Displaying 20 results from an estimated 301 matches for "krb4_convert".
2004 May 12
2
Failed to verify ticket ?
...ype = 1
forwardable = true
proxiable = true
[realms]
DRAF.FC = {
kdc = draffc3.draf.fc
default_domain = DRAFFCOMTE
}
[domain_realm]
.draf.fc = DRAF.FC
[kdc]
profile = /etc/kerberos/krb5kdc/kdc.conf
[pam]
debug = false
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = false
[appdefaults]
pam = {
debug = true
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = true
afs_cells = draffc3.draf.fc
hosts = draffc3.draf.fc
max_timeout = 30
timeout_shift = 2
initial_timeout = 1
}
[login]
krb4_convert = false
krb4_get_tickets...
2015 Jul 13
2
Member Server with problems
...25
admin_server = 10.133.84.25
default_domain = MEUDOMINIO.COM
}
MEUDOMINIO.COM = {
kdc = 10.133.84.25
admin_server = 10.133.84.25:88
}
[domain_realm]
.meudominio.com = .MEUDOMINIO.COM
meudominio.com = MEUDOMINIO.COM
[login]
krb4_convert = true
krb4_get_tickets = true
The below is my /etc/nsswitch.conf in a Member Server:
passwd: compat winbind
group: compat winbind
shadow: compat
hosts: files dns
networks: files
protocols: db files
services: db files
ethers: d...
2005 Jan 12
1
URGENT winbind - New DOMAIN but old DOMAIN not CHANGING - Resent
....sjc:88
admin_server = sun.admin.sjc:749
kpasswd_server = sun.admin.sjc
default_domain = admin.sjc
}
[domain_realm]
.admin.sjc = ADMIN.SJC
[kdc]
profile = /etc/kerberos/krb5kdc/kdc.conf
[pam]
debug = false
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = false
[login]
krb4_convert = false
krb4_get_tickets = false
Anyway the users cannot auth through out proxy because of this.
Can anyone help. I have to get this fixed by the morning before staff
arrive.
Thanks
Chris
2004 Jun 16
2
Winbind in ADS forrest hangs when not able to talk to other DCs
...h01.ch.domain.intern:88
default_domain = ch.domain.intern
}
[domain_realm]
.ch.domain.intern = CH.DOMAIN.INTERN
ch.domain.intern = CH.DOMAIN.INTERN
[kdc]
profile = /var/kerberos/krb5kdc/kdc.conf
[appdefaults]
pam = {
debug = false
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = false
}
any suggestions?
thnx in advance
best regards,
roman
2010 Mar 29
6
AD Auth Trusted Domain issues
...= RDOMAIN.PRV
rdomain.prv = RDOMAIN.PRV
.kid.rdomain.prv = KID.RDOMAIN.PRV
kid.rdomain.prv = KID.RDOMAIN.PRV
[kdc]
profile = /var/kerberos/krb5kdc/kdc.conf
[appdefaults]
pam = {
debug = false
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = false
validate = true
}
[login]
krb4_convert = true
krb4_get_tickets = false
2004 Dec 07
1
Kerberos Error
...admin_server = dc2.hq.arkonnetworks.com:749
default_domain = hq.arkonnetworks.com
}
[domain_realm]
.hq.arkonnetworks.com = HQ.ARKONNETWORKS.COM
[kdc]
profile = /etc/kerberos/krb5kdc/kdc.conf
[pam]
debug = false
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = false
[login]
krb4_convert = false
krb4_get_tickets = false
2005 Jan 12
0
winbind - New DOMAIN but old DOMAIN not CHANGING .URGENT
...= sun.admin.sjc:88
admin_server = sun.admin.sjc:749
kpasswd_server = sun.admin.sjc
default_domain = admin.sjc
}
[domain_realm]
.admin.sjc = ADMIN.SJC
[kdc]
profile = /etc/kerberos/krb5kdc/kdc.conf
[pam]
debug = false
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = false
[login]
krb4_convert = false
krb4_get_tickets = false
Anyway the users cannot auth through out proxy because of this.
Can anyone help. I have to get this fixed by the morning before staff
arrive.
