I've compiled Samba with Kerberos5 support but I'm having trouble gaining access with usercodes that don't have a matching Unix entry, i.e. usercodes that only exist in the Kerberos database. With usercodes that do have matching Unix and Kerberos entries I see the expected behaviour, including logged authentications on the Kerberso KDC. Kerberos only usercodes however just seem to black-hole. Does this ring any bells with anyone? Log file for successful Unix/Kerberos usercode = 'joconnor' : (Samba 1.9.18p10, Digital Unix 4.0d, Win95 client) ... [000] 00 00 4A 4F 43 4F 4E 4E 4F 52 00 4D 41 53 53 45 ..JOCONN OR.MASSE [010] 59 00 57 69 6E 64 6F 77 73 20 34 2E 30 00 57 69 Y.Window s 4.0.Wi [020] 6E 64 6F 77 73 20 34 2E 30 00 ndows 4. 0. switch message SMBsesssetupX (pid 14113) Domain=[MASSEY] NativeOS=[Windows 4.0] NativeLanMan=[Windows 4.0] sesssetupX:name=[JOCONNOR] lp_file_list_changed() file /usr/local/samba/lib/smb.conf -> /usr/local/samba/lib/smb.conf last mod_time: Sun Feb 7 13:22:21 1999 Registered username joconnor for guest access lp_servicenumber: couldn't find joconnor adding home directory joconnor at /users/joconnor Client requested max send size of 2920 Chained message Log of Kerberos only usercode = '99012345' : ... [000] 00 00 39 39 30 31 32 33 34 35 00 4D 41 53 53 45 ..990123 45.MASSE [010] 59 00 57 69 6E 64 6F 77 73 20 34 2E 30 00 57 69 Y.Window s 4.0.Wi [020] 6E 64 6F 77 73 20 34 2E 30 00 ndows 4. 0. switch message SMBsesssetupX (pid 10834) Domain=[MASSEY] NativeOS=[Windows 4.0] NativeLanMan=[Windows 4.0] sesssetupX:name=[99012345] lp_file_list_changed() file /usr/local/samba/lib/smb.conf -> /usr/local/samba/lib/smb.conf last mod_time: Sun Feb 7 13:15:19 1999 Trying username 99012345 Trying username 99012345 Trying username 99012345 Trying username 99012345 Registered username nobody for guest access Client requested max send size of 2920 Chained message ... Thanks. ------------------------- John O'Connor Computing Services Massey University