Displaying 20 results from an estimated 47 matches for "retain_after_close".
2005 Apr 11
3
FW: net ads join fails
...ealm = ELLISONSLEGAL.COM
clockskew = 300
[domain_realm]
.ELLNET = ELLISONSLEGAL.COM
[realms]
ELLISONSLEGAL.COM = {
kdc = 10.0.0.31
default_domain = ELLNET
kpasswd_server = 10.0.0.31
}
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 0
}
Thanks
-----Original Message-----
From: Penny Willisson
Sent: 11 April 2005 14:43
To: 'Gordon Hopper'; 'ernesto.pereirinha@atminformatica.pt'
Cc: Dimitri Yioulos; samba@lists.samba.org
Subject: RE: [Samba] net ads join fails
I have recreated my dn...
2008 Mar 12
3
net join fails NT_STATUS_INVALID_COMPUTER_NAME
...n = TQG
admin_server = TQ-DC-1.TQ-NET.DE
}
[domain_realm]
.tq-net.DE = TQ-NET.DE
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = true
retain_after_close = true
minimum_uid = 0
try_first_pass = true
debug = false
}
krb5.conf
kerberos works fine.
_____________________________________________________________________
Der WEB.DE SmartSurfer hilft bis zu 70% Ihrer Onlinekosten zu sparen!
http://...
2004 Dec 20
11
winbind problems
...= police.wayne.local
default_domain = WAYNE.LOCAL
kpasswd_server = adserver.wayne.local
}
[domain_realm]
.WAYNE.LOCAL = WAYNE.LOCAL
[appdefaults]
pam = {
ticket_lifetime = 365d
renew_lifetime = 365d
forwardable = true
proxiable = false
retain_after_close = true
minimum_uid = 0
}
----------/var/log/samba/log.smbd--------
[2004/12/20 15:25:33, 1] smbd/sesssetup.c:reply_spnego_kerberos(250)
Username WAYNE/LIEUTENANT1$ is invalid on this system
[2004/12/20 15:25:44, 1] smbd/sesssetup.c:reply_spnego_kerberos(250)
Username WAYNE/LIEUTENANT1$...
2017 Jan 19
1
net ads keytab add has no visible effects
...}
[domain_realm]
.kerberos.server = DOMAIN
.domain = DOMAIN
domain = DOMAIN
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 0
debug = false
}
[logging]
default = FILE:/var/log/krb5libs.log
kdc = FILE:/var/log/kdc.log
admin_server = FILE:/var/log/kadmind.log
Any idea wh...
2005 Nov 07
1
AD Question
...10.10.1.95
}
[logging]
kdc = FILE:/var/log/krb5kdc.log
admin_server = FILE:/var/log/kadmin.log
default = FILE:/var/log/krb5lib.log
[domain_realm]
.domain.com = DOMAIN.COM
domain.com = DOMAIN.COM
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 0
}
Any help is appreciated.
--
Jason Gerfen
"My girlfriend threated to
leave me if I went boarding...
I will miss her."
~ DIATRIBE aka FBITKK
2008 May 22
4
winbind,ads, win2k3, trusted domains, user mapping
...DOMAIN.EDU
scl.DOMAIN.EDU = DOMAIN.EDU
[loggin]
default = FILE:/var/log/krb5.log
[appdefaults]
pam = {
ticket_lifetime = 365d
renew_lifetime = 365d
forwardable = true
proxiable = false
retain_after_close = true
minimum_uid = 0
}
The nsswitch.com file:
passwd: compat winbind
shadow: compat
group: compat winbind
# passwd: db files nis
# shadow: db files nis
# group: db files nis
hosts: files dns wins
networks: files
services: db file...
2013 Oct 02
2
Problem with squid+ntlm+samba
...1}[logging]kdc = FILE:/var/log/krb5/krb5kdc.logadmin_server = FILE:/var/log/krb5/kadmind.logdefault = SYSLOG:NOTICE:DAEMON
[domain_realm].domain.local = DOMAIN.LOCAL
[appdefaults]pam = { ticket_lifetime = 1d renew_lifetime = 1d forwardable = true proxiable = false retain_after_close = false minimum_uid = 1
squid.conf
# Do not edit manually !http_port 192.168.0.1:8080icp_port 0
pid_filename /var/run/squid.pidcache_effective_user proxycache_effective_group proxyerror_directory /usr/local/etc/squid/errors/Englishicon_directory /usr/local/etc/squid/iconsvisible_hostname loc...
2016 Oct 10
1
unable to browse shares
...efault_domain = HEBE.US
}
[domain_realm]
.hebe.us = HEBE.US
hebe.us = MAIA.HEBE.US
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 0
debug = false
}
[logging]
default = FILE:/var/log/krb5libs.log
kdc = FILE:/var/log/kdc.log
admin_server = FILE:/var/log/kadmind.log
[Global]...
2005 Nov 29
1
AD4Unix & Samba-3.0.20b+winbind
...92.168.0.10
}
[logging]
kdc = FILE:/var/log/krb5kdc.log
admin_server = FILE:/var/log/kadmin.log
default = FILE:/var/log/krb5lib.log
[domain_realm]
.domain.com = DOMAIN.COM
domain.com = DOMAIN.COM
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 0
}
[nsswitch.conf]
passwd: files winbind
shadow: files winbind
group: files winbind
hosts: files dns winbind
networks: files dns
services: files
protocols: files
rpc: files
ethers: files
netmasks: files
netgroup: files
publickey: file...
2005 Nov 22
1
User and Groups Problem with ADS (Win2003) and Solaris 10
...period = 1d
versions = 10
}
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_liftime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 0
debug = false
}
kinit = {
renewable = true
forwardable= true
}
gkadmin = {
help_url = http://docs.sun.com:80/ab2/coll.3...
