Displaying 20 results from an estimated 25 matches for "gss_acquire_creds".
Did you mean:
gss_acquire_cred
2004 Sep 13
4
Pending OpenSSH release, call for testing.
Darren,
We have systems which are multihomed for virtualisation, but run only one sshd.
You can connect to any IP-address and should be authenticated with
gssapi/kerberos. So the client will ask for a principal host/virt-ip-X and the
server has to have an entry for this in the keytab and has to select the right
key by determining the hostname from the connection IP-address. There is no other
way
2017 Feb 01
2
net ads and wbinfo are painfully slow -- but they work
On Wed, 1 Feb 2017 07:30:19 -0800
Chris Stankevitz <chrisstankevitz at gmail.com> wrote:
> On Wed, Feb 1, 2017 at 1:12 AM, Rowland Penny via samba
> <samba at lists.samba.org> wrote:
> > He is also unlikely to be running avahi, he is using Freebsd 10.3
>
> truss (like strace) showed that wbinfo, net, and sshd were all hanging
> after system calls to getuid() and
2017 Feb 02
0
net ads and wbinfo are painfully slow -- but they work
...text_create failed: NT_STATUS_NOT_SUPPORTED
2. A complaint about broken pipe after starting gse_krb5. This
happened multiple times.
Starting GENSEC submechanism gse_krb5
Client request timed out, shutting down sock 23, pid 89266
final write to client failed: Broken pipe
3. A complainted about gss_acquire_creds. This happened multiple times.
gss_acquire_creds failed for GSS_C_NO_NAME with [ No credentials were
supplied, or the credentials w
ere unavailable or inaccessible.: unknown mech-code 0 for mech 1 2 840
113554 1 2 2] -the caller may
retry after a kinit.
Failed to start GENSEC client mech gse_krb...
2009 Dec 02
1
Kerberos + NFSv4 difficulties
Hey All,
I recently have been trying to setup an NFSv4 share that utilizes Kerberos. My experience in general with NFS is very slim however I feel like I am very close to getting this project completed. Currently I have the following things in place:
1) NFS server nfs.example.net (VM#2) - Running CentOS 5.4 with all of the latest updates and NFS-related packages
2) Kerberos KDC running on
2017 Apr 25
4
[Announce] Samba 4.6.3 Available for Download
======================================================
"I think about food literally
all day every day.
It's a thing."
Taylor Swift
======================================================
Release Announcements
---------------------
This is the latest stable release of the Samba 4.6 release series.
Changes since 4.6.2:
--------------------
o Michael Adam
2017 Apr 25
4
[Announce] Samba 4.6.3 Available for Download
======================================================
"I think about food literally
all day every day.
It's a thing."
Taylor Swift
======================================================
Release Announcements
---------------------
This is the latest stable release of the Samba 4.6 release series.
Changes since 4.6.2:
--------------------
o Michael Adam
2010 Oct 21
2
Mount/automount fails with krb5-enabled nfs4
I have a problem that is driving me crazy. Our nfs server is running
Solaris. Most clients mount directories from it with no problems, but
not all. All clients that have problems run CentOS (5.4 and 5.5). I've
found one or two of each version that fail, but also a couple of each
version that work.
The mounting is done for user home directories via autofs but that
doesn't seem to make any
2004 Mar 24
1
GSSAPI patch for multihomed hosts
Hi,
This is another attempt to get my gssapi for multi homed systems into
openssh. Please find attach a small change so that gssapi authentication
works on multihomed systems.
Regards
Markus
-------------- next part --------------
A non-text attachment was scrubbed...
Name: openssh-3.8p1-mm.diff
Type: application/octet-stream
Size: 3599 bytes
Desc: not available
Url :
2010 May 23
0
Problems with NFS version 4 & Kerberos
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Hi All,
I've got a problem with kerberoized NFS server , i can't start
rpc.svcgssd daemon on my server.
shaver ~ # rpc.svcgssd -fvvv
ERROR: GSS-API: error in gss_acquire_cred(): Unspecified GSS failure.
Minor code may provide more information - No principal in keytab matches
desired name
Unable to obtain credentials for 'nfs'
unable
2016 Jul 25
4
Samba domain member and rfc2307 user IDs
Having problems with rfc2307 user ids. This was working briefly and now it’s not.
samba and winbind v 2.4.2.10+dfs
wbinfo -u lists all the domain users
wbinfo -g lists all the domain groups
getent group lists all the local groups and the AD domain groups that have a UNIX gid set
getent passwd lists only the local users, then pauses for a moment, then nothing. AD users can’t log in and can’t
2016 Jul 25
0
Samba domain member and rfc2307 user IDs
...cess.
I have also some errors showing up with a high level of debug for winbind:
[2016/07/25 23:15:24.221239, 5]
../auth/gensec/gensec_start.c:672(gensec_start_mech)
Starting GENSEC submechanism gse_krb5
[2016/07/25 23:15:24.263941, 5]
../source3/librpc/crypto/gse.c:265(gse_init_client)
gss_acquire_creds failed for GSS_C_NO_NAME with [ No credentials were
supplied, or the credentials were unavailable or inaccessible.: unknown
mech-code 0 for mech 1 2 840 113554 1 2 2] -the caller may retry after a
kinit.
