search for: principalnam

Displaying 9 results from an estimated 9 matches for "principalnam".

Did you mean: principalname
2023 Feb 18
1
previous working smb.conf without winbind, now fails with samba 4.15.8 and winbind running
..." the SID information, and that samba could simply map the kerberos principal name in the authentication to what the samba server OS knows about the matching account name including extended group membership, perhaps similar to how openssh or some other kerberized application might try to map a principalname to local account. Can I configure samba to allow kerberized authentications while not having it attempt to do any uid or gid mapping? Perhaps I should try security = user or security = domain?
2016 Nov 28
0
Samba and kerberized NFSv4
...s. I can't even mount the > home > root directory via nfs on the server itself ("mount.nfsv4: access > denied > by server while mounting ..."). > > As far as I have tracked it down, it appears to me that the server's is > searching in its database for a userPrincipalName=nfs/server.dom.tld > while I have added a servicePrincipalNamenfs/server.dom.tld with the > samba-tool. Due to this neither the server is getting a TGT nor the > client a TGS ... > > Am I doing anything wrong? Is that beahaviour intentional? Getting NFSv4 + Kerberos to work with a...
2008 Jun 10
0
Default AD user lookup string
...ectory user account. My problem is I have legacy user accounts which under the CN attribute have not just their login name but their last name as well: ex. CN=John Doe,OU=Users,DC=domain,DC=com Is there a way to specify the schema attribute Samba will use for AD authentication such as the 'principalName' attribute? Thanks. -- Jas
2016 Nov 28
2
Samba and kerberized NFSv4
...it comes to kerberized NFSv4 it fails. I can't even mount the home root directory via nfs on the server itself ("mount.nfsv4: access denied by server while mounting ..."). As far as I have tracked it down, it appears to me that the server's is searching in its database for a userPrincipalName=nfs/server.dom.tld while I have added a servicePrincipalNamenfs/server.dom.tld with the samba-tool. Due to this neither the server is getting a TGT nor the client a TGS ... Am I doing anything wrong? Is that beahaviour intentional? Version affacted is samba 4.2.10 from the official debian 8 repo...
2023 Feb 17
1
previous working smb.conf without winbind, now fails with samba 4.15.8 and winbind running
On 17/02/2023 22:09, Bob Green via samba wrote: > I need a CIFS server to provide access to Linux files to Windows clients. I > am able to accomplish this on SLES12 SP5, running kernel-4.12.14, with > samba 4.10.5 using the following smb.conf I am surprised this worked with Samba 4.10.x > > [global] > dedicated keytab file = /etc/samba/samba.keytab >
2010 Aug 20
0
samba and kerberos tickets
...at EDEN.SONYTEL.BE 2 host/ubuntu at EDEN.SONYTEL.BE 2 host/ubuntu at EDEN.SONYTEL.BE 2 host/ubuntu at EDEN.SONYTEL.BE 2 UBUNTU$@EDEN.SONYTEL.BE 2 UBUNTU$@EDEN.SONYTEL.BE 2 UBUNTU$@EDEN.SONYTEL.BE If I look on the AD server using ADSI edit I see the following values in the servicePrincipalName field for the clients Computer object: HOST/UBUNTU HOST/ubuntu.sonytel.be However when I try to use any of the principals using 'kinit -k principalname' I get: kinit host/ubuntu.sonytel.be at EDEN.SONYTEL.BE kinit: Client not found in Kerberos database while getting initial credentials...
2016 Dec 02
4
Samba and kerberized NFSv4
Hi Marcel thx. for your fast response. I didn't manage to follow up sooner. I had already verbose logging turned on but I don't seem to find the real reason, why the domain controller searchs for a userPrincipalName instead of servicePrincipalName. Because I wasn't sure whether it is the nfs client process or the server process that failed to get the kerberos ticket when I tried the nfs-mount locally on the server, I went to a client workstation and tried again to mount the nfs exported directory from th...
2016 Dec 02
0
Samba and kerberized NFSv4
Am 02.12.2016 um 08:51 schrieb Matthias Kahle via samba: > Hi Marcel > > thx. for your fast response. I didn't manage to follow up sooner. I had already verbose logging turned on but I don't seem to find the real reason, why the domain controller searchs for a userPrincipalName instead of servicePrincipalName. > > Because I wasn't sure whether it is the nfs client process or the server process that failed to get the kerberos ticket when I tried the nfs-mount locally on the server, I went to a client workstation and tried again to mount the nfs exported director...
2008 Oct 13
10
Shibboleth
Can anyone direct me to a really good tutorial on Shibboleth integration with Rails, or indeed some sample code? I''ve been tearing my hair out all day on this one. Thanks RobL --~--~---------~--~----~------------~-------~--~----~ You received this message because you are subscribed to the Google Groups "Ruby on Rails: Talk" group. To post to this group, send email to