Displaying 20 results from an estimated 7000 matches similar to: "Samba+Kerberos+OpenAFS"
2004 Jun 23
1
Samba 3.0.4 + OpenAFS 1.2.11 and fake-kaserver
I'm trying to build the --with-fake-kaserver option in 3.0.4 on RHEL
3.0.
I'm using the srpms provided on the samba.org site
(http://us3.samba.org/samba/ftp/bin-pkgs/RedHat/SRPMS/samba-3.0.4
-1.src.rpm).
My OpenAFS version is 1.2.11, rpms (openafs-1.2.11 and
openafs-devel-1.2.11) provided from openafs.org.
It compiles fine if I omit the --with-fake-kaserver configure option.
2004 Jan 26
6
OpenSSH, OpenAFS, Heimdal Kerberos and MIT Kerberos
Rather then implementing kafs in MIT Kerberos, I would like to
suggest an alternative which has advantages to all parties.
The OpenSSH sshd needs to do two things:
(1) sets a PAG in the kernel,
(2) obtains an AFS token storing it in the kernel.
It can use the Kerberos credentials either obtained via GSSAPI
delegation, PAM or other kerberos login code in the sshd.
The above two
2003 Nov 17
1
Kerberos-authentication to a Samba server without a Windows KDC ?
Hello,
i'm currently trying to find a way to integrate a openafs cell and samba
(without plaintext passwords).
this should all be possible with a windows kdc, giving out afs tickets
and forward these tickets to the samba server.
unfortuntely this is not an option here.
is there a way to connect samba 3.x to a mit krb5 server ?
Holger Brueckner
net-labs Systemhaus GmbH
2002 Jan 04
2
3.0.2 AFS login problem, Solaris 2.5.1
I've been beating myself senseless trying to build OpenSsh 3.0.1 on Solaris
2.5.1 and get AFS login working.
The symptoms of the problem are: sshd builds (used --with-afs and
-with-kerberos4 - there is no PAM on this box), accepts connections from
non-AFS users, but does not accept a connection from an AFS user; the user
sees "permission denied" after entering the password.
The
2004 Oct 12
1
Samba as gateway MIT kerberos
Hi,
We have Windows2k machines connected and authenticated with Samba. We also
have MIT kerberos for Linux systems.
What we want to do is using samba as a gateway, clients using Windows2k
machines can access their AFS file space.
We are trying to encrypt the usernames and passwords and send to samba side
which then decrypt and retrieve the plain-text password. Does Samba have
2004 Feb 27
2
OPenAFS and OpenSSH replacing kafs
Would OpenSSH be willing to accept a modification similar to the one
below to replace the kafs modification to get an AFS PAG and token?
The nice features of this are that it can be compiled in
even if OpenAFS is not available. At runtime if the
dynamic library is present, it can be loaded and called.
A dynamic lib is used so the setpag is in the same process.
It has been reported that the
2005 Sep 28
1
Samba(4) + AFS
This maybe more appropriate on the developers list but I'll ask here
first.
Anybody know if any improved support for AFS is being added to either
samba 3 or 4? We currently share all user home directories, shared
files, web sites, etc. etc. from AFS using Samba. This setup is
working great, thank you to everyone involved!! I'm just concerned
that AFS support might not make it
2003 Oct 12
1
AFS Auth with Samba
Hi All,
I'm having some real problems with Samba AFS auth. Sometimes Samba gets a ticket and all is fine. Other times, it is not issued a ticket and when I try and browse to an AFS folder I get access denied.
What strikes me is the lack of documentation on this feature - can someone point me to a decent howto or something?
TIA
Tom
2009 Nov 05
3
samba and ads authentication
I am looking at setting up ADS authentication for my current samba
configuration. I am quite wary of making big changes that I do not
understand as there are shares currently setup and I do not want to lose
this.
I have read through the "how to's" and I am at the point where I want to
"Create the computer account" and running the command :-
Net ads join -U
2003 Oct 08
3
Ldap.h missing in samba-3.0.0
I have downloaded samba-3.0.0.tar.bz2 (and samba-latest.tar.gz) and
attempted to run "./configure --with-ldapsam --with-winbind
--with-pam_smbpass --with-smbmount --with-ads --with-ldap"
Only to find that ./configure complains of a missing ldap.h file. Does
anyone else have this issue? I'm trying to do a simple setup to having a
Linux box communicate to my Windows 2000 Server PDC,
2005 Mar 08
0
Is possible? --- reposting + new
Hi.
