Displaying 2 results from an estimated 2 matches for "winbind_pam_auth".
Did you mean:
winbindd_pam_auth
2018 Aug 17
1
How to use kerberos as the default auth in AD config?
Hi Rowland,
I tried both pam winbind & also samba with fix for CVE-2018-1139. But
still cannot get windows 2016 "protected users" to work with samba.
Note that "wbinfo --krb5auth" manages to authenticate. This I see it uses
WINBIND_PAM_AUTH & not WINBIND_PAM_AUTH_CRAP. I dont see how to switch to
WINBIND_PAM_AUTH instead of AUTH_CRAP. Any further insights? Thanks!
--Shyam
On Tue, 14 Aug 2018 19:18:42 +0530
Shyam Kaushik <shyam at zadarastorage.com> wrote:
> Thanks Rowland for your pointers!
>
> I'm sorry to j...
2018 Aug 13
6
How to use kerberos as the default auth in AD config?
Hi Folks,
We have samba(4.8) deployed with following key parms
security = ADS
realm = TEST
client NTLMv2 auth = No
ntlm auth = disabled
We have a win2k user configured as a "Protected User"
(https://docs.microsoft.com/en-us/windows-server/identity/ad-ds/manage/how
-to-configure-protected-accounts)
When this user tries to connect to samba/winbind, we get