search for: ksetup

Displaying 16 results from an estimated 16 matches for "ksetup".

Did you mean: setup
2002 Oct 31
2
Re: Samba PDC and Kerberos(MIT or SEAM in Uinx, without microsoft ADS)
...to the Kerberos Realm in the Solaris and authenticate the samba domain user to the local windows 2k machine. But this two cases are seperated from each other which means the kerberos authentication use the kerberos password and samba PDC authentication use the smbpasswd. And I can also map(using Ksetup /mapuser) the kerberos user to the local or samba domain user and then do the authentication to the kerberos. So we really want is, when we do the samba PDC authentication we can use the kerberos password. I don't know if it right. PLS correct me . Thank you very much. John ---- Origina...
2004 Jun 15
1
Samba + Kerberos - ADS: possible?
Hi, All!! I have a Windows XP client configured to use Kerberos authentication (with a MIT KDC). I configured it with ksetup.exe from Windows 2000 and it works well. Question is: can I use the kerberos tickets I got at logon time to access the shares from our samba server, without configuring a entire AD struct and soon? Actually, I can access the shares, but only if my kerberos password and my smbpasswd password are e...
2003 Jan 24
1
Samba 3, Win2K, and MIT KDC -- possible?
...n MIT KDC set up in Linux along with OpenLDAP. Linux (Red Hat 8.0) is quite happily doing Kerberos authentication and using nss_ldap. I've got a Windows 2000 workstation that is in a workgroup -- not in a domain of any sorts. It is authenticating against the same MIT KDC on Linux (set up with KSETUP.EXE). There is no Active Directory server on my network. I don't really want any of the typical "domain" functionality; I don't mind having to create local user accounts for each user on the Windows machines, etc. I can supply log output, install strange software, CVS, more in...
2006 Apr 11
3
Active directory authentification with Samba
Hi, I looked at the doc but I can't find what I'm looking for. I have 1 Linux server (CentOS 4.3) running Samba 3.0.10 in a Windows 2003 AD domain. I modified Samba's conf file to point it to our WINS server. We can access the share using \\servername. So far so good. Is there a way to use AD to authenticate the users instead of the Samba users that are on the server? Thanks! Simon
2005 Apr 22
1
Samba as a PDC with LDAP and Kerberos
...l together but I'm not sure. I have the Windows client setup to point at my KDC so authentication *should* be coming from there once the authorization portion is going. So first question is, are sambaLMPassword and sambaNTPassword still needed in LDAP for each user? Here's the output from ksetup /dumpstate: Machine is not configured to log on to an external KDC. Probably a workgroup member EXAMPLE.COM: kdc = <kdc1 server> kdc = <kdc2 server> kpasswd = <kpasswd server> Realm Flags = 0x0 none No user mappings defined. Second, here's what I have in LDAP so far: dn...
2008 Oct 13
1
heimdal/AD documentation
...ver le KDC (enregistrement SRV) mais de toute fa?on pas le realm (enregistrement TXT). Il faut donc intervenir sur chaque machine, ? commencer par le pdc lui m?me avec un outil qui se trouve dans les supports tools de Windows 2003 serveur, ? trouver sur le CD et installer s?par?ment. Ensuite : ksetup /addkdc DEMO.LOCAL kerberos.bsg.local mappage des utilisateurs Pour que les utilisateurs puissent acc?der aux ressources du domaine, l'AD doit pouvoir trouver un compte qui corresponde. Il faut r?aliser un mappage entre les principals Kerberos et les comptes du domaine. Le mappage peut ?tre...
2006 Apr 18
4
Managed to make some progress, stuck again.
...ame of the AD server (castor-srvr1). Then I edited /etc/krb5.conf to include the following: [libdefaults] default_realm = CASTORTECH.COM [realms] CASTORTECH.COM = { kdc = castor-srvr1.castortech.com } [domain_realm] .kerberos.server = CASTORTECH.COM I got the default realm name when I ran ksetup on the AD server. I then tried to connect using kinit administrator@CASTORTECH.COM. It asks for a password and it return an error (krb_error 14 KDC has no support for encryption type). If I use another user (simon, my account with domain admin rights), it connects and create a new ticket. To be su...
