QAS is not able to renew the Kerberos TGT on systems running NFSv4 which is causing tickets to expire before they are supposed to.
NFSv4 creates tickets with a principal in a format not recognized by QAS:
/opt/quest/bin/vastool klist -c krb5cc_1000
Credentials cache: FILE:krb5cc_1000
Principal: user@DOMAIN
Issued Expires Principal
Jun 1 12:00:00 2013 Jun 5 12:00:00 2013 nfs/hostname.domain@
QAS does not expect an @ with no domain information following it.
This is a defect in QAS and is being tracked by defect ID 28356. The issue has been resolved as of QAS 4.0.3.212.
© 2025 One Identity LLC. ALL RIGHTS RESERVED. Conditions d’utilisation Confidentialité Cookie Preference Center