Displaying 16 results from an estimated 16 matches for "ksetup".
Did you mean:
setup
2002 Oct 31
2
Re: Samba PDC and Kerberos(MIT or SEAM in Uinx, without microsoft ADS)
...to the Kerberos Realm in the Solaris and authenticate the samba domain user
to the local windows 2k machine. But this two cases are seperated from each other
which means the kerberos authentication use the kerberos password and samba PDC
authentication use the smbpasswd. And I can also map(using Ksetup /mapuser) the
kerberos user to the local or samba domain user and then do the authentication to
the kerberos. So we really want is, when we do the samba PDC authentication we can
use the kerberos password. I don't know if it right. PLS correct me .
Thank you very much.
John
---- Origina...
2004 Jun 15
1
Samba + Kerberos - ADS: possible?
Hi, All!!
I have a Windows XP client configured to use Kerberos authentication (with
a MIT KDC). I configured it with ksetup.exe from Windows 2000 and it
works well.
Question is: can I use the kerberos tickets I got at logon time to access
the shares from our samba server, without configuring a entire AD struct
and soon?
Actually, I can access the shares, but only if my kerberos password and my
smbpasswd password are e...
2003 Jan 24
1
Samba 3, Win2K, and MIT KDC -- possible?
...n MIT KDC set up in Linux along with OpenLDAP.
Linux (Red Hat 8.0) is quite happily doing Kerberos authentication and
using nss_ldap. I've got a Windows 2000 workstation that is in a
workgroup -- not in a domain of any sorts. It is authenticating
against the same MIT KDC on Linux (set up with KSETUP.EXE). There is
no Active Directory server on my network. I don't really want any of
the typical "domain" functionality; I don't mind having to create
local user accounts for each user on the Windows machines, etc.
I can supply log output, install strange software, CVS, more
in...
2006 Apr 11
3
Active directory authentification with Samba
Hi,
I looked at the doc but I can't find what I'm looking for.
I have 1 Linux server (CentOS 4.3) running Samba 3.0.10 in a Windows
2003 AD domain. I modified Samba's conf file to point it to our WINS
server. We can access the share using \\servername. So far so good.
Is there a way to use AD to authenticate the users instead of the Samba
users that are on the server?
Thanks!
Simon
2005 Apr 22
1
Samba as a PDC with LDAP and Kerberos
...l together but I'm not sure. I have the Windows client setup to point
at my KDC so authentication *should* be coming from there once the
authorization portion is going.
So first question is, are sambaLMPassword and sambaNTPassword still
needed in LDAP for each user?
Here's the output from ksetup /dumpstate:
Machine is not configured to log on to an external KDC. Probably a
workgroup member
EXAMPLE.COM:
kdc = <kdc1 server>
kdc = <kdc2 server>
kpasswd = <kpasswd server>
Realm Flags = 0x0 none
No user mappings defined.
Second, here's what I have in LDAP so far:
dn...
2008 Oct 13
1
heimdal/AD documentation
...ver le KDC (enregistrement SRV) mais de toute fa?on pas le realm
(enregistrement TXT). Il faut donc intervenir sur chaque machine, ? commencer
par le pdc lui m?me avec un outil qui se trouve dans les supports tools de
Windows 2003 serveur, ? trouver sur le CD et installer s?par?ment. Ensuite :
ksetup /addkdc DEMO.LOCAL kerberos.bsg.local
mappage des utilisateurs
Pour que les utilisateurs puissent acc?der aux ressources du domaine, l'AD
doit pouvoir trouver un compte qui corresponde. Il faut r?aliser un mappage
entre les principals Kerberos et les comptes du domaine. Le mappage peut ?tre...
2006 Apr 18
4
Managed to make some progress, stuck again.
...ame of the AD server
(castor-srvr1).
Then I edited /etc/krb5.conf to include the following:
[libdefaults]
default_realm = CASTORTECH.COM
[realms]
CASTORTECH.COM = {
kdc = castor-srvr1.castortech.com
}
[domain_realm]
.kerberos.server = CASTORTECH.COM
I got the default realm name when I ran ksetup on the AD server.
I then tried to connect using kinit administrator@CASTORTECH.COM. It
asks for a password and it return an error (krb_error 14 KDC has no
support for encryption type). If I use another user (simon, my account
with domain admin rights), it connects and create a new ticket. To be
su...
2018 May 30
0
outgoing realm trust from windows to samba4
...w to establish outgoing REALM trust with Samba4 from
Windows? It is possible?
