Suggestion when only able to connect to some services when using Kerberos.

I had been having problems using Kerberos for authentication for some services. It worked fine when on a LAN and worked when I had a VPN (MS-CHAP). But when trying to connect normally, I was able to get a TGT, but often ran into issues when trying to connect to other services (e.g. IMAP / VPN). What's more, sometimes everything did work, but stopped again soon after.
My setup has one server providing all the services in question. There were several CNAMES linking the different services (e.g. ichat.mydomain, mail.mydomain etc).
I found a number of people who seemed to have similar issues, but the threads were archived so I couldn't post a reply. So I'm hoping they come across this message and it helps them.
Because of an unrelated problem, it was brought to my attention that there were some problems with the DNS records relating to my domain – not on my server, but on the net.
After some experimenting, I discovered that if I set the DNS (in System Preferences) on my client Mac to the server I was contacting most things worked.
It seems that the Kerberos system may do a reverse lookup at some point, or something similar.
When I do a "dig -x <my ip address>" I get different responses over time, and from different DNS servers. When I did "dig @<my own dns> -x <my ip address>" it always came back with the correct server name.
So perhaps the issue lies with the DNS that your machine is looking up? This would explain why it works on the lan (the DNS is probably your server) and over VPN (again your server is the DNS).
This may not be the answer to these people's problems, but if you were getting messages such as "Server not found in Kerberos database" in your logs, it may pay to check what is getting return by DNS servers outside your organisation.
HTH.
iMac G3   Mac OS X (10.4.8)  

CharlieJ wrote:
The problem is this: When any one of the computers is connected to the internet through the DSL none of the others computers is able to connect – I see the message “Connecting through WAN miniport (PPOE)…”, i.e. I am only able to connect to the internet 1 computer at a time.
As soon as I disconnect from the ‘connected’ computer (desktop or laptop) I am immediately able to successfully connect to the internet on either of the other 2 computers.
I’ve tried resetting everything – no luck.
I don’t recall having changed any of the settings and am baffled.
Any thoughts as to the problem?
Thanks in advance for any help.
Charlie
PS. I haven't called the Verizon DSL Tech Support team yet...but I will soon. I figured on asking here first.
Ok.
#1 You must get to the network control panel on your computer.
One of the ways, for Windows XP is:
a) Go to Start -> Control Panel -> Network Connections
b) The screen will look like steps 5 and 6, on http://portforward.com/networking/static-xp.htm
For Windows Vista:
a) Go to the globe icon (start button) -> Control Panel -> Network and Sharing Center -> Manage Network Connections.
b) The screen will look like steps 5, 6, and 7, on
http://portforward.com/networking/static-vista.htm
#2 Right click on the WAN miniport (PPPOE), and remove the check mark that says Set as Default Connection.
^^
If you are the original poster (OP) and your issue is solved, please remember to click the "Solution?" button so that others can more easily find it. If anyone has been helpful to you, please show your appreciation by clicking the "Kudos" button.

Similar Messages

  • Only able to connect to internet through Broadband DSL one computer at a time.

    Hi,
    I am using Verizon Broadband DSL, and have used it for a few years.
    Equipment:
    Westell Versalink Model 327W
    Linksys Wireless-G Broadband Router Model WRT54G
    I have a desktop (running Windows XP), and 2 laptops (1 XP, 1 Vista) that are connected wirelessly. Until recently all 3 computers have been working fine, connecting to the internet on the wireless network.
    The problem is this: When any one of the computers is connected to the internet through the DSL none of the others computers is able to connect – I see the message “Connecting through WAN miniport (PPOE)…”, i.e. I am only able to connect to the internet 1 computer at a time.
    As soon as I disconnect from the ‘connected’ computer (desktop or laptop) I am immediately able to successfully connect to the internet on either of the other 2 computers.
    I’ve tried resetting everything – no luck.
    I don’t recall having changed any of the settings and am baffled.
    Any thoughts as to the problem?
    Thanks in advance for any help.
    Charlie
    PS. I haven't called the Verizon DSL Tech Support team yet...but I will soon. I figured on asking here first.
    Solved!
    Go to Solution.

