Version: 1.14I'm attempting to cache some impersonated credentials by using gss_store_cred with the output cred from gss_acquire_cred_impersonate_name.I see the credential via klist after my program runs.
See the user1 cred. gss_store_cred also seems to store the krbtgt again too.Ticket cache: FILE:/tmp/krb5cc_500 Default principal: host/[email protected] Valid starting Expires Service principal 09/19/2015 14:46:39 09/20/2015 00:46:39 krbtgt/[email protected] renew until 09/26/2015 14:46:39 09/19/2015 14:46:39 09/20/2015 00:46:39 HTTP/[email protected] renew until 09/26/2015 14:46:39 09/19/2015 14:46:39 09/20/2015 00:46:39 host/[email protected] for client [email protected], renew until 09/26/2015 14:46:39 09/19/2015 14:46:39 09/20/2015 00:46:39 krbtgt/[email protected] renew until 09/26/2015 14:46:39 When my program runs again I assume gss_acquire_cred_impersonate_name will retrieve the cached cred as the trace seems to show.env KRB5_TRACE=/dev/stdout ./GSSAPIMemory [11305] 1442692131.574904: Retrieving host/[email protected] from FILE:/etc/krb5.keytab (vno 0, enctype 0) with result: 0/Success gss_acquire_cred: { 1 2 840 113554 1 2 2 } [11305] 1442692131.575507: Getting credentials [email protected] -> host/[email protected] using ccache FILE:/tmp/krb5cc_500 [11305] 1442692131.575587: Retrieving [email protected] -> host/[email protected] from FILE:/tmp/krb5cc_500 with result: 0/Success cleanup Major gss_acquire_cred_impersonate_name:851968 - Unspecified GSS failure. Minor code may provide more information Minor gss_acquire_cred_impersonate_name:-2045022969 - Credential usage type is unknown But the call seems to error out as shown. I am using GSS_C_INITIATE as the usage type.Am I missing something? ________________________________________________ Kerberos mailing list [email protected] https://mailman.mit.edu/mailman/listinfo/kerberos
