Hi Kevin,

I am facing a problem and would like to get suggestion from you regarding it .

My seniors had come up with a kerberos client which took the reference from krb5-1.2.2, which was with out PKINIT support and they had added the PKINIT support for it. I have no contact with them , I have no idea what server they had used. But, now that the krb5-1.6.3 supports PKINIT, I am trying to use it as Server . My client works without PKINIT, but with PKINIT support the server (krb5-1.6.3) is not able to decode AS_REQ packet and the kdc log says
preauth (pkinit) verify failure: ASN.1 identifier doesn't match expected value.

I tested the AS_REQ with the tool dumpasn1.c, I found no problem in pkinit asn1 
dump.

Kindly help me in solving this problem
Thank you

naveen





This e-mail contains PRIVILEGED AND CONFIDENTIAL INFORMATION intended solely 
for the use of the addressee(s). If you are not the intended recipient, please 
notify the sender by e-mail and delete the original message.Global Edge 
Software Ltd has taken every reasonable precaution to minimize this risk, but 
is not liable for any damage you may sustain as a result of any virus in this 
e-mail. You should carry out your own virus checks before opening the e-mail or 
attachment. Global Edge Software Ltd reserves the right to monitor and review 
the content of all messages sent to or from this e-mail address
________________________________________________
Kerberos mailing list           [email protected]
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to