search for: enablewinbindkrb5

Displaying 11 results from an estimated 11 matches for "enablewinbindkrb5".

2020 Oct 02
4
Kerberos ticket lifetime
Maybe its.. authconfig --enablewinbindkrb5 --update Requirements to achieve this: - A valid /etc/krb5.conf - A valid system keytab /etc/krb5.keytab - A valid /etc/samba/smb.conf -> will be modified by authconfig ( found on internet worked in centos7 ) But better read.. https://sssd.io/docs/users/pam_krb5_migration.html Greetz,...
2016 Apr 21
2
Winbind idmap question
...d.so krb5_auth krb5_ccache_type=KEYRING use_authtok /etc/pam.d/system-auth-ac:session optional pam_winbind.so krb5_auth krb5_ccache_type=KEYRING --------------------------------------------------------------------- This PAM configuration was obtained using RH authconfig tool: authconfig --enablewinbindkrb5 --enablewinbindauth --update 2016-04-21 12:25 GMT+02:00 Jonathan Hunter <jmhunter1 at gmail.com>: > Hi, > > Does "wbinfo -i <user>" work, and return the same results, on all the DCs? > > Are the DCs running the distribution & versions (e.g. CentOS, Debia...
2018 Nov 09
0
Samba 4 AD Join to Itself
...ggest you get another DC and upgrade Samba whilst doing so, 4.4.x is EOL as far as Samba is concerned. You can get Centos 4.8.6 packages here: http://www.ezplanet.net/xwiki/bin/view/EzPlanetRepo/ You could try running something like this on your DC: authconfig --enablekrb5 --enablewinbindauth --enablewinbindkrb5 --disablesssd --disablesssdauth --enableforcelegacy --enablemkhomedir --update and restart Samba Rowland
2020 Oct 02
0
Kerberos ticket lifetime
...I get a proper ticket.? My only issue is that it doesn't refresh the ticket before expiry when I ssh to a system.? I think I can script around that and just not rely on winbind to do it. Jason. On 10/2/2020 8:16 AM, L.P.H. van Belle via samba wrote: > Maybe its.. > > authconfig --enablewinbindkrb5 --update > > Requirements to achieve this: > > - A valid /etc/krb5.conf > - A valid system keytab /etc/krb5.keytab > - A valid /etc/samba/smb.conf -> will be modified by authconfig > > ( found on internet worked in centos7 ) > > But better read.. > https://sssd....
2018 Nov 08
3
Samba 4 AD Join to Itself
Hi Running Samba 4.9 AD DC on CentOS 7 and would like to join the server to the domain that it serves out. This is to manage user access to roaming profiles. Can anyone advise whether this is 1. Possible 2. Advisable 3. What pitfalls there are Thanks Tony Walsh ************************************************************************************* The information contained
2014 Aug 30
4
I want a Fedora 20 system to be a member server and offer a share in a Windows 2008R2 Active Directory domain
...rs and it all just happens. In fact, it's all documented right here in the RHEL 7 Windows Integration Guide: https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/html/Windows_Integration_Guide/winbind-auth.html The example in section 4.3.2, step 4 uses a parameter named --enablewinbindkrb5 that doesn't exist. And a couple of the parameters in the example need equal signs (parameter=value instead of parameter [space] value). In fairness, that book above is part of RHEL 7 and I'm doing this from Fedora 20 so maybe they are different. Working around that and based on the exampl...
2016 Apr 21
0
Winbind idmap question
...pe=KEYRING use_authtok > /etc/pam.d/system-auth-ac:session optional pam_winbind.so > krb5_auth krb5_ccache_type=KEYRING > --------------------------------------------------------------------- > > This PAM configuration was obtained using RH authconfig tool: > authconfig --enablewinbindkrb5 --enablewinbindauth --update > > > > 2016-04-21 12:25 GMT+02:00 Jonathan Hunter <jmhunter1 at gmail.com>: > >> Hi, >> >> Does "wbinfo -i <user>" work, and return the same results, on all the DCs? >> >> Are the DCs running the distri...
2015 Jun 19
1
(Samba 4.2.2) wbinfo -i does not get the (correct) unix primary group gid
Hi Rowland, > Gesendet: Freitag, 19. Juni 2015 um 13:52 Uhr > Von: "Rowland Penny" <rowlandpenny at googlemail.com> > An: samba at lists.samba.org > Betreff: Re: [Samba] (Samba 4.2.2) wbinfo -i does not get the (correct) unix primary group gid > > On 19/06/15 12:26, Frank Grantz wrote: > > Hi Rowland, > > > >> Gesendet: Freitag, 19. Juni 2015
2020 Oct 02
3
Kerberos ticket lifetime
On 01/10/2020 21:46, Rowland penny via samba wrote: > On 01/10/2020 21:23, Jason Keltz via samba wrote: >> >> >> Okay - I guess the failure of kdc: lines in smb.conf is a bug. >> >> Let's wait and see what happens with your ticket after 10 hours. >> Maybe there's a bug there as well. > It will be in the middle of the night here, so I will report
2016 Apr 21
2
Winbind idmap question
Hi Jonathan, Thank you for that, that solved the issue. Unfortunately I get another issue: on one DC id <user> gives "no such user". Adding domain (id ad.domain\\<user>) does not help. Adding the whole domain (id ad.domain.tld\\<user>) does not help more. I did checked PAM, NSS and Samba configurations, this server is using same configurations as the two working DC.
2018 Sep 15
2
Fwd: Having problem with RID backend - must be missing something
On Sat, 15 Sep 2018 13:08:20 -0400 (EDT) Rich Webb via samba <samba at lists.samba.org> wrote: > ----- On Sep 15, 2018, at 4:32 AM, Rowland Penny via samba > samba at lists.samba.org wrote: > > > > > Including modifying /etc/nsswitch.conf ? > > > > Yep. > > >> > >> Yes, that is how I did it - I compiled from source. > > >