Thanks
Chris
2015 May 05
2
SAMBA not working as AD member server
....log
[libdefaults]
default_realm = TESTNET.LOCAL
dns_lookup_realm = true
dns_lookup_kdc = true
ticket_lifetime = 24h
renew_lifetime = 7d
forwardable = true
[appdefaults]
pam = {
debug = false
ticket_lifetime = 36000
renew_lifefime = 36000
forwardable = true
krb4_convert = false
}
smb.conf
[global]
workgroup = TESTNET
realm = TESTNET.LOCAL
security = ADS
domain master = no
local master = no
winbind nss info = rfc2307
winbind trusted domains only = no
winbind use default domain = yes
winbind enum users = yes
winbind enum groups = y...
2009 Mar 25
2
help on kerberos5
...DIA.LOCAL
baladia.local=BALADIA.LOCAL
kerberos 88/udp kdc # Kerberos key server
kerberos 88/tcp kdc # Kerberos key server
[kdc]
profile = /var/kerberos/krb5kdc/kdc.conf
[appdefaults]
pam = {
debug = false
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = false
}
as i said before when i run kinit
kinit(v5): Improper format of Kerberos configuration file while
initializing Kerberos 5 library
i tried googlin n tried varios options in the conf file but no luck
i would really apprecite n be thankful if someone could point out the
syntax error in m...
2012 Mar 06
1
problem for joining the domain.
...min_server = 192.168.1.223
default_domain = DOMAIN.com
}
[domain_realm]
.kerberos.server = DOMAIN.COM
.DOMAIN.com = DOMAIN.COM
[kdc]
profile = /var/kerberos/krb5kdc/kdc.conf
[appdefaults]
pam = {
debug = false
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = false
}
2004 Jul 30
1
Failed to verify incoming ticket
...in_server = test-dc.w2k3.test:749
default_domain = w2k3.test
}
[domain_realm]
.w2k3.test = W2K3.TEST
w2k3.test = W2K3.TEST
[kdc]
# profile = /var/kerberos/krb5kdc/kdc.conf
[appdefaults]
pam = {
debug = false
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = false
}
##############
Thanks,
Mark
--
Mark Warbeck
Systems Engineer
Engineering Science and Mechanics
Virginia Tech
323A Norris Hall
Mail Code 0219
Blacksburg, VA 24061
540.231.7489
2011 Feb 18
1
samba ADS-based authentication fails with NT_STATUS_NO_SUCH_USER but wbinfo works
...ver = 192.168.3.1
default_domain = LAN.XXXX.CO.UK
}
[domain_realm]
.lan.xxxx.co.uk = LAN.XXXX.CO.UK
lan.xxxx.co.uk = LAN.XXXX.CO.UK
[kdc]
profile = /var/kerberos/krb5kdc/kdc.conf
[appdefaults]
pam = {
debug = false
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = false
}
Thanks again
Geoff
On 18 February 2011 16:32, Andrew Masterson
<Andrew.Masterson at nuvistaenergy.com> wrote:
> First thing I would do is a testparm -v on both the old and new boxes, and do a diff -a on those files to see what has changed.
>
> Samba changes default opti...
2014 Apr 25
2
problem authenticating users to Active Directory after Ubuntu 12.04 -> 14.04 upgrade
...00
allow_weak_crypto = yes
[realms]
MYDOMAIN.COM = {
kdc = my.domain.com
admin_server = my.domain.com
default_domain = MYDOMAIN.COM
}
[domain_realm]
.mydomain.com = MYDOMAIN.COM
mydomain.com = MYDOMAIN.COM
[login]
krb4_convert = true
krb4_get_tickets = false|
/etc/nsswitch.conf
| passwd: compat winbind
group: compat winbind
shadow: compat
hosts: files mdns4_minimal [NOTFOUND=return] dns wins
networks: files
protocols: db files
service...
