[31668] in Kerberos

home help back first fref pref prev next nref lref last post

ktpass fails to create a service principal (win 2000 server SP4)

daemon@ATHENA.MIT.EDU (Julien Montmartin)
Tue Nov 10 11:56:18 2009

MIME-Version: 1.0
Date: Tue, 10 Nov 2009 17:55:42 +0100
Message-ID: <a27fd8fe0911100855g4b4fa82dk75b5770b4cc2b56c@mail.gmail.com>
From: Julien Montmartin <jmontmartin@gmail.com>
To: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hi List,

I'm working on a kerberized application server and I have some trouble when
I try to generate the keytab with ktpass... Although evrything works nicely
for demo in the lab, it fails in real world !

Here the command I use (windows 2000 server SP4)  :

ktpass -ptype KRB5_NT_PRINCIPAL -princ HTTP/
myComputer.private.myCompagnie.com@PRIVATE.MYCOMPAGNIE.COM -mapuser
testUser@private.myCompagnie.com -pass xyz -out C:\temp\keytab
Failed to get DN from search result: 0X80070057
Failed to locate user "(samAccountName=testUser@private.myCompagnie.com)".
Failed to retrieve user info for testUser@private.myCompagnie.com: 0x8ad.
Aborted.

testUser is a brand new user created for the service. Are there any traps
when you create new users in AD ? (I'm a beginner with AD). Any idea or
pointer to investigate this error ?

Thanks,

Julien
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post