Brian Johnson <[EMAIL PROTECTED]> wrote: > modcall: group authorize returns ok > rad_check_password: Found Auth-Type Kerberos > auth: type "Kerberos" > auth: Failed to validate the user.
Yup. The kerberos module returns helpful debugging messages, doesn't it? > As always, I'm happy to provide any additional information. A patch to rlm_krb5, so that it takes any return error string/code from kerberos, and outputs debug information saying WHY it failed? Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html