directory-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Emmanuel Lecharny (JIRA)" <>
Subject [jira] [Created] (DIRSTUDIO-873) Cannot add a new EncryptionKey in the Kerberos configuration
Date Fri, 08 Feb 2013 18:43:14 GMT
Emmanuel Lecharny created DIRSTUDIO-873:

             Summary: Cannot add a new EncryptionKey in the Kerberos configuration
                 Key: DIRSTUDIO-873
             Project: Directory Studio
          Issue Type: Bug
    Affects Versions: 2.0.0-M4
            Reporter: Emmanuel Lecharny
            Priority: Critical

We can't change the Encryption Types values in the Kerberos Configuration page. If we do so,
we immediately get the following exception when starting the server :

'The server 'xxxx' cannot be started.
Cause: ERR_0444_CANNOT_NORMALIZE_VALUE Cnnot normalize the wrapped value ERR_04473_NOT_VALID_VALUE
Not a valid value '[des-cbs-md5, rc4-hmac]' for the ...

It seems that the cofigurator tries to store the value as is.

If we modify the values by hand in the config.ldif file, for instance :

dn: ads-serverId=kerberosServer,ou=servers,ads-directoryServiceId=default,ou=config
ads-krbEncryptionTypes: des-cbc-md5
ads-krbEncryptionTypes: rc4-hmac

then in the GUI, the EncryptionTypes is now : [des-cbc-md5, rc4-hmac]

So there is an incompatible config/gui transformation that works in the config -> GUI way,
but not in the other way.

This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see:

View raw message