Displaying 20 results from an estimated 80 matches for "ads_verify_ticket".
2004 Apr 19
1
Samba 3.0.2a with ADS w2k3 Active Directory, enctypes
...faults]
default_realm = HOME.EHC
# The following krb5.conf variables are only for MIT Kerberos.
default_tgs_enctypes = des-cbc-crc des-cbc-md5
default_tkt_enctypes = des-cbc-crc des-cbc-md5
#permitted_enctypes = des-cbc-crc des-cbc-md5
Result
[2004/04/18 10:38:34, 10] libads/kerberos_verify.c:ads_verify_ticket(323)
ads_verify_ticket: enc type [18] failed to decrypt with error Bad
encryption type
[2004/04/18 10:38:34, 10] libads/kerberos_verify.c:ads_verify_ticket(323)
ads_verify_ticket: enc type [17] failed to decrypt with error Bad
encryption type
[2004/04/18 10:38:34, 10] libads/kerberos_verify.c:a...
2004 Apr 20
1
RES: Samba 3.0.2a with ADS w2k3 Active Directory, enctype s
...g krb5.conf variables are only for MIT Kerberos.
default_tgs_enctypes = des-cbc-crc des-cbc-md5
default_tkt_enctypes = des-cbc-crc des-cbc-md5
#permitted_enctypes = des-cbc-crc des-cbc-md5
Result
[2004/04/18 10:38:34, 10] libads/kerberos_verify.c:ads_verify_ticket(323)
ads_verify_ticket: enc type [18] failed to decrypt with error Bad
encryption type
[2004/04/18 10:38:34, 10] libads/kerberos_verify.c:ads_verify_ticket(323)
ads_verify_ticket: enc type [17] failed to decrypt with error Bad
encryption type
[2004/04/18 10:38:34, 10] libads/kerberos_verify.c...
2006 Sep 21
1
Unable to connect samba server using hostname [2]
...ID 1 3 6 1 4 1 311 2 2 10
[2006/09/21 12:59:04, 3] smbd/sesssetup.c:reply_spnego_negotiate(388)
Got secblob of size 1201
[2006/09/21 12:59:04, 10] passdb/secrets.c:secrets_named_mutex(697)
secrets_named_mutex: got mutex for replay cache mutex
[2006/09/21 12:59:04, 10] libads/kerberos_verify.c:ads_verify_ticket(310)
ads_verify_ticket: enc type [16] failed to decrypt with error Bad
encryption type
[2006/09/21 12:59:04, 3] libads/kerberos_verify.c:ads_verify_ticket(310)
ads_verify_ticket: enc type [3] failed to decrypt with error Decrypt
integrity check failed
[2006/09/21 12:59:04, 10] libads/kerber...
2004 May 27
3
Any ideas ?
Hints or check lists for that type or error ?
[2004/05/27 14:11:06.627563, 10, pid=23616]
libads/kerberos_verify.c:ads_verify_ticket(185)
ads_verify_ticket: enc type [1] failed to decrypt with error Bad
encryption type
[2004/05/27 14:11:06.627589, 10, pid=23616]
passdb/secrets.c:secrets_named_mutex_release(716)
secrets_named_mutex: released mutex for replay cache mutex
[2004/05/27 14:11:06.627603, 3, pid=23616]
libads/ker...
2003 Dec 11
4
Windows 2000 and krb5 tickets.
...I've done some more research, and here's what I get.
smbd --version
Version 3.0.0
strings libkrb5.so.3.2 | grep BRAND
KRB5_BRAND: krb5-1-3-1-final 1.3.1 20030730
Everything seems to work, but trying to access the Samba server results in:
[2003/12/11 14:54:19, 3] libads/kerberos_verify.c:ads_verify_ticket(308)
~ ads_verify_ticket: enc type [23] failed to decrypt with error Decrypt
integrity check failed
[2003/12/11 14:54:19, 3] libads/kerberos_verify.c:ads_verify_ticket(316)
~ ads_verify_ticket: krb5_rd_req with auth failed (Bad encryption type)
[2003/12/11 14:54:19, 1] smbd/sesssetup.c:reply_spne...
