Displaying 20 results from an estimated 800 matches similar to: "SSO, *-agent & PAM"
2004 Dec 14
4
3.0.9 homes share and read-only MS Excel files
Hello,
I'm hoping that somebody out there can help with this strange problem...
First off I'm running Kernel 2.6.9, Samba 3.0.9 on Debian Linux, with WinXP clients.
Users working out of their home directories are creating and saving Excel documents and when they later attempt to edit and save the document they've created it results in this message from Excel 2000:
"Document
2005 Feb 24
3
SLES9+winbind+NT PDC unable to access home shares
I'm running Samba 3.0.9 on SLES9 as a domain member with an NT4 PDC, using
winbind to authorise domain users.
I have set up a general share for all users which works fine and is
accessible by all users but I am unable to set up the home shares correctly.
When attempting to connect via smbclient I get the following:-
tree connect failed: NT_STATUS_ACCESS_DENIED
What does this mean and where
2004 Sep 20
2
Problem with Excel on a share with ACLs
Hi,
I am experiencing the problem as described in
http://us1.samba.org/samba/docs/man/Samba-Guide/kerberos.html#id2562652
Unfortunately the remedy/workaround as described there does not work in the
more general case of ACLs.
Problem description:
- User A owns file F.
- User B has rw access to F via a user ACL
- Group G has rw access to F via a group ACL
- User B edits the excel file F
- User
2016 Jun 30
0
samba/winbind/apache/sso question
On 30/06/16 18:30, Turner,Jonas wrote:
> I have been trying to get SSO to work correctly with the following packages, and I appear I am missing something and I was wondering if anyone can help me or point me in the right direction?
>
> I am currently using the "auth_ntlm_winbind_module" for apache to try and authenticate and was hoping to get SSO to work.
>
> I have gone
2020 May 14
1
CentOS 8 Client to Windows file share SSO Active Directory
All;
My Google foo is failing me, and searching through the last 10 months on this mailing list hasn't helped either.
We have an existing Active Directory domain set up, and I'd like to add a CentOS 8 Workstation to it.
I have experience using both realmd and manual configuration to allow local login with AD accounts to various Linux distribution, and have this working on my test
2019 Jan 18
3
SSH SSO without keytab file
I actually spent the entire last day getting 'ad' backend to work.
Adding 'idmap config SAMDOM : backend = ad' and related lines in the client's smb.conf results in `getent passwd`
...
Use : getent passwd username
Check if wbinfo -u works also.
As tip, if you try these.
id username
getent passwd username
wbinfo -u | grep username
If all work and show your usename,
2012 Apr 04
1
Proxy and SSO (single sign-on)
Hello,
I have a running setup with a dovecot imap4/pop3 proxy to a few dovecot backend servers which actually store the mailboxes. This is running smoothly and allows me to transparently distribute mailboxes.
I'm using some "extrafield" configured in the LDAP passdb.
However, now I would like to use GSSAPI (preferred) and NTLM for single sign-on. Both are pretty straightforward to
2024 Feb 29
0
LDAP Account Manager 8.7.RC1 with PHP 8.3 compatibility and passwordless SSO login for self service
Announcement:
The self service can be configured for passwordless SSO with
Okta/OpenID. PHP 8.3 is supported and a new cron job can deactivate
inactive accounts based on lastBind overlay data.
This is a test version. Please report any issues till 2024-03-12.
Full changelog:
https://www.ldap-account-manager.org/lamcms/changelog
Download:
2024 Mar 16
0
LDAP Account Manager 8.7 with PHP 8.3 compatibility and passwordless SSO login for self service
Announcement:
The self service can be configured for passwordless SSO with
Okta/OpenID. PHP 8.3 is supported and a new cron job can deactivate
inactive accounts based on lastBind overlay data.
There is also a security fix included.
Full changelog:
https://www.ldap-account-manager.org/lamcms/changelog
Download:
https://www.ldap-account-manager.org/lamcms/releases
Features:
* management
2009 Dec 17
1
Apache + auth_mod_kerb + Active Directory = SSO
Hey List,
I have been setting up SSO on our Intranet Apache server. All seems
well, I think I have just about cracked it but it seems a little rough
around the edges;
I enabled auth_mod_kerb, and created a test directory in my web root
(/secure) and added a directory directive under the httpd.conf, I
created a user in Active Ditectory, used ktpass.exe to map the user to
the service principal and
2024 May 14
1
Samba with external SSO
>That should tell you something.
