Displaying 8 results from an estimated 8 matches for "krb5princip".
Did you mean:
krb5principal
2017 Jan 04
2
[PATCH] Set KRB5PRINCIPAL in user environment
...s(+)
diff --git a/gss-serv-krb5.c b/gss-serv-krb5.c
index 795992d9..a12bb244 100644
--- a/gss-serv-krb5.c
+++ b/gss-serv-krb5.c
@@ -106,6 +106,11 @@ ssh_gssapi_krb5_userok(ssh_gssapi_client *client, char *name)
} else
retval = 0;
+#ifdef USE_PAM
+ if (options.use_pam)
+ do_pam_putenv("KRB5PRINCIPAL", (char *)client->displayname.value);
+#endif
+
krb5_free_principal(krb_context, princ);
return retval;
}
--
2.11.0
2006 Mar 17
1
samba3 and heimdal: both using ldap as backends
...admin: kadm5_create_principal: ldap_search_s: No such object
kadmin: adding joao: Principal or policy already exists
The ldap logs show these queries (first collumn is the number of entries returned):
1 SRCH base="ou=People,dc=mycnc,dc=com" scope=2 deref=0 filter="(&(objectClass=krb5Principal)(krb5PrincipalName=default@MYCNC.COM))"
0 SRCH base="uid=heimdal,dc=services,dc=mycnc,dc=com" scope=2 deref=0 filter="(objectClass=krb5Principal)"
1 SRCH base="ou=People,dc=mycnc,dc=com" scope=2 deref=0 filter="(&(objectClass=krb5Principal)(krb5Principa...
2017 Jan 06
2
[PATCH] Set KRB5PRINCIPAL in user environment
...2d9..a12bb244 100644
>>--- a/gss-serv-krb5.c
>>+++ b/gss-serv-krb5.c
>>@@ -106,6 +106,11 @@ ssh_gssapi_krb5_userok(ssh_gssapi_client *client, char *name)
>> } else
>> retval = 0;
>>+#ifdef USE_PAM
>>+ if (options.use_pam)
>>+ do_pam_putenv("KRB5PRINCIPAL", (char *)client->displayname.value);
>>+#endif
>>+
>> krb5_free_principal(krb_context, princ);
>> return retval;
>> }
>Hello,
>
>this change request is already tracked as a bug #2063 [1] (with the
>related configuration option). Having this...
2018 Mar 16
2
[PATCH] Set KRB5PRINCIPAL in user environment
Hello
There is no reply about this demand since the firt proposition has if nobody in dev team cares about it :(
Strange ...
Le 14 mars 2018 20:39:53 GMT+01:00, "Johannes L?thberg" <johannes at kyriasis.com> a ?crit :
>Quoting Johannes L?thberg (2017-01-06 02:34:43)
>> >this change request is already tracked as a bug #2063 [1] (with the
>> >related
2018 Mar 16
2
[PATCH] Set KRB5PRINCIPAL in user environment
On Fri, 2018-03-16 at 19:07 +1030, David Newall wrote:
> > There is no reply about this demand since the firt proposition
> > has if nobody in dev team cares about it :(
>
> I'm curious about the first section of the diff, which exports
> SSH_GSSAPI_DISPLAYNAME to PAM. Is that useful? Am I right that the
> PAM
> environment forms no part of the client session?
2006 Nov 29
2
Samba and Heimdal Kerberos V Authentication
Hello,
I maintain a network of numerous Linux workstations, several Apples,
and a few Windows machines. The Apples and Windows XP machines already
grab shared data via Samba and the remaining data is exported to the
Linux machines via NFS.
I am in the process of migrating the existing authentication system
from XYZ123 to Kerberos and going to place user data---with the
exception of passwords
2005 Jun 10
2
samba ldap problem
...TPassword: 5C70F10A2EAD0B4FE5588114C98ED1ED
sambaPwdLastSet: 1118395893
# Martin Hallgren, people, example.com
dn: cn=Martin Hallgren,ou=people,dc=example,dc=com
objectClass: inetOrgPerson
objectClass: organizationalPerson
objectClass: person
objectClass: posixAccount
objectClass: top
objectClass: krb5Principal
objectClass: krb5KDCEntry
objectClass: sambaSamAccount
krb5PrincipalName: martin@EXAMPLE.COM
krb5KeyVersionNumber: 1
krb5MaxLife: 86400
krb5MaxRenew: 604800
krb5KDCFlags: 126
cn: Martin Hallgren
givenName: Martin
mail: martin@example.com
sn: Hallgren
uid: martin
uidNumber: 1050
gidNumber: 100
hom...
2006 Oct 12
0
Cannot conect LDAP to Kerberos
I'm trying to set up my ldap directory to use kerberos passwords. I have
compiled openldap with --with-kpasswd, added the principal
ldap/iceage.sg.org.br@SG.ORG.BR to kerberos. Also, I have prepared the user
entries in LDAP with these fields (in addition to other ones):
objectClass: krb5Principal
krb5PrincipalName: diego@SG.ORG.BR
cn: Diego Lima
userPassword: {KERBEROS}diego@SG.ORG.BR
I could contact the server using:
ldapsearch -H ldap://iceage.sg.org.br/ -x -b "" -s base -LLL
supportedSASLMechanisms
and it returned
dn:
supportedSASLMechanisms: GSSAPI
However when I try...