    CharlieJ wrote:
    The problem is this: When any one of the computers is connected to the internet through the DSL none of the others computers is able to connect – I see the message “Connecting through WAN miniport (PPOE)…”, i.e. I am only able to connect to the internet 1 computer at a time.
    As soon as I disconnect from the ‘connected’ computer (desktop or laptop) I am immediately able to successfully connect to the internet on either of the other 2 computers.
    I’ve tried resetting everything – no luck.
    I don’t recall having changed any of the settings and am baffled.
    Any thoughts as to the problem?
    Thanks in advance for any help.
    Charlie
    PS. I haven't called the Verizon DSL Tech Support team yet...but I will soon. I figured on asking here first.
    Ok.
    #1 You must get to the network control panel on your computer.
    One of the ways, for Windows XP is:
    a) Go to Start -> Control Panel -> Network Connections
    b) The screen will look like steps 5 and 6, on http://portforward.com/networking/static-xp.htm
    For Windows Vista:
    a) Go to the globe icon (start button) -> Control Panel -> Network and Sharing Center -> Manage Network Connections.
    b) The screen will look like steps 5, 6, and 7, on
    http://portforward.com/networking/static-vista.htm
    #2 Right click on the WAN miniport (PPPOE), and remove the check mark that says Set as Default Connection.
    ^^
    If you are the original poster (OP) and your issue is solved, please remember to click the "Solution?" button so that others can more easily find it. If anyone has been helpful to you, please show your appreciation by clicking the "Kudos" button.

  • Not able to connect N70 to pc(xp) using ca-53 cabl...

    Not able to connect N70 to pc(xp) using ca-53 cable
    hi i am having this trouble from a year... i am unable to connect my phone n70 using cable to my pc,.,. even after installing all drivers n pc suite n havin it reinstalled also n again doin d same process.. its not getting detected at all.. please help me out... pleaseeee..been tryin 4m a year..nevr checkd des forumss.. hopin som bdy ll help ,me out.. !!!. !!!!

    The DKU-2 cable is no longer supported and so cannot be guaranteed to be compatible with current PC Suites, you should be using either your current CA-53 or the CA-70.
    Have you had the chance to connect any other phone with the PC using this cable? This would test if thr cable itself might be faulty.
    Otherwise remove PC Suite, PC Connectivitiy Solution and Connectivity Cable Drivers from control panel, run the PC Suite Cleaner program that you can get from the PC Suite support pages on the web site, then reinstall everything.

  • How do i reset my ipod when it says disabled connect to itunes and when i connect it can't find my itouch?

    Hi  How do I reset my ipod touch when it says "disabled connect to itunes" and when I connect to itunes it can't find the itouch?

    http://support.apple.com/kb/TS1369
    There have been some problems accessing pages on the Apple web site.  If the hyperlink gives you a "We're sorry" message, try again.

  • Error message when i try to connect to SharePoint Store, when i click on Sharepoint Store in the site its throwing me below error message,

    Error message "Sorry, we can't seem to connect to the SharePoint Store. Try again in a bit."
    when i try to connect to SharePoint Store, when i click on Sharepoint Store in the site its throwing me above error message,
    In the log it shows
    Request to office.com with the following URL:https://hostname/sites/appcatalog/config15 caused an exception. 
    System.Net.WebException: 
    Request to office.com should be routed with url URL:http://office.microsoft.com/client/15/commerce/query  but 
     request to office.com is sent with following URL:https://hostname/sites/appcatalog/config15
    and the Response from office.com was null or its HTTP status code was not 'OK'. Actual status code: 'InternalServerError'
    An exception was thrown while running task 'GetOfficeMarkets'. Microsoft.SharePoint.SPException: Sorry, we can't seem to connect to the SharePoint Store. Try again in a bit.  
    Feature "Apps that require accessible internet facing endpoints" activated in the Central Admin  .
    kindly help on this issue

    Hi,
    For a better troubleshooting, I suggest to do as follows:
    1. Check whether the App management shared service add to the Farm, and we need to configure the Subscriptions setting service also.
    2. SharePoint Server IP Address excluded from the Websense.
    3. Restart the server.
    4. Please check as the link below.
    http://www.naumanahmed.com/2012/07/sharepoint-2013-app-management-service.html
    More information:
    http://msdn.microsoft.com/en-us/library/fp179919.aspx
    Best Regards
    Dennis Guo
    TechNet Community Support

  • I am not being able to connect to another Apple device using the Face time what settings do i need to check.The device being used is an iPad mini

    I am not being able to connect to another Apple device using the Face time.The device being used is an iPad mini.
    The internet connectivity is perfect the wifi is even working.

