Hi There,

I'm setting up a test kerberos/afs realm and I'm having a problem with
kadmin. kadmin and kadmin.local run fine from the kdc, but kadmin gives
the folloowing error when run from another machine:
kadmin: GSS-API (or Kerberos) error while initializing kadmin interface

The krbadm log shows no output, but kadmin.log  on the kdc shows the
following:
Oct 11 23:15:02 kdc1 kadmind[3821](Notice): Request: kadm5_init,
coeadmin/[EMAIL PROTECTED], success, client=coeadmin/[EMAIL PROTECTED],
service=kadmin/[EMAIL PROTECTED], addr=x.x.x.191, flavor=300001

I can kinit and everything else from the client, I just can't run
kadmin.

both client and server are RHEL4 with MIT krb5-1.5.1. compiled from
source. I get the same error using RedHat's kadmin and the
source-compiled one.
kdc1 is the server and as1 is the client

# on kdc
kadmin:  listprincs
K/[EMAIL PROTECTED]
coeadmin/[EMAIL PROTECTED]
host/[EMAIL PROTECTED]
host/[EMAIL PROTECTED]
kadmin/[EMAIL PROTECTED]
kadmin/[EMAIL PROTECTED]
kadmin/[EMAIL PROTECTED]
kadmin/[EMAIL PROTECTED]
krbtgt/[EMAIL PROTECTED]

I had fixed a previous error about not having kadmin/kdc.myrealm.com in
the DB by adding the service principal. Now I have no errors in any of
the logs, just an error on the console when I run kadmin

What am I missing?

Jason Edgecombe
Solaris & Linux Administrator
Mosaic Computing Group, College of Engineering
UNC-Charlotte
Phone: (704) 687-3514
 

________________________________________________
Kerberos mailing list           [email protected]
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to