similar to: Samba 3 and non-AD KDC

Displaying 20 results from an estimated 20000 matches similar to: "Samba 3 and non-AD KDC"

2003 Jan 24
1
Samba 3, Win2K, and MIT KDC -- possible?
After setting up Samba 3 I noticed the Windows 2000 box was requesting a ticket from the KDC for HOST/<NETBIOS NAME>@MYREALM.COM when it tried to connect to the Samba server. I presume that W2K is sending the ticket it is granted along to the Samba server. If that presumption is correct, is it possible to make Samba authenticate the user with the Kerberos ticket they present? If so, how
2006 Jan 18
1
MIT KDC for Samba authentication?
Hi Samba Users, I have Samba providing shares to several XP clients. The clients currently authenticate using private/smbpasswd. I do not have an Active Directory server nor any Windows servers. I also have an MIT KDC. Various services have been Kerberised including SSH (proper GSSAPI negotiation) and Apache (Basic auth). This is all functioning correctly. The Apache login and SSH logins from
2006 Feb 01
1
ADS and samba domain member: ads_connect: Cannot resolve network address for KDC in requested realm
Hello, I am having a problem getting my server to join our realm as a domain member server. I have read through google, yahoo, and this list, but I cannot find the answer yet. When I run: net join ads -Uadministrator and try to login it gives the following error: kerberos_kinit_password Administrator@MYREALM.COM failed: Cannot resolve network address for KDC in requested realm
2006 Feb 01
4
ADS and samba domain member: ads_connect: Cannot resolve network address for KDC in requ
Thanks, Unfortunately, I still got the same error. I may be wrong, but it is like it does the automatic lookup process of kdc instead of using the krb5.conf file. However, as per my note below, if I do add bad config info to the krb5.conf, it does complain. David David Shapiro Unix Team Lead 919-765-2011 >>> Dimitri Yioulos <dyioulos@firstbhph.com> 2/1/2006 10:15:49 AM
2006 Feb 01
0
Fwd: ADS and samba domain member: ads_connect: Cannot resolve network address for KDC in requested realm
I forgot the smb.conf file: [global] workgroup = MYDOMAIN netbios name = svcanimp socket options = TCP_NODELAY SO_RCVBUF=16384 SO_SNDBUF=16384 idmap uid = 10000-20000 idmap gid = 10000-20000 winbind enum users = yes winbind gid = 10000-20000 os level = 20 winbind enum groups = yes winbind separator = /
2003 Nov 17
1
Kerberos-authentication to a Samba server without a Windows KDC ?
Hello, i'm currently trying to find a way to integrate a openafs cell and samba (without plaintext passwords). this should all be possible with a windows kdc, giving out afs tickets and forward these tickets to the samba server. unfortuntely this is not an option here. is there a way to connect samba 3.x to a mit krb5 server ? Holger Brueckner net-labs Systemhaus GmbH
2003 Jun 23
1
Samba in AD + trusted KDC environment
Hi, I am trying to set a samba server as my fileserver in a Win2k network with a AD domain Controller. Authentication is already done against an unix KDC, trusted by the DC and everything work fine from now. When trying to connect i have two problem. first is not that related to Samba, as i get a UNKNOWN_SERVER as the reply for the TGS-REQ sent by Win2k client. Excuse me if it is ununderstanble
2004 Sep 24
3
Configure Samba 3 to auth off a MIT KDC.
I have a Samba 3 server running as my domain controller and want to configure it to authenticate user passwords off a MIT KDC server that is already up and running. I have the KDC client software installed on the Samba box and it will authenticate users using it's tools. I have been looking for some sort of a how-to but I have not found anything that works or explains much very well. Most
2004 Dec 06
0
errors from ads_krb5_mk_req errors and util_sock.c:send_smb
After 2 weeks of trying to configure samba as a member server in a native AD domain, with winbind+nss+kerberose following the Samba Collection and (Samba-3 By Exmaple) docuentation, with RedHat AS3, samba 3.0.9, krb5 1.3.1, where 2 KDC's are Windows 2003 and one is Windows 2000, and smb-signing has been turned off,... when a user tries to access a share, they are prompted for a password, and
2017 Apr 25
3
Samba authentication using non-AD Kerberos?
On 2017-04-20, 03:35, Andrew Bartlett via samba wrote: > Not windows clients without much pain. In theory Windows can > join a non-AD KDC, but it is incredibly rarely done. Would you mind to give clearer picture how much pain we are talking about here? Any link to somebody who did it? I need to compare it to the pain of another alternatives I have in the table, like let clients mount
2002 Oct 17
1
join a win2000 kdc
A non-text attachment was scrubbed... Name: smime.p7m Type: application/x-pkcs7-mime Size: 5510 bytes Desc: not available Url : http://lists.samba.org/archive/samba/attachments/20021017/b449761c/smime.bin
2020 Feb 11
4
ERROR: failed to setup profiling
Hi, After I have updated my SAMBA AD environment from version 4.9.18 to version 4.10.12 on my secondary server the program is unable to start and displays the following error message:"ERROR:failed to setup profiling". The testparm result didn't print any warning or error. System details: CentOS Linux release 7.7.1908 (Core) with kernel 3.10.0-1062.9.1.el7.x86_64 smb.conf
2017 Apr 20
5
Samba authentication using non-AD Kerberos?
On 2017-04-16, 19:06, S P Arif Sahari Wibowo via samba wrote: > I was looking into samba wiki pages and cannot find > documentation for this. Generally most the documentation pages > either discussing samba as AD member or standalone. So still looking at this. So this is the state currently: kerberos setup (krb5.conf and keytab) is working in the server, I can do kinit properly. But
2020 Feb 11
3
ERROR: failed to setup profiling
Hi , I use Tranquil IT's repo. Best, Robert 2020. 02. 11. 10:16 keltez?ssel, Rowland penny via samba ?rta: > On 11/02/2020 06:51, Csorba R?bert via samba wrote: >> Hi, >> >> After I have updated my SAMBA AD environment from version 4.9.18 to >> version 4.10.12 on my secondary server the program is unable to start >> and displays the following error
2006 Mar 22
2
Authentication problems with win2k3 domain controller
Hi I'm having problems with samba-3.0.21b and Windows Server 2003 domain controllers. When I try to access the samba server from a client (\\sambasrv) I only get a login prompt, no username/password combination works. Accessing the samba server through its IP-number instead of using the netbios name works. This together with the log message "Failed to verify incoming ticket!"
2013 Jan 04
2
Migrating kerberos KDC data into Samba4 internal KDC
Is there a mechanism migrate/import user principal information from an MIT KDC into a Samba4 internal KDC? We currently run our Active Directory users with Account Mappings that utilize a cross-realm trust between our MIT KDC (where user principals are maintained) and the Active Directory domain, as documented at *http://tinyurl.com/bx9znca* This works fine for our Windows clients, but it
2003 Oct 22
2
Samba 3 in MIT Kerberos Realm
Hi, I have been reading through the docs for Samba 3, and there is a lot of talk about how samba 3 can function in an AD domain as a member server and accept kerberos service tickets issued by an MS KDC. (net ads join, etc...) I have a slightly different twist on a similar situation. I have an MIT kerberos realm set up and my Windows2000 PCs get tickets from this realm on login just
2004 Dec 01
2
AD Domain member not authenticating
I had samba working, then I tried (unsuccessfully) to setup ssh pam auth. Now users are prompted for a password when accessing shares, but no password works. I am using Redhat AS 3, samba-3.0.9-1, and krb5-1.3. I forgot to backup pam file system-auth before modifying things, so I'm not sure if that is the problem. ------------------------------- These commands succeed: wbinfo -u,
2012 Jan 20
1
Samba 4 Cannot contact any KDC for requested realm
Version 4.0.0alpha18-GIT-957ec28 After starting samba -i -d3, wbinfo -i someuser gives this: ldb_wrap open of secrets.ldb using SPNEGO Selected protocol [8][NT LANMAN 1.0] Cannot reach a KDC we require to contact cifs/hh3.site at SITE : kinit for HH3$@SITE failed (Cannot contact any KDC for requested realm) SPNEGO(gssapi_krb5) NEG_TOKEN_INIT failed: NT_STATUS_NO_LOGON_SERVERS ldb_wrap open of
2001 Dec 14
2
PATCH: Kerberos password authentication w/o KDC verification
Folks: We use an old AFS cell with Kerberos 4. Our use of Kerberos 4 is fairly limited; we have never needed to implement rcmd host principals for most of our systems. Indeed, given that Kerberos 4 strips off the domain name portion of a hostname when determining the rcmd instance, we would not be able to do this, since we do have duplicate hostnames in multiple subdomains. For AFS