Configuration Guide for Kerberos Client Products on HP-UX
Troubleshooting Kerberos Related Products
Troubleshooting Using the pamkrbval Tool
Chapter 4 103
pamkrbval: Key version
number for principal in
key table is incorrect
while reading request
[FAIL]: The keytab
validation failed
The key has been
changed on the server
but has not been
updated in the user’s
system.
• Extract the key from the
Kerberos Server using the
kadminl tool and copy it to
your system.
• In a CIFS environment,
update the keytab file
with the current service
key by regenerating the
keytab file again. Execute
the following command to
regenerate the keytab file:
net ads keytab create –U
administrator
pamkrbval: Decrypt
integrity check failed
While getting TGT
[FAIL]: The keytab
validation failed
The key has been
changed on the server
but has not been
updated in the user’s
system.
• Extract the key from the
Kerberos Server using the
kadminl tool and copy it to
your system.
• In a CIFS environment,
update the keytab file
with the current service
key by regenerating the
keytab file again. Execute
the following command to
regenerate the keytab file:
net ads keytab create –U
administrator
Table 4-6 Error Messages that Appear During keytab Validation
Error/Warning Messages Reason for Message Troubleshooting