2015 Oct 09
2
Make a share owned by a service account available to members of an AD group
...corp.go2uti.com:749
default_domain = DEVTST-CORP
}
[domain_realm]
.devtst-corp.go2uti.com = DEVTST-CORP.GO2UTI.COM
devtst-corp.go2uti.com = DEVTST-CORP.GO2UTI.COM
[appdefaults]
pam = {
debug = false
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = false
}
net ads testjoin:
Join is OK
________________________________________________________________
Mark Tovey - UNIX Engineer | Service Strategy & Design
UTi | 400 SW Sixth Ave, Suite 1100 | Portland | Oregon | 97204 | USA
MTovey at go2uti.com | O / C +1 503 953-1389
Until you can...
2011 Mar 10
1
Squid with AD Authendication problem (windows 2003)- please help
...dmin_server = 10.1.5.11
? default_domain = DOMAIN.HOME
?}
?
[domain_realm]
?.DOMAIN.home = DOMAIN.HOME
?DOMAIN.home = DOMAIN.HOME
?
[kdc]
?profile = /var/kerberos/krb5kdc/kdc.conf
?
[appdefaults]
?pam = {
?? debug = false
?? ticket_lifetime = 36000
?? renew_lifetime = 36000
?? forwardable = true
?? krb4_convert = false
?}
2012 Jul 09
2
How do I get an ssh client to authenticate with samba4's kerberos GSSAPI?
...in = {
something = something-else
}
}
fcc-mit-ticketflags = true
[realms]
MYDOMAIN.NET = {
kdc = cofil01.mydomain.net:88
default_domain = mydomain.net
}
[domain_realm]
.mydomain.net = MYDOMAIN.NET
mydomain.net = MYDOMAIN.NET
[login]
krb4_convert = true
krb4_get_tickets = false
====================================================
The server side krb5.conf contains this:
====================================================
[libdefaults]
default_realm = MYDOMAIN.NET
dns_lookup_realm = false
dns_lookup_kdc = true
=============...
2004 Jul 13
1
AW: Domain logon against a Windows Server 2003 based AD
> hi,
> did you joined your samba-server to the W2K Domain?
>
yes, more than once, do I need to do more cleanups than
deleting the computer account in ads?
> > Jul 12 16:56:22 linux winbindd[2410]: [2004/07/12 16:56:22, 0]
> > nsswitch/winbindd_util.c:get_trust_pw(951)
> > Jul 12 16:56:22 linux winbindd[2410]: get_trust_pw: could not fetch
> >
2008 Apr 04
1
Issue with Samba 3.0.28a and Active Directory
....NET
.TESTADS.NET =TESTADS.NET
[appdefaults]
pam = {
debug = false
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = false
}
[kdc]
profile = /var/kerberos/krb5kdc/kdc.conf
7. We started smbd and nmbd service
8. When we enter "net ads join -U sridharg@TESTADS.NET ", we are
prompted to enter the password.
"sridharg@TESTADS.NET...
2003 Dec 20
0
Samba working in Active Directory .config's included
....LABOR.AK:749
> default_domain = LABOR.AK
> }
>
> [domain_realm]
> .LABOR.AK = LABOR.AK
>
> [kdc]
> profile = /etc/kerberos/krb5kdc/kdc.conf
>
> [pam]
> debug = false
> ticket_lifetime = 36000
> renew_lifetime = 36000
> forwardable = true
> krb4_convert = false
>
> [login]
> krb4_convert = false
> krb4_get_tickets = false
Checking encryption type:
> # klist -e
> Ticket cache: FILE:/tmp/krb5cc_0
> Default principal: TIM@LABOR.AK
>
> Valid starting Expires Service principal
> 12/19/03 13:59:10 1...
2012 Feb 23
1
Error accessing others domains in forest
...true
[realms]
PERSONALE.DIR.UNIBO.IT = {
kdc = aki.PERSONALE.DIR.UNIBO.IT:88
admin_server = aki.PERSONALE.DIR.UNIBO.IT:749
default_domain = PERSONALE.DIR.UNIBO.IT
}
[domain_realm]
.PERSONALE.DIR.UNIBO.IT = PERSONALE.DIR.UNIBO.IT
[kdc]
profile = /etc/kerberos/krb5kdc/kdc.conf
[login]
krb4_convert = false
krb4_get_tickets = false
[appdefaults]
pam = {
debug = true
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = true
mappings = ([a-z\.]*)@studio.unibo.it STUDENTI-$1
}
Too bad I already upgraded more th...