IdM/IPA clients encountering an error on running IPA commands when joined to IPA replica server: "KDC has no support for encryption type"

Solution Verified - Updated -


  • # ipa-client-automount --unattended command fails on IPA client with the following error when it is enrolled/joined to IPA replica:
Cannot connect to the server due to Major (851968): Unspecified GSS failure.  Minor code may provide more information, Minor (2529638926): KDC has no support for encryption type
  • IPA command failing on IPA client after registering it to IPA replica.


  • Red Hat Enterprise Linux 7
  • IPA

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content