
xx.com =3D XX.COM
..xx.com =3D XX.COM
co.yy =3D XX.COM
..co.yy =3D XX.COM

this shows that my domain co.yy which doesnnot have a KDC , i have mapped i=
t
to the realm XX.COM .

now i have some issues.

1) i tried to get a keytab from the KDC of XX.COM ( my server in co.yy)

> ktpass -princ HTTP/test.co.yy@XX.COM

2) i somehow managed to get a keytab .
i copied into Apache folder and executed the command.

kinit -t /usr/local/apache/test03keytab HTTP/test.co.yy@XX.COM
password: xxxx

error : kinit(v5) : KRB5 error code 52 while getting initial credentials

Please help me understand what is this erro.. is it some issue with domain
mapping configuration in krb5.conf file?  i am using kerberos 1.2.7 version=
..

Thanks

Sunil C

----------------------------


In article ,
sunilcnair  wrote:

> This is Sunil here, i am working on the cross domain authentication using
> kerberos, i have
> two domains(xx.com) and(co.yy), and i am in a dilemma as to install 2KDC
> in
> both the domains or is it sufficient for the kdc to be installed in only
> one
> single domain, and register the other domain as just the user of the
> domain
> in which the kdc is installed.Also I=E7=AA=B6=E5=9B=98 like to avoid cros=
s realms
> scenario,because we should set up another KDC.(thats bit difficult)is
> there
> any other possibilities of using two domain for kerberos without having
> KDC
> on both the domains please do clear my doubt. Looking for an answer

Kerberos is basically indifferent to DNS domains, and
one Kerberos "realm" can certainly serve many DNS domains.
Application software may rely on DNS for realm information,
though - configuration files may specify realm/domain maps,
and Kerberos realm information can be published in special
DNS SRV and TXT records. If you have tried this and were
not able to make it work, check that the [domain_realm]
section of your configuration file includes the new domain.

Donn Cave, donn@u.washington.edu



________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos



--=20
View this message in context: http://www.nabble.com/KRB5-error-code-52-whil=
e-getting-initial-credentials-tp15998090p15998090.html
Sent from the Kerberos - General mailing list archive at Nabble.com.
0
3/12/2008 5:15:53 AM
comp.protocols.kerberos 5541 articles. 1 followers. jwinius (31) is leader. Post Follow

0 Replies
449 Views

Similar Articles

[PageSpeed] 40

Reply:

Similar Artilces:

kinit: KRB5 error code 52 while getting initial credentials #2
I'm getting the following error on a Solaris 8 machine: kinit: KRB5 error code 52 while getting initial credentials So far my analysis shows this error to indicate the following: 0x34 - KRB_ERR_RESPONSE_TOO_BIG - Too much data According to a number of forums, some inheriant limitations exist with the Solaris 8 version of Kerberos concerning the number of group memberships a user may have. In my Active Directory, each user is a member of possibly many groups. To confirm this, I created a simple user with only membership to "Domain Users" and was able to run kinit without issue. Also, I seen a number of forums reporting that the native version of Kerberos in Solaris 8 does not support TCP. Apparently by default, once the package size of a Kerberos ticket reaches a specified max, TCP should be used. I have the following Kerberos packages loaded: SUNWk5pk kernel Kerberos V5 plug-in w/auth+privacy (32-bit) SUNWk5pkx kernel Kerberos V5 plug-in w/auth+privacy (64-bit) SUNWk5pu user Kerberos V5 gss mechanism w/auth+privacy (32-bit) SUNWk5pux user Kerberos V5 gss mechanism w/auth+privacy (64-bit) Are updated packages for Kerberos available for Solaris 8 environments that can handle support for Kerberos over TCP and having a large number of group memberships? _________________________________________________________________ Local listings, incredible imagery, and driving directions - all in one place! Find it! http://maps.live.com/...

