Generic question regarding service principal required to access a kerberized ftp server

2010-04-12 Thread Elia Pinto
Hi to all I'm trying to do a ftp logon from a linux client (RHEL 5.4) authenticated via kerberos to an AD (Active Directory) domain to a KDC MVS RACF (SAF mode and nokeytab) in cross-domain realm trust with the AD. The ftp client I'm using is which is distributed by kerberos MIT on RHEL (krb-work

Re: Generic question regarding service principal required to access a kerberized ftp server

2010-04-10 Thread Elia Pinto
Sorry if repost but i am not sure this mail was received. Hi to all I'm trying to do a ftp logon from a linux client (RHEL 5.4) authenticated via kerberos to an AD (Active Directory) domain to a KDC MVS RACF (SAF mode and nokeytab) in cross-domain realm trust with the AD. The ftp client I'

Re: Generic question regarding service principal required to access a kerberized ftp server

2010-04-10 Thread Greg Hudson
On Sat, 2010-04-10 at 05:28 -0400, Elia Pinto wrote: > I can get a TGS ftp /@< KDC MVS REALMS> but it seems > that the client also requests a TGS host /@< KDC MVS > REALMS> but this one is not defined on the KDC MVS and so the ftp > client logon fail. The ftp client tries to authenticate to ft

Re: Generic question regarding service principal required to access a kerberized ftp server

2010-05-12 Thread Elia Pinto
2010/4/10 Greg Hudson : > On Sat, 2010-04-10 at 05:28 -0400, Elia Pinto wrote: >>  I can get a TGS ftp /@< KDC MVS REALMS> but it seems >>  that the client also requests a TGS host /@< KDC MVS >>  REALMS> but this one is not defined on the KDC MVS and so the ftp >>  client logon fail. > > The ftp c