Confirmation of the bug with the current package:
- login failed:
Aug 21 12:14:06 xenial-sssd-sru-1664566 [sssd[krb5_child[4787]]]: Cannot find KDC for realm "EXAMPLE.COM"
Aug 21 12:14:06 xenial-sssd-sru-1664566 [sssd[krb5_child[4787]]]: Cannot find KDC for realm "EXAMPLE.COM"
With packages from proposed the test case passes:
$ apt-cache policy sssd
sssd:
Installed: 1.13.4-1ubuntu1.7
Candidate: 1.13.4-1ubuntu1.7
Version table:
*** 1.13.4-1ubuntu1.7 500
500 http://br.archive.ubuntu.com/ubuntu xenial-proposed/main amd64 Packages
100 /var/lib/dpkg/status
1.13.4-1ubuntu1.6 500
500 http://br.archive.ubuntu.com/ubuntu xenial-updates/main amd64 Packages
1.13.4-1ubuntu1 500
500 http://br.archive.ubuntu.com/ubuntu xenial/main amd64 Packages
Retrying login:
ubuntu@xenial-sssd-sru-1664566:~$ sudo login
xenial-sssd-sru-1664566 login: ubuntu
Password:
Last login: Mon Aug 21 12:13:39 UTC 2017 from 10.0.100.1 on pts/1
Welcome to Ubuntu 16.04.3 LTS (GNU/Linux 4.10.0-32-generic x86_64)
18 packages can be updated.
0 updates are security updates.
We have a kerberos ticket:
ubuntu@xenial-sssd-sru-1664566:~$ klist
Ticket cache: FILE:/tmp/krb5cc_1000_ctLjPX
Default principal: <email address hidden>
Valid starting Expires Service principal
08/21/2017 12:15:22 08/21/2017 22:15:22 <email address hidden>
renew until 08/22/2017 12:15:22
And a new plain kinit fails as expected:
ubuntu@xenial-sssd-sru-1664566:~$ kdestroy
ubuntu@xenial-sssd-sru-1664566:~$ kinit
kinit: Cannot find KDC for realm "LOCALHOST" while getting initial credentials
ubuntu@xenial-sssd-sru-1664566:~$
Xenial verification
Confirmation of the bug with the current package: sssd-sru- 1664566 [sssd[krb5_ child[4787] ]]: Cannot find KDC for realm "EXAMPLE.COM" sssd-sru- 1664566 [sssd[krb5_ child[4787] ]]: Cannot find KDC for realm "EXAMPLE.COM"
- login failed:
Aug 21 12:14:06 xenial-
Aug 21 12:14:06 xenial-
- terminal: xenial- sssd-sru- 1664566: ~$ sudo login sssd-sru- 1664566 login: ubuntu
ubuntu@
xenial-
Password:
Login incorrect sssd-sru- 1664566 login:
xenial-
With packages from proposed the test case passes: br.archive. ubuntu. com/ubuntu xenial- proposed/ main amd64 Packages dpkg/status 13.4-1ubuntu1. 6 500 br.archive. ubuntu. com/ubuntu xenial-updates/main amd64 Packages 13.4-1ubuntu1 500 br.archive. ubuntu. com/ubuntu xenial/main amd64 Packages
$ apt-cache policy sssd
sssd:
Installed: 1.13.4-1ubuntu1.7
Candidate: 1.13.4-1ubuntu1.7
Version table:
*** 1.13.4-1ubuntu1.7 500
500 http://
100 /var/lib/
1.
500 http://
1.
500 http://
Retrying login: xenial- sssd-sru- 1664566: ~$ sudo login sssd-sru- 1664566 login: ubuntu
ubuntu@
xenial-
Password:
Last login: Mon Aug 21 12:13:39 UTC 2017 from 10.0.100.1 on pts/1
Welcome to Ubuntu 16.04.3 LTS (GNU/Linux 4.10.0-32-generic x86_64)
* Documentation: https:/ /help.ubuntu. com /landscape. canonical. com /ubuntu. com/advantage
* Management: https:/
* Support: https:/
Get cloud support with Ubuntu Advantage Cloud Guest: www.ubuntu. com/business/ services/ cloud
http://
18 packages can be updated.
0 updates are security updates.
We have a kerberos ticket: xenial- sssd-sru- 1664566: ~$ klist krb5cc_ 1000_ctLjPX
ubuntu@
Ticket cache: FILE:/tmp/
Default principal: <email address hidden>
Valid starting Expires Service principal
08/21/2017 12:15:22 08/21/2017 22:15:22 <email address hidden>
renew until 08/22/2017 12:15:22
And a new plain kinit fails as expected: xenial- sssd-sru- 1664566: ~$ kdestroy xenial- sssd-sru- 1664566: ~$ kinit xenial- sssd-sru- 1664566: ~$
ubuntu@
ubuntu@
kinit: Cannot find KDC for realm "LOCALHOST" while getting initial credentials
ubuntu@