[31713] in Kerberos

home help back first fref pref prev next nref lref last post

Re: MIT kinit with AD userPrincipalName with SMTP domain and not

daemon@ATHENA.MIT.EDU (Luke Howard)
Sat Nov 21 05:44:56 2009

Mime-Version: 1.0 (Apple Message framework v1076)
From: Luke Howard <lukeh@padl.com>
In-Reply-To: <78c6bd860911201648p6b1982c6rd47f9239406aa7a8@mail.gmail.com>
Date: Sat, 21 Nov 2009 11:44:13 +0100
Message-Id: <B8F262DF-7D50-4904-A928-4C0DDB51036B@padl.com>
To: Michael B Allen <ioplex@gmail.com>
Cc: kerberos <kerberos@mit.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

> Meaning if I have a realm EXAMPLE.LOCAL and an SMTP domain EXAMPLE.COM
> and userPrincipalName attributes on accounts in AD use the SMTP domain
> like alice@EXAMPLE.COM can initial credentials be acquired?
>
> If I try kinit I get:
>
>  $ kinit -f alice@EXAMPLE.COM
>  kinit(v5): Cannot resolve network address for KDC in realm
> EXAMPLE.COM while getting initial credentials

kinit -E -f alice@example.com@EXAMPLE.LOCAL

NB: if this doesn't work in 1.7, try trunk, I think it may have been  
broken in 1.7.

-- Luke
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post