I'm trying to set a Kerberos ticket between a Unix and a Windows 2008 R2 server.
I've created a user on windows and used the ktpass to generate the Kerberos keytab:
C:\Windows\System32\ktpass princ host/ at TESTDOMAIN.COM mapuser TESTDOMAIN\host_jc1lqaldap -crypto DES-CBC-MD5 -pass * -ptype KRB5_NT_PRINCIPAL out c:\nis_data\host_jc1lqaldap.keytab

I did make sure that "User Kerberos DES encryption types for this account" was checked.
First I was getting:
root at jc1lqaldap:/etc# kinit -V -k -t /etc/krb5.keytab -c /tmp/krb5cc_0 host/
kinit: KDC has no support for encryption type while getting initial credentials

So I've checked "Do not require Kerberos preauthentication" and I get:
root at jc1lqaldap:/etc# kinit -V -k -t /etc/krb5.keytab -c /tmp/krb5cc_0 host/
kinit: Key table entry not found while getting initial credentials

Where should that key table entry be located ?
I cannot go forward with this. Is there a way to get more verbose logging so I can troubleshoot this.

root at jc1lqaldap:/etc# klist -ke -t /etc/krb5.keytab
Keytab name: WRFILE:/etc/krb5.keytab
KVNO Timestamp         Principal
---- ----------------- --------------------------------------------------------
  12 12/31/69 19:00:00 host/ at TESTDOMAIN.COM (DES cbc mode with RSA-MD5)

Cat /etc/krb5.conf
default = FILE:/var/log/krb5libs.log
kdc = FILE:/var/log/krb5kdc.log
admin_server = FILE:/var/log/kadmind.log

default_realm = TESTDOMAIN.COM
dns_lookup_realm = false
dns_lookup_kdc = false

default_tkt_enctypes = arcfour-hmac-md5 des-cbc-crc des-cbc-md5
default_tgs_enctypes = arcfour-hmac-md5 des-cbc-crc des-cbc-md5

  kdc =
  admin_server =
  default_domain =


profile = /var/kerberos/krb5kdc/kdc.conf

pam = {
   debug = false
   ticket_lifetime = 36000
   renew_lifetime = 36000
   forwardable = true
   krb4_convert = false
   validate = true

