Jean-Yves Avenard <jyaven...@gmail.com> wrote:
> I have now identified the cause of the issue.
> When using mod_auth_kerb with MIT krb5 v1.6.x it works perfectly
> with krb5 1.7 and 1.7.1 same.
> However, I get this "GSS-API major_status:000d0000,
> minor_status:000186a3" error whenever I use MIT 1.8.x kerberos
> libraries (tested with 1.8.1 and 1.8.3)

I'm guessing you need to enable single DES encryption types on the KDCs, the 
web server and the clients.

You should look into the allow_weak_crypto = true in the [libdefaults] 
section of krb5.conf

<<CDC

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to