294
Directory issues
Logging in to iLO with Kerberos authentication fails
Symptom
A Kerberos login attempt fails.
Solution 1
Cause
The client does not have a ticket or has an invalid ticket.
Action
1. To lock the client PC and get a new ticket, press Ctrl+Alt+Del.
Solution 2
Cause
Kerberos login is configured incorrectly. Possible reasons follow:
• The Kerberos realm that the client PC is logged in to does not match the Kerberos realm for
which iLO is configured.
• The key in the Kerberos keytab file stored in iLO does not match the Active Directory key.
• iLO is configured for an incorrect KDC server address.
• The date and time do not match between the client PC, the KDC server, and iLO. Set the
date and time on these systems to the same value. The date and time on these systems
must not differ by more than 5 minutes.
Action
1. Verify that your environment meets the requirements for Kerberos support.
Solution 3
Cause
There is a problem with the directory user account. Possible problems follow:
• The iLO computer account does not exist in Active Directory, or the account is disabled.
• The user logged in to the client PC is not a member of a universal or global directory group
authorized to access iLO.
Action