Hello!
we get the next error when we try to create a kerberos ticket:
kinit: Cannot find KDC for realm "TEST.INTERN" while getting initial
credentials
/etc/krb5.conf:
[libdefaults]
default_realm = TEST.INTERN
dns_lookup_realm = true
dns_lookup_kdc = true
rdns = false
dns_canonicalize_hostname = false
ticket_lifetime = 24h
forwardable = true
udp_preference_limit = 0
default_ccache_name = KEYRING:persistent:%{uid}
[realms]
TEST.INTERN = {
pkinit_pool = FILE:/var/lib/ipa-client/pki/ca-bundle.pem
pkinit_pool = FILE:/var/lib/ipa-client/pki/ca-bundle.pem
}
[domain_realm]
.domain.net = TEST.INTERN
domain.net = TEST.INTERN
client1.domain.net = TEST.INTERN
The DNS Record from FreeIPA for Autodiscover are working. if I add kdc =
ipaserver.domain.net > I get the kerberos Ticket. But we want to use autodiscovery for
failover. So we do not want to add the sever address on every client.
Do you have some Idea? Thanks