Hi,

i want to migrate my old Server System to a new environment. The Posix
Users+Groups are migrated from the old LDAP system to the new FreeIPA
LDAP system.

I have the following situation:

old server:
========

MIT Kerberos 5  - Realm A
OpenLDAP without Kerberos schemata
OpenAFS Server 1.6 - with the "AFS CELL"

Cross Realm krbtgt`s:
krbtgt/RealmA@RealmB
krbtgt/RealmB@RealmA

new server:
========

FreeIPA 3.3
Realm B

Cross Realm krbtgt`s:
krbtgt/RealmA@RealmB
krbtgt/RealmB@RealmA

Service principals:
afs/"FQDN of the old Server with AFS server daemon"@Realm B

Host principals:
FQDN new Server with FreeIPA
FQDN new PC Testclient
FQDN old Server with AFS server daemon



new PC Testclient:
===========

Ubuntu 14

I could login as user, get a shell and a tgt. The afs client is running.

The clients CellServDB points to the "AFS CELL" and AFS server on the
old server system.

An aklog -d shows the message:

Authenticating to cell "AFS CELL" (server "THE OLD SERVER").
Trying to authenticate to user's realm REALM B
Getting tickets: afs/"AFS CELL"@REALM B
Kerberos error code returned by get_cred : -1765328370
aklog: Couldn't get "AFS CELL" AFS tickets:
aklog: unknown RPC error (-1765328370) while getting AFS tickets


i cant find a information about the RPC error number. I hope you could
help me.

cheers and thx,
Andreas

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to