On 6/17/2010 10:36 PM, 朱姣姣 wrote:
> hello,
> I am having problems when using Network Identity Manager and Openafs.
> When I try to obtain tokens for kerberos 5 and my AFS cell I get the
> kerberos TGT, but no AFS tokens.
> It gives me an error saying "Credentials could not be obtained for cell
> <cell name>". On the
> Kerberos KDC, I get this erro in the logs:
> Jun 05 20:06:03 bnu402 krb5kdc[2668](info): AS_REQ (7 etypes {18 17 16
> 23 1 3 2}) 202.112.88.244(88): ISSUE: authtime 1275783478, etypes
> {rep=16 tkt=16 ses=16}, [email protected]
> <mailto:[email protected]> for
> krbtgt/[email protected]
> <mailto:krbtgt/[email protected]>
> Jun 05 20:06:03 bnu402 krb5kdc[2668](info): TGS_REQ (1 etypes {1})
> 202.112.88.244(88): PROCESS_TGS: authtime 0, <unknown client>for
> afs/[email protected]
> <mailto:afs/[email protected]>, Ticket expired
> Jun 05 20:06:03 bnu402 krb5kdc[2668](info): TGS_REQ (1 etypes {1})
> 202.112.88.244(88): PROCESS_TGS: authtime 0, <unknown client>for
> afs/[email protected]
> <mailto:afs/[email protected]>, Ticket expired
>
>
> thanks a lot!If you are still having trouble, turn on logging within Network Identity Manager from the Options->General page. Those logs will show which operations NetIdMgr is attempting to perform and the results. Jeffrey Altman
smime.p7s
Description: S/MIME Cryptographic Signature
