Displaying 12 results from an estimated 12 matches for "fill_mem_keytab_from_system_keytab".
2016 Apr 20
2
Samba 4.4.2 as AD server: clients OK but server fails "wbinfo -K"
...US_CONNECTION_DISCONNECTED
(0xc000020c)
error message was: The transport connection is now disconnected.
Could not authenticate user [john] with Kerberos (ccache: FILE)
The error in /usr/local/samba-4-4/var/log.wb-DOMAIN is:
[2016/04/20 23:00:04.704273, 1]
../source3/librpc/crypto/gse_krb5.c:416(fill_mem_keytab_from_system_keytab)
../source3/librpc/crypto/gse_krb5.c:416: krb5_kt_start_seq_get failed
(No such file or directory)
[2016/04/20 23:00:04.704321, 0] ../lib/util/fault.c:78(fault_report)
===============================================================
[2016/04/20 23:00:04.704369, 0] ../lib/util/fault.c:79(fault_...
2016 Apr 21
0
Samba 4.4.2 as AD server: clients OK but server fails "wbinfo -K"
...0020c)
> error message was: The transport connection is now disconnected.
> Could not authenticate user [john] with Kerberos (ccache: FILE)
>
> The error in /usr/local/samba-4-4/var/log.wb-DOMAIN is:
>
> [2016/04/20 23:00:04.704273, 1]
> ../source3/librpc/crypto/gse_krb5.c:416(fill_mem_keytab_from_system_keytab)
> ../source3/librpc/crypto/gse_krb5.c:416: krb5_kt_start_seq_get failed
> (No such file or directory)
> [2016/04/20 23:00:04.704321, 0] ../lib/util/fault.c:78(fault_report)
> ===============================================================
> [2016/04/20 23:00:04.704369, 0] .....
2016 Apr 11
0
winbind pam trouble
Seems I cheered too early, and I have some more winbind issues I didn't
realise before... here are winbind logs:
> [2016/04/11 20:39:01.330107, 1] ../source3/librpc/crypto/gse_krb5.c:416(fill_mem_keytab_from_system_keytab)
> ../source3/librpc/crypto/gse_krb5.c:416: krb5_kt_start_seq_get failed (Permission denied)
> [2016/04/11 20:39:01.330143, 0] ../lib/util/fault.c:78(fault_report)
> ===============================================================
> [2016/04/11 20:39:01.330173, 0] ../lib/util/fault...
2017 Jul 06
0
[Announce] Samba 4.5.11 Available for Download
...859: ldb: protect Samba < 4.7 against incompatible ldb
versions and require ldb < 1.2.0.
* BUG 12862: auth/ntlmssp: Enforce NTLMSSP_NEGOTIATE_NTLM2 for the NTLMv2
client case.
o Michael Saxl <mike at mwsys.mine.bz>
* BUG 10490: s3:gse_krb5: Fix a possible crash in
fill_mem_keytab_from_system_keytab().
o Andreas Schneider <asn at samba.org>
* BUG 12808: libcli:smb2: Gracefully handle not supported for
FSCTL_VALIDATE_NEGOTIATE_INFO.
o Martin Schwenke <martin at meltin.net>
* BUG 12802: 'ctdb nodestatus' incorrectly displays status for all nodes
with wrong...
2017 Jul 06
0
[Announce] Samba 4.5.11 Available for Download
...859: ldb: protect Samba < 4.7 against incompatible ldb
versions and require ldb < 1.2.0.
* BUG 12862: auth/ntlmssp: Enforce NTLMSSP_NEGOTIATE_NTLM2 for the NTLMv2
client case.
o Michael Saxl <mike at mwsys.mine.bz>
* BUG 10490: s3:gse_krb5: Fix a possible crash in
fill_mem_keytab_from_system_keytab().
o Andreas Schneider <asn at samba.org>
* BUG 12808: libcli:smb2: Gracefully handle not supported for
FSCTL_VALIDATE_NEGOTIATE_INFO.
o Martin Schwenke <martin at meltin.net>
* BUG 12802: 'ctdb nodestatus' incorrectly displays status for all nodes
with wrong...
2020 Oct 12
0
samba AD problem after re-join domain
...rning experience.
