opensubscriber
   Find in this group all groups
 
Unknown more information…

k : kerberos@mit.edu 8 May 2012 • 3:16PM -0400

Re: Streamlining host principal keytab provisioning?
by Russ Allbery

REPLY TO AUTHOR
 
REPLY TO GROUP




Sebastian Galiano <Sebastian.Galiano@spil...> writes:

> Ok, I missunderstood with the KEYTAB_PRINCIPAL parameter, now I've
> changed for user@REALM which is the principal I gave permissions to.

It needs to be the principal for which you created a keytab that's stored
wherever $KEYTAB_FILE is pointing to.

> Just in case i renewed the ticket of user@realm and then:

> $wallet create keytab nfs/host.domain.org
> wallet: keytab object implementation not configured

Okay, you're back to remctl working again.

    if (not $Wallet::Config::KEYTAB_KRBTYPE) {
        die "keytab object implementation not configured\n";

    unless (defined ($Wallet::Config::KEYTAB_PRINCIPAL)
            and defined ($Wallet::Config::KEYTAB_FILE)
            and defined ($Wallet::Config::KEYTAB_REALM)) {
        die "keytab object implementation not configured\n";

One of those variables isn't actually set or isn't being loaded or
something.

--
Russ Allbery (rra@stan...)             <http://www.eyrie.org/~eagle/>
________________________________________________
Kerberos mailing list           Kerberos@mit....
https://mailman.mit.edu/mailman/listinfo/kerberos

Bookmark with:

Delicious   Digg   reddit   Facebook   StumbleUpon

Related Messages

opensubscriber is not affiliated with the authors of this message nor responsible for its content.