* Jeff Blaine <[EMAIL PROTECTED]> [20080213 23:56]:
> % /usr/rcf-krb5/bin/kinit -p admin/admin
> Password for admin/[EMAIL PROTECTED]:
> % /usr/rcf-krb5/sbin/kadmin -c /tmp/krb5cc_26560
> Authenticating as principal admin/[EMAIL PROTECTED] with existing
> credentials.
> kadmin: Matching credential not found while initializing kadmin interface
> 

The kadmin/admin service usually has the 'DISALLOW_TGT_BASED' attribute
set.  If you *really* want to run kadmin off of an existing credential
cache you need to request the a service ticket for the kadmin/admin when
you do the initial kinit, something like this:

    kinit -p admin/admin -S kadmin/admin

Ben
-- 
________________________________________________________________________
PGP fingerprint:      A131 F813 7A0F C5B7 E74D  C972 9118 A94D 6AF5 2019

Attachment: pgpYEgXVZ0drF.pgp
Description: PGP signature

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to