    '''plafstudiesdotc'''
    You are welcome.
    '''''So that other users can find answers that have worked, please take a couple of minutes to return to the forum, sign in and click "Solved" next to my answer. Thanks. '''''

  • Firewall blocks some services when sharing internet connection

    Hello,
    I have some issues regarding internet sharing that I hope someone could successfully troubleshoot :
    2 computer, iMac G5 2.0 and an original "17 PowerBook G4 1.0, both running 10.4.7.
    The iMac is connected to the internet via Ethernet and shares its connection with the PB using the Airport.
    The problem is that when the Firewall is enabled (just using the built-in one) the shared connection is limited for only few services :
    Web browsing, iPhoto and iTunes Bonjour sharing, Apple Remote Desktop all work smoothly while iChat, MSN Messenger, Bittorrent clients can't connect and Mail can't go Online (can't connect to my Gmail accounts). Since even enabling all default services in the list doesn't help the only solution is to completely disable the Firewall in the iMac. When the Firewall is off everything goes back to normal.
    I tried to isolate the problem but I can't get my finger on the right ports to open.
    I tested sharing the connection through Firewall instead but it's the same so It's definitely not related to the type of connection used to connect the two computers one to the other. It is strictly related to the Firewall.
    I found two Apple documents :
    http://docs.info.apple.com/article.html?artnum=107653
    http://docs.info.apple.com/article.html?artnum=107594
    I carefully followed the instructions but it didn't resolve the problem.
    From reading the first document I learnt that port 443 is related to the Secure Sockets Layer service so I searched Apple document http://docs.info.apple.com/article.html?artnum=106439 for other ports related to that service but since I'm not an expert I couldn't figured it out right by myself.
    Setting for the iMac side are as followed :
    Network panel : Airport is active. (as recommended in http://docs.info.apple.com/article.html?artnum=107594 I set Airport to the highest port priority).
    Sharing panel/Services : Personal web sharing is set to ON. As I mentioned before even enabling all default services in the list doesn't help.
    Sharing panel/Internet : Internet sharing is ON. "Share your connection from" is set to Airport. "To computers using" : Airport checkbox checked. I tried the Firewall option instead as well.
    Appleshare is ON and automatically configured (zero configuration in the Firewall) on both macs.
    Ports for iChat, MSN and Gmail on the iMac side are open. iMac has no problem to connect to these services directly.
    On the PB side turning the Firewall on or off resulted the same.
    Could someone please help me to configure the Firewall so it won't have to be always turned off?
    Your help is much appreciated
    Elad
    Original PowerBook "17/iMac G5 2.0 "20   Mac OS X (10.4.7)  

    In the Sharing pane of System Preferences, click the Advanced button under the Firewall tab, enable firewall logging, and then try using those services on the other computer. When done, check the firewall log and look for the number after the : in the logged entries; this is a port number. Knowing the IP address of the other machine will help determine which entries were produced by it as opposed to ones which came from the Internet; this is visible in the Network pane of System Preferences.
    (15371)

  • Not able to connect after changing the password using ALTER VALUES clause

    Hi,
    Just now John explained about VALUES clause in below thread.
    Expired Status
    I created a new account called SURI and tried to use the user account HR's password using VALUES clause. I was able to alter the password but not able to connect SURI with hr password.
    Please see the version details below. And the SQL statements which I have tried.
    SQL*Plus: Release 10.2.0.1.0 - Production on Mon Aug 13 18:44:50 2012
    Copyright (c) 1982, 2005, Oracle.  All rights reserved.
    Enter user-name: sys as sysdba
    Enter password:
    Connected to:
    Oracle Database 10g Express Edition Release 10.2.0.1.0 - Production
    SQL> SELECT password
      2  FROM dba_users
      3  WHERE username = 'HR';
    PASSWORD
    4C6D73C3E8B0F0DA
    SQL> ALTER USER SURI IDENTIFIED BY VALUES '4C6D73C3E8B0F0DA';
    User altered.
    SQL> SELECT password
      2  FROM dba_users
      3  WHERE username='SURI';
    PASSWORD
    4C6D73C3E8B0F0DA
    SQL> conn suri/hr     -- HR account's password is hr only
    ERROR:
    ORA-01017: invalid username/password; logon denied
    Warning: You are no longer connected to ORACLE.
    SQL>Thanks,
    Suri

    Suri wrote:
    Hi,
    Just now John explained about VALUES clause in below thread.
    Expired Status
    I created a new account called SURI and tried to use the user account HR's password using VALUES clause. I was able to alter the password but not able to connect SURI with hr password.
    Please see the version details below. And the SQL statements which I have tried.
    SQL*Plus: Release 10.2.0.1.0 - Production on Mon Aug 13 18:44:50 2012
    Copyright (c) 1982, 2005, Oracle.  All rights reserved.
    Enter user-name: sys as sysdba
    Enter password:
    Connected to:
    Oracle Database 10g Express Edition Release 10.2.0.1.0 - Production
    SQL> SELECT password
    2  FROM dba_users
    3  WHERE username = 'HR';
    PASSWORD
    4C6D73C3E8B0F0DA
    SQL> ALTER USER SURI IDENTIFIED BY VALUES '4C6D73C3E8B0F0DA';
    User altered.
    SQL> SELECT password
    2  FROM dba_users
    3  WHERE username='SURI';
    PASSWORD
    4C6D73C3E8B0F0DA
    SQL> conn suri/hr     -- HR account's password is hr only
    ERROR:
    ORA-01017: invalid username/password; logon denied
    Warning: You are no longer connected to ORACLE.
    SQL>Thanks,
    SuriYou can only do it for the same user, as the password is a hashed value that includes the username as part of the hashing (It's either the username or some internal object id or something). So using the hashed value against another user won't work.

  • When I try to connect to a remote machine using IPSecuritas, am getting the following error

    When am trying to connect to remote machine using IPSecuritas, I am getting the following error and hence not able to establish connection. Imported the security policy and when I start IPSec,  I get this error.
    Info     APP  IKE daemon started
    Info     APP  IPSec started
    Error    IKE  Foreground mode.
    Info     IKE  @(#)ipsec-tools CVS (http://ipsec-tools.sourceforge.net)
    Info     IKE  @(#)This product linked OpenSSL 0.9.7l 28 Sep 2006 (http://www.openssl.org/)
    Info     IKE  Reading configuration from "/Library/Application Support/Lobotomo Software/IPSecuritas/racoon.conf"
    Info     IKE  Resize address pool from 0 to 255
    Error    IKE  failed to bind to address 192.168.1.2[4500] (Address already in use).
    Info     APP  IKE daemon terminated
    Error    IKE  failed to bind to address 192.168.1.2[500] (Address already in use).
    Error    IKE  no address could be bound.
    Info     APP  IPSec terminated
    Please help me in fixing this issue. Thanks in advance!!..
    Thanks,
    RV

    Is this music purchased back in DRM days? I don't actually have any iTunes music so I can't test with my iTunes 7.5, but I know that without iTunes 10 you cannot even connect to the store anymore.  I wouldn't think that would require an active connection to the store all the time, otherwise how could you play music on a computer in the middle of nowhere?  Did you do something to trigger iTunes suddenly wanting to connect and check on machine authorization?

  • Not able to connect to Lotus Domino server using java/corba

    Hi
    I am new to Lotus Domino server and Java.
    I have INstalled Lotus Domino server5 on 1 machine and was successful in installing the Lotus client on another machine.
    Throught the lotus client i am able to connect to the server and send and receive the mails.
    Now I want to connect to the domino server using the Lotus Domino Tolkit for Java/Corba.
    In this Toolkit they have given the sample code program ..
    if I run the code I am getting the error
    java.io.FileNotFoundException: http://<IPADDRESS>/diiop_ior.txtjava.io.FileNotFoundException: http://<IPADDRESS>/diiop_ior.txt
    at sun.net.www.protocol.http.HttpURLConnection.getInputStream(HttpURLCon
    nection.java:691)
    at java.net.URL.openStream(URL.java:942)
    at lotus.domino.NotesFactory.getIOR(NotesFactory.java:314)
    at lotus.domino.NotesFactory.createSession(NotesFactory.java:66)
    at IntroCorbaApp.run(IntroCorbaApp.java:65)
    at java.lang.Thread.run(Thread.java:539)
    lotus.domino.NotesException: Could not get IOR from HTTP Server
    lotus.domino.NotesException
    at lotus.domino.NotesFactory.getIOR(NotesFactory.java:344)
    at lotus.domino.NotesFactory.createSession(NotesFactory.java:66)
    at IntroCorbaApp.run(IntroCorbaApp.java:65)
    at java.lang.Thread.run(Thread.java:539)
    I also tried to find this file in the Domino server directory.
    The file exists in drive:\LotusServer\Domino\Data\Domino\HTML directory..
    I am not getting what exactly is the Problem
    Plz any one help me in this regard..
    thanks in advance

    You should be able to access the diiop_ior.txt file from browser without authentication,only then it will work. This file should not
    be protected.

  • I keep getting "unable to connect to web services" when attempting to use them.

