KDC has no support for encryption type?

Ken Cross kcross at nssolutions.com
Tue Jul 15 14:23:39 GMT 2003


Samba-folk:

I'm getting these messages from "net ads join -U x%x":


 [2003/07/15 09:40:33, 3] libads/ldap.c:ads_server_info(1864)
   got ldap server name win1 at WIN1DOM.LOCAL, using bind path:
dc=WIN1DOM,dc=LOCAL
 [2003/07/15 09:40:33, 4] libads/ldap.c:ads_server_info(1870)
   time offset is 0 seconds
 [2003/07/15 09:40:33, 4] libads/sasl.c:ads_sasl_bind(415)
   Found SASL mechanism GSS-SPNEGO
 [2003/07/15 09:40:33, 3] libads/sasl.c:ads_sasl_spnego_bind(183)
   got OID=1 2 840 48018 1 2 2
 [2003/07/15 09:40:33, 3] libads/sasl.c:ads_sasl_spnego_bind(183)
   got OID=1 3 6 1 4 1 311 2 2 10
 [2003/07/15 09:40:33, 3] libads/sasl.c:ads_sasl_spnego_bind(190)
   got principal=win1$@WIN1DOM.LOCAL
 [2003/07/15 09:40:33, 1] libsmb/clikrb5.c:ads_krb5_mk_req(267)
   krb5_cc_get_principal failed (No credentials cache found)
 [2003/07/15 09:40:33, 0] libads/kerberos.c:ads_kinit_password(133)
   kerberos_kinit_password administrator at WIN1DOM.LOCAL failed: KDC has no
support for encryption type


I'm using MIT Kerberos 1.2.6 on NetBSD.  The server is Win2K SP4.

It worked fine in Samba 3.0 Alphas.  Winbindd is having no problems.

Any ideas?

Ken
________________________________

Ken Cross

Network Storage Solutions
Phone 865.675.4070 ext 31
kcross at nssolutions.com 




More information about the samba-technical mailing list