<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Tiger to Leopard Server Migration, Part Four</title>
	<atom:link href="http://www.netmojo.ca/2008/01/30/tiger-to-leopard-server-migration-part-four/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.netmojo.ca/2008/01/30/tiger-to-leopard-server-migration-part-four/</link>
	<description>Apple Certified Mac Consulting</description>
	<lastBuildDate>Sat, 27 Feb 2010 07:10:07 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Jim</title>
		<link>http://www.netmojo.ca/2008/01/30/tiger-to-leopard-server-migration-part-four/comment-page-1/#comment-2538</link>
		<dc:creator>Jim</dc:creator>
		<pubDate>Tue, 03 Nov 2009 20:28:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.netmojo.ca/blog/2008/01/30/part-4-kerberos-and-single-sign-on-in-leopard-server/#comment-2538</guid>
		<description>When I get to the command:sso_util configure -r MYREALM.CA -a diradmin -p mypasswd all

I get this error:

Contacting the directory server
/Local/Default
/BSD/local
/LDAPv3/127.0.0.1
Creating the service list
Creating the service principals
kadmin: Cannot contact any KDC for requested realm while initializing kadmin interface
SendInteractiveCommand: failed to get pattern
The system log shows this:

Nov 3 14:06:22 aeaserver ReportCrash[88903]: Formulating crash report for process kdcsetup[88894]
Nov 3 14:06:23 aeaserver ReportCrash[88903]: Saved crashreport to /Library/Logs/CrashReporter/kdcsetup_2009-11-03-140622_aeaserver.crash using uid: 0 gid: 0, euid: 0 egid: 0


When I looked in the /var/krb5kdc directory, the principals I created are gone. What hapened?</description>
		<content:encoded><![CDATA[<p>When I get to the command:sso_util configure -r MYREALM.CA -a diradmin -p mypasswd all</p>
<p>I get this error:</p>
<p>Contacting the directory server<br />
/Local/Default<br />
/BSD/local<br />
/LDAPv3/127.0.0.1<br />
Creating the service list<br />
Creating the service principals<br />
kadmin: Cannot contact any KDC for requested realm while initializing kadmin interface<br />
SendInteractiveCommand: failed to get pattern<br />
The system log shows this:</p>
<p>Nov 3 14:06:22 aeaserver ReportCrash[88903]: Formulating crash report for process kdcsetup[88894]<br />
Nov 3 14:06:23 aeaserver ReportCrash[88903]: Saved crashreport to /Library/Logs/CrashReporter/kdcsetup_2009-11-03-140622_aeaserver.crash using uid: 0 gid: 0, euid: 0 egid: 0</p>
<p>When I looked in the /var/krb5kdc directory, the principals I created are gone. What hapened?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Josh</title>
		<link>http://www.netmojo.ca/2008/01/30/tiger-to-leopard-server-migration-part-four/comment-page-1/#comment-866</link>
		<dc:creator>Josh</dc:creator>
		<pubDate>Thu, 26 Feb 2009 23:49:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.netmojo.ca/blog/2008/01/30/part-4-kerberos-and-single-sign-on-in-leopard-server/#comment-866</guid>
		<description>Hi,

thank you for that nice howto. I have much trouble with Kerberos.
But I have one problem at step 3:
I get the failure message: Couldn&#039;t find KerberosClient config record

Hope someone has some good idea..</description>
		<content:encoded><![CDATA[<p>Hi,</p>
<p>thank you for that nice howto. I have much trouble with Kerberos.<br />
But I have one problem at step 3:<br />
I get the failure message: Couldn&#8217;t find KerberosClient config record</p>
<p>Hope someone has some good idea..</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ryan</title>
		<link>http://www.netmojo.ca/2008/01/30/tiger-to-leopard-server-migration-part-four/comment-page-1/#comment-875</link>
		<dc:creator>Ryan</dc:creator>
		<pubDate>Mon, 08 Dec 2008 13:13:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.netmojo.ca/blog/2008/01/30/part-4-kerberos-and-single-sign-on-in-leopard-server/#comment-875</guid>
		<description>Hi Brent,

Sounds like do or die.  Better hope the open directory restore works after changing to standalone or you lose your ldap &amp; password server configs.</description>
		<content:encoded><![CDATA[<p>Hi Brent,</p>
<p>Sounds like do or die.  Better hope the open directory restore works after changing to standalone or you lose your ldap &amp; password server configs.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Brent</title>
		<link>http://www.netmojo.ca/2008/01/30/tiger-to-leopard-server-migration-part-four/comment-page-1/#comment-869</link>
		<dc:creator>Brent</dc:creator>
		<pubDate>Mon, 08 Dec 2008 02:11:03 +0000</pubDate>
		<guid isPermaLink="false">http://www.netmojo.ca/blog/2008/01/30/part-4-kerberos-and-single-sign-on-in-leopard-server/#comment-869</guid>
		<description>One thing to try is using Server Admin to backup your Open Directory settings in the Archive tab of the Open Directory panel.  Then go to the Settings panel, and click the Change button, and change to a stand alone server.  Once the transition is complete, do the reverse: change back to an Open Directory Master, then use the Restore feature in the Archive tab to re-add your users &amp; settings.