2003 Aug 22
3
more problems with rc1 + ADS: smbd sigsegv
...ID 1 3 6 1 4 1 311 2 2 10
[2003/08/22 09:45:29, 3] smbd/sesssetup.c:reply_spnego_negotiate(386)
Got secblob of size 1155
[2003/08/22 09:45:29, 10] passdb/secrets.c:secrets_named_mutex(697)
secrets_named_mutex: got mutex for replay cache mutex
[2003/08/22 09:45:29, 10] libads/kerberos_verify.c:ads_verify_ticket(175)
ads_verify_ticket: enc type [16] failed to decrypt with error Bad
encryption type
[2003/08/22 09:45:29, 3] libads/kerberos_verify.c:ads_verify_ticket(175)
ads_verify_ticket: enc type [3] failed to decrypt with error Decrypt
integrity check failed
[2003/08/22 09:45:29, 10] libads/kerber...
2004 Mar 31
9
failing to browse unix shares with samba 3.0.2a
...T 1.3.2.
I was able to run kinit and join samba to our windows 2003 domain as a
domain member, but when I am trying to browse the samba shares from a
windows XP machine it is failing. When I am looking at the samba logs this
is what I am getting:
[2004/03/30 11:15:26, 3] libads/kerberos_verify.c:ads_verify_ticket(323)
ads_verify_ticket: enc type [3] failed to decrypt with error Decrypt
integrity check failed
[2004/03/30 11:15:26, 3] libads/kerberos_verify.c:ads_verify_ticket(330)
ads_verify_ticket: krb5_rd_req with auth failed (Bad encryption type)
[2004/03/30 11:15:26, 1] smbd/sesssetup.c:reply_spnego_...
2009 May 04
2
bad encryption type in AD domain authentication
...gotiate(802)
reply_spnego_negotiate: Got secblob of size 1445
[2009/05/04 11:29:45, 3]
libads/kerberos_verify.c:ads_secrets_verify_ticket(296)
ads_secrets_verify_ticket: enc type [23] failed to decrypt with error
Decrypt integrity check failed
[2009/05/04 11:29:45, 3] libads/kerberos_verify.c:ads_verify_ticket(471)
ads_verify_ticket: krb5_rd_req with auth failed (Bad encryption type)
[2009/05/04 11:29:45, 1] smbd/sesssetup.c:reply_spnego_kerberos(350)
Failed to verify incoming ticket with error NT_STATUS_LOGON_FAILURE!
[2009/05/04 11:29:45, 3] smbd/error.c:error_packet_set(61)
error packet at smb...
2004 Aug 10
2
Kerberos verfy ticket failed
...ego_negotiate(444)
Got OID 1 2 840 113554 1 2 2
[2004/08/10 18:56:42, 3] smbd/sesssetup.c:reply_spnego_negotiate(444)
Got OID 1 3 6 1 4 1 311 2 2 10
[2004/08/10 18:56:42, 3] smbd/sesssetup.c:reply_spnego_negotiate(447)
Got secblob of size 1191
[2004/08/10 18:56:42, 3] libads/kerberos_verify.c:ads_verify_ticket(185)
ads_verify_ticket: enc type [3] failed to decrypt with error Decrypt
integrity check failed
[2004/08/10 18:56:43, 3] libads/kerberos_verify.c:ads_verify_ticket(193)
ads_verify_ticket: krb5_rd_req with auth failed (Bad encryption type)
[2004/08/10 18:56:43, 1] smbd/sesssetup.c:reply_spnego_...
2003 Nov 13
0
Client accessing Samba doesn't authenticate against A ctive Directory
...ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = false
}
smb log snippet
----
[2003/11/12 17:54:31, 10] passdb/secrets.c:secrets_named_mutex(697)
secrets_named_mutex: got mutex for replay cache mutex
[2003/11/12 17:54:31, 10] libads/kerberos_verify.c:ads_verify_ticket(310)
ads_verify_ticket: enc type [16] failed to decrypt with error Bad
encryption type
[2003/11/12 17:54:31, 3] libads/kerberos_verify.c:ads_verify_ticket(310)
ads_verify_ticket: enc type [3] failed to decrypt with error Decrypt
integrity check failed
[2003/11/12 17:54:31, 10] libads/kerberos_v...
2012 May 04
1
s3 connect to s4 ads woes, need guidance..
