Solaris 8 clients and mit kerberos

Manel Euro euro_32 at hotmail.com
Sat May 14 12:28:55 EDT 2005


Hello,

I am configuring pam_krb on Solaris 8 machines(SEAM)  with a MIT KDC in a 
linux machine.
Whenever I kinit on the solaris I am able to get a ticket.
When configuring pam to get authorization from kerberos I get the following 
error message:

May 14 12:06:47 teste.com krb5kdc[17615](info): TGS_REQ (2 etypes
{3 1}) 143.106.77.92: TKT_EXPIRED: authtime 1085410771,


The machines have the same time (they do have different time format am/pm 
and 24h).

My kdc.conf file is:

.....
database_name = /usr/local/kerberos/var/krb5kdc/principal
      admin_keytab = /usr/local/kerberos/var/krb5kdc/kadm5.keytab
      acl_file = /usr/local/kerberos/var/krb5kdc/kadm5.acl
      dict_file = /usr/local/kerberos/var/krb5kdc/kadm5.dict
      key_stash_file = /usr/local/kerberos/var/krb5kdc/.k5.XXXX.XX
      kadmind_port = 749
      max_life = 10h 0m 0s
      max_renewable_life = 7d 0h 0m 0s
      master_key_type = des3-hmac-sha1
      supported_enctypes = des3-hmac-sha1:normal des-cbc-crc:normal

......


Thank you,
All help is appretiated.

Regards,

Manel

_________________________________________________________________
Express yourself instantly with MSN Messenger! Download today - it's FREE! 
http://messenger.msn.click-url.com/go/onm00200471ave/direct/01/



More information about the Kerberos mailing list