Error messages and recovery actions

Errors that can occur when using the mkkrb5srv command include the following:

  • If the krb5.conf, kdc.conf, or kadm5.acl files already exist, the mkkrb5srv command does not modify the values. You will receive a message that the file already exists. Any of the configuration values can be changed by editing the krb5.conf, kdc.conf, or kadm5.acl files.
  • If you mistype something and no database is created, remove the configuration files that are created and run the command again.
  • If there is inconsistency between the database and configuration values, remove the database from the /var/krb5/krb5kdc/* directory and rerun the command.
  • Make sure the kadmind and the krb5kdc daemons are started on your machine. Use the ps command to verify that the daemons are running. If these daemons have not started, check the log file.

Errors that can occur when using the mkkrb5clnt command include the following:

  • Incorrect values for krb5.conf can be fixed by editing the /etc/krb5/krb5.conf file.
  • Incorrect values for the -i flag can be fixed by editing the /usr/lib/security/methods.cfg file.