Hi, In both case i have this result :
Search Subject for Kerberos V5 INIT cred (<<DEF>>, sun.security.jgss.krb5.Krb5InitCredential) No Subject >>>KinitOptions cache name is KEYRING:persistent:1703201155 Kerberos username [lsc]: Regards ____________________________________________________________________ Sébastien Bourles Intégrateur de solution | CSD Capgemini FRANCE | Cesson-Sévigné Tel.: +33 2 99 27 82 23 www.capgemini.com 7 Rue Claude Chappe, Rennes Atalante Champs Blancs _______________________________________________________________________ Connect with Capgemini: Please consider the environment and do not print this email unless absolutely necessary. Capgemini encourages environmental awareness. -----Message d'origine----- De : lsc-users <lsc-users-boun...@lists.lsc-project.org> De la part de Soisik Froger Envoyé : mardi 21 janvier 2020 11:57 À : lsc-users@lists.lsc-project.org Objet : Re: [lsc-users] Kerberos authentification On 21/01/2020 11:06, BOURLES, Sebastien wrote: > On the VM where the synchronisation is ok, the token information is in a > temporary file /tmp/krb5cc… > > On the other, the kerberos use the keyring process and LSC does not find the > token information. > > > > Does LSC support the keyring process ? Is there documentation which explain > how LSC get the token information ? > > > > Regards, > Hi, Did you try to set the debug options -Dsun.security.jgss.debug=true -Dsun.security.krb5.debug=true to see if you get additional debug messages ? Do you still have the problem if you start LSC with root user and/or with lsc user ? Regards -- Soisik Froger | Software Architect soisik.fro...@worteks.com Worteks | https://www.worteks.com _______________________________________________________________ Ldap Synchronization Connector (LSC) - http://lsc-project.org lsc-users mailing list lsc-users@lists.lsc-project.org https://lists.lsc-project.org/cgi-bin/mailman/listinfo/lsc-users This message contains information that may be privileged or confidential and is the property of the Capgemini Group. It is intended only for the person to whom it is addressed. If you are not the intended recipient, you are not authorized to read, print, retain, copy, disseminate, distribute, or use this message or any part thereof. If you receive this message in error, please notify the sender immediately and delete all copies of this message. _______________________________________________________________ Ldap Synchronization Connector (LSC) - http://lsc-project.org lsc-users mailing list lsc-users@lists.lsc-project.org https://lists.lsc-project.org/cgi-bin/mailman/listinfo/lsc-users