RE: kinit: KRB5 error code 52 while getting initial credentials #2
Any chance the Kerberos libs from Solaris 10 can port back to Solaris 8? So= me limitations have arisen such that an upgrade to Solaris 10 is not possi= ble yet. Is there any way to patch the Solaris 8 Kerberos??? =20 Thanks Ron > Date: Wed, 11 Jul 2007 11:42:49 -0500> From: William.Fiveash@sun.com> To:= rfbass16@hotmail.com> CC: William.Fiveash@sun.com; kerberos@mit.edu> Subje= ct: Re: kinit: KRB5 error code 52 while getting initial credentials> > On W= ed, Jul 11, 2007 at 01:10:19AM +0000, Ron Bass II wrote:> > > > Thanks for = the update Will. I'll look into Solaris 10...> > Note that there have been = a number of updates (some security related)> released for Solaris 10 so mak= e sure you get the latest bits.> > -- > Will Fiveash> Sun Microsystems Inc.= > Austin, TX, USA (TZ=3DCST6CDT) _________________________________________________________________ Local listings, incredible imagery, and driving directions - all in one pla= ce! Find it! http://maps.live.com/?wip=3D69&FORM=3DMGAC01= ...

error : kinit(v5) : KRB5 error code 52 while getting initial credentials
Hello all, i am Sunil C. i have a domain named xx.com which has a KDC. i also have a domain co.yy where my server is. there is no KDC in it. users are in xx.com domain. but my servers are in (co.yy) domain. i had set up a test scenario with a user and a server in domain (xx.com). since KDc was setup i got ticket and was able to authenticate well using kerberos. my issue is that all my production servers are in domain (co.yy) which doesnt have a KDC. i want to authenticate and use the server services in that domain. setting up KDC is not feasible in both domains for me. now i have done some configuration in krb5.conf file on my server (test.co.yy) [domain_realm] xx.com = XX.COM ..xx.com = XX.COM co.yy = XX.COM ..co.yy = XX.COM this shows that my domain co.yy which doesnnot have a KDC , i have mapped it to the realm XX.COM . now i have some issues. 1) i tried to get a keytab from the KDC of XX.COM ( my server in co.yy) > ktpass -princ HTTP/test.co.yy@XX.COM 2) i somehow managed to get a keytab . i copied into Apache folder and executed the command. kinit -t /usr/local/apache/test03keytab HTTP/test.co.yy@XX.COM password: xxxx error : kinit(v5) : KRB5 error code 52 while getting initial credentials Please help me understand what is this error.. is it some issue with domain mapping configuration in krb5.conf file? i am using kerberos 1.2.7 version. Thanks in advance Sunil C Sunil Chandrasekharan wrote: > Hello all, > i am Sunil C. i have a domain named...

KRB5 error code 52 while getting initial credentials
Hello all, i am Sunil C. i have a domain named xx.com which has a KDC. i also have a domain co.yy where my server is. there is no KDC in it. users are in xx.com domain. but my servers are in (co.yy) domain. i had set up a test scenario with a user and a server in domain (xx.com) since KDc was setup i got ticket and was able to authenticate well using kerberos. my issue is that all my production servers are in domain (co.yy) which doesnt have a KDC. i want to authenticate and use the server services in that domain. setting up KDC is not feasible in both domains for me. now i have done some configuration in krb5.conf file on my server (test.co.yy) [domain_realm] xx.com = XX.COM ..xx.com = XX.COM co.yy = XX.COM ..co.yy = XX.COM this shows that my domain co.yy which doesnnot have a KDC , i have mapped it to the realm XX.COM . now i have some issues. 1) i tried to get a keytab from the KDC of XX.COM ( my server in co.yy) > ktpass -princ HTTP/test.co.yy@XX.COM 2) i somehow managed to get a keytab . i copied into Apache folder and executed the command. kinit -t /usr/local/apache/test03keytab HTTP/test.co.yy@XX.COM password: xxxx error : kinit(v5) : KRB5 error code 52 while getting initial credentials Please help me understand what is this erro.. is it some issue with domain mapping configuration in krb5.conf file? i am using kerberos 1.2.7 version. Thanks Sunil C ---------------------------- In article <mailman.115.1197917539.11331.kerberos@mit.edu>,...

