From: Quanah Gibson-M. <qu...@st...> - 2002-11-07 15:04:40
|
--On Thursday, November 07, 2002 5:58 AM -0800 Quanah Gibson-Mount <qu...@St...> wrote: > > > --On Thursday, November 07, 2002 1:44 AM -0600 "Gerald (Jerry) Carter" > <je...@sa...> wrote: > >> -----BEGIN PGP SIGNED MESSAGE----- >> Hash: SHA1 >> >> On Tue, 5 Nov 2002, Quanah Gibson-Mount wrote: >> >>> has _anyone_ gotten GSSAPI with Cyrus-SASL to work with the Net::LDAP, >>> Authen::SASL, and Authen::SASL::Cyrus modules to work? There seems to >>> be something seriously broken in the current implementation somewhere >>> between Net::LDAP and Authen::SASL when working with the >>> Authen::SASL:Cyrus & its security properties. >>> >>> All I ever get is the error: >>> >>> SASL(-13): authentication failure: GSSAPI Failure: >>> gss_accept_sec_context at ./sasl2.pl line 11. >>> >>> Using perl-ldap 0.26 >>> Authen-SASL-2.02 >>> Authen-SASL-Cyrus-0.05 >> >> Did you run kinit first ? > > Yes, and I have a valid K5 ticket. Using ldapsearch with GSSAPI I can > bind to my openldap servers without problem. One other quick note -- It gets far enough along in the exchange to get an ldap/<host> tgt. --Quanah -- Quanah Gibson-Mount Senior Systems Administrator ITSS/TSS/Computing Systems Stanford University GnuPG Public Key: http://www.stanford.edu/~quanah/pgp.html |