[netatalk-admins] Netatalk and AuthMan on Solaris 2.6 with a Kerberos 5 KDC


Subject: [netatalk-admins] Netatalk and AuthMan on Solaris 2.6 with a Kerberos 5 KDC
From: Leonard J. Peirce (peirce@lab2.cc.wmich.edu)
Date: Mon Aug 09 1999 - 23:37:42 EDT


We're trying to use netatalk and AuthMan on Solaris 2.6 and attempting to
authenticate to a Kerberos 5 KDC. Everything (netatalk and AuthMan) builds
and installs fine. With AuthMan, we can get authenticated but when we try
to use the ticket to try to connect with AppleShare it fails.

Logs on our Kerberos KDC show:

   Aug 06 16:48:17 kdc1.wmich.edu krb5kdc[16466](info): PROCESS_V4:Initial ticket request Host: 141.218.44.115 User: "testuser" ""
   Aug 06 16:48:34 kdc1.wmich.edu krb5kdc[16466](info): PROCESS_V4:APPL Request testuser.@WMICH.EDU on 141.218.44.115 for afpserver.neta
   Aug 06 16:48:34 kdc1.wmich.edu krb5kdc[16466](Error): PROCESS_V4:UNKNOWN "afpserver" "neta"

Two things look weird/interesting:

   1) The second log entry shows testuser.@WMICH.EDU and has a period after
      the principal name but before the realm.

   2) Their is no realm appended at the end of the server principal
      (afpserver.neta instead of afpserver.neta@WMICH.EDU).
      
Someone told me that maybe the UAM was incompatible with the version of
AppleShare we're using. I'm no Mac expert so anything anyone can suggest
would, of course, be greatly appreciated.

--
Leonard J. Peirce                 Email:  leonard.peirce@wmich.edu
Western Michigan University
University Computing Services
Kalamazoo, MI  49008              Phone:  (616) 387-5469



This archive was generated by hypermail 2b28 : Sat Dec 18 1999 - 16:17:02 EST