LinuxQuestions.org
Review your favorite Linux distribution.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices

Reply
 
Search this Thread
Old 10-21-2004, 09:56 PM   #1
bentz
Member
 
Registered: Mar 2003
Distribution: Fedora, Mac OSX
Posts: 362

Rep: Reputation: 30
Exclamation sasl + kerberos


Hello,
I'm using Fedora core 2. I've installed krb5-libs and krb5-workstation and am able to use kinit, klist, etc. to successfully work with kerberos. All this works great.

I've installed cyrus-sasl-2.1.18 from RPM. According to saslauthd -v, kerberos5 is a supported authentication method. I've modified /etc/sysconfig/saslauthd to read MECH=kerberos5. I've started the saslauthd service and it appears to be running. However, when I attempt to use testsaslauthd to test authenticating a kerberos principal (which works fine with kinit) I get: 0: NO "authentication failed".

/var/log/messages shows:

ct 21 22:48:50 lentz_b130 saslauthd[32188]: auth_krb5: krb5_get_init_creds_password
Oct 21 22:48:50 lentz_b130 saslauthd[32188]: do_auth : auth failure: [user=ldap] [service=imap] [realm=REALM] [mech=kerberos5] [reason=saslauthd internal error]

I've read http://www.openldap.org/faq/data/cache/944.html, which seems to indicate that I've got all my ducks in a row... I'm not sure what's failing at this point.

Any help would be greatly appreciated.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Weird sasl LAdProg2005 Linux - Software 0 10-12-2005 11:09 AM
Fedora, cyrus imap / sasl, Kerberos, LDAP rhoekstra Linux - Security 0 01-26-2005 03:48 AM
Sasl cecilcosta Linux - Networking 3 07-29-2004 04:39 PM
help with SASL pembo13 Linux - Networking 0 02-05-2004 09:53 PM
Help me please: SASL pembo13 Linux - Networking 3 09-03-2003 12:56 PM


All times are GMT -5. The time now is 08:34 AM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration