kerberos: how to create krb5cc cache [SOLVED]

steve steve at steve-ss.com
Fri Apr 12 17:10:34 EDT 2013


On 04/12/2013 10:00 PM, Russ Allbery wrote:
> steve <steve at steve-ss.com> writes:
>
>> Thanks. pam_krb5 works fine. on openSUSE 12.3 the cache is created
>> automatically upon login. On Ubuntu it isn't. We have to cater for both
>> distros at the moment. Any Ubuntu krb5 users?
> Yes, lots.
>
> Sounds like you don't have libpam-krb5 configured properly on your Ubuntu
> systems.  Have you installed the package?  Are you using pam-auth-update
> and letting it update your PAM configuration or are you maintaining a
> local PAM configuration?  What's the UID of the user?
>
Hi Russ

Thanks. Your last question led us to the answer. Our common-auth has:
auth    [success=2 default=ignore]    pam_krb5.so minimum_uid=1000000
Something to do with local and AD users overlap. Our test user was 20000 :(

Sorry, and hope I've not wasted too much of your time.
Steve



More information about the Kerberos mailing list