Re: [cas-user] Exceptions in catalina.log from using JAAS with Kerberos

2009-02-07 Thread Matt Smith
Haven't seen this specifically -- but try changing the password for that user. My guess from "Pre-authentication information was invalid (24)" is that the AD 2k8 is looking for Kerberos salting info that hasn't yet been generated. Changing the password, even to the same thing it currently is, may

[cas-user] Exceptions in catalina.log from using JAAS with Kerberos

2009-02-05 Thread Andrew Feller
Recently, we ran into some weird exceptions in the Tomcat log that we have never seen before. We are using CAS 3.2.1 on Tomcat 6 with the JaasAuthenticationHandler and the Krb5LoginModule to authenticate users to Active Directory on a RHEL 5 box. The only thing I know that has changed is that our