kinit: KRB5 error code 52 while getting initial credentials
I'm getting the following error on a Solaris 8 machine: kinit: KRB5 error c= ode 52 while getting initial credentials=20 =20 So far my analysis shows this error to indicate the following: 0x34 - KRB_E= RR_RESPONSE_TOO_BIG - Too much data=20 =20 According to a number of forums, some inheriant limitations exist with the = Solaris 8 version of Kerberos concerning the number of group memberships a = user may have. In my Active Directory, each user is a member of possibly m= any groups. To confirm this, I created a simple user with only membership = to "Domain Users" and was able to run kinit without issue. Also, I seen a number of forums reporting that the native version of Kerber= os in Solaris 8 does not support TCP. Apparently by default, once the pack= age size of a Kerberos ticket reaches a specified max, TCP should be used. =20 I have the following Kerberos packages loaded: SUNWk5pk kernel Kerbe= ros V5 plug-in w/auth+privacy (32-bit) SUNWk5pkx kernel Kerberos V5 p= lug-in w/auth+privacy (64-bit) SUNWk5pu user Kerberos V5 gss mechani= sm w/auth+privacy (32-bit) SUNWk5pux user Kerberos V5 gss mechanism w= /auth+privacy (64-bit)=20 =20 Are updated packages for Kerberos available for Solaris 8 environments that= can handle support for Kerberos over TCP and having a large number of grou= p memberships? _________________________________________________________________ Local listings, incredible imagery, and driving directions - all in...

RE: kinit: KRB5 error code 52 while getting initial credentials
Thanks for the update Will. I'll look into Solaris 10...> Date: Mon, 9 Jul= 2007 15:43:48 -0500> From: William.Fiveash@sun.com> To: rfbass16@hotmail.c= om> CC: kerberos@mit.edu> Subject: Re: kinit: KRB5 error code 52 while gett= ing initial credentials> > On Wed, Jul 04, 2007 at 05:56:56PM +0000, Ron Ba= ss II wrote:> > > > I'm getting the following error on a Solaris 8 machine:= kinit: KRB5> > error code 52 while getting initial credentials > > > > So = far my analysis shows this error to indicate the following: 0x34 -> > KRB_E= RR_RESPONSE_TOO_BIG - Too much data > > > > According to a number of forums= , some inheriant limitations exist with> > the Solaris 8 version of Kerbero= s concerning the number of group> > memberships a user may have. In my Acti= ve Directory, each user is a> > member of possibly many groups. To confirm = this, I created a simple> > user with only membership to "Domain Users" and= was able to run kinit> > without issue. Also, I seen a number of forums re= porting that the> > native version of Kerberos in Solaris 8 does not suppor= t TCP.> > Apparently by default, once the package size of a Kerberos ticket= > > reaches a specified max, TCP should be used.> > Support for TCP in Sola= ris Kerberos was introduced in Solaris 10.> > > I have the following Kerber= os packages loaded: SUNWk5pk kernel> ...

kinit(v5): KRB5 error code 68 while getting initial credentials
I have a huge Problem. Im trying to install a SSO for our Intranet-Webserver (Apache 2.0.55) on a SuSE Linux 10.0. Ist running very fine. But we have some Computers, which are NOT Part of the Active Directory Domain, so there the sso doesnt work. If the paste their Usernames into the Auth-Box (firstname.lastname@persona.de) it doesnt work. But the Useraccount exists in the AD. If they paste the real username (e.g. firstname.lastname@KONZERN.INTERN) it works fine. The problem: The user dont Know his real AD-Name. He knows just hier emailadress (firstname.lastname@persona.de) Anyone a solution? My krb5.conf "[libdefaults] default_realm = KONZERN.INTERN clockskew = 300 [realms] KONZERN.INTERN = { kdc = w2kroot.konzern.intern default_domain = konzern.intern admin_server = w2kroot } persona.de = { kdc = w2kroot.konzern.intern default_domain = konzern.intern admin_server = w2kroot } [logging] kdc = FILE:/var/log/krb5kdc.log admin_server = FILE:/var/log/kadmin.log default = FILE:/var/log/krb5lib.log [domain_realm] .konzern.intern = KONZERN.INTERN [appdefaults] pam = { ticket_lifetime = 1d renew_lifetime = 1d forwardable = true proxiable = false retain_after_close = false minimum_uid = 0 ...

KRB5 error code 52
Kerberos experts, I am using SEAM 1.01 on Solaris 9 and am authenticating to AD. When others try they fail the login with the "KRB5 error code 52" error. I read that this has something to do with UDP packet size and to try TCP. Is there a way in SEAM to have it use TCP rather then UDP, or to try UDP then TCP is that fails? I was hoping there was a configuration parameter in krb5.conf. thanks, Tyson Oswald ________________________________________________ Kerberos mailing list Kerberos@mit.edu https://mailman.mit.edu/mailman/listinfo/kerberos Tyson, I assume you use a Windows kdc and experience the pac field problem. There is now a patch for w2k and w2k3 to stop the creation of the pac field, which might help. Regards Markus "Tyson Oswald" <oswaldt@ameritech.net> wrote in message news:20041005182618.82769.qmail@web81508.mail.yahoo.com... > Kerberos experts, > > I am using SEAM 1.01 on Solaris 9 and am authenticating to AD. When > others try they fail the login with the "KRB5 error code 52" error. I > read that this has something to do with UDP packet size and to try TCP. > Is there a way in SEAM to have it use TCP rather then UDP, or to try UDP > then TCP is that fails? I was hoping there was a configuration parameter > in krb5.conf. > > thanks, > Tyson Oswald > ________________________________________________ > Kerberos mailing list Kerberos@mit.edu > https...

Re: KRB5 error code 52
SEAM 1.01 doesn't support TCP, later version on Solaris 10 support TCP Hooshang > Kerberos experts, > > I am using SEAM 1.01 on Solaris 9 and am authenticating to AD. When others try > they fail the login with the "KRB5 error code 52" error. I read that this has > something to do with UDP packet size and to try TCP. Is there a way in SEAM to > have it use TCP rather then UDP, or to try UDP then TCP is that fails? I was > hoping there was a configuration parameter in krb5.conf. > > thanks, > Tyson Oswald > ________________________________________________ > Kerberos mailing list Kerberos@mit.edu > https://mailman.mit.edu/mailman/listinfo/kerberos ________________________________________________ Kerberos mailing list Kerberos@mit.edu https://mailman.mit.edu/mailman/listinfo/kerberos So what is the MaxTokenSize in SEAM, I just got a formula from MS on what they use for 2003. Also we don't have this issue in SEAM for Solaris 8 so what's different? thanks, Tyson Oswald h.dadgari@comcast.net wrote in message news:<100520041836.10730.4162E9A70001ACE5000029EA2200750784079D0E090B0E0BD208@comcast.net>... > SEAM 1.01 doesn't support TCP, later version on Solaris 10 support TCP > > Hooshang > > > > Kerberos experts, > > > > I am using SEAM 1.01 on Solaris 9 and am authenticating to AD. When others try > > they fail the login with the ...

Getting an error: Attempted to access u(2); index out of bounds because numel(u)=1. Error in ==> treat at 31 if (u(2)>1000) #2
HI, I am using an ode function having three differntial equations in u(1), u(2), (3) using function f=treat(t, u), Now when i use if function as if (u(2)>1000) c=1; else (u(1)<=100) c=0; end i am getting the following error Attempted to access u(2); index out of bounds because numel(u)=1. Error in ==> treat at 31 if (u(2)>1000) Please tell me. thanks "gati " <gatimishrano@yahoo.com> wrote in message news:kfdpbl$ke1$1@newscl01ah.mathworks.com... > HI, I am using an ode function having three differntial equations in u(1), > u(2), (3) using function f=treat(t, u), Now when i use if function as if > (u(2)>1000) c=1; else (u(1)<=100) c=0; end i am getting the following > error Attempted to access u(2); index out of bounds because numel(u)=1. > Error in ==> treat at 31 if (u(2)>1000) Please tell me. thanks My guess is that the initial condition vector you passed into the ODE solver has only 1 element. If you've got three ODEs in three variables, you need a 3-element initial condition vector. -- Steve Lord slord@mathworks.com To contact Technical Support use the Contact Us link on http://www.mathworks.com ...