...ate)
reply_spnego_negotiate: Got secblob of size 1619
[2012/05/04 11:45:29, 3]
libads/kerberos_verify.c:378(ads_secrets_verify_ticket)
ads_secrets_verify_ticket: enc type [23] failed to decrypt with error
Decrypt integrity check failed
[2012/05/04 11:45:29, 3] libads/kerberos_verify.c:568(ads_verify_ticket)
ads_verify_ticket: krb5_rd_req with auth failed (Bad encryption type)
[2012/05/04 11:45:29, 1] smbd/sesssetup.c:342(reply_spnego_kerberos)
Failed to verify incoming ticket with error NT_STATUS_LOGON_FAILURE!
[2012/05/04 11:45:29, 3] smbd/error.c:60(error_packet_set)
error packet at smbd...
2009 Sep 06
0
No subject
...(reply_spnego_negotiate)
reply_spnego_negotiate: Got secblob of size 1783
[2009/10/08 08:48:12, 3]
libads/kerberos_verify.c:266(ads_keytab_verify_ticket)
ads_keytab_verify_ticket: krb5_rd_req failed for all 12 matched keytab
principals
[2009/10/08 08:48:12, 3]
libads/kerberos_verify.c:567(ads_verify_ticket)
ads_verify_ticket: krb5_rd_req with auth failed (Wrong principal in
request)
[2009/10/08 08:48:12, 1] smbd/sesssetup.c:342(reply_spnego_kerberos)
Failed to verify incoming ticket with error NT_STATUS_LOGON_FAILURE!
[2009/10/08 08:48:12, 3] smbd/error.c:60(error_packet_set)
error packe...
2003 Sep 29
0
Problem authenticate with a w2k3 ADS
...st:/bin/false
DOMAIN+krbtgt:x:10004:10000:krbtgt:/home/DOMAIN/krbtgt:/bin/false
...
I think, ADS connection is ok.
When trying to connect from a W2k-Client I get the following messages in
the smbd logfile (and an error in the connection-dialogue):
[2003/09/29 18:06:04, 3] libads/kerberos_verify.c:ads_verify_ticket(310)
ads_verify_ticket: enc type [1] failed to decrypt with error Unknown
error 2529639093
[2003/09/29 18:06:04, 3] libads/kerberos_verify.c:ads_verify_ticket(310)
ads_verify_ticket: enc type [3] failed to decrypt with error Unknown
error 2529639093
[2003/09/29 18:06:04, 3] libads/kerberos_veri...
2004 May 04
3
samba 3.0.2a & Win2003 AD controler
...ego_negotiate(427)
Got OID 1 2 840 113554 1 2 2
[2004/05/04 08:47:20, 3] smbd/sesssetup.c:reply_spnego_negotiate(427)
Got OID 1 3 6 1 4 1 311 2 2 10
[2004/05/04 08:47:20, 3] smbd/sesssetup.c:reply_spnego_negotiate(430)
Got secblob of size 1263
[2004/05/04 08:47:20, 3] libads/kerberos_verify.c:ads_verify_ticket(323)
ads_verify_ticket: enc type [3] failed to decrypt with error Decrypt
integrity check failed
[2004/05/04 08:47:20, 3] libads/kerberos_verify.c:ads_verify_ticket(330)
ads_verify_ticket: krb5_rd_req with auth failed (Bad encryption type)
[2004/05/04 08:47:20, 1] smbd/sesssetup.c:reply_spnego_...
2004 Jan 27
3
Solution -- can connect via IP but not by name
...rver via IP but not by name (either netbios
~ or DNS). Kinit and wbinfo -t all work as expected.
The apparent reason for this is that the 2k client uses
NTLMSSP when you connect via IP which works. However
the kerberos authentication always fails to decrypt
the ticket. The log appears as
~ ads_verify_ticket: enc type [16] failed to decrypt with
~ error Bad encryption type
~ ads_verify_ticket: enc type [1] failed to decrypt with
~ error Bad encryption type
~ ads_verify_ticket: enc type [3] failed to decrypt with
~ error Bad encryption type
~ ads_verify_ticket: krb5_rd_req with auth faile...