[2016/07/25 23:15:24.264068, 4]
../auth/gensec/gensec_start.c:679(gensec_start_mech)
Fa...
2016 Jul 26
0
NT_STATUS_INTERNAL_ERROR
...mssp_resume_ccache' registered
GENSEC backend 'http_basic' registered
GENSEC backend 'http_ntlm' registered
GENSEC backend 'krb5' registered
GENSEC backend 'fake_gssapi_krb5' registered
Starting GENSEC mechanism spnego
Starting GENSEC submechanism gse_krb5
gss_acquire_creds failed for GSS_C_NO_NAME with [ No credentials were supplied, or the credentials were unavailable or inaccessible.: unknown mech-code 0 for mech 1 2 840 113554 1 2 2] -the caller may retry after a kinit.
Failed to start GENSEC client mech gse_krb5: NT_STATUS_INTERNAL_ERROR
SPNEGO login failed: An...
2009 Mar 25
2
v 1.1.13 / GSSAPI / Timeout waiting for handshake from auth server
Dear all,
I am trying to setup Dovecot with GSSAPI support. For testing purposes
gssapi is the
only method allowed for login.
As I cannot login to my mailbox, I'vo got two questions about the following
log entries:
dovecot: Info: auth-worker(default): passwd-file
/dovecot/store/db/test-userdb: Read 3 users
dovecot: Info: auth(default): new auth connection: pid=3915
dovecot: Info:
2004 Feb 27
2
OPenAFS and OpenSSH replacing kafs
Would OpenSSH be willing to accept a modification similar to the one
below to replace the kafs modification to get an AFS PAG and token?
The nice features of this are that it can be compiled in
even if OpenAFS is not available. At runtime if the
dynamic library is present, it can be loaded and called.
A dynamic lib is used so the setpag is in the same process.
It has been reported that the
2016 Jul 26
6
NT_STATUS_INTERNAL_ERROR
Dear Rowland
Strange thing is that I do not receive notification on my email about your answers.
Here we run an internal DNS. Samba was configured with Bind 9 as secondary DNS.
When I put in domain.local settings, it is because we omit the company name. But the name of my domain ends with .local.
I disabled Avahi daemon.
When I try to run the command you quoted:
smbclient -k -L
2017 Apr 25
0
[Announce] Samba 4.6.3 Available for Download
Hai,
I reviewed the code and Bug 12685 - REGRESSION: net ads keytab handling is broken is applied,
but its not listed in the changes log.
Greetz,
Louis
> -----Oorspronkelijk bericht-----
> Van: samba [mailto:samba-bounces at lists.samba.org] Namens
> Achim Gottinger via samba
> Verzonden: dinsdag 25 april 2017 15:31
> Aan: samba at lists.samba.org
> Onderwerp: Re:
2016 Jul 28
2
NT_STATUS_INTERNAL_ERROR
...mssp_resume_ccache' registered
GENSEC backend 'http_basic' registered
GENSEC backend 'http_ntlm' registered
GENSEC backend 'krb5' registered
GENSEC backend 'fake_gssapi_krb5' registered
Starting GENSEC mechanism spnego
Starting GENSEC submechanism gse_krb5
gss_acquire_creds failed for GSS_C_NO_NAME with [ No credentials were supplied, or the credentials were unavailable or inaccessible.: unknown mech-code 0 for mech 1 2 840 113554 1 2 2] -the caller may retry after a kinit.
Failed to start GENSEC client mech gse_krb5: NT_STATUS_INTERNAL_ERROR
SPNEGO login failed: An...
2018 Oct 23
2
Again NFSv4 and Kerberos at the 'samba way'...
Sorry, i come back to this topic in a different thread, because i'm
still totally puzzled with the previuous one. Louis, sorry me. ;(
I've tried to start with this, that seems very simple:
https://wiki.debian.org/NFS/Kerberos
And so i've done:
a) installed 'nfs-kernel-server' on server, 'nfs-common' on client.
Ok, this is easy.
b) AFAI've understood i need
2016 Jun 06
2
Samba AD member lost domain join after reboot
Hello,
After each reboot, my Samba AD member server lost domain join after
reboot, I have to re-enter the server in the domain with the "net ads
join -U administrator".
I use version 4.4.3 of samba.
The domain controller is a Samba AD server.
After reboot, when I exectute "net ads testjoin" I have:
kerberos_kinit_password SMB2$@AD.SAMDOM.LOCAL failed: failed
2014 Jul 15
3
GSSAPI
If I am trying to build OpenSSH 6.6 with Kerberos GSSAPI support, do I still need to get Simon Wilkinson's patches?
---
Scott Neugroschl | XYPRO Technology Corporation
4100 Guardian Street | Suite 100 |Simi Valley, CA 93063 | Phone 805 583-2874|Fax 805 583-0124 |