LinuxQuestions.org
Visit Jeremy's Blog.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices

Reply
 
LinkBack Search this Thread
Old 01-29-2009, 02:04 AM   #1
slaindevil
LQ Newbie
 
Registered: Jan 2009
Posts: 0

Rep: Reputation: 0
Kerberos <-> Active Directory Error: Reply did not match expectations


Hey there,

I got the following scenario:

I am working in a little firm and we got an Windows 2003 Server with Active Directory to authenticate at our computers...

Now we set up a TWiki installation on a Linux server...

My goal is, to use the Active Directory to authenticate at the TWiki. I also found serveral manuals on how to do that...

I installed the kerberos package on the linux server and configured it, but when I enter kinit username@DOMAIN-1 and then my password, I only get the following error message:

kdc reply did not match expectations while getting initial credentials

I also found this thread here on my search for help: http://www.linuxquestions.org/questi...ations-445698/

But it did not help me I tried several combinations of uppercase, lowercase, etc...

Here comes my current krb5.conf:
Code:
[logging]
 default = FILE:/var/log/krb5libs.log
 kdc = FILE:/var/log/krb5kdc.log
 admin_server = FILE:/var/log/kadmin.log

[libdefaults]
 default_realm = DOMAIN-A
 dns_lookup_realm = false
 dns_lookup_kdc = false
 forwardable = yes
 ticket_lifetime = 24h

[realms]
 DOMAIN-A = {
  kdc = winserv.to.go.lan:88
  admin_server =  winserv.to.go.lan:749
  default_domain = DOMAIN-A
 }

[domain_realm]
 .domain.lan = DOMAIN-A
 domain.lan = DOMAIN-A

[appdefaults]
 pam = {
   ticket_lifetime = 36000
   renew_lifetime = 36000
   debug = false
   krb4_convert = false
   forwardable = true
 }
The domain, ports and server adresses are just an example, but this is mainly the way it looks / is formatted...

Someone got a hint for me or even a complete problem solution?

I really would appreciate it

Greets,
slain

Edit:
Problem solved... Now I got the next problem

Last edited by slaindevil; 02-03-2009 at 02:35 PM.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Kerberos kinit "reply did not match expectations" joadoor Linux - Networking 14 11-01-2011 04:41 AM
Authenticate ssh logins against kerberos / Active directory rosv Linux - Security 1 09-11-2008 07:16 AM
Kerberos -> Active Directory Authentication Ogrius Red Hat 0 04-05-2006 02:26 PM
Active Directory Kerberos macusr Linux - Networking 5 03-24-2006 03:36 PM
Active Directory, Kerberos, LDAP, PAM, and nsswitch PenguinPwrdBox Linux - Security 1 06-04-2005 09:56 PM


All times are GMT -5. The time now is 08:41 PM.

Main Menu
 
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: @linuxquestions
Open Source Consulting | Domain Registration