2010 Feb 09
2
probleme with samba 3.4.5-3.1 + winbind+ windows 2008 R2 + trusted domain
...CAL = MEDICAL.LOCAL
.ADMINISTRATIF.LOCAL = ADMINISTRATIF.LOCAL
ADMINISTRATIF = ADMINISTRATIF.LOCAL
.ADMINISTRATIF = ADMINISTRATIF.LOCAL
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 1
use_shmem = sshd
}
Samba :
# Samba config file created using SWAT
# from relais (127.0.0.1)
# Date: 2004/01/05 13:42:43
# Global parameters
[global]
log file = /var/log/samba/%m.log
allow trusted domains = yes
idmap gid = 10000-20000...
2005 Nov 22
1
spnego_gen_negTokenTarg failed: No credentials cache found
...swd_server = 192.168.10.10
}
[logging]
default = SYSLOG:NOTICE:DAEMON
kdc = FILE:/var/log/kdc.log
kadmind = FILE:/var/log/kadmind.log
[appdefaults]
pam = {
ticket_lifetime = 7d
renew_lifetime = 7d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 0
debug = false
}
The contents of /etc/nsswitch.conf
passwd: compat winbind
group: compat winbind
hosts: files dns wins
networks: files dns
services: files
protocols: files :
rpc: files
ethers: files
netmasks: files
netgroup:...
2005 May 25
1
Samba vs ActiveDirectory Kerberos error message
...ADMCONTROLLER
}
[domain_realm]
.KK.LOCAL = KK.LOCAL
[logging]
default = SYSLOG:NOTICE:DAEMON
kdc = FILE:/var/log/kdc.log
kadmind = FILE:/var/log/kadmind.log
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 0
debug = false
}
---eof---
/etc/samba/smbusers:
root = administrator
---eof---
/etc/samba/smbpasswd (hex modified in this example):
root:0:52525252525252525252525252552525258237632846842634364834632842662:[U
]:LCT-9371B4CF:
---eof---
/etc/nsswitch.con...
2015 Nov 30
2
After joining domain, Samba uses the workgroup name, not the FQDN when running the net ads command
...hing-else
}
}
fcc-mit-ticketflags = true
[realms]
WINDOWS.CORP.XXX.COM = {
kdc = whiskey.windows.corp.XXX.com:88
kdc = wine.windows.corp.XXX.com:88
admin_server = whiskey.windows.corp.XXX.com:749
}
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 0
debug = false
}
[domain_realm]
.windows.corp.XXX.com = WINDOWS.CORP.XXX.COM
windows.corp.XXX.com = WINDOWS.CORP.XXX.COM
[login]
krb4_convert = true
krb4_get_tickets = false
On Mon, Nov 30, 2015 at 2:43 PM, Rowland Penny <rowlandpenny241155 at gmail.com
> wrote:
&g...
2009 Jun 24
0
group enumerations fails
...default = SYSLOG:NOTICE:DAEMON
kdc = FILE:/var/log/kdc.log
kadmind = FILE:/var/log/kadmind.log
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 0
debug = false
}
Ad Server: Windows 2008 server with up to date patches.
The problem explained:
----------------------
We put AD users into global groups, then global groups into domain local
groups. Domain local groups are used for...
2009 Oct 08
0
group enumerations fails
...default = SYSLOG:NOTICE:DAEMON
kdc = FILE:/var/log/kdc.log
kadmind = FILE:/var/log/kadmind.log
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 0
debug = false
}
Ad Server: Windows 2008 server with up to date patches.
The problem explained:
----------------------
We put AD users into global groups, then global groups into domain local groups (as dictated best practices). Dom...
2009 Jul 30
1
krb5 + winbind + ads (back to ads)
...domain_realm]
.domain.com.br = WIN-NET.DOMAIN.COM.BR
domain.com.br = WIN-NET.DOMAIN.COM.BR
[login]
krb4_convert = true
krb4_get_tickets = falsea
[logging]
default = SYSLOG:err:auth
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 0
try_first_pass = true
}
===================================================================
With this I'm able to get a ticket using kinit and see it using klist:
root at xxxxxx:~# kinit user
Password for user at WIN-NET.DOMAIN.COM.BR:
root at xxxxxx:~# klist
Tick...
2004 Feb 27
1
Samba3 with W2K Native Mode
...default = SYSLOG:NOTICE:DAEMON
kdc = FILE:/var/log/kdc.log
kadmind = FILE:/var/log/kadmind.log
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 0
debug = false
}
s7:~ #cat /etc/nsswitch.conf
passwd: files winbind
shodow: files
group: files winbind
hosts: files dns
networks: files dns
services: files
protocols: files
rpc: files
ethers: files
netmasks:...
2005 Aug 22
1
Problem with security = ads
...= SYSLOG:NOTICE:DAEMON
kdc = FILE:/var/log/kdc.log
kadmind = FILE:/var/log/kadmind.log
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 0
debug = false
}
As you can see i do not use winbind. Is the wrong, i.e. is winbind
required to authenticate users against ads ?
The configuration itself works nearly right.
When i try to access the samba server via windows is see...
2008 Oct 23
1
join fails samba 3.2 & ADS 2003R2 SP2
....clsccdn.rtss.qc.ca = CLSCCDN.RTSS.QC.CA
[appdefaults]
pam = {
debug = true
validate = false
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = false
minimum_uid = 1
try_first_pass = true
}
THanks list for the help !!
Marc
Marc-Andre Vallee, CLE10, CLP, VCP, CLA, CNA
Coordonnateur des services Linux
Complys technologies inc.
Solutions informatiques sur mesure pour votre entreprise.
Montreal :...