Kerberos error: Unknown code krb5 195
Hello group! I am new to this group and topic. I have been using pine as my primary email client for long, and never noticed the role of kerberos in the play. Until recently, on a newly installed Redhat EL5 server, when I open pine configured to connect to our Exchange 2007 server, I got: Kerberos error: Unknown code krb5 195 (try running kinit) for some.emailserver.edu I then did kinit >kinit >kinit(v5): Cannot resolve network address for KDC in requested realm while getting initial credentials What does this tell me and how do I shoot this problem? Thanks, Jindan Jindan Zhou <jindan@gmail.com> writes: > I then did kinit >>kinit >>kinit(v5): Cannot resolve network address for KDC in requested realm while getting initial credentials > What does this tell me and how do I shoot this problem? Usually it means you either don't have an /etc/krb5.conf file or it's incorrect or doesn't include your realm information. It can mean various other things too (DNS problems, for instance), but krb5.conf is the first place to look. -- Russ Allbery (rra@stanford.edu) <http://www.eyrie.org/~eagle/> On Nov 5, 4:44 am, Russ Allbery <r...@stanford.edu> wrote: > Jindan Zhou <jin...@gmail.com> writes: > > I then did kinit > >>kinit > >>kinit(v5): Cannot resolve network address for KDC in requested realm while getting initial credentials > > What does this tell me and how do I sho...

Error: An error occurred while shelling out to mbuild (error code = 1). #2
uilding COM object... mcc -M -silentsetup -d 'D:/matlab2006/work/testww//src' -B 'ccom:testww,testwwclass,1.0' -g -S 'D:/matlab2006/work/testww.m' mwcomtypes.idl oaidl.idl objidl.idl unknwn.idl wtypes.idl ocidl.idl oleidl.idl servprov.idl urlmon.idl msxml.idl testww_idl.idl oaidl.idl objidl.idl unknwn.idl wtypes.idl ocidl.idl oleidl.idl servprov.idl urlmon.idl msxml.idl mwcomtypes.idl 'rc' &#19981;&#26159;&#20869;&#37096;&#25110;&#22806;&#37096;&#21629;&#2019 6;&#65292;&#20063;&#19981;&#26159;&#21487;&#...

2.52: compiling error #2
(resend to mailing list) Hi (sorry my english is bad) I'm trying to build wxWidgets 2.52 with mingw (win XP system)... but these are errors : E:\Comp\wxWindows>make.exe SHARED=1 g++ -shared -o lib/wxmsw252_adv_gcc_www.dll advdll_calctrl.o advdll_grid.o advdl l_gridctrl.o advdll_gridsel.o advdll_helpext.o advdll_laywin.o advdll_sashwin.o advdll_splash.o advdll_tipdlg.o advdll_wizard.o advdll_taskbarcmn.o advdll_sound o advdll_taskbar.o dvdll_joystick.o -mthreads -pg -Llib -Wl,--out-implib, lib/libwx_msw_adv-2.5.dll.a -lwxtiff -lwxjpeg -lwxpng -lwxzlib -lwx...

newbie: error getting credentials: Server not found in Kerberos database
Hi! I never found the time to deal intensively with kerberos so please indulge me if this is ought to be a stupid question: kinit works. krsh does not: krsh server error getting credentials: Server not found in Kerberos database trying normal rlogin (/usr/bin/rlogin) So, this is what I did so far: server: /etc/krb5.conf: [libdefaults] default_realm = LOCALDOMAIN [realms] LOCALDOMAIN = { kdc = server.localdomain:88 admin_server = server.localdomain:750 } [domain_realm] .localdomain = LOCALDOMAIN localdomain = LOCALDOMAIN [logging] kdc = FILE:/var/log/krb5kdc.log admin_server = FILE:/var/log/kadmin.log default = FILE:/var/log/krb5lib.log /etc/hosts: 127.0.0.1 localhost 192.168.0.2 server server.localdomain real hostname is actually *not* "server"! kadmin.local: addprinc foo client: /etc/krb5.conf [libdefaults] ticket_lifetime = 600 default_realm = LOCALDOMAIN default_tkt_enctypes = des3-hmac-sha1 des-cbc-crc default_tgs_enctypes = des3-hmac-sha1 des-cbc-crc [realms] LOCALDOMAIN = { kdc = server.localdomain:88 admin_server = server.localdomain:750 } [domain_realm] .localdomain = LOCALDOMAIN localdomain = LOCALDOMAIN [kdc] profile = /etc/krb5kdc/kdc.conf [logging] kdc = FILE:/var/log/krb5kdc.log admin_server = FILE:/var/log/kadmin.log default = FI...

Error: Windows SDK function returned an error. (Error code -12) #2
I get this error "Error: Windows SDK function returned an error. (Error code -12) The system cannot find the path specified." when I build an installer of my program in Labview. It is looking for a file but it is asking for&nbsp;the Measurement Studio CD. this is the message before the error. &nbsp; Copying products from distributionsCopying distribution 'NI Measurement Studio 8.1.2 for Visual Studio 2005' from: D:\VS2005\ to: C:\Program Files\National Instruments\Shared\ProductCache\ &nbsp; Please help. &nbsp; --Gio sentinel95, greetings! Did you bypass thi...

kadmin: GSS-API (or Kerberos) error while initializing kadmin interface #2
Hi, Can somebody tell me why I can't use kadmin remotely? I can start kadmin on the kdc server by using "kadmin -O". But when I tried to use /usr/kerberos/sbin/kadmin from a client machine to visit the kerberos database, the error as the email title occured. [root@gcnode029 sbin]# klist Ticket cache: FILE:/tmp/krb5cc_0 Default principal: admin/admin@test.com Valid starting Expires Service principal 07/20/06 17:54:02 07/21/06 17:54:00 krbtgt/test.com@test.com Kerberos 4 ticket cache: /tmp/tkt0 klist: You have no tickets cached [root@gcnode029 sbin]# kadmin admin/admin Authenticating as principal <mailto:admin/admin@test.com> admin/admin@test.com with password. Password for <mailto:admin/admin@test.com> admin/admin@test.com: kadmin: GSS-API (or Kerberos) error while initializing kadmin interface Thank you for any help! -- LiZhong ________________________________________________ Kerberos mailing list Kerberos@mit.edu https://mailman.mit.edu/mailman/listinfo/kerberos ...

kinit: Key table entry not found while getting initial credentials #2
Hello newsgroup, We followed the instructions on http://grolmsnet.de/kerbtut/ kinit -k -t /etc/apache2/httpotrskeytab OTRS/ server.test.local@TEST.LOCAL produces the following error: kinit: Key table entry not found while getting initial credentials we are using mit kerberos 1.9.1 on sles10 we created the keytabfile on windows 2008 r2 server with the following command: ktpass -princ OTRS/server.test.local@TEST.LOCAL -mapuser httpotrs@TEST.LOCAL -crypto RC4-HMAC-NT -ptype KRB5_NT_PRINCIPAL -pass secretpassword -out c:\temp\httpotrskeytab we copied the file to the linux server to /etc/apache2 directory manual ticket creation works fine: server:/ # kinit OTRS/server.test.local Password for OTRS/server.test.local@TEST.LOCAL: server:/ # klist Ticket cache: FILE:/tmp/krb5cc_0 Default principal: OTRS/server.test.local@TEST.LOCAL Valid starting Expires Service principal 06/07/11 13:40:15 06/07/11 23:40:15 krbtgt/TEST.LOCAL@TEST.LOCAL renew until 06/08/11 13:40:15 server:/ # kvno OTRS/server.test.local@TEST.LOCAL OTRS/server.test.local@TEST.LOCAL: kvno =3D 11 any ideas what went wrong with our installation? G=FCnter g� <guenter.huerkamp@gmail.com> writes: > Hello newsgroup, > > We followed the instructions on http://grolmsnet.de/kerbtut/ > > > kinit -k -t /etc/apache2/httpotrskeytab OTRS/ > server.test.local@TEST.LOCAL > produces the following error: > kinit: Key table entry not found while getting initial credenti...

