Ansible Kerberos Cannot contact any KDC for realm

21 views
Skip to first unread message

sindhu shree

unread,
Jan 25, 2019, 6:19:34 AM1/25/19
to Ansible Project
Can anyone guide me why am getting this error ? 

UNREACHABLE! => {
    "changed": false,
    "msg": "Kerberos auth failure: kinit: Cannot contact any KDC for realm 'AD.DOMAIN.COM' while getting initial credentials",
    "unreachable": true
}


My inventory and krb5.conf files looks like this

Hosts:


[win]
#10.217.25.246

[win:vars]
ansible_user=us...@AD.DOMAIN.COM
ansible_password=Welcome$123
ansible_connection= winrm
ansible_winrm_transport= kerberos
ansible_winrm_server_cert_validation=ignore




/etc/krb5.conf.d/ :



# Configuration snippets may be placed in this directory as well
includedir /etc/krb5.conf.d/


[logging]
 default = FILE:/var/log/krb5libs.log
 kdc = FILE:/var/log/krb5kdc.log
 admin_server = FILE:/var/log/kadmind.log

[libdefaults]
 dns_lookup_realm = true
 ticket_lifetime = 24h
 renew_lifetime = 7d
 forwardable = true
 rdns = false
 dns_lookup_kdc = true
 pkinit_anchors = /etc/pki/tls/certs/ca-bundle.crt
 default_realm = AD.DOMAIN.COM
 default_ccache_name = KEYRING:persistent:%{uid}

[realms]
    AD.DOMAIN.COM = {
        kdc = pc1.ad.domain.com
        default_server = ad.infosys.com
    }

[domain_realm]





Reply all
Reply to author
Forward
0 new messages