similar to: msktutil with samba4

Displaying 20 results from an estimated 2000 matches similar to: "msktutil with samba4"

2018 Jan 18
0
Password change error when using mskutil to setup service keytab
When using mskutil in order to setup a keytab fail for Squid Kerberos authentication, it stops with an error: Error: Unable to set machine password for FIREWALL-K$: (2) Server error This is the output of the mskutil command: ########################################################## # msktutil -f -b "CN=COMPUTERS" -s HTTP/firewall.example.com -k /etc/squid/squid.keytab --computer-name
2013 Dec 02
0
msktutil with samba4 -- solved
Sorry for the previous message, it was just an issue with the setting of the primary dns resolver on the linux client. So I can confirm msktutil 0.5-1 (Debian GNU/Linux jessie) works fine with samba-4.1.2 (creates principal and spn on PDC and exports them in a keytab to client -- that is very handy with tools like puppet where a single line command is very prized) regards, Francesco
2015 Jun 11
3
Joining 4.2.2 Samba client to Samba3 PDC
Hi, Not sure of the etiquette of this, so apologies if this is frowned upon, but a couple of months ago, this[1] question was asked. I'm trying to join a Samba 4.2.2 server to a Samba 3.4.7 PDC (e.g. Think NT4, not AD), which is also our OpenLDAP principal server. I'm failing because, although my "net rpc join" command seems to succeed, and the host entry is added to the
2015 Jun 12
0
Joining 4.2.2 Samba client to Samba3 PDC
Just a pointer.. try with settings like : client lanman auth = yes client NTLMv2 auth = no client plaintext auth = yes i dont know the exact setting are which you need, but look in the man of smb.conf man smb.conf search for NT4, you see more settings. Greetz, Louis >-----Oorspronkelijk bericht----- >Van: dmorgan at westquad.med.harvard.edu >[mailto:samba-bounces at
2010 Jan 26
1
samba4 HEAD: unable to provision
I'm trying to install samba4 with openldap, as from http://wiki.samba.org/index.php/Samba4/LDAP_Backend/OpenLDAP, I have got the yesterday realease, last git commit: commit 2024d4fb27514869d78e9bb39085f98e80413529 Date: Mon Jan 25 12:41:48 2010 +0100 My system is GNU/Debian Linux Lenny. ./configure --prefix=/opt/samba4 make sudo make install all worked ./setup/provision from the source4
2010 Apr 19
1
Samba4 segfault
Hi, during my tests to use Samba4 as a kdc for kerberized NFS, I found a bug in the KDC code, when generating a principal without pac (e.g. with msktutil and option --no-pac), that causes Samba4 to crash: Running the following command on one of the client machines msktutil -c --upn nfs/testa.linex.org -h testa.linex.org --computer-name testa-service-nfs --server s4-dc1.linex.org --no-pac
2014 Jan 23
0
php script to migrate other attributes after running classicupgrade
Hi, I have written a php script to upgrade a fresh s4 AD with more details from a (s3) ldap server. I am no programmer AT ALL, so I guess this is very dirty and un-elegant, but it does the trick. We had multiple "mail" attributes in openldap, and since AD only allows 1 mail attribute, additional mail addresses are migrated to "otherMailbox" AD attributes. Perhaps someone
2023 Mar 20
1
PHP-LDAP RPM installed but not usable
I've also tried adding the pgsql and mysql RPM's and they're not available either. On 20/03/2023 12:58, Gary Stainburn wrote: > Apologies.? This is the correct screen grab. > > The extra errors in the OP were because I had been experimenting, to > try to fix the issue. > > [root at testsvr ~]# ./ldapAuth.php gary.stainburn fake-password > PHP Fatal error:?
