Issue with Kerberos setting in Sun Solaris 10

Benjamin Kaduk kaduk at MIT.EDU
Sun Apr 21 17:00:10 EDT 2013


On Sun, 21 Apr 2013, Dagobert Michelsen wrote:

> Hi Ray,
>
> Am 21.04.2013 um 19:13 schrieb Benjamin Kaduk <kaduk at MIT.EDU>:
>> On Fri, 19 Apr 2013, Ray Vand wrote:
>>> Then I moved the sapldap.keytab to my SAP Server in tmp directory
>>>
>>> # ktutil
>>> ktutil: rkt /tmp/sapldap
>>> ktutil: l -e
>>> slot KVNO Principal
>>> ---- ---- ---------------------------------------------------------------------
>>>  1    7  sapldap/ads.company.com at COMPANY.COM (DES cvc mode with RSA-MD5)
>>>
>>> ktutil: wkt /etc/krb5.keytab
>>> ktutil: q
>>>
>>> Here is where I am getting error/having issue when running next command.
>>>
>>> # kinit -V -k sapldap/ads.company.com at COMPANY.COM
>>>
>>> kinit(v5): Key table entry not found while getting initial credentials
>>>
>>> but if I use it without -k option it working and It takes password
>>
>> It is a bit perplexing.  Stock Solaris 10 is not an environment I am
>> familiar with, but I can speak some about the related MIT krb5 codebase.
>
>
> I think the host key tab on Solaris with stock Kerberos is at
>  /etc/krb5/krb5.keytab
> instead of /etc/krb5.keytab as documented in kinit(1) on Solaris 10.

That does ring a bell; we had to work around a related issue in OpenAFS 
recently.

Thanks!

-Ben


More information about the Kerberos mailing list