[24806] in Kerberos

home help back first fref pref prev next nref lref last post

No subject found in mail header

daemon@ATHENA.MIT.EDU (viswanadha, kamakshi)
Fri Oct 7 14:24:56 2005

Message-ID: <759A0BEC1CF75A43B72C9E94ACB19BECE3238D@srgriese-bkp.lss.emc.com>
From: "viswanadha, kamakshi" <viswanadha_kamakshi@emc.com>
To: "'kerberos@mit.edu'" <kerberos@mit.edu>
Date: Fri, 7 Oct 2005 10:54:36 -0400 
MIME-Version: 1.0
Content-Type: text/plain;
	charset="iso-8859-1"
Errors-To: kerberos-bounces@mit.edu

Hi !

I don't know, posting my question here appropriate or no.

I have a issue with Microsoft client using kerberos authentication.

 When I am testing ipsec with windows client.

During Phase1 negotiation of ipsec kerberos authentication is used.(We are
following the RFC A GSS-API Authentication Method for IKE)

1st every thing works fine .SAs get established.

Later when our server's password gets changed, ipsec negotiation fails.
Because windows client is still using the old ticket for our server.

Accept_sec_context at our server fails with error  "KRB5KRB_AP_ERR_MODIFIED"

Any help is appreciated.

Thanks & Regards.
kamakshi.
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post