我正在使用kerberos进行SASL身份验证的openLDAP.
我遇到了这个身份验证的问题.
我遇到了这个身份验证的问题.
首先,我用kinit获得kerberos票.当我制作一个klist时,会显示该票证.所以,没问题.
但是当我试图制作ldapwhoami时.我收到一个错误:
[hue@sandBox ~]$kdestroy [hue@sandBox ~]$kinit vishnu Password for vishnu@MORTO.COM: [hue@sandBox ~]$klist Ticket cache: _FILE:/tmp/krb5cc_1007 Default principal: vishnu@MORTO.COM Valid starting Expires Service principal 05/29/14 06:42:52 05/29/14 16:42:52 krbtgt/MORTO.COM@MORTO.COM renew until 06/05/14 06:42:48 05/29/14 06:42:57 05/29/14 16:42:52 ldap/morto.com@MORTO.COM renew until 06/05/14 06:42:48 [hue@sandBox ~]$ldapwhoami SASL/GSSAPI authentication started ldap_sasl_interactive_bind_s: Other (e.g.,implementation specific) error (80) additional info: SASL(-1): generic failure: GSSAPI Error: Unspecified GSS failure. Minor code may provide more information ()
我不知道在哪里搜索.
请帮我.