search for: smb_krb5

Displaying 20 results from an estimated 146 matches for "smb_krb5".

2008 Feb 27
1
krb5.conf file in /var/lib/samba/smb_krb5; Samba 3.0.27a
Hello list, I've upgraded from Samba 3.0.14a to 3.0.27a (Samba is a domain member of a W2k3 native AD) and I see that in the /var/lib/samba/smb_krb5 directory a krb5.conf file is created. Is this krb5.conf file extracted from my original /etc/krb5.conf? Or is this file created from the "password server =" entry in my smb.conf file? My original /etc/krb5.conf contains the DC's in DNS name and the krb5.conffile in /var/lib/samba/smb...
2015 Mar 10
2
net ads join fails
...OWDELAY = 0 IPTOS_THROUGHPUT = 0 SO_REUSEPORT = 0 SO_SNDBUF = 66608 SO_RCVBUF = 66608 SO_SNDLOWAT = 2048 SO_RCVLOWAT = 1 SO_SNDTIMEO = 0 SO_RCVTIMEO = 0 Starting GENSEC mechanism spnego Starting GENSEC submechanism gssapi_krb5 Received smb_krb5 packet of length 292 Received smb_krb5 packet of length 1293 Received smb_krb5 packet of length 1310 Received smb_krb5 packet of length 1288 gensec_gssapi: credentials were delegated GSSAPI Connection will have no cryptographic protection Bus error (Speicherabzug geschrieben) Any hints? I try the...
2009 Mar 06
0
krb5.conf in /var/lib/samba/smb_krb5 very different from original
...ndows 2003 Active directory. Samba version 3.2.6 is running on opensuse 11.1. After a lot of search, I tought that maybe it did not support the encryption type requested by my Samba server, so I checked my kerberos configuration. To my surprise, I found a krb5.conf.MYDOMAIN file in /var/lib/samba/smb_krb5, and this file is quite different from my /etc/krb5.conf file. For instance, the 'enc_types...' lines do not match. In /var/lib/samba/smb_krb5/krb5.conf.MYDOMAIN I have [libdefaults] default_realm = MYDOMAIN.LOCAL default_tgs_enctypes = RC4-HMAC DES-CBC-CRC DES-CBC-MD5...
2007 Nov 23
0
Strange folder smb_krb5 in lock directory of version 3.026a
I found a strange folder smb_krb5 in my samba lock directory. Inside, there is something that looks like a Kerberos Configuration, but the content is different from my /etc/krb5.conf (A) Does Samba correctly use my /etc/krb5.conf as before in version 3.023? (B) What is the smb_krb5-folder good for, where does it come from? (C) Can...
2017 Jan 26
2
Samba AD/DC Sync To Windows DC Failures
...0.1.100 bcast=10.0.1.255 netmask=255.255.255.0 added interface eth0 ip=10.0.1.100 bcast=10.0.1.255 netmask=255.255.255.0 resolve_lmhosts: Attempting lmhosts lookup for name w2008r2<0x20> getlmhostsent: lmhost entry: 10.0.1.100 DC01 getlmhostsent: lmhost entry: 10.0.1.135 W2008R2 Received smb_krb5 packet of length 272 Received smb_krb5 packet of length 1247 Received smb_krb5 packet of length 1258 Received smb_krb5 packet of length 1280 added interface eth0 ip=10.0.1.100 bcast=10.0.1.255 netmask=255.255.255.0 added interface eth0 ip=10.0.1.100 bcast=10.0.1.255 netmask=255.255.255.0 reso...
2015 Aug 13
4
winbind_krb5_locator usage
Hello, I have different Sites in my domain and want the different members to use the respective domain controller of their site. I can't get this to work right. I have a member that is in site B but executing "net ads info" outputs the DC of site A as active. I read about enabling "winbind_krb5_locator", but it is already located in
2010 Dec 06
0
Add options to /var/run/samba/smb_krb5/krb5.conf_DOMAIN?
Hi, Are there any way to add options to /var/run/samba/smb_krb5/krb5.conf_DOMAIN? I need to add udp_preference_limit and maybe have a better control on which kdc's are used. Best regards Emil Assarsson Sony Ericsson Mobile Communications AB "The information in this email, and attachment(s) thereto, is strictly confidential and may be legally privile...
