Apache HTTPD Kerberos authentication fails with error "ticket is likely out of date"
Issue
- Kerberos authentication fails when attempting to access a website hosted via Apache HTTPD.
-
The following error is recorded in the HTTPD error logs:
GSS ERROR In Negotiate Auth: gss_accept_sec_context() failed: [Unspecified GSS failure. Minor code may provide more information (Request ticket server HTTP/principal.domain.com@DOMAIN.COM kvno 9 not found in keytab; ticket is likely out of date
Environment
- Red Hat Enterprise Linux (RHEL)
- Apache HTTP Server (HTTPD)
mod_authnz_ldapmod_authnz_gssapi
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.