Want to highlight a helpful answer? Upvote!

Did someone help you, or did an answer or User Tip resolve your issue? Upvote by selecting the upvote arrow. Your feedback helps others! Learn more about when to upvote >

Looks like no one’s replied in a while. To start the conversation again, simply ask a new question.

Open Directory User Log In Issues via VPN

We have a system where network account users can log in to the server network via VPN and then access their share points via AFP/SMB. On the desktops/laptops the system is perfectly functional, but on the iOS devices it is not. We use the app 'FileBrowser' in conjunction with VPN on the iphones/ipads in the office. Whenever a user tries to connect the app responds that the username and password are incorrect, but when we connect via AFP on VPN using a laptop, it works perfectly fine. I attach the Kerberos Server log below during the log in process on the iOS device:


2012-09-17T13:08:56 label: default

2012-09-17T13:08:56 dbname: od:/Local/Default

2012-09-17T13:08:56 mkey_file: /var/db/krb5kdc/m-key

2012-09-17T13:08:56 acl_file: /var/db/krb5kdc/kadmind.acl

2012-09-17T13:08:56 digest-request: uid=0

2012-09-17T13:08:56 digest-request: init request

2012-09-17T13:08:56 digest-request: init return domain: BUILTIN server: SERVER

2012-09-17T13:08:56 digest-request: uid=0

2012-09-17T13:08:56 digest-request: init request

2012-09-17T13:08:56 digest-request: init return domain: BUILTIN server: SERVER

2012-09-17T13:08:56 digest-request: uid=0

2012-09-17T13:08:56 digest-request: user=\\Paul

2012-09-17T13:08:56 NTLM domain not configured

2012-09-17T13:08:56 digest-request: kdc failed with 36150275 proto=unknown

2012-09-17T13:08:56 digest-request: guest failed with 22 proto=ntlmv2

2012-09-17T13:08:56 digest-request: uid=0

2012-09-17T13:08:56 digest-request: init request

2012-09-17T13:08:56 digest-request: init return domain: BUILTIN server: SERVER

2012-09-17T13:08:56 digest-request: uid=0

2012-09-17T13:08:56 digest-request: init request

2012-09-17T13:08:56 digest-request: init return domain: BUILTIN server: SERVER

2012-09-17T13:08:56 digest-request: uid=0

2012-09-17T13:08:56 digest-request: user=\\Paul

2012-09-17T13:08:56 NTLM domain not configured

2012-09-17T13:08:56 digest-request: kdc failed with 36150275 proto=unknown

2012-09-17T13:08:56 digest-request: guest failed with 22 proto=ntlmv1-with-v2-session

2012-09-17T13:10:11 AS-REQ server.speirhunter.private$@SERVER.SPEIRHUNTER.PRIVATE from 127.0.0.1:52422 for krbtgt/SERVER.SPEIRHUNTER.PRIVATE@SERVER.SPEIRHUNTER.PRIVATE

2012-09-17T13:10:11 AS-REQ server.speirhunter.private$@SERVER.SPEIRHUNTER.PRIVATE from 127.0.0.1:52422 for krbtgt/SERVER.SPEIRHUNTER.PRIVATE@SERVER.SPEIRHUNTER.PRIVATE

2012-09-17T13:10:11 No preauth found, returning PREAUTH-REQUIRED -- server.speirhunter.private$@SERVER.SPEIRHUNTER.PRIVATE

2012-09-17T13:10:11 AS-REQ server.speirhunter.private$@SERVER.SPEIRHUNTER.PRIVATE from 127.0.0.1:57198 for krbtgt/SERVER.SPEIRHUNTER.PRIVATE@SERVER.SPEIRHUNTER.PRIVATE

2012-09-17T13:10:11 AS-REQ server.speirhunter.private$@SERVER.SPEIRHUNTER.PRIVATE from 127.0.0.1:57198 for krbtgt/SERVER.SPEIRHUNTER.PRIVATE@SERVER.SPEIRHUNTER.PRIVATE

2012-09-17T13:10:11 Client sent patypes: encrypted-timestamp

2012-09-17T13:10:11 Client supported enctypes: aes256-cts-hmac-sha1-96, aes128-cts-hmac-sha1-96, des3-cbc-sha1, arcfour-hmac-md5, using aes256-cts-hmac-sha1-96/aes256-cts-hmac-sha1-96

2012-09-17T13:10:11 Requested flags: forwardable

2012-09-17T13:10:11 TGS-REQ server.speirhunter.private$@SERVER.SPEIRHUNTER.PRIVATE from 127.0.0.1:64186 for host/server.speirhunter.private@SERVER.SPEIRHUNTER.PRIVATE [canonicalize]

2012-09-17T13:10:11 TGS-REQ server.speirhunter.private$@SERVER.SPEIRHUNTER.PRIVATE from 127.0.0.1:50155 for ldap/server.speirhunter.private@SERVER.SPEIRHUNTER.PRIVATE [canonicalize]

MAC OS X LION SERVER-OTHER, Mac OS X (10.7.4)

Posted on Sep 17, 2012 5:18 AM

Reply
1 reply

Open Directory User Log In Issues via VPN

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple ID.