[20372] in Kerberos_V5_Development
Re: [External] : Re: ConstrainedDelegation and MSLSA
daemon@ATHENA.MIT.EDU (Scot McKinley)
Wed Jun 8 10:46:03 2022
Message-ID: <9cf91efb-44b8-349e-8c6e-c604390ed271@oracle.com>
Date: Wed, 8 Jun 2022 05:26:16 -0700
Content-Language: en-US
To: Greg Hudson <ghudson@mit.edu>, krbdev@mit.edu
From: Scot McKinley <scot.mckinley@oracle.com>
In-Reply-To: <da84f368-c115-cca5-2f4e-2e78f43e6b54@mit.edu>
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"; Format="flowed"
Errors-To: krbdev-bounces@mit.edu
Content-Transfer-Encoding: 8bit
Thanks Greg. That helps actually, since i thought it was a more generic
credential acquisition problem.
Thanks, Scot
On 6/7/2022 9:31 PM, Greg Hudson wrote:
> On 6/6/22 14:28, Scot McKinley wrote:
>> Hi all, we are experiencing a problem in using MIT KerberosForWindow's
>> (KfW) MSLSA in conjunction with ConstrainedDelegation. We are receiving
>> the generic error:
>>
>> krb5_cc_get_principal(clt) failure (-1765328243)
> This is KRB5_CC_NOTFOUND, "Matching credential not found".
>
> You can set the environment variable KRB5_TRACE to a filename to
> hopefully find out what principal the library is looking for in the cache.
_______________________________________________
krbdev mailing list krbdev@mit.edu
https://mailman.mit.edu/mailman/listinfo/krbdev