You do not have a REALM entry in your krb5.conf file for the realm
you are attempting to contact, so DNS is being used.  But the local
DNS server does not have the data and must propagate a query.  The
network has a long propagation delay and therefore the Kerberos
client times out before the response arrives.

The second time you attempt the tgt request, the local DNS server
has the response cached so the response arrives before the timeout
period.

Noolyg wrote:
Hi,

I'm having trouble with the kerberos server again...
When I request a tgt or something for the first time it always gives
me the "Cannot contact any KDC for the requested realm", but if i make
the same request again (after a sec), all is fine.

Do you know of anything that can cause this?

Thanks.
________________________________________________
Kerberos mailing list           [EMAIL PROTECTED]
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to