Displaying 6 results from an estimated 6 matches for "krb5cc_1001".
Did you mean:
krb5cc_1000
2020 Oct 29
2
Samba4 ROLE_STANDALONE vs Kerberos = NT_STATUS_LOGON_FAILURE
...??? hosts allow = 192.168.1.0/24 127.0.0.0/8 fd2c:9fd7:c7c1:10::1/60
??? smb encrypt = required
[homes]
??? browseable = No
??? comment = Home Directories
??? create mask = 0750
??? read only = No
??? valid users = %S
??? veto files = /.*/
# user ~> klist
Credentials cache: FILE:/tmp/krb5cc_1001
??????? Principal: user at DOMAIN.TLD
? Issued??????????????? Expires?????????????? Principal
Oct 29 21:02:19 2020? Oct 30 21:02:19 2020 krbtgt/DOMAIN.TLD at DOMAIN.TLD
# user ~> hostname
domek
# user ~>? smbclient -L domek -U user%PaSsWoRd
session setup failed: NT_STATUS_LOGON_FAILURE...
2020 Oct 29
0
Samba4 ROLE_STANDALONE vs Kerberos = NT_STATUS_LOGON_FAILURE
...1:10::1/60
> ??? smb encrypt = required
>
>
> [homes]
> ??? browseable = No
> ??? comment = Home Directories
> ??? create mask = 0750
> ??? read only = No
> ??? valid users = %S
> ??? veto files = /.*/
>
>
> # user ~> klist
> Credentials cache: FILE:/tmp/krb5cc_1001
> ??????? Principal: user at DOMAIN.TLD
>
> ? Issued??????????????? Expires?????????????? Principal
> Oct 29 21:02:19 2020? Oct 30 21:02:19 2020 krbtgt/DOMAIN.TLD at DOMAIN.TLD
>
> # user ~> hostname
> domek
>
>
> # user ~>? smbclient -L domek -U user%PaSsWoRd
&g...
2020 Oct 30
1
Samba4 ROLE_STANDALONE vs Kerberos = NT_STATUS_LOGON_FAILURE
...>>
>> [homes]
>> ??? browseable = No
>> ??? comment = Home Directories
>> ??? create mask = 0750
>> ??? read only = No
>> ??? valid users = %S
>> ??? veto files = /.*/
>>
>>
>> # user ~> klist
>> Credentials cache: FILE:/tmp/krb5cc_1001
>> ??????? Principal: user at DOMAIN.TLD
>>
>> ? Issued??????????????? Expires?????????????? Principal
>> Oct 29 21:02:19 2020? Oct 30 21:02:19 2020 krbtgt/DOMAIN.TLD at DOMAIN.TLD
>>
>> # user ~> hostname
>> domek
>>
>>
>> # user ~>...
2006 Feb 13
1
heimdal and mit incompatability when using GSSAPI
...wait for reply
debug1: A token was invalid
Unknown error: 0
when I try to connect to oberon. This same connection works fine on another machine with MIT krb5.
Interestingly the tickets are issued even though the authentication fails:
[0:49] alex@Laptop: ~> klist
Credentials cache: FILE:/tmp/krb5cc_1001
Principal: boterola@REED.EDU
Issued Expires Principal
Feb 13 00:22:56 Feb 13 07:02:46 krbtgt/REED.EDU@REED.EDU
Feb 13 00:38:54 Feb 13 07:02:46 host/oberon.reed.edu@REED.EDU
I am also able to use GSSAPI in thunderbird (linux version with MIT...
2006 Dec 11
0
"smbclient -k" fails, used to work - kinit still ok
...445
session request ok
Doing spnego session setup (blob length=101)
got OID=1 2 840 48018 1 2 2
got OID=1 2 840 113554 1 2 2
got OID=1 2 840 113554 1 2 2 3
got OID=1 3 6 1 4 1 311 2 2 10
got principal=asl4$@ASL.LAN
Doing kerberos session setup
ads_cleanup_expired_creds: Ticket in ccache[FILE:/tmp/krb5cc_1001] expiration Mon, 11 Dec 2006 21:17:50 GMT
read_socket_with_timeout: timeout read. read error = Connection reset by peer.
SPNEGO login failed: NT_STATUS_INVALID_NETWORK_RESPONSE
session setup failed: Read error: Connection reset by peer
In essence, the server "asl4" (which is the w2k3 ser...
2004 Mar 26
1
winbind + ads: only works for 10 hours?
...EXAMPLE.ORG
**********************************************************************
I then tested whether renewing worked (hostnames changed):
**********************************************************************
$ kinit
noackjr@EXAMPLE.ORG's Password:
$ klist -v
Credentials cache: FILE:/tmp/krb5cc_1001
Principal: noackjr@EXAMPLE.ORG
Cache version: 4
Server: krbtgt/EXAMPLE.ORG@EXAMPLE.ORG
Ticket etype: des-cbc-crc
Auth time: Mar 26 15:29:19 2004
End time: Mar 27 01:29:19 2004
Renew till: Apr 2 15:29:19 2004
Ticket flags: renewable, initial, pre-authenticated
Addresses: IPv4:10.0...