Kerberos Error Messages

GSSAPI Error Codes

7.GSS_KRB5_S_KG_BAD_LENGTH: /* "Invalid field length in token" */

8.GSS_KRB5_S_KG_CTX_INCOMPLETE: /* "Attempt to use incomplete security context" */

FATAL ERROR CODES

1.GSS_S_BAD_BINDINGS: channel binding mismatch

2.GSS_S_BAD_MECH: unsupported mechanism requested

3.GSS_S_BAD_NAME: invalid name provided

4.GSS_S_BAD_NAMETYPE: name of unsupported type provided

5.GSS_S_BAD_STATUS: invalid input status selector

6.GSS_S_BAD_SIG: token had invalid integrity check

7.GSS_S_BAD_MIC: preferred alias for GSS_S_BAD_SIG

8.GSS_S_CONTEXT_EXPIRED: specified security context expired

9.GSS_S_CREDENTIALS_EXPIRED: expired credentials detected

10.GSS_S_DEFECTIVE_CREDENTIAL: defective credential detected

11.GSS_S_DEFECTIVE_TOKEN: defective token detected

12.GSS_S_FAILURE: failure, unspecified at GSS-API level

13.GSS_S_NO_CONTEXT: no valid security context specified

14.GSS_S_NO_CRED: no valid credentials provided

15.GSS_S_BAD_QOP: unsupported QOP value

16.GSS_S_UNAUTHORIZED: operation unauthorized

17.GSS_S_UNAVAILABLE: operation unavailable

18.GSS_S_DUPLICATE_ELEMENT: duplicate credential element requested

19.GSS_S_NAME_NOT_MN: name contains multi-mechanism elements

INFORMATORY STATUS CODES

1.GSS_S_COMPLETE: normal completion

2.GSS_S_CONTINUE_NEEDED: continuation call to routine required

134

Appendix E