Hintermayer Johannes wrote: > Hi Marty and Rob, > > thanks for your answers. > > The FDS user indeed wasn't able to access /etc/krb5.keytab. After I > changed that, the error message changed to: > > [root at vafbds01 ~]# ldapsearch -Y GSSAPI -D "uid=bsmith,ou=People,dc=afb,dc=lan" -v > ldap_initialize( <DEFAULT> ) > SASL/GSSAPI authentication started > ldap_sasl_interactive_bind_s: Invalid credentials (49) > additional info: SASL(-14): authorization failure: > > Have you seen this: http://directory.fedoraproject.org/wiki/Howto:Kerberos rob -------------- next part -------------- A non-text attachment was scrubbed... Name: smime.p7s Type: application/x-pkcs7-signature Size: 3245 bytes Desc: S/MIME Cryptographic Signature Url : http://lists.fedoraproject.org/pipermail/389-users/attachments/20070726/c1305d1e/attachment.bin