Getting Fallowing Error when trying to make a new AuthFilter with fallowing FilterConfig
idm.kdc,
idm.realm,
idm.princ
idm.userHandledExcept : true
idm.allowUnsecured: true
2011-04-28 10:19:17,225 ERROR [com.wedgetail.idm.sso.util.CommonsSsoLogger] Successfully got TGT for HTTP/spnegouser.myrealm.com@MYREALM.COM but failed to do GSSAPI to HTTP/spnegouser.myrealm.com
GSSException: Failure unspecified at GSS-API level (Mechanism level: com.dstc.security.kerberos.KerberosError: Incorrect net address (PROCESS_TGS)
KrbError:
Error code: 38
Error message: PROCESS_TGS
Client name: null
Client realm: null
Client time: Tue Feb 01 20:32:17 CET 2005
Server name: HTTP/aamir.myrealm.com
Server realm: MYREALM.COM
Server time: Thu Apr 28 10:19:17 CEST 2011)
at com.dstc.security.kerberos.gssapi.GSSKrbException.create(GSSKrbException.java:208)
at com.dstc.security.kerberos.gssapi.GSSContext.initSecContext(GSSContext.java:310)
at com.dstc.security.kerberos.gssapi.GSSContext.initSecContext(GSSContext.java:280)
at com.wedgetail.idm.sso.util.Util.checkSPNs(Util.java:245)
at com.wedgetail.idm.sso.AbstractAuthenticator.initAuthenticator2(AbstractAuthenticator.java:582)
at com.wedgetail.idm.sso.AbstractAuthenticator.initAuthenticator(AbstractAuthenticator.java:325)
at com.wedgetail.idm.sso.AuthFilter.init(AuthFilter.java:131)
....
.....
Caused by: com.dstc.security.kerberos.KerberosError: Incorrect net address (PROCESS_TGS)
KrbError:
Error code: 38
Error message: PROCESS_TGS
Client name: null
Client realm: null
Client time: Tue Feb 01 20:32:17 CET 2005
Server name: HTTP/aamir.myrealm.com
Server realm: MYREALM.COM
Server time: Thu Apr 28 10:19:17 CEST 2011
at com.dstc.security.kerberos.Kerberos.getKrbTGSRepFromKDC(Kerberos.java:1361)
at com.dstc.security.kerberos.Kerberos.requestServiceTicket(Kerberos.java:1314)
at com.dstc.security.kerberos.Kerberos.requestServiceTicket(Kerberos.java:1338)
at com.dstc.security.kerberos.gssapi.DefaultCredentialManager.requestServiceTicket(DefaultCredentialManager.java:194)
at com.dstc.security.kerberos.gssapi.ClientHandShaker.getServiceTicket(ClientHandShaker.java:715)
at com.dstc.security.kerberos.gssapi.ClientHandShaker.huntServiceTicket(ClientHandShaker.java:295)
at com.dstc.security.kerberos.gssapi.ClientHandShaker.handle(ClientHandShaker.java:193)
at com.dstc.security.kerberos.gssapi.GSSContext.initSecContext(GSSContext.java:301)
... 53 more
2011-04-28 10:19:17,227 ERROR [com.wedgetail.idm.sso.util.CommonsSsoLogger] All SPNs failed verification.
2011-04-28 10:19:17,227 ERROR [com.wedgetail.idm.sso.util.CommonsSsoLogger] Error during initAuthenticator()
com.wedgetail.idm.sso.ConfigException: All SPNs failed verification.
