Displaying 7 results from an estimated 7 matches for "krb5rcachetype".
2017 Dec 04
2
Samba 4.7.2 + bind on Fedora 27: samba_dlz: spnego update failed
...can "disable the replay cache" ?
>
> Thanks
>
First and foremost, I do not use MIT kerberos, so I am not sure if this
will work, but I found this webpage:
https://web.mit.edu/kerberos/krb5-1.12/doc/basic/rcache_def.html
Where it says that if you set the enviromental variable KRB5RCACHETYPE
to 'none' it will not be used i.e. 'export KRB5RCACHETYPE=none'
Rowland
2017 Dec 24
1
[solved] Samba 4.7.2 + bind on Fedora 27: samba_dlz: spnego update failed
On Sun, 24 Dec 2017 18:37:06 +0100
Dario Lesca via samba <samba at lists.samba.org> wrote:
> Il giorno lun, 04/12/2017 alle 21.07 +0000, Rowland Penny via samba ha
> scritto:
> > Where it says that if you set the enviromental variable
> > KRB5RCACHETYPE to 'none' it will not be used i.e. 'export
> > KRB5RCACHETYPE=none'
>
> Today (finally!) I have try this:
>
> # echo 'KRB5RCACHETYPE="none"' >> /etc/sysconfig/named
> # systemctl restart named
> # samba_dnsupdate --all-names --fail-i...
2018 Jul 02
2
client @0x7f6ed800bc20 172.16.5.86#62582: update 'campus.company.intra/IN' denied
...rying to forward the DC to
> itself ?
No, two different networks.
xxx.xxx.xxx.0/26
xxx.xxx.xxx.128/26
Sometimes the "samba_dlz: spnego update failed" appears in the log. I found
this link talks about the problem.
https://bugzilla.redhat.com/show_bug.cgi?id=1528867
I added the "KRB5RCACHETYPE="none"" on the /etc/default/bind9, but the
error message keeps.
Any other idea? :)
On Mon, Jul 2, 2018 at 10:49 AM Rowland Penny via samba <
samba at lists.samba.org> wrote:
> On Mon, 2 Jul 2018 10:27:58 -0300
> Elias Pereira via samba <samba at lists.samba.org>...
2017 Dec 04
2
Samba 4.7.2 + bind on Fedora 27: samba_dlz: spnego update failed
On Mon, 04 Dec 2017 16:31:16 +0100
Dario Lesca via samba <samba at lists.samba.org> wrote:
> Il giorno lun, 04/12/2017 alle 16.00 +0100, Dario Lesca via samba ha
> scritto:
> > The samba command
> >
> > samba_dnsupdate --verbose --all-names --fail-immediately
> >
> > not work
>
> I have add '-d 9' to dlz section
>
> dlz
2018 Jul 02
0
client @0x7f6ed800bc20 172.16.5.86#62582: update 'campus.company.intra/IN' denied
...t; No, two different networks.
> xxx.xxx.xxx.0/26
> xxx.xxx.xxx.128/26
>
> Sometimes the "samba_dlz: spnego update failed" appears in the log. I
> found this link talks about the problem.
> https://bugzilla.redhat.com/show_bug.cgi?id=1528867
>
> I added the "KRB5RCACHETYPE="none"" on the /etc/default/bind9, but the
> error message keeps.
>
That is if you are using the MIT kerberos with Samba, instead of the
default HEIMDAL.
Rowland
2018 Jul 02
2
client @0x7f6ed800bc20 172.16.5.86#62582: update 'campus.company.intra/IN' denied
Hello,
The error described in the email title happens in version 9.10 of the bind
that I have installed in our main DC. In face of that, I found the samba
wiki article that talks about this problem.
https://wiki.samba.org/index.php/Using_BIND_DLZ_backend_with_secured_/_signed_DNS_updates
I made a new installation via source with the suggested options:
root at dc3:~# fakeroot ./configure
2018 Jul 02
2
client @0x7f6ed800bc20 172.16.5.86#62582: update 'campus.company.intra/IN' denied
...t; xxx.xxx.xxx.0/26
> > xxx.xxx.xxx.128/26
> >
> > Sometimes the "samba_dlz: spnego update failed" appears in the log. I
> > found this link talks about the problem.
> > https://bugzilla.redhat.com/show_bug.cgi?id=1528867
> >
> > I added the "KRB5RCACHETYPE="none"" on the /etc/default/bind9, but the
> > error message keeps.
> >
>
> That is if you are using the MIT kerberos with Samba, instead of the
> default HEIMDAL.
>
> Rowland
>
> --
> To unsubscribe from this list go to the following URL and read...