[OpenAFS] Help: aklog cannot work properly

Lee Eric openlinuxsource@gmail.com
Wed, 1 Jun 2011 21:41:47 +0800


Thanks mates. I have fixed those problem properly.

Regards,

Eric

On Wed, Jun 1, 2011 at 9:00 PM, Jeffrey Altman
<jaltman@secure-endpoints.com> wrote:
> On 6/1/2011 1:03 AM, Lee Eric wrote:
>> Hi,
>>
>> It seems aklog cannot work well in my server.
>>
>>
>> [root@server ~]# klist
>> Ticket cache: FILE:/tmp/krb5cc_0
>> Default principal: admin@HERDINGCAT.INTERNAL
>>
>> Valid starting =A0 =A0 Expires =A0 =A0 =A0 =A0 =A0 =A0Service principal
>> 06/01/11 00:55:12 =A006/02/11 00:55:10
>> krbtgt/HERDINGCAT.INTERNAL@HERDINGCAT.INTERNAL
>> =A0 =A0 =A0 renew until 06/01/11 00:55:12
>> [root@server ~]# aklog -d -c herdingcat.internal
>> Authenticating to cell herdingcat.internal (server server.herdingcat.int=
ernal).
>> Trying to authenticate to user's realm HERDINGCAT.INTERNAL.
>> Getting tickets: afs/herdingcat.internal@HERDINGCAT.INTERNAL
>> Kerberos error code returned by get_cred : -1765328370
>
> -1765328370 =3D KDC has no support for encryption type
>
> In other words, your KDC has support for DES-CBC-CRC turned off.
> Re-enable support for DES encryption types and you will get further.
>
> Jeffrey Altman
>
>