Hello, Today I started to sniff the network, while trying to setup aan cross-realm kerberos-session... (realm named: test.nl and tester.test.nl)
And the sniffer (ethereal) did not tell me very much.. But he did tell me the WinXp client is requesting a TGS from the w2k3 AD KDC (which is good!). And the AD KDC send a error back: krb5kdc_err_s_principal_unknown.. (which is not good) So (correct me if I am wrong) the AD KDC does not see that this host is in a different realm, and therefore does not respond with the correct ticket (which should be a krbtgt/[EMAIL PROTECTED]) Any ideas on this? ________________________________________________ Kerberos mailing list [EMAIL PROTECTED] https://mailman.mit.edu/mailman/listinfo/kerberos