See the /Library/Logs/slapconfig.log file for the output of what went on beneath the GUI.</description>
		<content:encoded><![CDATA[<p>One thing to try is using Server Admin to backup your Open Directory settings in the Archive tab of the Open Directory panel.  Then go to the Settings panel, and click the Change button, and change to a stand alone server.  Once the transition is complete, do the reverse: change back to an Open Directory Master, then use the Restore feature in the Archive tab to re-add your users &#038; settings.</p>
<p>See the /Library/Logs/slapconfig.log file for the output of what went on beneath the GUI.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Toros</title>
		<link>http://www.netmojo.ca/2008/01/30/tiger-to-leopard-server-migration-part-four/comment-page-1/#comment-874</link>
		<dc:creator>Toros</dc:creator>
		<pubDate>Sat, 06 Sep 2008 20:44:05 +0000</pubDate>
		<guid isPermaLink="false">http://www.netmojo.ca/blog/2008/01/30/part-4-kerberos-and-single-sign-on-in-leopard-server/#comment-874</guid>
		<description>Brent i am having the same segmentation fault problem as the other two posters. Is there some sort of a fix.</description>
		<content:encoded><![CDATA[<p>Brent i am having the same segmentation fault problem as the other two posters. Is there some sort of a fix.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Brent</title>
		<link>http://www.netmojo.ca/2008/01/30/tiger-to-leopard-server-migration-part-four/comment-page-1/#comment-859</link>
		<dc:creator>Brent</dc:creator>
		<pubDate>Sat, 16 Aug 2008 14:39:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.netmojo.ca/blog/2008/01/30/part-4-kerberos-and-single-sign-on-in-leopard-server/#comment-859</guid>
		<description>Oh, and did you do:
&lt;code&gt;
chflags nouchg /Library/Preferences/edu.mit.Kerberos
&lt;/code&gt;
as per step 2?</description>
		<content:encoded><![CDATA[<p>Oh, and did you do:<br />
<code><br />
chflags nouchg /Library/Preferences/edu.mit.Kerberos<br />
</code><br />
as per step 2?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Brent</title>
		<link>http://www.netmojo.ca/2008/01/30/tiger-to-leopard-server-migration-part-four/comment-page-1/#comment-858</link>
		<dc:creator>Brent</dc:creator>
		<pubDate>Sat, 16 Aug 2008 14:36:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.netmojo.ca/blog/2008/01/30/part-4-kerberos-and-single-sign-on-in-leopard-server/#comment-858</guid>
		<description>Ryan &amp; Steven: can you connect to your directory service using &#039;ldapsearch&#039; or other tools?  Have you tried the kerberosautoconfig command from step 3?  What do you see in the logs (/var/log/system.log, /var/log/slapd.log, /var/log/krb5kdc/kdc.log) when you&#039;re getting segfaults and exit code 10?

Does the command:
&lt;code&gt;
serveradmin fullstatus dirserv
&lt;/code&gt;
tell you anything useful about the state of Kerberos (kdc)?</description>
		<content:encoded><![CDATA[<p>Ryan &#038; Steven: can you connect to your directory service using &#8216;ldapsearch&#8217; or other tools?  Have you tried the kerberosautoconfig command from step 3?  What do you see in the logs (/var/log/system.log, /var/log/slapd.log, /var/log/krb5kdc/kdc.log) when you&#8217;re getting segfaults and exit code 10?</p>
<p>Does the command:<br />
<code><br />
serveradmin fullstatus dirserv<br />
</code><br />
tell you anything useful about the state of Kerberos (kdc)?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Steven</title>
		<link>http://www.netmojo.ca/2008/01/30/tiger-to-leopard-server-migration-part-four/comment-page-1/#comment-868</link>
		<dc:creator>Steven</dc:creator>
		<pubDate>Sat, 16 Aug 2008 12:39:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.netmojo.ca/blog/2008/01/30/part-4-kerberos-and-single-sign-on-in-leopard-server/#comment-868</guid>
		<description>Sorry, any help would be appreciated. It&#039;s the only thing on my server than needs fixing.</description>
		<content:encoded><![CDATA[<p>Sorry, any help would be appreciated. It&#8217;s the only thing on my server than needs fixing.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Steven</title>
		<link>http://www.netmojo.ca/2008/01/30/tiger-to-leopard-server-migration-part-four/comment-page-1/#comment-867</link>
		<dc:creator>Steven</dc:creator>
		<pubDate>Sat, 16 Aug 2008 12:38:55 +0000</pubDate>
		<guid isPermaLink="false">http://www.netmojo.ca/blog/2008/01/30/part-4-kerberos-and-single-sign-on-in-leopard-server/#comment-867</guid>
		<description>I&#039;m having exactly the same problem as Ryan - clean install of 10.5.4 and getting Segmentation faults as well as the exit code 10.

V, v frustrating.</description>
		<content:encoded><![CDATA[<p>I&#8217;m having exactly the same problem as Ryan &#8211; clean install of 10.5.4 and getting Segmentation faults as well as the exit code 10.</p>
<p>V, v frustrating.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ryan</title>
		<link>http://www.netmojo.ca/2008/01/30/tiger-to-leopard-server-migration-part-four/comment-page-1/#comment-865</link>
		<dc:creator>Ryan</dc:creator>
		<pubDate>Mon, 11 Aug 2008 15:38:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.netmojo.ca/blog/2008/01/30/part-4-kerberos-and-single-sign-on-in-leopard-server/#comment-865</guid>
		<description>Sorry, forgot to mention that the open directory master is a clean install of v10.5.4</description>
		<content:encoded><![CDATA[<p>Sorry, forgot to mention that the open directory master is a clean install of v10.5.4</p>
]]></content:encoded>
	</item>
</channel>
</rss>
