[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Heimdal/MIT SASL/GSSAPI incompatibilities



Are other people seeing problems doing SASL/GSSAPI against OpenLDAP with 
Heimdal 1.0.1, when a MIT KDC is used?  I never had this problem with 
Heimdal 0.7.1.

The error I'm getting is:

SASL [conn=42] Failure: GSSAPI Error:  An unsupported mechanism was 
requested (unknown mech-code 0 for mech unknown)

This comes from line 193 in gss_display_status.c

Ticket cache: FILE:/tmp/krb5cc_500
Default principal: quanah@LAB.ZIMBRA.COM

Valid starting     Expires            Service principal
12/02/07 11:36:46  12/03/07 11:36:46  krbtgt/LAB.ZIMBRA.COM@LAB.ZIMBRA.COM
        Etype (skey, tkt): Triple DES cbc mode with HMAC/sha1, Triple DES 
cbc mode with HMAC/sha1
12/02/07 11:37:00  12/03/07 11:36:46 
ldap/freelancer.lab.zimbra.com@LAB.ZIMBRA.COM
        Etype (skey, tkt): Triple DES cbc mode with HMAC/sha1, Triple DES 
cbc mode with HMAC/sha1

--Quanah

--

Quanah Gibson-Mount
Principal Software Engineer
Zimbra, Inc
--------------------
Zimbra ::  the leader in open source messaging and collaboration