Why this Warning in Kerbrose verification

N.S.Karthik nskarthik.k at gmail.com
Wed May 29 04:28:16 EDT 2013


Hi
SPEC : 

 
Domain controller :  Windows Server 2007 SP1
Server : Linux Suse Ent-10 (Web server running apache2.2.22)
Client : Windows 7

Active Directory : Active Directory Users and Computers
                        Microsoft Corporation
                        Version: 6.0.6001.18000
mod_kerbrose : 5
Apache httpd 2.2.22

I have built modules of kerbrose and Apache on Server successfully with
necessary steps 
as define in this URL
"http://msdn.microsoft.com/en-us/library/ms995329.aspx"

Questions....
1)All Domain related Client's  browsers configured for SSO are not working.
2) On the Web server for any Client based Request following is observed

[Wed May 29 15:45:01 2013] [debug] src/mod_auth_kerb.c(1385): [client
192.168.40.152] Verifying client data using KRB5 GSS-API 
[Wed May 29 15:45:01 2013] [debug] src/mod_auth_kerb.c(1401): [client
192.168.40.152] Client didn't delegate us their credential
[Wed May 29 15:45:01 2013] [debug] src/mod_auth_kerb.c(1429): [client
192.168.40.152] *Warning: received token seems to be NTLM, which isn't sup
ported by the Kerberos module. Check your IE configuration.*
[Wed May 29 15:45:01 2013] [debug] src/mod_auth_kerb.c(1101): [client
192.168.40.152] GSS-API major_status:00090000, minor_status:861b6d03
[Wed May 29 15:45:01 2013] [error] [client 192.168.40.152]
gss_accept_sec_context() failed: A token was invalid (, Validation error)
[Wed May 29 15:45:02 2013] [debug] proxy_util.c(1818): proxy: grabbed
scoreboard slot 0 in child 18444 for worker http://192.168.4.32:8085/SSOTEST


with regards
karthik 




--
View this message in context: http://kerberos.996246.n3.nabble.com/Why-this-Warning-in-Kerbrose-verification-tp37492.html
Sent from the Kerberos - General mailing list archive at Nabble.com.


More information about the Kerberos mailing list