>
> <snipped>
> Jason
I wanted to add one more thing...? It seems that I'm actually still
getting this everywhere when a user logs in:
[2020/10/12 10:59:29.958617,? 1, pid=23338, effective(1004, 0),
real(1004, 0)]
../../source3/librpc/crypto/gse_krb5.c:417(fill_mem_keytab_from_system_keytab)
? ../../source3/librpc/crypto/gse_krb5.c:417: krb5_kt_start_seq_get
failed (Permission denied)
... but at least the user can still login.
I wonder if this a regular error and everyone is seeing this in their
logs?? Just for fun, I tried to change the permission of
/etc/krb5.keytab temporaril...
2015 May 12
1
[Solved] A working CUPS authentication now fails without change anything...
Greetings, Daniel Carrasco Mar?n!
>> > Cups calls pam authentication, and pam use winbind then I need to give
>> > permissions to winbind daemon but i don't know what account is using that
>> > daemon. How i can see it?, because ps aux shows the most as root.
>>
>> winbind normally have access to Kerberos keytab by default.
>> I see no reason why
2016 Apr 11
3
winbind pam trouble
Hi,
I just upgraded my member (fileserver) server (wheezy) from sernet-4.1
to sernet-4.2, to be ready for tomorrow's badlock outbreak.
Under 4.1 we used sssd, and now 4.2 with winbind. Everything seems to be
running good: wbinfo (-p, -u, -g, -t) all give the expected results,
same for getent (group, passwd, username)
File serving works, life is good. :-)
Last step: allowing ssh access
2015 May 04
3
A working CUPS authentication now fails without change anything...
.../auth/gensec/gensec_start.c:870(gensec_register)
GENSEC backend 'fake_gssapi_krb5' registered
[2015/05/04 17:51:39.941795, 5]
../auth/gensec/gensec_start.c:649(gensec_start_mech)
Starting GENSEC mechanism gse_krb5
[2015/05/04 17:51:39.988242, 1]
../source3/librpc/crypto/gse_krb5.c:416(fill_mem_keytab_from_system_keytab)
* ../source3/librpc/crypto/gse_*
*krb5.c:416: krb5_kt_start_seq_get failed (Permission denied)[2015/05/04
17:51:39.988422, 0] ../lib/util/fault.c:72(fault_**report)*
===============================================================
[2015/05/04 17:51:39.988779, 0] ../lib/util/fault.c:73(fault_re...
2015 May 04
0
A working CUPS authentication now fails without change anything...
...gensec_register)
> GENSEC backend 'fake_gssapi_krb5' registered
> [2015/05/04 17:51:39.941795, 5]
> ../auth/gensec/gensec_start.c:649(gensec_start_mech)
> Starting GENSEC mechanism gse_krb5
> [2015/05/04 17:51:39.988242, 1]
> ../source3/librpc/crypto/gse_krb5.c:416(fill_mem_keytab_from_system_keytab)
> * ../source3/librpc/crypto/gse_*
> *krb5.c:416: krb5_kt_start_seq_get failed (Permission denied)[2015/05/04
> 17:51:39.988422, 0] ../lib/util/fault.c:72(fault_**report)*
> ===============================================================
> [2015/05/04 17:51:39.988779, 0] ../l...
2015 May 04
3
A working CUPS authentication now fails without change anything...
...EC backend 'fake_gssapi_krb5' registered
>> [2015/05/04 17:51:39.941795, 5]
>> ../auth/gensec/gensec_start.c:649(gensec_start_mech)
>> Starting GENSEC mechanism gse_krb5
>> [2015/05/04 17:51:39.988242, 1]
>>
>> ../source3/librpc/crypto/gse_krb5.c:416(fill_mem_keytab_from_system_keytab)
>> * ../source3/librpc/crypto/gse_*
>> *krb5.c:416: krb5_kt_start_seq_get failed (Permission denied)[2015/05/04
>> 17:51:39.988422, 0] ../lib/util/fault.c:72(fault_**report)*
>>
>> ===============================================================
>> [2015/05...
2020 Oct 12
2
samba AD problem after re-join domain
On 10/12/2020 4:06 AM, Rowland penny via samba wrote:
> On 12/10/2020 02:54, Jason Keltz via samba wrote:
>> I've been working on a Samba AD setup with a bunch of test machines -
>> the one DC, and a bunch of clients. Last night, I ended up switching
>> the name of the test machines temporarily (except the DC), and
>> re-joining the domain (that's for another