    I purchased an HP Envy 114.  I have connected to the network and am able to print from mulitple computers with no problem.  When attempting to connect and authorize web services it asks me to accept the terms, then "checking for product updates".  It always comes back saying "Unable to connect to web services.  Confirm internet access and try again.".  I have set up the wireless and it diesplays the IP Address and Network name.  I'm not sure what else to try at this point.  There is no help after that, I just keep getting sent in circles. 
    This question was solved.
    View Solution.

    Hello davidarmstrong.
    Try replacing the DNS server's IP address to 8.8.8.8 and 8.8.4.4.
    For this, you will need to enter the printer's EWS by typing the printer's IP address in the URL in any internet browser (Internet Explorer or Firefox).
    If you have any doubt, please let me know.
    Cheers!
    Wixma.
    I am an HP employee.
    Say thanks by clicking the Kudos star in the post.
    If my reply resolved your problem, please mark it as as Accepted Solution so that it can be found easier by other people.

  • Not able to connect ot Blackberry services

    Hi ! when i try to create blackberry internet services account, i get following message : "Your account has been suspended. Please contact the system administrator."
    I am not able to get into EDGE network.
    please help 

    Confirm that it is unlocked:
    http://www.blackberryfaq.com/index.php/How_do_I_determine_if_my_BlackBerry_is_%22unlocked%22%3F
    http://www.blackberryfaq.com/index.php/Buying_a_BlackBerry_off_eBay
    1. If any post helps you please click the below the post(s) that helped you.
    2. Please resolve your thread by marking the post "Solution?" which solved it for you!
    3. Install free BlackBerry Protect today for backups of contacts and data.
    4. Guide to Unlocking your BlackBerry & Unlock Codes
    Join our BBM Channels (Beta)
    BlackBerry Support Forums Channel
    PIN: C0001B7B4   Display/Scan Bar Code
    Knowledge Base Updates
    PIN: C0005A9AA   Display/Scan Bar Code

  • Not able to connect Nokia 5233 with laptop using b...

    Hi Experts,
    I purchased Nokia 5233 couple of months back. Since then i am facing problem in connecting the phone with any laptop using bluetooth. It gets connected to other phones via bluetooth very easily, but doenot get connected with any laptop.
    Whenever I try to search the phone, it appears as active device. When I try to connect to phone the message appears "connection failure". It happens the same with every laptop. Is there anything which i can do to correct this problem?

    try the post above yours.
    Using the search function and actually reading threads will reveal more that you may think..
    Click on the blue Star Icon below if my advice has helped you or press the 'Accept As Solution' link if I solved your problem..

  • Not able to connect to Data service on Airtel

    Hi!
    I have a nokia Lumia 800 handset with airtel as service provider, I activated their GPRS data service (read edge) and I am not able to connect to internet, however earlier I had Vodafone and I never faced such issues with it, I have tried out every possible solution in book i.e.
    1. Set Apn to airtelgprs.com
    2. Using Nokia network setup app.
    3. restarting my phone several times .
    Nothing seem to work has anyone faced such issue if yes could you please help me.

    Have you contacted Airtel to make sure every thing is working and activated their end?

  • "Unable to connect to web services" when trying to scan to e-mail on a HP Photosmart 7520

    Hello -  I used to be able to scan to e-mail with no problems and then all of a sudden I keep getting the "Unable to connect to Web Services" error message.  I have checked my network connection and it is fine, I have turned off my router and unplugged my printer but still no luck.  I have seen that this seems to be a common problem from others in this forum but I was hoping someone could help me figure this out.
    I really need to be able to scan documents to my e-mail..... ughh... please help!
    Thanks,

    I am having the same issue.  Please help.

Maybe you are looking for

  • Muse shuts down when trying to publish.

    Any ideas?  Other sites are fine.  Nothing special about this one.

  • Bridge CS3 Stripping Clipping Path Names

    Whenever editing the metadata in a .psd file, whether it be through a script or manually typing it in, Bridge CS3 strips the file's clipping path names. Howeer, running the same script in Bridge CS2 and performing the manual metadata changes leaves t

  • Audio drop out opening FCP3 project in FCE5

    Has anyone had this problem - and figured out what to do about it? I mostly successfully opened a FCP3 project in FEC5. The only problem was the music track - other audio seemed fine. There were places where the music just dropped out completely. I'm

  • I can not restore my account

    Hi dear support team! I have an account which now looks locked, but it stopped working for me suddenly on November 2014. I tried to reset password, but was shown error message and suggestion to contact support again and again.  Accout restoration pro

  • Resolving: Database Slow complains

    Hello everyone, I'd like to know that what are the general steps to follow to whenever a database is responding very slowly ... ??? thanks, Rossy.Rocs