You're absolutely right on that.
>> - Samba + (sssd) + Winbind + LDAP? Couldn't try this one, as I seen
>> that basically sssd=Winbind (yet there WAS a module for Winbind to
>> use sssd?)
>
>The winbind daemon came first and is used to connect Samba to AD, from
>my understanding it was mostly written by one person. That
2016 Jun 30
2
samba/winbind/apache/sso question
I have been trying to get SSO to work correctly with the following packages, and I appear I am missing something and I was wondering if anyone can help me or point me in the right direction?
I am currently using the "auth_ntlm_winbind_module" for apache to try and authenticate and was hoping to get SSO to work.
I have gone through all the steps on SEVERAL sites trying to figure out how
2024 May 14
1
Samba with external SSO
On Tue, 14 May 2024 07:29:25 +0000
Gerg? V?ri via samba <samba at lists.samba.org> wrote:
> Hi!
>
> My goal is to connect Authentik to Samba (running on Ubuntu).
>
> What I tried (with no success):
> - Samba directly to the LDAP outpost (as Authentik can expose it's
> internal DB like that): this would/will work but Authentik can't use
> the Samba scheme at
2007 Mar 06
0
SSO group / map problem
Hello list,
I'm using samba/winbind (rhel4, samba-3.0.10, w2k-dc) for single sign
on for windows users .
When logged on to the linux mashine they run an application, which
checks if the user has the same group rights ( appl. has local
Unix-user/group "app", so the windows user should also be member of
this group).
I've tried with group mapping (map "app" to
2017 Oct 25
0
Outlook 2016 SSO with GSSAPI auth?
On Tue, 24 Oct 2017 16:59:51 -0500, Robert Giles stated:
>Hi folks,
>
>I've been sifting through various threads on GSSAPI and NTLM support,
>and I'm wondering if anyone out there can confirm or deny GSSAPI IMAP
>auth support in Microsoft Outlook 2016 (Windows)? Perhaps there's some
>magic registry key to change IMAP auth from PLAIN to GSSAPI?
>
>We're
2019 Aug 01
0
IMAP frontend authenticating proxy with GSSAPI/Kerberos SSO
On 1 Aug 2019, at 12.26, Gert van Dijk via dovecot <dovecot at dovecot.org> wrote:
>
> passdb {
> args = proxy=y host=127.0.0.1 port=1143 pass=#hidden_use-P_to_show#
..
> auth: Info: static(username,1.2.3.4,<9WOjSwWP8toKAAYE>): No password
> returned (and no nopassword)
I think this is why it's not using the passdb at all. Try adding password=something to the
2005 Apr 05
0
Network browsing and SSO
I have FC3 with samba 3.0.10-1.
I've followed guidelines about Domain Menbership of The Official Samba-3
HOWTO and Reference Guide.
All seems work fine.
Win2K3 users log in my FC3, getent passwd and groups show all it must, testjoin
is ok, "wbinfo -a user%password" reports : plaintext password authentication
succeeded - challenge/response password authentication succeeded, ...
When I
2019 Jan 18
0
SSH SSO without keytab file
On Fri, 18 Jan 2019 09:15:18 +0000
Harpoon via samba <samba at lists.samba.org> wrote:
> > ............
> >
> > > You can, provided you have a user.map in smb.conf
> >
> > Oeps, Ah yes, forgot that, because he was testing on the DC.
> > And DC's dont use the user.mapping.
> >
> > Thanks for the correction.
>
> With regard to tdb
2024 May 14
1
Samba with external SSO
Hi!
My goal is to connect Authentik to Samba (running on Ubuntu).
What I tried (with no success):
- Samba directly to the LDAP outpost (as Authentik can expose it's internal DB like that): this would/will work but Authentik can't use the Samba scheme at the moment.
- Samba -> PAM -> sssd -> LDAP outpost: in theory this worked a long time ago (SMBv1?) but as the password is not
2007 Nov 14
3
Sso the Linux way?
So I was googling around about this over the last week and here is what I
found:
nis/yp is for some reason bad.
Kerbos is holy, but no how-to's that don't involve windows and active
directory.
What is the recommended sso approach for centos? Where are there examples /
docs to follow?
Jason
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
-