[OpenAFS] Cannot obtain a token from AFS-Client on Debian and WinXP

Charles Clancy security@xauth.net
Sun, 5 Jan 2003 15:39:18 -0600 (CST)


On Sun, 5 Jan 2003, Thomas Grieder wrote:

> On Sunday 05 January 2003 18:53, Charles Clancy wrote:
> >
> > What's the output of "aklog -d" in each case?
> >
>
> Authenticating to cell afs.cell (server server.network.local).
> We've deduced that we need to authenticate to realm AFS.CELL.
> Getting tickets: afs/afs.cell@AFS.CELL
> Kerberos error code returned by get_cred: -1765328377
> aklog: Couldn't get afs.cell AFS tickets:
> aklog: Server not found in Kerberos database while getting AFS tickets

Did you create the afs/afs.cell@AFS.CELL principal in your KDC, and do the
whole key synchronization thing?  You may have instead created an
afs@AFS.CELL principal (depending on whose directions you were following)
and your less intelligent version of aklog that doesn't check for both
afs@AFS.CELL and afs/afs.cell@AFS.CELL.

Did you create either of the AFS principals in your Kerberos realm?

[ t charles clancy ]--[ tclancy@uiuc.edu ]--[ www.uiuc.edu/~tclancy ]