e: [Freeipa-devel] Changing non-admin passwords

tflipa at radiantpoint.com tflipa at radiantpoint.com
Wed Jul 9 16:17:00 UTC 2008


Our corp. network is running Active Directory, however it is doing so at a different realm (XXX.REALM.COM) whereas I have made my realm simply (REALM.COM).  

I am able to login successfully with my admin account (and its appropriate password) and kerberos knows when I have entered the wrong password for proguser which tells me the requests are at least going to the ipaserver.  

Any ideas?
Thanks
Tim
------Original Message------
From: Simo Sorce
To: tflipa at radiantpoint.com
Cc: freeipa-devel at redhat.com
Subject: Re: [Freeipa-devel] Changing non-admin passwords
Sent: Jul 9, 2008 11:53 AM

On Wed, 2008-07-09 at 15:47 +0000, tflipa at radiantpoint.com wrote:
> Hi everyone
> 
> I just setup freeIPA v1.1 for fedora 9 and am having an issue with user accounts. I added a new user from the admin account web interface and read online that it will automatically set the password expiration to now. The issue I am having is that I am unable to change my password on login from my windows or centos hosts.
> 
> In windows I downloaded the kfw package and installed, however when I try and login with "proguser" it asks me to change my password.  I do so and it shows up with the error message
> 
> Failed to get credentials for prog user at ....
> 
> Requested protocol version not supported.
>  
> In Centos I try kinit proguser and it says the same thing.  I tried looking this info up with no avail.  What am I doing wrong?

Do you have an AD domain controller in the same DNS domain ?

Simo.

-- 
Simo Sorce * Red Hat, Inc * New York



Sent from my Verizon Wireless BlackBerry




More information about the Freeipa-devel mailing list