Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

Open Directory User Log In Issues via VPN

We have a system where network account users can log in to the server network via VPN and then access their share points via AFP/SMB. On the desktops/laptops the system is perfectly functional, but on the iOS devices it is not. We use the app 'FileBrowser' in conjunction with VPN on the iphones/ipads in the office. Whenever a user tries to connect the app responds that the username and password are incorrect, but when we connect via AFP on VPN using a laptop, it works perfectly fine. I attach the Kerberos Server log below during the log in process on the iOS device:


2012-09-17T13:08:56 label: default

2012-09-17T13:08:56 dbname: od:/Local/Default

2012-09-17T13:08:56 mkey_file: /var/db/krb5kdc/m-key

2012-09-17T13:08:56 acl_file: /var/db/krb5kdc/kadmind.acl

2012-09-17T13:08:56 digest-request: uid=0

2012-09-17T13:08:56 digest-request: init request

2012-09-17T13:08:56 digest-request: init return domain: BUILTIN server: SERVER

2012-09-17T13:08:56 digest-request: uid=0

2012-09-17T13:08:56 digest-request: init request

2012-09-17T13:08:56 digest-request: init return domain: BUILTIN server: SERVER

2012-09-17T13:08:56 digest-request: uid=0

2012-09-17T13:08:56 digest-request: user=\\Paul

2012-09-17T13:08:56 NTLM domain not configured

2012-09-17T13:08:56 digest-request: kdc failed with 36150275 proto=unknown

2012-09-17T13:08:56 digest-request: guest failed with 22 proto=ntlmv2

2012-09-17T13:08:56 digest-request: uid=0

2012-09-17T13:08:56 digest-request: init request

2012-09-17T13:08:56 digest-request: init return domain: BUILTIN server: SERVER

2012-09-17T13:08:56 digest-request: uid=0

2012-09-17T13:08:56 digest-request: init request

2012-09-17T13:08:56 digest-request: init return domain: BUILTIN server: SERVER

2012-09-17T13:08:56 digest-request: uid=0

2012-09-17T13:08:56 digest-request: user=\\Paul

2012-09-17T13:08:56 NTLM domain not configured

2012-09-17T13:08:56 digest-request: kdc failed with 36150275 proto=unknown

2012-09-17T13:08:56 digest-request: guest failed with 22 proto=ntlmv1-with-v2-session

2012-09-17T13:10:11 AS-REQ server.speirhunter.private$@SERVER.SPEIRHUNTER.PRIVATE from 127.0.0.1:52422 for krbtgt/SERVER.SPEIRHUNTER.PRIVATE@SERVER.SPEIRHUNTER.PRIVATE

2012-09-17T13:10:11 AS-REQ server.speirhunter.private$@SERVER.SPEIRHUNTER.PRIVATE from 127.0.0.1:52422 for krbtgt/SERVER.SPEIRHUNTER.PRIVATE@SERVER.SPEIRHUNTER.PRIVATE

2012-09-17T13:10:11 No preauth found, returning PREAUTH-REQUIRED -- server.speirhunter.private$@SERVER.SPEIRHUNTER.PRIVATE

2012-09-17T13:10:11 AS-REQ server.speirhunter.private$@SERVER.SPEIRHUNTER.PRIVATE from 127.0.0.1:57198 for krbtgt/SERVER.SPEIRHUNTER.PRIVATE@SERVER.SPEIRHUNTER.PRIVATE

2012-09-17T13:10:11 AS-REQ server.speirhunter.private$@SERVER.SPEIRHUNTER.PRIVATE from 127.0.0.1:57198 for krbtgt/SERVER.SPEIRHUNTER.PRIVATE@SERVER.SPEIRHUNTER.PRIVATE

2012-09-17T13:10:11 Client sent patypes: encrypted-timestamp

2012-09-17T13:10:11 Client supported enctypes: aes256-cts-hmac-sha1-96, aes128-cts-hmac-sha1-96, des3-cbc-sha1, arcfour-hmac-md5, using aes256-cts-hmac-sha1-96/aes256-cts-hmac-sha1-96

2012-09-17T13:10:11 Requested flags: forwardable

2012-09-17T13:10:11 TGS-REQ server.speirhunter.private$@SERVER.SPEIRHUNTER.PRIVATE from 127.0.0.1:64186 for host/server.speirhunter.private@SERVER.SPEIRHUNTER.PRIVATE [canonicalize]

2012-09-17T13:10:11 TGS-REQ server.speirhunter.private$@SERVER.SPEIRHUNTER.PRIVATE from 127.0.0.1:50155 for ldap/server.speirhunter.private@SERVER.SPEIRHUNTER.PRIVATE [canonicalize]

MAC OS X LION SERVER-OTHER, Mac OS X (10.7.4)

Posted on Sep 17, 2012 5:18 AM

Reply
1 reply

Open Directory User Log In Issues via VPN

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple ID.