LinuxQuestions.org
Visit the LQ Articles and Editorials section
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices

Reply
 
Search this Thread
Old 03-25-2013, 03:32 PM   #1
rosect
LQ Newbie
 
Registered: Oct 2011
Posts: 19

Rep: Reputation: Disabled
Kerberos error message: error code 52


I installed Cygwin on win7 to run a Bash script, which will talk to a Service Provider using Curl / Kerberos. The win7 is part of a domain where a KDC is installed/enabled.

In order to obtain a TGT before running the script, I issued the command from Cygwin: "kinit principal@DOMAIN.COM". However, I received an error message: "kinit: KRB5 error code 52 while getting initial credentials". The Kerberos library included in my Cygwin is 1.5.2-4.

Google search replies with some hints of UDP vs. TCP with old Kerberos version of 1.2.7. Wireshark captures show that the KRB LIB is using UDP instead of TCP.

Tried to use "udp_preference_limit = 1" to force to use TCP --> no difference. The library still uses UDP.

Tried to use "kdc = tcp/domain.com" -> the KRB library does not recognize it.

What else can I try?
Thank you very much in advance.

Last edited by rosect; 03-25-2013 at 08:15 PM.
 
Old 04-04-2013, 05:56 AM   #2
gangadhar402
Member
 
Registered: Mar 2013
Location: the India
Distribution: Ubuntu,Debian and CentOS
Posts: 35

Rep: Reputation: 2
Hi,

kinit: KRB5 error code 52 while getting initial credentials

while dealing with kerboros this is very common error,
in past i resolved this by adding

; for Windows 2003
default_tgs_enctypes = rc4-hmac des-cbc-crc des-cbc-md5
default_tkt_enctypes = rc4-hmac des-cbc-crc des-cbc-md5
permitted_enctypes = rc4-hmac des-cbc-crc des-cbc-md5
; for Windows 2008 with AES
default_tgs_enctypes = aes256-cts-hmac-sha1-96 rc4-hmac descbc-crc des-cbc-md5
default_tkt_enctypes = aes256-cts-hmac-sha1-96 rc4-hmac descbc-crc des-cbc-md5
permitted_enctypes = aes256-cts-hmac-sha1-96 rc4-hmac descbc-crc des-cbc-md5
; for MIT/Heimdal kdc no need to restrict encryption type
# The following krb5.conf variables are only for MIT Kerberos


these few authentication lines in krb5.conf file
try this ,this may helpful
....
 
  


Reply

Tags
cygwin, error, kerberos, security


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Error 502 : Display Fatal Error Message, Error pushing image, dbpaCT failed! HaloCheng Linux - Newbie 1 09-12-2012 12:02 PM
ssh and kerberos error: Server not found in Kerberos database Felipe Linux - Server 1 01-17-2011 03:12 AM
[SOLVED] REXX code executes grep, generates spurious error message danielbmartin Linux - Newbie 7 06-09-2010 03:42 PM
MPlayer Error Message - Error Opening/Initializing Video Out Device Harpo Linux - Newbie 12 12-29-2009 11:26 PM
Error message received from system Error while reading filter description for true Steel_J Linux - Software 2 03-04-2006 06:10 PM


All times are GMT -5. The time now is 05:33 AM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration