Displaying 20 results from an estimated 20000 matches similar to: "Samba 3 and non-AD KDC"
2003 Jan 24
1
Samba 3, Win2K, and MIT KDC -- possible?
After setting up Samba 3 I noticed the Windows 2000 box was
requesting a ticket from the KDC for HOST/<NETBIOS NAME>@MYREALM.COM
when it tried to connect to the Samba server. I presume that W2K is
sending the ticket it is granted along to the Samba server. If that
presumption is correct, is it possible to make Samba authenticate the
user with the Kerberos ticket they present? If so, how
2006 Jan 18
1
MIT KDC for Samba authentication?
Hi Samba Users,
I have Samba providing shares to several XP clients. The clients
currently authenticate using private/smbpasswd. I do not have an Active
Directory server nor any Windows servers.
I also have an MIT KDC. Various services have been Kerberised including
SSH (proper GSSAPI negotiation) and Apache (Basic auth). This is all
functioning correctly. The Apache login and SSH logins from
2006 Feb 01
1
ADS and samba domain member: ads_connect: Cannot resolve network address for KDC in requested realm
Hello,
I am having a problem getting my server to join our realm as a domain
member server. I have read through google, yahoo, and this list, but I
cannot find the answer yet.
When I run: net join ads -Uadministrator and try to login it gives the
following error:
kerberos_kinit_password Administrator@MYREALM.COM failed: Cannot
resolve network address for KDC in requested realm
2006 Feb 01
4
ADS and samba domain member: ads_connect: Cannot resolve network address for KDC in requ
Thanks,
Unfortunately, I still got the same error. I may be wrong, but it is
like it does the automatic lookup process of kdc instead of using the
krb5.conf file. However, as per my note below, if I do add bad config
info to the krb5.conf, it does complain.
David
David Shapiro
Unix Team Lead
919-765-2011
>>> Dimitri Yioulos <dyioulos@firstbhph.com> 2/1/2006 10:15:49 AM
2006 Feb 01
0
Fwd: ADS and samba domain member: ads_connect: Cannot resolve network address for KDC in requested realm
I forgot the smb.conf file:
[global]
workgroup = MYDOMAIN
netbios name = svcanimp
socket options = TCP_NODELAY SO_RCVBUF=16384 SO_SNDBUF=16384
idmap uid = 10000-20000
idmap gid = 10000-20000
winbind enum users = yes
winbind gid = 10000-20000
os level = 20
winbind enum groups = yes
winbind separator = /
2003 Nov 17
1
Kerberos-authentication to a Samba server without a Windows KDC ?
Hello,
i'm currently trying to find a way to integrate a openafs cell and samba
(without plaintext passwords).
this should all be possible with a windows kdc, giving out afs tickets
and forward these tickets to the samba server.
unfortuntely this is not an option here.
is there a way to connect samba 3.x to a mit krb5 server ?
Holger Brueckner
net-labs Systemhaus GmbH
2003 Jun 23
1
Samba in AD + trusted KDC environment
Hi,
I am trying to set a samba server as my fileserver in a Win2k network with a
AD domain Controller. Authentication is already done against an unix KDC,
trusted by the DC and everything work fine from now.
When trying to connect i have two problem.
first is not that related to Samba, as i get a UNKNOWN_SERVER as the reply for
the TGS-REQ sent by Win2k client. Excuse me if it is ununderstanble
2004 Sep 24
3
Configure Samba 3 to auth off a MIT KDC.
I have a Samba 3 server running as my domain controller and want to
configure it to authenticate user passwords off a MIT KDC server that
is already up and running. I have the KDC client software installed on
the Samba box and it will authenticate users using it's tools.
I have been looking for some sort of a how-to but I have not found
anything that works or explains much very well. Most
2004 Dec 06
0
errors from ads_krb5_mk_req errors and util_sock.c:send_smb
After 2 weeks of trying to configure samba as a member server in a
native AD domain, with winbind+nss+kerberose following the Samba
Collection and (Samba-3 By Exmaple) docuentation, with RedHat AS3,
samba 3.0.9, krb5 1.3.1, where 2 KDC's are Windows 2003 and one is
Windows 2000, and smb-signing has been turned off,...
when a user tries to access a share, they are prompted for a password,
and
2017 Apr 25
3
Samba authentication using non-AD Kerberos?
On 2017-04-20, 03:35, Andrew Bartlett via samba wrote:
> Not windows clients without much pain. In theory Windows can
> join a non-AD KDC, but it is incredibly rarely done.
Would you mind to give clearer picture how much pain we are
talking about here? Any link to somebody who did it? I need to
compare it to the pain of another alternatives I have in the
table, like let clients mount
2002 Oct 17
1
join a win2000 kdc
A non-text attachment was scrubbed...
Name: smime.p7m
Type: application/x-pkcs7-mime
Size: 5510 bytes
Desc: not available
Url : http://lists.samba.org/archive/samba/attachments/20021017/b449761c/smime.bin
2020 Feb 11
4
ERROR: failed to setup profiling
Hi,
After I have updated my SAMBA AD environment from version 4.9.18 to
version 4.10.12 on my secondary server the program is unable to start
and displays the following error message:"ERROR:failed to setup profiling".
The testparm result didn't print any warning or error.
System details:
CentOS Linux release 7.7.1908 (Core) with kernel 3.10.0-1062.9.1.el7.x86_64
smb.conf
2017 Apr 20
5
Samba authentication using non-AD Kerberos?
On 2017-04-16, 19:06, S P Arif Sahari Wibowo via samba wrote:
> I was looking into samba wiki pages and cannot find
> documentation for this. Generally most the documentation pages
> either discussing samba as AD member or standalone.
So still looking at this.
So this is the state currently: kerberos setup (krb5.conf and
keytab) is working in the server, I can do kinit properly. But
2020 Feb 11
3
ERROR: failed to setup profiling
Hi ,
I use Tranquil IT's repo.
Best,
Robert
2020. 02. 11. 10:16 keltez?ssel, Rowland penny via samba ?rta:
> On 11/02/2020 06:51, Csorba R?bert via samba wrote:
>> Hi,
>>
>> After I have updated my SAMBA AD environment from version 4.9.18 to
>> version 4.10.12 on my secondary server the program is unable to start
>> and displays the following error
2006 Mar 22
2
Authentication problems with win2k3 domain controller
Hi
I'm having problems with samba-3.0.21b and Windows Server 2003 domain
controllers.
When I try to access the samba server from a client (\\sambasrv) I
only get a login prompt, no username/password combination works.
Accessing the samba server through its IP-number instead of
using the netbios name works.
This together with the log message "Failed to verify incoming ticket!"
2013 Jan 04
2
Migrating kerberos KDC data into Samba4 internal KDC
Is there a mechanism migrate/import user principal information from an
MIT KDC into a Samba4 internal KDC?
We currently run our Active Directory users with Account Mappings that
utilize a cross-realm trust between our MIT KDC (where user principals
are maintained) and the Active Directory domain, as documented at
*http://tinyurl.com/bx9znca* This works fine for our Windows clients,
but it
2003 Oct 22
2
Samba 3 in MIT Kerberos Realm
Hi,
I have been reading through the docs for Samba 3, and there is a lot
of talk about how samba 3 can function in an AD domain as a member
server and accept kerberos service tickets issued by an MS KDC. (net
ads join, etc...)
I have a slightly different twist on a similar situation. I have an
MIT kerberos realm set up and my Windows2000 PCs get tickets from this
realm on login just
2004 Dec 01
2
AD Domain member not authenticating
I had samba working, then I tried (unsuccessfully) to setup ssh pam auth.
Now users are prompted for a password when accessing shares, but no password
works. I am using Redhat AS 3, samba-3.0.9-1, and krb5-1.3.
I forgot to backup pam file system-auth before modifying things, so I'm not sure if that is the problem.
-------------------------------
These commands succeed:
wbinfo -u,
2012 Jan 20
1
Samba 4 Cannot contact any KDC for requested realm
Version 4.0.0alpha18-GIT-957ec28
After starting samba -i -d3,
wbinfo -i someuser
gives this:
ldb_wrap open of secrets.ldb
using SPNEGO
Selected protocol [8][NT LANMAN 1.0]
Cannot reach a KDC we require to contact cifs/hh3.site at SITE : kinit for
HH3$@SITE failed (Cannot contact any KDC for requested realm)
SPNEGO(gssapi_krb5) NEG_TOKEN_INIT failed: NT_STATUS_NO_LOGON_SERVERS
ldb_wrap open of
2001 Dec 14
2
PATCH: Kerberos password authentication w/o KDC verification
Folks: We use an old AFS cell with Kerberos 4. Our use of Kerberos 4 is
fairly limited; we have never needed to implement rcmd host principals
for most of our systems. Indeed, given that Kerberos 4 strips off the
domain name portion of a hostname when determining the rcmd instance, we
would not be able to do this, since we do have duplicate hostnames in
multiple subdomains.
For AFS