Displaying 20 results from an estimated 9759 matches for "kerberoes".
2006 Mar 30
0
Samba 3.0.21c on AIX 5.2 ML7
After installing Samba3.0.21c, on AIX 5.2 ML7 I get the following error
trying to join a domain, can anyone offer any advice?
Thanks
Mark
[WMSTRAIN:root]/opt/samba-3.0.21c/lib> testparm
Load smb config files from /opt/samba-3.0.21c/lib/smb.conf
Loaded services file OK.
WARNING: passdb expand explicit = yes is deprecated
Server role: ROLE_DOMAIN_MEMBER
Press enter to see a dump of your
2006 Aug 24
2
Can't net ads join
Trying to do a net ads join, which has always worked fine in the past is
now throwing the below errors when I try and rejoin the domain after a
Windows server reboot.
What am I doing wrong?
:b!
[2006/08/23 19:45:00, 0] libads/ldap.c:ads_add_machine_acct(1405)
ads_add_machine_acct: Host account for mustang already exists -
modifying old account
[2006/08/23 19:45:00, 0]
2014 Dec 01
1
Can windows clients get kerberos tickets from samba3 PDC?
On Mon, 1 Dec 2014, Gaiseric Vandal wrote:
> On 12/01/14 11:17, Tiit Kaeeli wrote:
>>> Is it possible for windows clients to authenticate against kerberos and
>>> receive tickets from a Samba3 PDC, when kerberos server is MIT kerberos
>>> running on a Linux server, not a Windows AD server?
>>>
>>> https://help.ubuntu.com/community/Samba/Kerberos
2018 Mar 04
1
Samba AD + Kerbero + NFS "Client no longer in database"
I am soo lost trying to get Samba AD 4.7.5 as a Kerberos source for
NFSv4. The NFS server is the Samba AD server running Ubuntu Server
16.0.4.3 and the client is Linux Mint 18.3
This export WORKS and mounts on client
########## /etc/exports ##########
/mnt/fileshare *(rw,no_subtree_check,async)
############################
This export DOES NOT
########## /etc/exports ##########
2014 May 20
2
Ubuntu client ddns failure
Hi
I'm trying to get an Ubuntu 14.04 client to update its rr to a working
bind dns DC with Samba 4.1.7. The setup is the same as with our openSUSE
clients with sssd 1.11.15
sssd.conf
id_provider = ad
auth_provider = ad
access_provider = ad
ldap_id_mapping = False
/etc/hosts
127.0.0.1 lubuntu-laptop.hh3.site lubuntu-laptop
127.0.1.1 localhost
But it is sending a request for the wrong
2015 Sep 04
3
sernet kerberos
On 09/04/2015 03:59 AM, mathias dufresne wrote:
> Hi,
>
> I don't think there is sernet kerberos package. You would have to install
> kerberos client using your package manager: krb5-workstation on Centos or
> krb5-user on Debian I think...
As I understand things:
Samba4.2 and lower is designed for the Heimal (sp!) kerberos.
Redhat/Fedora/Centos provides the MIT kerberos.
2002 Oct 31
2
Re: Samba PDC and Kerberos(MIT or SEAM in Uinx, without microsoft ADS)
Hi, Andrew,
Thank you very much for your answer.
Now our case is as below:
1, our client machine is the windows 2000
2, We want our Kerberos run in the Unix box.
3, We also want the samba as PDC for all windows user and machine.
4, We want integrate the Kerberos Authentication with samba authentication.
So in this situation, can we get the kerberos login from the windows
2014 Dec 01
2
Can windows clients get kerberos tickets from samba3 PDC?
> Is it possible for windows clients to authenticate against kerberos and
> receive tickets from a Samba3 PDC, when kerberos server is MIT kerberos
> running on a Linux server, not a Windows AD server?
>
> https://help.ubuntu.com/community/Samba/Kerberos
> Suggests that this may be possible and I can succesfully authenticate with
> smbclient -k. But windows users do not
2013 Aug 07
2
Samba 4 empty password
Hello,
We are trying to setup a SAMBA-Server with users that have empty passwords.
We are using:
Samba 4.0.8
Kernel 3.10.5
Slackware 14.0 x64
When we set a password the login successes!
