Kerberos/SASL/LDAP/Windows - Message Stream Modified

Markus Moeller huaraz at moeller.plus.com
Fri Oct 13 15:18:31 EDT 2006


I have seen the "message stream modified" message in cases where two AD DC's 
didn't synchronise correctly and had one had corrupted DES keys.

Markus

"degnan78" <degnan78 at yahoo.com> wrote in message 
news:6797937.post at talk.nabble.com...
>
> Followup: I'm still seeing the "message stream modified" error on Linux. 
> I
> turned on debugging in the ldap.conf file to get some more details.  I ran
> "getent passwd", which attempts a SASL/GSSAPI bind to Active Directory.
> Looking through the verbose messages on the screen, everything looks OK
> except for one thing:
>
> Unable to chase referral
> "ldap://ForestDnsZones.example.com/DC=ForestDnsZones,DC=example,DC=com"
> (Local error)
>
> I've tried starting over and creating new Kerberos key tables, and I've
> tried recompiling the PADL nss_ldap software (though I don't think it's an
> LDAP issue - simple binds work great).
>
> FYI - I got this working correctly with Solaris 9, so I'm pretty sure the
> problem is not my domain controllers (but I could be wrong).
>
> Thanks,
> Kevin
>
> -- 
> View this message in context: 
> http://www.nabble.com/Kerberos-SASL-LDAP-Windows---Message-Stream-Modified-tf2375631.html#a6797937
> Sent from the Kerberos - General mailing list archive at Nabble.com.
>
> ________________________________________________
> Kerberos mailing list           Kerberos at mit.edu
> https://mailman.mit.edu/mailman/listinfo/kerberos
> 






More information about the Kerberos mailing list