Regarding TS2938: Lion Server: AFP users unable to authenticate with Kerberos after upgrading.
Is this tech note also applicable to OSX 10.6.5 Server? We are having kerberos auth issues with some (but not all) AFP users and running the klist -kt command on the ODM returns the following (the Kerberos realm should be XSERVE4.PDC.DEPT)
Last - we actually have two separate parallel ODMs running in house - one OSX 10.4.11 server (as OD master to an offsite FTP server/OD replica, and a FileMaker 7 server) and the OSX 10.6.5 ODM (xserve4.pdc.dept) in support of the iMacs doing mobile accounts. Our desktops are all joined to xserve4.pdc.dept, but at least some of the Desktop Macs have somehow ended up in the wrong Kerberos realm (XSERVE2.PDC.DEPT) over time, possibly through user (keychain)
What is the best way to force these OSX 10.6.8 client iMacs back to the proper Kerberos realm? Unbinding and rebinding doesn't accomplish, so possibly part of the problem is user keychain-related?
Thanks for any ideas...
OSX Server, OS X Server, Kerberos, LKDC,OSX Server 10.6.5
This site contains user submitted content, comments and opinions and is for informational purposes only.
Apple disclaims any and all liability for the acts, omissions and conduct of any third parties in connection with or related to your use of the site.