Re: LDAP backend - help needed...

2012-05-09 Thread Mark Pröhl
Am 08.05.2012 15:03, schrieb Berthold Cogel: Am 07.05.2012 18:16, schrieb Greg Hudson: On 05/07/2012 11:38 AM, Berthold Cogel wrote: -rw--- 1 root root 128 May 7 16:09 service.keyfile [root@hydra krb5kdc]# kadmin.local kadmin.local: unable to get default realm I'm not sure why

Re: LDAP backend - help needed...

2012-05-09 Thread Mark Pröhl
Am 07.05.2012 17:38, schrieb Berthold Cogel: [dbmodules] openldap_ldapconf = { db_library = kldap ldap_kerberos_container_dn = ou=Kerberos,dc=uni-koeln,dc=de ldap_kdc_dn = cn=kdc,ou=Kerberos,dc=uni-koeln,dc=de ldap_kadmin_dn = cn=kadmind,ou=Kerberos,dc=uni-koeln,dc=de

Re: Streamlining host principal keytab provisioning?

2012-05-09 Thread Russ Allbery
Sebastian Galiano sebastian.gali...@spilgames.com writes: And then I tried to get that keytab from the clien (host.domain.org): $wallet -f file get keytab nfs/host.domain.org -s server.domain.org wallet: error creating keytab for nfs/host.domain.org@REALM: Operation requires

Re: LDAP backend - help needed...

2012-05-09 Thread Berthold Cogel
Am 09.05.2012 08:59, schrieb Mark Pröhl: Am 07.05.2012 17:38, schrieb Berthold Cogel: [dbmodules] openldap_ldapconf = { db_library = kldap ldap_kerberos_container_dn = ou=Kerberos,dc=uni-koeln,dc=de ldap_kdc_dn = cn=kdc,ou=Kerberos,dc=uni-koeln,dc=de ldap_kadmin_dn =

krb5kdc: Cannot find master key record in database - while fetching master keys list for realm

2012-05-09 Thread Tom Parker
Hi I have a Kerberos server that has been running for months with out any problems. Today when I went to log into my kdc machine I had the following error in my logs: May 09 10:47:52 svgauth1 krb5kdc[2451](Error): TGS_REQ: UNKNOWN SERVER: server='krbtgt/vc.ls@ls.cbn' May 09 10:47:52