Re: krb5 auth problem

2008-07-01 Thread Chad Kotil
Heres an update to the kerberos realm issue I am now seeing. I want to use my secondary KDC (UVWX.YZ.EDU) rather than the primary KDC (YZ.EDU), but amanda doesnt seem to know how to look for it. I include the KDC realm in all of my config's. amanda.conf, and .k5login. Here is my .k5login

Re: krb5 auth problem

2008-07-01 Thread Chad Kotil
Yah, A little background might help. UVWX.YZ.EDU is the realm of my secondary KDC for these two hosts (the clients) which I am trying to configure krb auth on. YZ.EDU is the primary KDC on these hosts. These two hosts are my bastion servers , i.e. hop off boxes to protect my local

Re: krb5 auth problem

2008-07-01 Thread Mitch Collinsworth
If your realm is YZ.EDU, then that's what you use. If UVWX.YZ.EDU is a host name and not a realm name, then it doesn't belong in your principal names. Can you explain why you want to auth against the secondary rather than the primary? I can't think of any reason that should matter. -Mitch