2018 May 30
0
outgoing realm trust from windows to samba4
...w to establish outgoing REALM trust with Samba4 from Windows? It is possible? On Samba4 side I have created user with name fqdn-of-windows-host and password fqdn-of-windows-host-password and then samba-tool spn add host/fqdn-of-windows-host fqdn-of-windows-host On Windows side I have executed: ksetup /addkdc SAMBA-REALM samba-fqdn What to do then? netdom trust windows-domain /Domain:SAMBA-REALM /add /realm /passwordt:fqdn-of-windows-host-password /Userd:Administrator /Passwordd:* not work for me... And is https://wiki.samba.org/index.php/FAQ#Trust_Support (The trust feature is experimental...
1999 Aug 09
1
samba with kerberos
I'm sorry if this is documented somewhere.... I certainly couldn't find it though. We are currently using the registry hack to allow unencrypted passwords from our NTsp3+ and 95 clients. We currently have 2 passwords, one considered secure (the Kerberos password - used for UNIX desktop logins and such) and one considered insecure (currently just used for POP and samba - we have no
2007 Mar 17
0
Kerberos + Windows XP + Samba
...enticate my users. Using this kerberos server, i am able to log on any of my unix workstations. Users information is retrieve from nis and the authentication process is performed by keberos on its all. Done so with unix, i starting testing with my windows XP. I configured one windows desktop using ksetup program. All local accounts is mapped to the kerberos realm for authentication purposes. It worked like a charm. I login into the windows, once logged, i start pputty ssh. Since a tickets has been granted on windows XP box, it is used to allow my local users to log into the other unix server withou...
2005 Jun 06
1
Samba as a PDC with LDAP and Kerberos
.... in no way windows >>>will know about ldap and mit, without an AD domain. >>> >>> >>>>So first question is, are sambaLMPassword and sambaNTPassword still >>>>needed in LDAP for each user? >>>> >>>>Here's the output from ksetup /dumpstate: >>>> >>>>Machine is not configured to log on to an external KDC. Probably a >>>>workgroup member >>>>EXAMPLE.COM: >>>> kdc = <kdc1 server> >>>> kdc = <kdc2 server> >>>> kpasswd = &lt...
2005 May 11
6
Need help with GSSAPI authentication
Client: Windows XP pro, in an AD 2003 domain, running SecureCRT 4.1.11. I've also got MIT Kerberos for Windows installed on the client, and Leash shows that my tickets ARE forwardable. Server: Solaris 8 Sparc server, with MIT Kerberos (krb5-1.4.1), and OpenSSH 4.0p1. I've created two AD accounts, and extracted keys mapped to "host/hostname.domainname.com at REALM.COM" and
2005 Nov 11
2
Windows client and kerberos without ADS
Hello all, I am doing some tests for an SSO for our Windows workstations using Kerberos without ADS. So far, Windows client can obtain the ticket from the Heimdal KDC and it's possible to login to SSH servers using Vintela Putty. I am now trying to use the Kerberos credentials to access Samba shares. I can mount the shares using my Kerberos tickets from a Linux and I see the service ticket
2002 Nov 01
0
Re: Samba PDC and Kerberos(MIT or SEAM in Uinx, without microsoft ADS)
...ros Realm in the Solaris and authenticate the samba domain user > to the local windows 2k machine. But this two cases are seperated from each other > which means the kerberos authentication use the kerberos password and samba PDC > authentication use the smbpasswd. And I can also map(using Ksetup /mapuser) the > kerberos user to the local or samba domain user and then do the authentication to > the kerberos. So we really want is, when we do the samba PDC authentication we can > use the kerberos password. I don't know if it right. PLS correct me . > Thank you very much. &gt...
2002 Nov 01
0
Re: Samba PDC and Kerberos(MIT or SEAM in Uinx, without microsoft ADS)
...ros Realm in the Solaris and authenticate the samba domain user > to the local windows 2k machine. But this two cases are seperated from each other > which means the kerberos authentication use the kerberos password and samba PDC > authentication use the smbpasswd. And I can also map(using Ksetup /mapuser) the > kerberos user to the local or samba domain user and then do the authentication to > the kerberos. So we really want is, when we do the samba PDC authentication we can > use the kerberos password. I don't know if it right. PLS correct me . > Thank you very much. &gt...
2002 Nov 01
0
Re: Samba PDC and Kerberos(MIT or SEAM in Uinx,without microsoft ADS)
...e Solaris and authenticate the samba domain user > > to the local windows 2k machine. But this two cases are seperated from each other > > which means the kerberos authentication use the kerberos password and samba PDC > > authentication use the smbpasswd. And I can also map(using Ksetup /mapuser) the > > kerberos user to the local or samba domain user and then do the authentication to > > the kerberos. So we really want is, when we do the samba PDC authentication we can > > use the kerberos password. I don't know if it right. PLS correct me . > > Than...