at com.wedgetail.idm.sso.util.Util.checkSPNs(Util.java:273)
at com.wedgetail.idm.sso.AbstractAuthenticator.initAuthenticator2(AbstractAuthenticator.java:582)
at com.wedgetail.idm.sso.AbstractAuthenticator.initAuthenticator(AbstractAuthenticator.java:325)
at com.wedgetail.idm.sso.AuthFilter.init(AuthFilter.java:131)
Message was edited by: aamir
idm.kdc,
idm.realm,
idm.princ
idm.userHandledExcept : true
idm.allowUnsecured: true
2011-04-28 10:19:17,225 ERROR [com.wedgetail.idm.sso.util.CommonsSsoLogger] Successfully got TGT for HTTP/spnegouser.myrealm.com@MYREALM.COM but failed to do GSSAPI to HTTP/spnegouser.myrealm.com
GSSException: Failure unspecified at GSS-API level (Mechanism level: com.dstc.security.kerberos.KerberosError: Incorrect net address (PROCESS_TGS)
KrbError:
Error code: 38
Error message: PROCESS_TGS
Client name: null
Client realm: null
Client time: Tue Feb 01 20:32:17 CET 2005
Server name: HTTP/aamir.myrealm.com
Server realm: MYREALM.COM
Server time: Thu Apr 28 10:19:17 CEST 2011)
at com.dstc.security.kerberos.gssapi.GSSKrbException.create(GSSKrbException.java:208)
at com.dstc.security.kerberos.gssapi.GSSContext.initSecContext(GSSContext.java:310)
at com.dstc.security.kerberos.gssapi.GSSContext.initSecContext(GSSContext.java:280)
at com.wedgetail.idm.sso.util.Util.checkSPNs(Util.java:245)
at com.wedgetail.idm.sso.AbstractAuthenticator.initAuthenticator2(AbstractAuthenticator.java:582)
at com.wedgetail.idm.sso.AbstractAuthenticator.initAuthenticator(AbstractAuthenticator.java:325)
at com.wedgetail.idm.sso.AuthFilter.init(AuthFilter.java:131)
....
.....
Caused by: com.dstc.security.kerberos.KerberosError: Incorrect net address (PROCESS_TGS)
KrbError:
Error code: 38
Error message: PROCESS_TGS
Client name: null
Client realm: null
Client time: Tue Feb 01 20:32:17 CET 2005
Server name: HTTP/aamir.myrealm.com
Server realm: MYREALM.COM
Server time: Thu Apr 28 10:19:17 CEST 2011
at com.dstc.security.kerberos.Kerberos.getKrbTGSRepFromKDC(Kerberos.java:1361)
at com.dstc.security.kerberos.Kerberos.requestServiceTicket(Kerberos.java:1314)
at com.dstc.security.kerberos.Kerberos.requestServiceTicket(Kerberos.java:1338)
at com.dstc.security.kerberos.gssapi.DefaultCredentialManager.requestServiceTicket(DefaultCredentialManager.java:194)
at com.dstc.security.kerberos.gssapi.ClientHandShaker.getServiceTicket(ClientHandShaker.java:715)
at com.dstc.security.kerberos.gssapi.ClientHandShaker.huntServiceTicket(ClientHandShaker.java:295)
at com.dstc.security.kerberos.gssapi.ClientHandShaker.handle(ClientHandShaker.java:193)
at com.dstc.security.kerberos.gssapi.GSSContext.initSecContext(GSSContext.java:301)
... 53 more
2011-04-28 10:19:17,227 ERROR [com.wedgetail.idm.sso.util.CommonsSsoLogger] All SPNs failed verification.
2011-04-28 10:19:17,227 ERROR [com.wedgetail.idm.sso.util.CommonsSsoLogger] Error during initAuthenticator()
com.wedgetail.idm.sso.ConfigException: All SPNs failed verification.
at com.wedgetail.idm.sso.util.Util.checkSPNs(Util.java:273)
at com.wedgetail.idm.sso.AbstractAuthenticator.initAuthenticator2(AbstractAuthenticator.java:582)
at com.wedgetail.idm.sso.AbstractAuthenticator.initAuthenticator(AbstractAuthenticator.java:325)
at com.wedgetail.idm.sso.AuthFilter.init(AuthFilter.java:131)
Message was edited by: aamir