KRB5 error code 52 on Unix with MIT Kerberos5 -> Active Directory
All, I read this error to be a UDP packet size problem and that I need to force my unix clients to swtich to TCP to authenticate against our Active Directory. I couldn't find any information as how I can get the Unix version of MIT Kerb5. to do this.. Can anyone point me in the right direction? Thanks! ...

Re: kadmin: GSS-API (or Kerberos) error while initializing kadmin interface #2
Hi there, That problem may be fixed by "sync"ing the time of the server and client machines, before running kadmin. cheers, Nima D. Be smarter than spam. See how smart SpamGuard is at giving junk email the boot with the All-new Yahoo! Mail at http://mrd.mail.yahoo.com/try_beta?.intl=ca ________________________________________________ Kerberos mailing list Kerberos@mit.edu https://mailman.mit.edu/mailman/listinfo/kerberos ...

Getting an error: Attempted to access u(2); index out of bounds because numel(u)=1. Error in ==> treat at 31 if (u(2)>1000)
HI, I am using an ode function having three differntial equations in u(1), u(2), (3) using function f=treat(t, u), Now when i use if function as if (u(2)>1000) c=1; else (u(1)<=100) c=0; end i am getting the following error Attempted to access u(2); index out of bounds because numel(u)=1. Error in ==> treat at 31 if (u(2)>1000) Please tell me. thanks ...

kerberos and Windows 2008R2
Hello Kerberos List, I'm trying to set a Kerberos ticket between a Unix and a Windows 2008 R2 se= rver. I've created a user on windows and used the ktpass to generate the Kerberos= keytab: C:\Windows\System32\ktpass princ host/jc1lqaldap.testdomain.com@TESTDOMAIN.= COM mapuser TESTDOMAIN\host_jc1lqaldap -crypto DES-CBC-MD5 -pass * -ptype K= RB5_NT_PRINCIPAL out c:\nis_data\host_jc1lqaldap.keytab I did make sure that "User Kerberos DES encryption types for this account" = was checked. First I was getting: root@jc1lqaldap:/etc# kinit -V -k -t /etc/krb5.keytab -c /tmp/krb5cc_0 host= /jc1lqaldap.testdomain.com kinit: KDC has no support for encryption type while getting initial credent= ials So I've checked "Do not require Kerberos preauthentication" and I get: root@jc1lqaldap:/etc# kinit -V -k -t /etc/krb5.keytab -c /tmp/krb5cc_0 host= /jc1lqaldap.testdomain.com kinit: Key table entry not found while getting initial credentials Where should that key table entry be located ? I cannot go forward with this. Is there a way to get more verbose logging s= o I can troubleshoot this. Klist root@jc1lqaldap:/etc# klist -ke -t /etc/krb5.keytab Keytab name: WRFILE:/etc/krb5.keytab KVNO Timestamp Principal ---- ----------------- ----------------------------------------------------= ---- 12 12/31/69 19:00:00 host/jc1lqaldap.testdomain.com@TESTDOMAIN.COM (DES c= bc mode with RSA-MD5) Cat /etc/krb5.conf [logging] default =3D FILE...

RE: wxMac 2.6.2 : Code Warrior 10 : Classic compilation error #2
------_=_NextPart_001_01C64126.0AA84380 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable Hi =20 you will need the CARBON targets, these run under OS 9 as well. There = is no currently maintained CLASSIC build. =20 Best, =20 Stefan _____ =20 From: Vijay Kumar Mangalpally [mailto:vijay.mangalpally@e-gits.com]=20 Sent: Montag, 6. M=E4rz 2006 14:14 To: wx-users@lists.wxwidgets.org Subject: RE: wxMac 2.6.2 : Code Warrior 10 : Classic compilation error =09 =09 Hi, =20 When I import the wxWindowsM8.xml f...