On Samba4 side I have created user with name fqdn-of-windows-host and
password fqdn-of-windows-host-password and then
samba-tool spn add host/fqdn-of-windows-host fqdn-of-windows-host
On Windows side I have executed:
ksetup /addkdc SAMBA-REALM samba-fqdn
What to do then?
netdom trust windows-domain /Domain:SAMBA-REALM /add /realm
/passwordt:fqdn-of-windows-host-password /Userd:Administrator /Passwordd:*
not work for me...
And is https://wiki.samba.org/index.php/FAQ#Trust_Support (The trust
feature is experimental...
1999 Aug 09
1
samba with kerberos
I'm sorry if this is documented somewhere.... I certainly couldn't find it
though.
We are currently using the registry hack to allow unencrypted passwords from
our NTsp3+ and 95 clients. We currently have 2 passwords, one considered
secure (the Kerberos password - used for UNIX desktop logins and such) and one
considered insecure (currently just used for POP and samba - we have no
2007 Mar 17
0
Kerberos + Windows XP + Samba
...enticate my users. Using this kerberos server, i am able to log on
any of my unix workstations. Users information is retrieve from nis
and the authentication process is performed by keberos on its all.
Done so with unix, i starting testing with my windows XP. I configured
one windows desktop using ksetup program. All local accounts is mapped
to the kerberos realm for authentication purposes. It worked like a
charm. I login into the windows, once logged, i start pputty ssh.
Since a tickets has been granted on windows XP box, it is used to
allow my local users to log into the other unix server withou...
2005 Jun 06
1
Samba as a PDC with LDAP and Kerberos
.... in no way windows
>>>will know about ldap and mit, without an AD domain.
>>>
>>>
>>>>So first question is, are sambaLMPassword and sambaNTPassword still
>>>>needed in LDAP for each user?
>>>>
>>>>Here's the output from ksetup /dumpstate:
>>>>
>>>>Machine is not configured to log on to an external KDC. Probably a
>>>>workgroup member
>>>>EXAMPLE.COM:
>>>> kdc = <kdc1 server>
>>>> kdc = <kdc2 server>
>>>> kpasswd = <...
2005 May 11
6
Need help with GSSAPI authentication
Client: Windows XP pro, in an AD 2003 domain, running SecureCRT 4.1.11.
I've also got MIT Kerberos for Windows installed on the client, and Leash
shows that my tickets ARE forwardable.
Server: Solaris 8 Sparc server, with MIT Kerberos (krb5-1.4.1), and
OpenSSH 4.0p1.
I've created two AD accounts, and extracted keys mapped to
"host/hostname.domainname.com at REALM.COM" and
2005 Nov 11
2
Windows client and kerberos without ADS
Hello all,
I am doing some tests for an SSO for our Windows workstations using
Kerberos without ADS.
So far, Windows client can obtain the ticket from the Heimdal KDC and
it's possible to login to SSH servers using Vintela Putty.
I am now trying to use the Kerberos credentials to access Samba shares.
I can mount the shares using my Kerberos tickets from a Linux and I see
the service ticket
2002 Nov 01
0
Re: Samba PDC and Kerberos(MIT or SEAM in Uinx, without microsoft ADS)
...ros Realm in the Solaris and authenticate the samba domain user
> to the local windows 2k machine. But this two cases are seperated from each other
> which means the kerberos authentication use the kerberos password and samba PDC
> authentication use the smbpasswd. And I can also map(using Ksetup /mapuser) the
> kerberos user to the local or samba domain user and then do the authentication to
> the kerberos. So we really want is, when we do the samba PDC authentication we can
> use the kerberos password. I don't know if it right. PLS correct me .
> Thank you very much.
>...
2002 Nov 01
0
Re: Samba PDC and Kerberos(MIT or SEAM in Uinx, without microsoft ADS)
...ros Realm in the Solaris and authenticate the samba domain user
> to the local windows 2k machine. But this two cases are seperated from each other
> which means the kerberos authentication use the kerberos password and samba PDC
> authentication use the smbpasswd. And I can also map(using Ksetup /mapuser) the
> kerberos user to the local or samba domain user and then do the authentication to
> the kerberos. So we really want is, when we do the samba PDC authentication we can
> use the kerberos password. I don't know if it right. PLS correct me .
> Thank you very much.
>...
2002 Nov 01
0
Re: Samba PDC and Kerberos(MIT or SEAM in Uinx,without microsoft ADS)
...e Solaris and authenticate the samba domain user
> > to the local windows 2k machine. But this two cases are seperated from each other
> > which means the kerberos authentication use the kerberos password and samba PDC
> > authentication use the smbpasswd. And I can also map(using Ksetup /mapuser) the
> > kerberos user to the local or samba domain user and then do the authentication to
> > the kerberos. So we really want is, when we do the samba PDC authentication we can
> > use the kerberos password. I don't know if it right. PLS correct me .
> > Than...