[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#622146: nfs-kernel-server: error Encryption type not permitted



Russ Allbery <rra@debian.org> писал(а) в своём письме Tue, 15 Nov 2011 11:21:05 +0400:

"Kramarenko A. Maxim" <mc-sim85@ya.ru> writes:

The only thing that I can think of at this point is that the underlying
GSS-API implementation behind rpc.svcgssd isn't supporting arcfour-hmac
for some reason.  Maybe you don't have the backported version of
everything and your daemon still only supports DES somehow?

These are versions of the software on the NFS server:

ARCHIV ~ # dpkg -l | grep krb
ii  krb5-config                               2.2                          Configuration files for Kerberos Version 5
ii  krb5-user                                 1.8.3+dfsg-4squeeze2         Basic programs to authenticate using MIT Kerberos
ii  libgssapi-krb5-2                          1.8.3+dfsg-4squeeze2         MIT Kerberos runtime libraries - krb5 GSS-API Mechanism
ii  libkrb5-3                                 1.8.3+dfsg-4squeeze2         MIT Kerberos runtime libraries
ii  libkrb5support0                           1.8.3+dfsg-4squeeze2         MIT Kerberos runtime libraries - Support library
ARCHIV ~ # dpkg -l | grep gss
ii  libgssapi-krb5-2                          1.8.3+dfsg-4squeeze2         MIT Kerberos runtime libraries - krb5 GSS-API Mechanism
ii  libgssglue1                               0.1-4                        mechanism-switch gssapi library
ii  libgssrpc4                                1.8.3+dfsg-4squeeze2         MIT Kerberos runtime libraries - GSS enabled ONCRPC
ii  librpcsecgss3                             0.19-2                       allows secure rpc communication using the rpcsec_gss protocol
ARCHIV ~ # dpkg -l | grep -i mit
ii  krb5-user                                 1.8.3+dfsg-4squeeze2         Basic programs to authenticate using MIT Kerberos
ii  libgssapi-krb5-2                          1.8.3+dfsg-4squeeze2         MIT Kerberos runtime libraries - krb5 GSS-API Mechanism
ii  libgssrpc4                                1.8.3+dfsg-4squeeze2         MIT Kerberos runtime libraries - GSS enabled ONCRPC
ii  libk5crypto3                              1.8.3+dfsg-4squeeze2         MIT Kerberos runtime libraries - Crypto Library
ii  libkadm5clnt-mit7                         1.8.3+dfsg-4squeeze2         MIT Kerberos runtime libraries - Administration Clients
rc  libkadm5srv-mit7                          1.8.3+dfsg-4squeeze2         MIT Kerberos runtime libraries - KDC and Admin Server
rc  libkdb5-4                                 1.8.3+dfsg-4squeeze2         MIT Kerberos runtime libraries - Kerberos database
ii  libkrb5-3                                 1.8.3+dfsg-4squeeze2         MIT Kerberos runtime libraries
ii  libkrb5support0                           1.8.3+dfsg-4squeeze2         MIT Kerberos runtime libraries - Support library
ARCHIV ~ # dpkg -l | grep -i nfs
ii  liblockfile1                              1.08-4                       NFS-safe locking library, includes dotlockfile program
ii  libnfsidmap2                              0.23-2                       An nfs idmapping library
ii  nfs-common                                1:1.2.4-1~bpo60+1            NFS support files common to client and server
ii  nfs-kernel-server                         1:1.2.4-1~bpo60+1            support for NFS kernel server

Can cost from backporting upgrade krb5-user?

--
Best Regards,
Mc.Sim.
http://www.k-max.name/



Reply to: