search for: kerberos5

Displaying 20 results from an estimated 176 matches for "kerberos5".

Did you mean: kerberos
2013 Nov 25
7
[releng_8 tinderbox] failure on i386/i386
TB --- 2013-11-25 17:30:12 - tinderbox 2.20 running on freebsd-legacy2.sentex.ca TB --- 2013-11-25 17:30:12 - FreeBSD freebsd-legacy2.sentex.ca 9.1-RELEASE FreeBSD 9.1-RELEASE #0 r243825: Tue Dec 4 09:23:10 UTC 2012 root at farrell.cse.buffalo.edu:/usr/obj/usr/src/sys/GENERIC amd64 TB --- 2013-11-25 17:30:12 - starting RELENG_8 tinderbox run for i386/i386 TB --- 2013-11-25 17:30:12 -
2003 Apr 23
2
Kerberized Telnet Badly Broken (Patch enclosed)
Ugh. With MAKE_KERBEROS5=yes, on a recent STABLE, I get the following trying to use Kerberized telnet: # telnet -l test big.x.kientzle.com Trying 66.166.149.54... Connected to big.x.kientzle.com. Escape character is '^]'. [ Trying mutual KERBEROS5 (host/big.x.kientzle.com@X.KIENTZLE.COM)... ] Bus error (core dumpe...
2006 Jun 11
2
Kerberos5 / Heimdal
I have FreeBSD-6.1 and it appears the default installation has a full complement of Kerberos5. But, /usr/src/kerberos5/README states: This subtree is world-exportable, as it does not contain any cryptographic code. At the time of writing, it did not even contain source code, only Makefiles and headers. Please maintain this "exportable" status quo. Than...
2010 Oct 27
3
Samba 3.5.6, Solaris 10, pam_winbind.so will not link
...on Solaris 10, using gcc 3.4.6. Maybe fresh eyes will see something? Been having issues building samba since 3.4.9 (and anything greater than 3.2.15 on Solaris 9 where samba will build, but winbind will not work properly for user authentication.) techops$ make Using CFLAGS = -I/opt/local/kerberos5/include -O -I. -I/usr/local/src/samba-3.5.6/source3 -I/usr/local/src/samba-3.5.6/source3/iniparser/src -Iinclude -I./include -I. -I. -I./../lib/replace -I./../lib/tevent -I./libaddns -I./librpc -I./.. -I./../lib/talloc -I../lib/tdb/include -DHAVE_CONFIG_H -I/opt/local/kerberos5/include -I/op...
2005 Sep 05
3
[Bug 1078] passing --without-kerberos5 still checks for some kerberos support
http://bugzilla.mindrot.org/show_bug.cgi?id=1078 Summary: passing --without-kerberos5 still checks for some kerberos support Product: Portable OpenSSH Version: -current Platform: All OS/Version: Linux Status: NEW Severity: normal Priority: P2 Component: Documentation Assigned...
2002 Jun 26
2
Using Kerberos5 in 3.3p1
Hello all, I'm not able to get Kerberos5 authenticarion work together with PrivSep. According to strace, it seems that the kerberos authentication stage is performed by the user process in chrooted enviroment. The problem is that Kerberos authentication must be done by root. Is anybody working on a fix? (or am I missing something in confi...
2001 Jul 24
1
OpenSSH 2.9p2+Kerberos5 on RH7.1 fails
I've been installing OpenSSH 2.9p2 onto several RedHat Linux machines, after compiling in the GSSAPI/Kerberos5 patch from here: http://www.sxw.org.uk/computing/patches/openssh.html I've been using ssh both to let users in via passwords and Kerberos tickets, and both have been working fine... except for one irritating machine, which (for no good reason I can see) fails when using kerberos tickets. (it...
2004 Jan 12
0
samba3.0.1/win2000ad/kerberos5: user cannot logon
...tice directory domain (blatt.baum.local). It is a testing environment at a local switch. All IPs are static. DNS is configured on "wurzel" forward and reverse. resolv.conf/nsswitch.conf are configured to use the DNS of "wurzel", winbind is configured to map the users and groups. kerberos5 is configured as described in the samba3-Howto. All machines can ping by name and IP-address. "blatt1" is the machine that makes trouble. wbinfo -u, kinit administrator@BAUM.LOCAL, getent passwd work fine and give the expected output (Userlist, ok, userlist) setup of the samba 3.0.1 went...
2011 Apr 22
0
Kerberos5 packages not needed anymore?
Hi all, I have a debian linux lenny 5.0 server with samba (version 3.2.5-4lenny14) on it. I want to create a cifs share which uses Active Directory authentication. In all howto's i read that i need kerberos5 to do this, so I installed krb5-user, krb5-config and libkrb53. I edited /etc/krb5.conf to my domain etc. Everything works like it should. BUT i noticed a file in /var/run/samba/smb_krb5 (krb5.conf.TESTDOMAIN) that seems to be generated by winbind. The config file differs from my /etc/krb5.conf...
2005 Jun 14
1
Samba w/ ADS support
...Solaris 9 & 10 machines. I have tried compiling samba3, but some reason it will not compile with ADS support. I have compiled MIT krb5 and openldap previous to compiling Samba. I compiled openldap and installed it into /usr/local/openldap. Kerberos was compiled and installed into /usr/local/kerberos5. When compiling samba3 I used the follow configure: ./configure --with-pam --with-winbind --with-ads --with-krb5=/usr/local/kerberos5 --with-ldap=/usr/local/openldap. It doesn't seem to work. The message I get back when compiling samba is: checking for ldap_initialize... no...
2001 Nov 07
1
what's the deal with openssh-3.0p1 and kerberos5?
The openssh-3.0 announcement said: (...) 3) improved Kerberos support in protocol v1 (KerbIV and KerbV) (...) This seems to imply at least some krb5 support, but there is nothing new in ./configure --help about it. Grepping the source, I see many references to #ifdef KRB5. Trying to enable it manually (a #define in config.h) gives errors about a missing krb5_auth_con_setaddrs_from_fd, which I
2002 May 17
1
OpenSSH 3.2.2 supports kerberos5 but....
I can't seem to login with only a TGS? (i.e. no password) Do I need another patch to have that part work? Password auth seems to be working against the KDC just fine. TIA. -- Austin Gonyou Systems Architect, CCNA Coremetrics, Inc. Phone: 512-698-7250 email: austin at coremetrics.com "One ought never to turn one's back on a threatened danger and try to run away from it. If you do
2003 Dec 17
3
Fedora FC1 RPMs
I've spent the morning looking at making some RPMs for Fedora Core 1 and run into a problem with GSSAPI. Basically the default install of Fedora doesn't come with the necessary gssapi code to build the RPMs by default (i.e. you need to say %define kerberos5 0 in openssh.spec). Since Fedora is going to fork off from RedHat I was going to create a set of patches to make a contrib/fedora for RPM building on Fedora but wasn't sure if it'd be more appropriate to make it not build Kerberos5 by default or make the proper packages for gssapi requ...
2005 Apr 20
1
Have configure search $PATH for krb5-config
Hi All. Right now, if OpenSSH is configure'ed --with-kerberos5 and the system has a krb5-config that's not in /usr/local/bin then configure won't find it. The attached patch changes this so krb5-config will be used if it's anywhere in the path (although if it exists in the directory specified by --with-kerberos5= then the user-supplied path wi...
2004 May 22
3
kerberos5 / gssapi support in mount.cifs?
Hi, allow me another question. Is it planned or already implemented to support gssapi with mount.cifs? Regards, Timo
2004 Jan 15
1
kerberos5 authentication of ssh connections
Hello freebsd-security! What is the best way to authenticate remote ssh users transparantly without typing the kinit and kdestroy commands? Using pam_krb5 works satisfactorily for local logins but makes it crooked for remote ssh ones. The comp.protocols.kerberos and comp.security.ssh newsgroups and the pam-krb5-users maillist confirm this assertion. As far as I understood that using kerberized
2003 Apr 01
0
kadmind patch error
Hello all I have a problem using kadmind patch. # cd /usr/src/kerberos5/libexec/k5admind # make depend && make all install ... /usr/src/kerberos5/libexec/k5admind/../../../crypto/heimdal/lib/hdb/hdb.h:41: hdb_asn1.h: No such file or directory In file included from /usr/src/kerberos5/libexec/k5admind/../../../crypto/heimdal/kadmin/kadm_conn.c:34: /usr/src/ke...
2005 Nov 27
3
OpenSSH and Kerberos / Active Directory authentication problems: Credentials cache permission incorrect / No Credentials Cache found
...nSSH PAM support and OpenSSH's internal kerberos support. But both result in errors. When using PAM authentication (using the same PAM stack we're using for local authentication on the clients that works with pam_krb5.so) I can successfully login on the OpenSSH server but don't get the Kerberos5 ticket written to /tmp/krb5cc_[...]. The following error is written to the logs: -- -bash: GSSAPI Error: Miscellaneous failure (No Credentials cache found) -- Also the variable KRB5CCNAME isn't defined. I've investigated about this problem already on the net and tried different setups and...
2008 Sep 03
1
Dovecot 1.1.3 Kerberos5 GSSAPI bug (with patch)
The functionality added in changeset 818a638fa9a3 has a bug for x86_64 on line 103. The src/auth/mech-gssapi.c file must now include stdlib.h to have the declaration for getenv(). Otherwise, the compiler uses the implicit return type (int), which truncates the 8-byte pointer getenv() returns to a 4-byte value. This causes a segfault on subsequent reads. Here is debugger output illustrating the
2009 Mar 25
2
help on kerberos5
Dear All, this i feel is a little out of topic but really apprecite if someone can help i am tryin to authenicate my Centos 5.2 box to windows 2003 ADS server .. but am not able to do so . i get the following error when i run kinit kinit(v5): Improper format of Kerberos configuration file while initializing Kerberos 5 library i have the following packages installed on my linux box [root at