MAPI mail failure codes??? Where can I find out what failure error code 2 is? How about the rest of the codes?
I cut a mail function off the m'soft site. Has always worked. However, I would like to include error codes returned by the sendmail Fn and be able to understand what they mean. I had my first occasion to experience a failure and got a code of 2??? Would like to know just what that means. Here's how I call the fn... Result = SendMail((F!Subject), (F!To), (F!CC), (F!Attach), (F!Message)) And here's the fn..... Function SendMail (sSubject As String, sTo As String, sCC As String, sAttach As String, sMessage As String) Dim i, cTo, cCC, cAttach ' variables holding c...

more on 0x3302 Protocol error layer 2 #2
In the first "thread" ('0x3302 error protocol layer 2'), I put the whole sequence of CAPI commands and indications (and their respective "byte sequences") which produced the error. In order to clarify (for Tobias) the setup of the outbound call, I took from that sequence the single CONNECT_REQ command (with NO modifications) and I expanded and commented the contents of all parameters in a subsequent "thread". ('more on 0x3302 error protocol layer 2', this thread). I simply detailed the defaults of CAPI's CONNECT_REQ fields: B protocol is 0, which means "default protocol behavior: ISO 7776 and windows size seven (Layer 1:HDLC framing protocol, Layer 2:X.75 SLP and Layer 3: transparent) Bearer Capabilities is 0, and so LLC:0 and HLC:0 accepting the parameters resulting from CIP selection My first choice about CIP parameter was: speech [1], which did not work. After an analysis of the succesful outbound calls made by Phoner and similar applications, I saw they use CIP parameter: Telephony [16] and so I decided to use it (yet with no results). Summing up, I'd like to make "the simplest voice outbound call"... and that's the reason why I put every possible struct defaults in CONNECT_REQ cmd. Bye bye Fabrizio Hi again, you won't get any connection (layer3) established with a voice-terminal on the other side, if you don't specify bittrans...

Web resources about - KRB5 error code 52 while getting initial credentials #2 - comp.protocols.kerberos

Credential Recordings - Wikipedia, the free encyclopedia
Credential Recordings is a Nashville-based record label , focusing generally on the pop rock genre. It began branching out when it agreed on ...

GraphicMail, Janrain Engage Enable Email Newsletter Signup Via Facebook Credentials
... Janrain Engage to its clients’ customizable newsletter signup forms, allowing them to sign in with their Facebook account information, or credentials ...

Discussion of credentials of Maajid Nawaz - Quilliam - YouTube
Glenn Beck discusses the background of Quilliam Chairman Maajid Nawaz on Fox News - The Daily Beck.

Christos Kyrgios has ATP credentials revoked, forced to buy ticket to watch his brother Nick Kyrgios ...
Christos Kyrgios has had his ATP credentials revoked, denied entry to watch his brother Nick in his first round match at the Cincinnati Masters ...

John I Dent Cup: Wests show premiership credentials with entertaining 40-31 win against Royals
Wests showed they can't be discounted as a John I Dent Cup premiership threat on Saturday.

Facebook attacked with credential-harvesting malware - MediaFire, applications, Data Protection - Social ...
Dorkbot variant infection unusual because the criminals exploited a flaw in the file-sharing site MediaFire to spread the malware

Boland pushes Test credentials with five-for
SCOTT Boland rammed home his Test credentials with a five-wicket haul as Victoria put the markers down for a run away Sheffield Shield lead against ...

Obama mocks Romney military credentials
Sky News is Australia's leader in 24-hour news. Barack Obama has aimed to belittle rival Mitt Romney's commander-in-chief credentials, accusing ...

Newly discovered Mac malware tarnishes Apple's security credentials
Apple prides itself on producing more secure gadgets than rivals, but these latest bugs may have iFans worried.

Top AFL draft prospect Christian Petracca proves his midfield credentials
You might already know Christian Petracca. If you like football, like coffee and like to grab one inside the MCG then there's a very good chance ...

Resources last updated: 3/10/2016 1:54:53 PM