I'm trying to find a solution for our windows clients. I will explain my
situation.
We have kerberos 5 (mit) kdc, openafs without kaserver (authentication
using kerberos), openldap, everything on debian stable servers. What do
our unix/linux clients do? They authenticate over kerberos (pam), gain
tickets and consequently gain the afs token (krb5afs or
openafs_session), call ldap and
2005 Feb 27
1
Is it feasable?
Hi.
I'm trying to find a solution for our windows clients. I will explain my
situation.
We have kerberos 5 (mit) kdc, openafs without kaserver (authentication
using kerberos), openldap, everything on debian stable servers. What do
our unix/linux clients do? They authenticate over kerberos (pam), gain
tickets and consequently gain the afs token (krb5afs or
openafs_session), call ldap and
2018 May 07
1
accessing AFS volume
Hi all!
Just wondering whether anybody has any idea on configuration for
accessing AFS volume using current version of Samba. The issue
is how to get Samba pass correct kerberos ticket on opening the
AFS volume. Having Samba to have root access over AFS is not an
option as we need the AFS permission to still apply.
Upon searching, the most recent info I can get is this thread
from OpenAFS
2005 Nov 27
3
OpenSSH and Kerberos / Active Directory authentication problems: Credentials cache permission incorrect / No Credentials Cache found
Greetings,
I'm working on the infrastructure of a medium size client/server
environment using an Active Directory running on Windows Server 2003 for
central authentication of users on linux clients.
Additionally OpenAFS is running using Kerberos authentication through
Active Directory as well.
Now I want to grant users remote access to their AFS data by logging in
into a central OpenSSH
2005 Sep 01
1
LDAP compile problem (not the usual)
Hello all,
I'm trying to compile samba 3.0.20 on Freebsd 4.10 with ldap support.
The ./configure script fails because it can't find ldap.h:
<snip>
checking whether to use AFS fake-kaserver... no
checking whether to use DFS clear-text auth... no
checking for LDAP support... auto
checking ldap.h usability... no
checking ldap.h presence... no
checking for ldap.h... no
checking lber.h
2015 Mar 24
5
Samba server with NFSV4/kerberos
Hello,
I am searching for a solution that I thought should be kind of standard,
but until now I was not successful finding anything. Here is the problem:
At our site we offer windows and linux, most servers (eg file, samba,
web) are linux based. User data is stored on NFS file servers. Windows
systems are part of a Windows domain with an ADS domain controller. At
the moment the linux samba
2003 Sep 25
5
[Bug 717] AFS tokens are not generated upon login
http://bugzilla.mindrot.org/show_bug.cgi?id=717
Summary: AFS tokens are not generated upon login
Product: Portable OpenSSH
Version: -current
Platform: UltraSparc
OS/Version: Solaris
Status: NEW
Severity: normal
Priority: P2
Component: PAM support
AssignedTo: openssh-bugs at mindrot.org
2010 Jun 01
0
Compiling Samba 3.0.37 --with-afs (Steve Linehan)
> I do not know how to proceed. I tried to comment out the line in the spec
file to no avail.
this is bad idea ;)
> Any suggestions?
OpenAFS is not supplied directly by CentOS/RHEL. You would have had to get
it from a 3rd party repo such as ATrpms/DAG or install from
http://openafs.org/release/1.4.12/index-rhel5.html
# cd /tmp/
# wget http://samba.org/samba/ftp/stable/samba-3.4.8.tar.gz
2004 Apr 08
0
Error building Samba 3.0.2a
While building Samba 3 for SuSE linux 9.0 I have a problem with the AFS
component (it builds fine if I omit the --with-afs and --with-fake-kaserver
options).
During configure I did get a warning:
checking whether to use AFS clear-text auth... yes
checking whether to use AFS fake-kaserver... yes
checking for /usr/include/afs... yes
checking afs.h usability... no
checking afs.h presence... no
2002 Jan 23
1
Fix AFS and Kerberos interaction
Hello,
I going to use ssh with Kerberos V5 support along with support for AFS. I
don't want to use Kerberos V4 or AFS token passing. The only thing I need
from AFS is creating an AFS token (using appropriate function from krb5 API)
after user's authentication. It seems to me that such scenario is not much
supported by the current code. Rather it is assumed only Kerberos 4 will be
used