That's what we get when trying to login:
[2013/08/07 13:31:46, 3] ../source4/auth/kerberos/krb5_init_context.c:80(smb_krb5_debug_wrapper)
Kerberos: AS-REQ media1 at BC from ipv4:10.0.99.100:62078 for
2014 May 20
1
ddns failure on Ubuntu client
Hi
I'm trying to get an Ubuntu 14.04 client to update its rr to a working
bind dns DC with Samba 4.1.7. The setup is the same as with our openSUSE
clients with sssd 1.11.15
sssd.conf
id_provider = ad
auth_provider = ad
access_provider = ad
ldap_id_mapping = False
/etc/hosts
127.0.0.1 lubuntu-laptop.hh3.site lubuntu-laptop
127.0.1.1 localhost
But it is sending a request for the wrong
2015 Jun 30
0
Account lockout
Hi,
I have just upgraded our Samba 4.1 AD servers to 4.2.2. Our AD was
previously run on win2k3 and had configuration for account lockout after
3 bad passwords. This lockout obviously did not work after migration to 4.1
After the upgrade to 4.2.2 the lockout started working again, almost as
expected.
The current settings are
Password complexity: on
Store plaintext passwords: off
Password
2005 Nov 10
0
net ads join problems
Good morning all:
When I do a net ads join from FC4 I get the following output and I'm not
quite sure what to make of it. Also, after I do a kinit, net ads join
and smb restart all my windows clients can connect fine. After I reboot
the server, the windows clients can not connect until I do another kinit
and net ads join. What am I missing?
---> smb.conf file
[global]
netbios name
2015 Mar 19
1
Kerberos: Failed to decrypt PA-DATA
Hi,
Some users can't logon to their workstation if the session is negotiating
with samba domain controller, the password is requested again and again.
Samba is joined as a Domain Controller in a windows domain controllers. The
users' s computers are joined also to the domain. But for some users the
kerberos ticket is failing.
Samba version 4.1.15 - Debian 7.8
Samba debug logs, level 3:
2005 Nov 10
2
net ads join
Good morning all:
When I do a net ads join from FC4 I get the following output and I'm not
quite sure what to make of it. Also, after I do a kinit, net ads join
and smb restart all my windows clients can connect fine. After I reboot
the server, the windows clients can not connect until I do another kinit
and net ads join. What am I missing?
---> smb.conf file
[global]
netbios name
2014 Nov 10
0
User's DPAPI/backupkey protected data lost when changing domain password
After a user changes their password (CTRL-ALT-DEL) in our Samba 4 domain
(4.1.12) they lose access to any stored passwords on their Windows PC.
I've set the log level in smb.conf to 4 and enabled the GPO to record DPAPI
log entries in Windows to get the below log data.
My reading of the two is that the Windows PC believes it is failing to reset
the access to its DPAPI store (where the saved
2015 Oct 19
2
samba-tool and --kerberos
Hi Stefan,
Thank you a lot for that, it helped me much.
To be a bit more precise, thanks again to your example, to authenticate
samba-tool command using --kerberos:
syntax is "-k yes" or "--kerberos=yes" or "--kerberos yes" AND -U username
must not be present.
"-k=yes" is not working.
2015-10-19 11:59 GMT+02:00 Stefan Kania <stefan at
2013 Sep 06
1
Problem with kerberos and GPO
Hi,
I have problem with GPO and dns/kerberos resolution
I do a samba -i -d3 to a log file and started on client: gpupdate /force:
lpcfg_load: refreshing parameters from /srv/samba/etc/smb.conf
params.c:pm_process() - Processing configuration file
"/srv/samba/etc/smb.conf"
samba version 4.1.0rc2 started.
Copyright Andrew Tridgell and the Samba Team 1992-2013
...
ldb_wrap open of
2017 Apr 27
2
Samba AD DC authenticated by external Kerberos (~ Re: Samba authentication using non-AD Kerberos?)
On 2017-04-27, 07:13, Gaiseric Vandal via samba wrote:
> A Samba AD directory server (domain controller) is its own
> kerberos server. I don't see how you could configure it to use
> another KDC.
I don't know Kerberos much, so I am wondering can something like
this "delegated"?
> Depending on how may computers in your environment, it may be
> easier to have
2006 Oct 27
2
Freebsd 6.1 and Kerberos in rc.conf
Hi people.
Im reading the samba manual to join my freebsd box with to an win2k3 AD
Domain, i install samba from ports with support for AD, already check that
my samba program has been build with support for kerberos, ldap and all the
stuff the manual recommended, now about kerberos, we have some stuff in
/etc/rc.conf
#
# kerberos. Do not run the admin daemons on slave servers
#
2015 Jul 01
3
strange: 20 characters max in samAccountName
Hi all,
Sernet Samba 4.2.2 as Active Directory on Debian 7.8. No other DC.
I can't log in with on Windows systems (Windows 7) when samAccountName are
longer than 20 characters. This seems to be a LAN MAN or NT4 limitation
which should not happen on AD domain.
Any idea what could leads my to that limitation?
I can log in using administrator account or any other having a short
(enough)