2013 Apr 03
0
/var/samba/locks/smb_krb5/krb5.conf.DOM
All, I am running Solaris 10 and Samba 3.6.6. We use intelligent DNS and have more than 10 ADs. In /etc/krb5/krb5.conf I configure kdc and admin_server to point to the IDNS server so any one of our functioning ADs can be used dynamically. I've noticed that /var/samba/locks/smb_krb5/krb5.conf.DOM get created when net ads join is run. I've also noticed that the kdc is set to an IP address and appears to be dynamic. Can someone tell me what/how this file is controlled and if there are smb.conf settings to manually control this file? TIA, -Kevin
2013 Oct 10
0
Samba4 can't join domain - drsuapi.DsBindInfoFallBack object has no attribute
...n't find ldb added interface eth0 ip=192.168.0.139 bcast=192.168.0.255 netmask=255.255.255.0 added interface eth0 ip=192.168.0.139 bcast=192.168.0.255 netmask=255.255.255.0 Starting GENSEC mechanism spnego Starting GENSEC submechanism gssapi_krb5 Password for [WORKGROUP\administrator]: Received smb_krb5 packet of length 143 Received smb_krb5 packet of length 1256 Received smb_krb5 packet of length 1250 Received smb_krb5 packet of length 1232 gensec_gssapi: credentials were delegated GSSAPI Connection will be cryptographically sealed workgroup is ACME realm is acme.local checking sAMAccountName Add...
2015 Aug 14
1
winbind_krb5_locator usage
...t;Aan: samba at lists.samba.org >Onderwerp: Re: [Samba] winbind_krb5_locator usage > >Hello, > >i investigated further and found out that other member servers >do honor their AD sites. > >It is just that one machine that has both KDCs in it's >"/var/cache/samba/smb_krb5 exists/ krb5.conf.INTRANET". > >I'm a bit puzzled... the smb.conf on this machine and on a >machine that works is 100% identical, only netbios names differ. > >Is there another way to control this behaviour? > >Greetings, >Felix > >-----Ursprüngliche Nachrich...
2018 Jun 21
2
WERR_BAD_NET_RESP on replication (--full-sync)
...mask=255.255.255.0 resolve_lmhosts: Attempting lmhosts lookup for name inview-dc2.inview.local<0x20> startlmhosts: Can't open lmhosts file /usr/local/samba/etc/lmhosts. Error was No such file or directory Starting GENSEC mechanism spnego Starting GENSEC submechanism gssapi_krb5 Received smb_krb5 packet of length 207 Received smb_krb5 packet of length 1365 Received smb_krb5 packet of length 1290 Received smb_krb5 packet of length 1312 ../librpc/rpc/dcerpc_util.c:234: auth_pad_length 0 gensec_gssapi: NO credentials were delegated GSSAPI Connection will be cryptographically sealed ../librpc/r...
2023 Jun 18
2
Failed to convert SID to a UID
...>> >> Is that line still there ? >> If so, try removing it. >> >> If it works, can you post the contents of /etc/krb5.conf > > If I remove the create krb5.conf line getent works. > > So I figured I would just copy the contents of > /var/lib/samba/lock/smb_krb5/krb5.conf.EXAMPLEAD to /etc/krb5.conf > excluding the "include /etc/krb5.conf" line. To my surprise when I add > back the "create krb5.conf = no" line to smb.conf getent stop working, even > though /etc/krb5.conf is equal to > /var/lib/samba/lock/smb_krb5/krb5.conf....
2018 Jun 22
2
WERR_BAD_NET_RESP on replication (--full-sync)
...ts lookup for name >> inview-dc2.inview.local<0x20> >> startlmhosts: Can't open lmhosts file /usr/local/samba/etc/lmhosts. >> Error was No such file or directory >> Starting GENSEC mechanism spnego >> Starting GENSEC submechanism gssapi_krb5 >> Received smb_krb5 packet of length 207 >> Received smb_krb5 packet of length 1365 >> Received smb_krb5 packet of length 1290 >> Received smb_krb5 packet of length 1312 >> ../librpc/rpc/dcerpc_util.c:234: auth_pad_length 0 >> gensec_gssapi: NO credentials were delegated >> GSSAPI C...
2014 Jan 09
0
Samba4/AD Replication Issue
...tmask=255.255.255.0 Mapped to DCERPC endpoint 1024 added interface eth0 ip=192.168.100.20 bcast=192.168.100.255 netmask=255.255.255.0 added interface eth0 ip=192.168.100.20 bcast=192.168.100.255 netmask=255.255.255.0 Starting GENSEC mechanism spnego Starting GENSEC submechanism gssapi_krb5 Received smb_krb5 packet of length 203 Received smb_krb5 packet of length 1304 Received smb_krb5 packet of length 1271 Received smb_krb5 packet of length 1210 ../librpc/rpc/dcerpc_util.c:140: auth_pad_length 0 gensec_gssapi: credentials were delegated GSSAPI Connection will be cryptographically sealed ../librpc/rpc/...
