ldap/localhost@MYSERVER.COM, Server not found in Kerberos

How is this errormessage to be understand?<Aug 18 11:28:18 server.wdn.com krb5kdc[118](info): TGS_REQ (7 etypes {18 17 16 23 1 3 2}) 192.168.1.7: UNKNOWN_SERVER: authtime 1124357298, diradmin@SERVER.WDN.COM for ldap/localhost@SERVER.WDN.COM, Server not found in Kerberos database>
It seems that the ldap directory cant't be found in the Kerberos Realm. But Kerberos is up and running. The Error Message gets generated whenever i open Workgroupmanager and Login to the LDAP Directory.

Can anybody shed some Light on this one?

Posted on Aug 18, 2005 9:11 AM

Reply
23 replies

Nov 16, 2005 12:25 PM in response to Leland Wallace

I am having this same problem in my logs, possibly related to a crash I had with a server acting as both PDC and OD Master. When I tried entering the commands you gave above, I get an error:

gondor:/var/db/authserver root# sso_util configure -r GONDOR.BBCMPLS.ORG -a diradmin -p ***** -v 1 all
su: ****: event not found

The password begins with an ! character, is that important?

Thanks in advance,
Andy

Dec 22, 2005 11:36 PM in response to Leland Wallace

Leland,

Can I just say that...

uDaMaaaaaNNNNN!!!!!

I was having the EXACT same issues as Thomas, even after a clean install of the server and a perfectly resolving DNS under standalong before promoting to OD Master.

Had same omission of the ldap principal, same errors when doing the command line suggestions, and notwithstanding the errors did have 3 ldap entries in the klist -k.

I'm crossing my fingers, but it looks like you REALLY helped me out...

XServe Mac OS X (10.4.3)

Feb 24, 2006 2:10 AM in response to Leland Wallace

I'm having the same trouble - Server Not Found in Kerberos Database errors. I tried running the sso_util configure command with the 'all' target. Instead of server.company.com (which is what the DNS should return), it set itself up as:

ldap/12-34-56-78.static.dsl.isp.com@SERVER.COMPANY.COM

It's obviously picking up the wrong hostname from somewhere - the one assigned by my ISP rather than by my own DNS server - but where could this be coming from? (And, more importantly, how do I change it?)

Feb 26, 2006 5:00 PM in response to Leland Wallace

Leland, you saved our butts with this post.

We had just rebuilt our OD server from scratch, reimported the users... and they didn't show up in listprincs. So we did a slapconfig -kerberize and that added all our users... BUT all our services were then gone. So we recalled this post, typed these two (not really knowing what the heck they do), and... WOO HOO!

Can you please e-mail me offlist with your address so I can send you a six pack? (No, really.)

Thanks again. Thanks a billion.

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

ldap/localhost@MYSERVER.COM, Server not found in Kerberos

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.