rpc.svcgssd: ERROR: GSS-API

Ahmed Ahmed itngsse at yahoo.com
Tue Aug 8 11:39:20 EDT 2006


Hello,

I was trying to configure kerberised NFS4 but no success, I need help from any body running NFS4 with kerberos.  This is may situation:

1. I am using windowns 2003 server as KDC.

2. Created krb5.keytab for the NFS sever (nfs4srv.nfs4.co.uk) and copied to NFS sever (nfs4srv.nfs4.co.uk) and and client (nfs4clnt.nfs4.co.uk).

3. kinit -k nfs/nfs4srv.nfs4.co.uk is working with no error both server and client.

4. mount -t nfs4 -o sec=krb5 nfs4srv.nfs4.co.uk:/export/home /mnt/krb5

#mount: block device nfs4srv.nfs4.co.uk:/export/home is write-protected, mounting read-only
mount: cannot mount block device nfs4srv.nfs4.co.uk:/export/home read-only

5. On the server 

Aug  8 15:20:21 sir164d rpc.svcgssd[28435]: WARNING: gss_accept_sec_context failed
Aug  8 15:20:21 sir164d rpc.svcgssd[28435]: ERROR: GSS-API: error in handle_nullreq: gss_accept_sec_context(): Miscellaneous failure - Key table entry not found
Aug  8 15:20:21 sir164d rpc.svcgssd[28435]: sending null reply
Aug  8 15:20:21 sir164d rpc.svcgssd[28435]:
Aug  8 15:20:21 sir164d rpc.svcgssd[28435]: WARNING: failed to write message
Aug  8 15:20:21 sir164d rpc.svcgssd[28435]: finished handling null request
Aug  8 15:20:21 sir164d rpc.svcgssd[28435]: entering poll

6. On both server and cleint

 ~]# klist -e -k -t /etc/krb5.keytab

Keytab name: FILE:/etc/krb5.keytab
KVNO Timestamp         Principal
---- ----------------- --------------------------------------------------------
   3 08/08/06 15:08:38 nfs/nfs4srv.nfs4.co.uk at TEST.NFS4.CO.UK (DES cbc mode with CRC-32)

I have tried almost all options so please any Ideas?!!!!

Ahmed

 		
---------------------------------
Do you Yahoo!?
 Get on board. You're invited to try the new Yahoo! Mail Beta.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://linux-nfs.org/pipermail/nfsv4/attachments/20060808/cfea386e/attachment.htm


More information about the NFSv4 mailing list