2015 Mar 10
0
net ads join fails
...iour. > > I tried the following commands: > > 1.) samba-tool domain join ad.dilken.eu MEMBER -UAdministrator > --realm=AD.DILKEN.EU --site=Neuoetting -d 10 > > > Result (last lines): Starting GENSEC mechanism spnego > Starting GENSEC submechanism gssapi_krb5 > Received smb_krb5 packet of length 291 > Received smb_krb5 packet of length 1293 > Received smb_krb5 packet of length 1310 > Received smb_krb5 packet of length 1288 > gensec_gssapi: credentials were delegated > GSSAPI Connection will have no cryptographic protection > > > > 2.) net ads jo...
2017 Oct 30
5
Listing AD group members
Hi, Ive been trying to work out how to get wbinfo to list members of a specific AD group, rather than list groups a specific user is in. So far I have had no luck... In fact im not sure its possible with wbinfo. Is there another tool which could do this? James -- Sent using Dekko from my Ubuntu device
2013 Jan 10
1
cannot join an existing AD as either a RODC or DC w/ samba4
...fff:ffff:ffff:ffff:: added interface eth1 ip=192.168.42.1 bcast=192.168.42.255 netmask=255.255.255.0 added interface eth0 ip=10.2.40.194 bcast=10.2.40.255 netmask=255.255.255.0 Starting GENSEC mechanism spnego Starting GENSEC submechanism gssapi_krb5 Password for [adminuser at MY.DOMAIN]: Timed out smb_krb5 packet Received smb_krb5 packet of length 148 Timed out smb_krb5 packet Received smb_krb5 packet of length 1450 gensec_gssapi: credentials were delegated GSSAPI Connection will be cryptographically sealed workgroup is MY realm is my.domain checking sAMAccountName Adding CN=NYSV-NIS1,OU=Domain Contr...
2014 Jul 16
0
FreeBSD problems with sysvol and share Acls
...ights (0x 0): lpcfg_servicenumber: couldn't find ldb added interface re0 ip=10.0.10.10 bcast=10.0.255.255 netmask=255.255.0.0 added interface re0 ip=10.0.10.10 bcast=10.0.255.255 netmask=255.255.0.0 Starting GENSEC mechanism spnego Starting GENSEC submechanism gssapi_krb5 Received smb_krb5 packet of length 251 Received smb_krb5 packet of length 1201 Received smb_krb5 packet of length 1238 Received smb_krb5 packet of length 1234 gensec_gssapi: credentials were delegated GSSAPI Connection will have no cryptographic protection added interface re0 ip=10.0.10.10 bcast=10.0.255.255 netmask...
2018 Jun 21
0
WERR_BAD_NET_RESP on replication (--full-sync)
...mhosts: Attempting lmhosts lookup for name > inview-dc2.inview.local<0x20> > startlmhosts: Can't open lmhosts file /usr/local/samba/etc/lmhosts. > Error was No such file or directory > Starting GENSEC mechanism spnego > Starting GENSEC submechanism gssapi_krb5 > Received smb_krb5 packet of length 207 > Received smb_krb5 packet of length 1365 > Received smb_krb5 packet of length 1290 > Received smb_krb5 packet of length 1312 > ../librpc/rpc/dcerpc_util.c:234: auth_pad_length 0 > gensec_gssapi: NO credentials were delegated > GSSAPI Connection will be crypto...
2015 Mar 10
0
net ads join fails
..._REUSEPORT = 0 > SO_SNDBUF = 66608 > SO_RCVBUF = 66608 > SO_SNDLOWAT = 2048 > SO_RCVLOWAT = 1 > SO_SNDTIMEO = 0 > SO_RCVTIMEO = 0 > Starting GENSEC mechanism spnego > Starting GENSEC submechanism gssapi_krb5 > Received smb_krb5 packet of length 292 > Received smb_krb5 packet of length 1293 > Received smb_krb5 packet of length 1310 > Received smb_krb5 packet of length 1288 > gensec_gssapi: credentials were delegated > GSSAPI Connection will have no cryptographic protection > Bus error (Speicherabzug gesch...