UNKNOWN_SERVER Error on KRB5?

Jeffrey Altman jaltman2 at nyc.rr.com
Tue May 11 10:40:21 EDT 2004


The appropriate enctypes are present.
This seems to indicate that the wrong password is being entered.



Joe Bryant wrote:

> kadmin.local:  getprinc krbtest
> Principal: krbtest at SEC400.ITC.RITEAID.COM
> Expiration date: [never]
> Last password change: Tue May 11 09:11:46 EDT 2004
> Password expiration date: [none]
> Maximum ticket life: 0 days 10:00:00
> Maximum renewable life: 7 days 00:00:00
> Last modified: Tue May 11 09:11:46 EDT 2004
> (root/admin at SEC400.ITC.RITEAID.COM)
> Last successful authentication: [never]
> Last failed authentication: [never]
> Failed password attempts: 0
> Number of keys: 6
> Key: vno 2, Triple DES cbc mode with HMAC/sha1, no salt
> Key: vno 2, DES cbc mode with CRC-32, no salt
> Key: vno 2, DES cbc mode with RSA-MD5, Version 4
> Key: vno 2, DES cbc mode with RSA-MD5, Version 5 - No Realm
> Key: vno 2, DES cbc mode with RSA-MD5, Version 5 - Realm Only
> Key: vno 2, DES cbc mode with RSA-MD5, AFS version 3
> Attributes: REQUIRES_PRE_AUTH
> Policy: [none]
> kadmin.local:  getprinc KRBTEST
> Principal: KRBTEST at SEC400.ITC.RITEAID.COM
> Expiration date: [never]
> Last password change: Tue May 11 09:09:32 EDT 2004
> Password expiration date: [none]
> Maximum ticket life: 0 days 10:00:00
> Maximum renewable life: 7 days 00:00:00
> Last modified: Tue May 11 09:09:32 EDT 2004
> (root/admin at SEC400.ITC.RITEAID.COM)
> Last successful authentication: [never]
> Last failed authentication: [never]
> Failed password attempts: 0
> Number of keys: 6
> Key: vno 2, Triple DES cbc mode with HMAC/sha1, no salt
> Key: vno 2, DES cbc mode with CRC-32, no salt
> Key: vno 2, DES cbc mode with RSA-MD5, Version 4
> Key: vno 2, DES cbc mode with RSA-MD5, Version 5 - No Realm
> Key: vno 2, DES cbc mode with RSA-MD5, Version 5 - Realm Only
> Key: vno 2, DES cbc mode with RSA-MD5, AFS version 3
> Attributes: REQUIRES_PRE_AUTH
> Policy: [none]
> 
> "Jeffrey Altman" <jaltman2 at nyc.rr.com> wrote in message
> news:40A0DB1E.8090100 at nyc.rr.com...
> 
>>In kadmin, what is the output of
>>
>>getprinc krbtest
>>getprinc KRBTEST
>>
>>
>>Joe Bryant wrote:
>>
>>>I am not sure how to see that, but it was created in exactly the same
> 
> way as
> 
>>>the krbtest ID.
>>>
>>>"Jeffrey Altman" <jaltman2 at nyc.rr.com> wrote in message
>>>news:40A0D7D8.4030802 at nyc.rr.com...
>>>
>>>
>>>>What enctypes are supported for the principal
>>>>
>>>>KRBTEST at SEC400.ITC.RITEAID.COM
>>>>
>>>>??
> 
> 
> 

-- 
-----------------
This e-mail account is not read on a regular basis.
Please send private responses to jaltman at mit dot edu


More information about the Kerberos mailing list