[39086] in Kerberos

home help back first fref pref prev next nref lref last post

Server settings from /etc/krb5.conf used despite KRB5_CONFIG set

daemon@ATHENA.MIT.EDU (Andrej Mikus)
Mon May 9 15:08:06 2022

Date: Mon, 9 May 2022 21:03:46 +0200
From: Andrej Mikus <a-krb5user@mikus.sk>
To: <kerberos@mit.edu>
Message-ID: <20220509190346.GA1253591@mikus.sk>
MIME-Version: 1.0
Content-Disposition: inline
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hi,

I would like to request comment/suggestion for a problem that resembles
https://stackoverflow.com/questions/33132768/kerberos-still-using-default-etc-krb5-conf-file-even-after-setting-krb5-config

As a linux user, I am trying to access IIS website protected by
Kerberos. Linux is managed by different team than AD, both are using
their own Kerberos servers, and for some reason they use equal
domain/realm name.

I am pointing KRB5_CONFIG to a file with correct KDC address/name, but
kinit always refers to the IP specified in /etc/krb5.conf.

It is my understanding that setting environment variable overrides any
use of files in /etc, also the test scripts in the code distribution
suggest this.

The environment variable and authentication works well when using
a system that refers to in a different Linux domain in /etc/krb5.conf so
for now I can access the AD from there. Still would like to understand
what is going on on the other Linux system.

krb5-libs.x86_64 krb5-workstation.x86_64 1.18.2-14.el8 from RHEL8

Regards
Andrej
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post