Bug#525785: sasl2-bin: saslauthd with kerberos5 doesn't work

Friedemann Stoyan fstoyan at swapon.de
Mon Apr 27 05:52:15 UTC 2009


Package: sasl2-bin
Version: 2.1.22.dfsg1-23
Severity: minor

Dear Maintainers,

when using saslauthd with kerberos5 authentication mechanism it simply fails with:
"saslauthd[10678]: do_auth: auth failure: [user=xxx] [service=ldap] [realm=xxxxxxxxxxxxx] [mech=kerberos5] [reason=saslauthd internal error]"

Fix:
Explicitly set the environment in "/etc/default/saslauthd" and point to the keytab:
KRB5_KTNAME=/etc/krb5.keytab

Please include this environment in default configuration.

Regards
Friedemann
-- System Information:
Debian Release: 5.0.1
  APT prefers stable
  APT policy: (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.26-1-amd64 (SMP w/2 CPU cores)
Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages sasl2-bin depends on:
ii  db4.6-util      4.6.21-11                Berkeley v4.6 Database Utilities
ii  debconf [debcon 1.5.24                   Debian configuration management sy
ii  libc6           2.7-18                   GNU C Library: Shared libraries
ii  libcomerr2      1.41.3-1                 common error description library
ii  libdb4.6        4.6.21-11                Berkeley v4.6 Database Libraries [
ii  libkrb53        1.6.dfsg.4~beta1-5lenny1 MIT Kerberos runtime libraries
ii  libldap-2.4-2   2.4.11-1                 OpenLDAP libraries
ii  libpam0g        1.0.1-5+lenny1           Pluggable Authentication Modules l
ii  libsasl2-2      2.1.22.dfsg1-23          Cyrus SASL - authentication abstra
ii  libssl0.9.8     0.9.8g-15+lenny1         SSL shared libraries
ii  lsb-base        3.2-20                   Linux Standard Base 3.2 init scrip

sasl2-bin recommends no packages.

sasl2-bin suggests no packages.

-- debconf information excluded





More information about the Pkg-cyrus-sasl2-debian-devel mailing list