2006 Aug 16
1
dovecot 1.0rc6 and LDAP problem
Hi, I have been using Dovecot with LDAP support (only for password authentication) for a couple of weeks already and everything was running smoothly so far.. till last week when discovered interesting thing: whenever I start LDAP server (openldap 2.3.24) before I start Dovecot everything is fine.. however when Dovecot is started first and then LDAP server it's not possible to authenticate :-(
2018 Aug 29
0
gencache.tdb size and cache flush
The config looks ok, thats great. :-) Its not needed to stop samba running : net cache flush If you run: net cache list and have a look, then flush it and look again. You see its empty. If you need to copy the idmap than it is needed to stop samba. Can you show me an output of. dpkg -l | egrep "tevent|tdb|ldb|talloc|cmocka" Im running latest versions of these. Own compile or
2019 Mar 01
0
Running off pre-created keytabs
Sorry for chiming in so late. On 1/11/19 2:48 PM, L.P.H. van Belle via samba wrote: >>> On 11 Jan 2019, at 14:25, Rowland Penny via samba >> <samba at lists.samba.org> wrote: >>> On Fri, 11 Jan 2019 13:14:16 +0100 >>> "Remy Zandwijk \(Samba\) via samba" <samba at lists.samba.org> wrote: >>> I think it's a best practice to adhere
2016 Dec 02
0
Samba and kerberized NFSv4
Hi Matthias, adding (or better replacing) the userPrincipalName attribute with the nfs/* one, is exactly what you need to do. For some reason the NFS client's request *only* matches the userPrincipalName attribute, while all other services I tried so far are fine when matching one of the values in servicePrincipalName attribute. NFS seems to be a very special kind of kerberos service as it
2004 Dec 15
7
[proposal] Samba Software Foundation
dear samba users and developers, i'd like to put to you a proposal for your respectful consideration: it is an idea that i believe has strategic merit for the open source community and OS users as a whole. these words are chosen carefully and the reasons will become apparent later: that i begin as an example. as you are no doubt aware, there have been some seriously damaging (but not
2003 Mar 31
3
can't connect to a samba share with Windows XP
Hi all, I am having problems with using XP Pro to connect to a samba share. All I get from XP are repated dialogs asking for my username and password. My linux box has been joined to the local windows domain. I am using encrypted passwords and the security level is set to user. If I set the log level to 10 I can see that LM and NT4 MD password checks failed on the challenge returned by the XP
2019 Mar 01
2
Running off pre-created keytabs
On Fri, 1 Mar 2019 22:00:05 +0100 Michael Ströder via samba <samba at lists.samba.org> wrote: > Sorry for chiming in so late. > > On 1/11/19 2:48 PM, L.P.H. van Belle via samba wrote: > >>> On 11 Jan 2019, at 14:25, Rowland Penny via samba > >> <samba at lists.samba.org> wrote: > >>> On Fri, 11 Jan 2019 13:14:16 +0100 > >>>
2015 Jul 04
1
sendmail tls and oppenssl
Am 04.07.2015 um 15:34 schrieb Gregory P. Ennis <PoMec at PoMec.Net>: > On Sat, 2015-07-04 at 08:07 -0500, Gregory P. Ennis wrote: >> Everyone, >> >> Looks like the new version of oppenssl has broken my sendmail's use >> of >> tls. Has anyone else had this problem or seen a fix? >> >> Greg Ennis >>
2015 Jul 04
0
sendmail tls and oppenssl
On Sat, 2015-07-04 at 08:07 -0500, Gregory P. Ennis wrote: > Everyone, > > Looks like the new version of oppenssl has broken my sendmail's use > of > tls. Has anyone else had this problem or seen a fix? > > Greg Ennis > _______________________________________________ > CentOS mailing list > CentOS at centos.org >
2014 Jul 03
1
Strong cryptography for Kerberos available?
If I query the AD DC I see: root at samba4:/# ldapsearch -H ldap://samba.ad.microsult.de -Y GSSAPI '(sAMAccountName=mgr)' SASL/GSSAPI authentication started SASL username: Administrator at AD.MICROSULT.DE SASL SSF: 56 SASL data security layer installed. I would like to see SASL SSF: 112. Does anyone know whether and where this can be configured? Regards, - lars.
2015 Jun 03
0
No builtin nor plugin backend for ldapsam found
On 03/06/15 13:42, Francesco Malvezzi wrote: > Il 03/06/15 13:58, Rowland Penny ha scritto: >> On 03/06/15 12:42, Francesco Malvezzi wrote: >>>> Hmm, '--with-ldap' is the default, so you don't really need to give it, >>>> what OS are you compiling on ? what extra packages did you install >>>> before you compiled samba ? >>>>
2018 Feb 16
2
idmap config ad: can't resolve domain users' uids
> On Fri, 16 Feb 2018 12:12:32 +0100 > Francesco Malvezzi via samba <samba at lists.samba.org> wrote: > >> dear experts, >> >> I would like to setup idmap config ad. I have already the uidNumber >> attribute populated on AD. >> >> But there is something very basic wrong with my config: > > Yes, there is something wrong ;-) > See below