"Server unknown" error
Gilles
gilles at harfang.homelinux.org
Wed Feb 15 17:56:26 EST 2006
> >
> >I'm experimenting with Kerberos and LDAP, and I'm now
> >quite confused with the following error:
> >
> >$ ldapwhoami -H ldap://db -Y GSSAPI
> >SASL/GSSAPI authentication started
> >ldap_sasl_interactive_bind_s: Local error (-2)
> > additional info: SASL(-1): generic failure: GSSAPI Error:
> > Miscellaneous failure (see text) (Server
> > (ldap/db.harfang.homelinux.org at HARFANG.HOMELINUX.ORG) unknown)
> >
> >The fact is that I had created a "ldap/db.harfang.homelinux.org"
> >principal. And the above command had been working.
> >Subsequently, I removed that principal and created another one
> >named "db/db.harfang.homelinux.org".
>
> The "ldap" principal name is hardcoded for LDAP clients using GSSAPI, so
> deleting that principal is a mistake.
>
I suspected this all along, while wondering why it should be so,
and trying to find another reason for the behaviour...
Thanks a lot for clearing this up!
But, really, why is this so?
Thanks,
Gilles
More information about the Cyrus-sasl
mailing list