2003 Aug 19
1
ADS, W2K3, and various other broken things. (rc1)
...ID 1 3 6 1 4 1 311 2 2 10
[2003/08/19 19:17:22, 3] smbd/sesssetup.c:reply_spnego_negotiate(386)
Got secblob of size 1245
[2003/08/19 19:17:22, 10] passdb/secrets.c:secrets_named_mutex(697)
secrets_named_mutex: got mutex for replay cache mutex
[2003/08/19 19:17:22, 10] libads/kerberos_verify.c:ads_verify_ticket(175)
ads_verify_ticket: enc type [16] failed to decrypt with error Bad
encryption type
[2003/08/19 19:17:22, 10] libads/kerberos_verify.c:ads_verify_ticket(175)
ads_verify_ticket: enc type [1] failed to decrypt with error Bad
encryption type
[2003/08/19 19:17:22, 10] passdb/secrets.c:secret...
2004 May 17
2
RE: Bug 1315 -- wrong schannel auth len 24 -- am I having same problem on my Mac?
...ob of size 1583
[2004/05/17 09:43:34, 10]
/SourceCache/samba/samba-56/samba/source/passdb/secrets.c:secrets_named_
mutex(698)
secrets_named_mutex: got mutex for replay cache mutex
[2004/05/17 09:43:34, 10]
/SourceCache/samba/samba-56/samba/source/libads/kerberos_verify.c:ads_ve
rify_ticket(323)
ads_verify_ticket: enc type [18] failed to decrypt with error Bad
encryption type
[2004/05/17 09:43:34, 10]
/SourceCache/samba/samba-56/samba/source/libads/kerberos_verify.c:ads_ve
rify_ticket(323)
ads_verify_ticket: enc type [16] failed to decrypt with error Bad
encryption type
[2004/05/17 09:43:34, 3]
/SourceCac...
2003 Oct 28
2
v3.0.0, AD, 2k3 mumbles
...W2k ADS server. Works just fine, thanks!
We're sort of under pressure to regrade to a 2003 AD server, which sent
me trying stuff out a bit. Meager results. The 3.0.0 I have (linked
with MIT krb5-1.2.8) refuses to verify incoming tickets:
[2003/10/28 16:27:36, 3] libads/kerberos_verify.c:ads_verify_ticket(317)
ads_verify_ticket: krb5_rd_req with auth failed (Bad encryption type)
Some frantic googling later it is clear that Windows -really- wants to
use kerberos keytype 23, a. k. a. "arcfour-hmac-md5", which that particular
version of MIT kerberos won't digest.
My doubt right no...
2003 Sep 29
4
bad encryption type when accessing AD member server
...'m being asked for the password and Samba logs:
[2003/09/29 13:17:02, 1] smbd/sesssetup.c:reply_spnego_kerberos(172) Failed to
verify incoming ticket!
I turned up logging to 5 and found this just before the "incoming ticket"
line:
[2003/09/29 13:17:02, 3] libads/kerberos_verify.c:ads_verify_ticket(317)
ads_verify_ticket: krb5_rd_req with auth failed (Bad encryption type)
"klist -e" shows my tickets as follows:
- ----- snip -----
Ticket cache: FILE:/tmp/krb5cc_0
Default principal: ADMINISTRATOR@DOMAIN.LOCAL
Valid starting Expires Service principal
09/29/03 13:31:3...
2003 Nov 07
0
W2K, W2K Server and samba 3.0.1
...gotiate(385)
Got OID 1 2 840 113554 1 2 2
[2003/11/07 01:27:34, 3] smbd/sesssetup.c:reply_spnego_negotiate(385)
Got OID 1 3 6 1 4 1 311 2 2 10
[2003/11/07 01:27:34, 3] smbd/sesssetup.c:reply_spnego_negotiate(388)
Got secblob of size 1182
[2003/11/07 01:27:35, 3] libads/kerberos_verify.c:ads_verify_ticket(310)
ads_verify_ticket: enc type [3] failed to decrypt with error Decrypt
integrity check failed
[2003/11/07 01:27:35, 3] libads/kerberos_verify.c:ads_verify_ticket(317)
ads_verify_ticket: krb5_rd_req with auth failed (Bad encryption type)
[2003/11/07 01:27:35, 1] smbd/sesssetup.c:reply_spn...