[Freeipa-users] Whit only krb5-workstation and oddjob-mkhomedir

Axel Berlin acke.89 at gmail.com
Thu May 2 09:46:16 UTC 2013


On the client it dont return anything but on the server is returns following

kinit: Keytab contains no suitable keys for host/
seadv-237-100.d1.gameop.net at D1.GAMEOP.NET while getting initial credentials

But It is on the client that i should run it? The server dont have the
237-100 krb5.keytab flie


2013/5/2 Jakub Hrozek <jhrozek at redhat.com>

> On Thu, May 02, 2013 at 10:55:40AM +0200, Axel Berlin wrote:
> > Here is the logs output when I do
> >
> > id username
> >
> > sssd_d1.gameop.net.log
> >
> > (Thu May  2 10:44:59 2013) [sssd[be[d1.gameop.net]]] [sasl_bind_send]
> (4):
> > Executing sasl bind mech: GSSAPI, user: host/seadv-237-100.d1.gameop.net
> > (Thu May  2 10:44:59 2013) [sssd[be[d1.gameop.net]]] [sasl_bind_send]
> (1):
> > ldap_sasl_bind failed (-2)[Local error]
> > (Thu May  2 10:44:59 2013) [sssd[be[d1.gameop.net]]] [child_sig_handler]
> > (7): Waiting for child [20277].
>
> I think here is the problem. "Local error" is not much descriptive, but
> the issue is most probably in the keytab.
>
> Does the following work:
> kinit -k host/seadv-237-100.d1.gameop.net
>
> I bet it would print the same error message.
>
> _______________________________________________
> Freeipa-users mailing list
> Freeipa-users at redhat.com
> https://www.redhat.com/mailman/listinfo/freeipa-users
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20130502/f86d899e/attachment.htm>


More information about the Freeipa-users mailing list