Forum Discussion
Kerberos: can't get TGT for HOST/abc@abc.com - Realm not local to KDC
Thanks for the helpful checklist. I have verified all settings and had to change the UPN setting as we also use it for exchange.
Once that was done now i get SU4 -> OK However what i got further is GSSAPI Init_sec_context returned code 0 GSSAPI token of length 4759 bytes will be sent back
So i have changed the send authorization to = On 401 Status code once that was done the matter even got worse
ssoMethod: kerberos usernameSource: session.logon.last.username userRealmSource: session.logon.last.domain Realm: ABC.COM KDC: server@abc.com AccountName: HOST/xyz@abc.com spnPatterh: HTTP/%s@abc.com TicketLifetime: 600 UseClientcert: 0 SendAuthorization: 1
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
