directory-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Pierre-Arnaud Marcelot (JIRA)" <>
Subject [jira] [Updated] (DIRSTUDIO-873) Kerberos encryption types are not saved correctly
Date Thu, 14 Feb 2013 10:52:13 GMT


Pierre-Arnaud Marcelot updated DIRSTUDIO-873:

    Summary: Kerberos encryption types are not saved correctly  (was: Cannot add a new EncryptionKey
in the Kerberos configuration)
> Kerberos encryption types are not saved correctly
> -------------------------------------------------
>                 Key: DIRSTUDIO-873
>                 URL:
>             Project: Directory Studio
>          Issue Type: Bug
>    Affects Versions: 2.0.0-M4
>            Reporter: Emmanuel Lecharny
>            Priority: Critical
> We can't change the Encryption Types values in the Kerberos Configuration page. If we
do so, we immediately get the following exception when starting the server :
> 'The server 'xxxx' cannot be started.
> Cause: ERR_0444_CANNOT_NORMALIZE_VALUE Cnnot normalize the wrapped value ERR_04473_NOT_VALID_VALUE
Not a valid value '[des-cbs-md5, rc4-hmac]' for the ...
> It seems that the cofigurator tries to store the value as is.
> If we modify the values by hand in the config.ldif file, for instance :
> dn: ads-serverId=kerberosServer,ou=servers,ads-directoryServiceId=default,ou=config
> ...
> ads-krbEncryptionTypes: des-cbc-md5
> ads-krbEncryptionTypes: rc4-hmac
> then in the GUI, the EncryptionTypes is now : [des-cbc-md5, rc4-hmac]
> So there is an incompatible config/gui transformation that works in the config ->
GUI way, but not in the other way.

This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see:

View raw message