In addition, I am attaching the krb5kdc log for successful authentication on 
older client machine:

Mar 11 11:11:07 xpsserver.freeipa.lab krb5kdc[1225](info): AS_REQ (8 etypes 
{aes256-cts-hmac-sha1-96(18), aes128-cts-hmac-sha1-96(17), 
aes256-cts-hmac-sha384-192(20), aes128-cts-hmac-sha256-128(19), 
UNSUPPORTED:des3-hmac-sha1(16), DEPRECATED:arcfour-hmac(23), 
camellia128-cts-cmac(25), camellia256-cts-cmac(26)}) 192.168.0.244: 
NEEDED_PREAUTH: host/[email protected] for 
krbtgt/[email protected], Additional pre-authentication required
Mar 11 11:11:07 xpsserver.freeipa.lab krb5kdc[1225](info): closing down fd 11
Mar 11 11:11:07 xpsserver.freeipa.lab krb5kdc[1225](info): AS_REQ (8 etypes 
{aes256-cts-hmac-sha1-96(18), aes128-cts-hmac-sha1-96(17), 
aes256-cts-hmac-sha384-192(20), aes128-cts-hmac-sha256-128(19), 
UNSUPPORTED:des3-hmac-sha1(16), DEPRECATED:arcfour-hmac(23), 
camellia128-cts-cmac(25), camellia256-cts-cmac(26)}) 192.168.0.244: ISSUE: 
authtime 1615428667, etypes {rep=aes256-cts-hmac-sha1-96(18), 
tkt=aes256-cts-hmac-sha1-96(18), ses=aes256-cts-hmac-sha1-96(18)}, 
host/[email protected] for krbtgt/[email protected]
Mar 11 11:11:07 xpsserver.freeipa.lab krb5kdc[1225](info): closing down fd 11
Mar 11 11:11:07 xpsserver.freeipa.lab krb5kdc[1225](info): AS_REQ (8 etypes 
{aes256-cts-hmac-sha1-96(18), aes128-cts-hmac-sha1-96(17), 
aes256-cts-hmac-sha384-192(20), aes128-cts-hmac-sha256-128(19), 
UNSUPPORTED:des3-hmac-sha1(16), DEPRECATED:arcfour-hmac(23), 
camellia128-cts-cmac(25), camellia256-cts-cmac(26)}) 192.168.0.244: 
NEEDED_PREAUTH: [email protected] for krbtgt/[email protected], 
Additional pre-authentication required
Mar 11 11:11:07 xpsserver.freeipa.lab krb5kdc[1225](info): closing down fd 11
Mar 11 11:11:07 xpsserver.freeipa.lab krb5kdc[1225](info): AS_REQ (8 etypes 
{aes256-cts-hmac-sha1-96(18), aes128-cts-hmac-sha1-96(17), 
aes256-cts-hmac-sha384-192(20), aes128-cts-hmac-sha256-128(19), 
UNSUPPORTED:des3-hmac-sha1(16), DEPRECATED:arcfour-hmac(23), 
camellia128-cts-cmac(25), camellia256-cts-cmac(26)}) 192.168.0.244: 
NEEDED_PREAUTH: [email protected] for krbtgt/[email protected], 
Additional pre-authentication required
Mar 11 11:11:07 xpsserver.freeipa.lab krb5kdc[1225](info): closing down fd 11
Mar 11 11:11:07 xpsserver.freeipa.lab krb5kdc[1225](info): AS_REQ (8 etypes 
{aes256-cts-hmac-sha1-96(18), aes128-cts-hmac-sha1-96(17), 
aes256-cts-hmac-sha384-192(20), aes128-cts-hmac-sha256-128(19), 
UNSUPPORTED:des3-hmac-sha1(16), DEPRECATED:arcfour-hmac(23), 
camellia128-cts-cmac(25), camellia256-cts-cmac(26)}) 192.168.0.244: ISSUE: 
authtime 1615428667, etypes {rep=aes256-cts-hmac-sha1-96(18), 
tkt=aes256-cts-hmac-sha1-96(18), ses=aes256-cts-hmac-sha1-96(18)}, 
[email protected] for krbtgt/[email protected]
Mar 11 11:11:07 xpsserver.freeipa.lab krb5kdc[1225](info): closing down fd 11
Mar 11 11:11:07 xpsserver.freeipa.lab krb5kdc[1225](info): TGS_REQ (8 etypes 
{aes256-cts-hmac-sha1-96(18), aes128-cts-hmac-sha1-96(17), 
aes256-cts-hmac-sha384-192(20), aes128-cts-hmac-sha256-128(19), 
UNSUPPORTED:des3-hmac-sha1(16), DEPRECATED:arcfour-hmac(23), 
camellia128-cts-cmac(25), camellia256-cts-cmac(26)}) 192.168.0.244: ISSUE: 
authtime 1615428667, etypes {rep=aes256-cts-hmac-sha1-96(18), 
tkt=aes256-cts-hmac-sha1-96(18), ses=aes256-cts-hmac-sha1-96(18)}, 
[email protected] for host/[email protected]
Mar 11 11:11:07 xpsserver.freeipa.lab krb5kdc[1225](info): closing down fd 11
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]
Do not reply to spam on the list, report it: 
https://pagure.io/fedora-infrastructure

Reply via email to