This is possibly a duplicate of https://bugs.launchpad.net/ubuntu/+source/freeipa/+bug/1874915 at least if you are using freeipa. As shipped, krb5-kdc does not log to /var/log, but instead logs to syslog My position is that since krb5's systemd configuration is correct for the shipped configuration, if you reconfigure your krb5-kdc to log somewhere, you should at that point reconfigure the systemd unit to permit writing to that log. I point to the freeipa bug because freeipa reconfigures this for you but does not update the systemd configuration.
** Changed in: krb5 (Ubuntu) Status: New => Invalid -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1885024 Title: systemd patch fixes: krb5kdc.log Read-only file system To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/krb5/+bug/1885024/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs