Displaying 20 results from an estimated 4000 matches similar to: "Magically increasing KVNO in keytabs"
2017 Dec 31
0
KVNO in secrets.keytab for AD DC
Hello,
Some time ago I asked about updating from 4.5 -> 4.7 for DC's.
I've done it "the long way" and - maybe not the safest.
What worries me is this:
I added those DC with same names they were previously (basically dc1 ->
demote -> install fresh samba -> dc1 join again as DC with some editing
inbetween) the secrets.keytab was created anew, but right now it has
2019 Oct 09
2
Failed to find cifs/fs-share@dom.corp (kvno 109) in keytab
Rowland, it is not a problem of mount but of kerberso ticket:
[2019/10/08 10:58:09.626059, 1]
../../auth/gensec/spnego.c:1218(gensec_spnego_server_negTokenInit_step)
gensec_spnego_server_negTokenInit_step: gse_krb5: parsing NEG_TOKEN_INIT
content failed (next[(null)]): NT_STATUS_LOGON_FAILURE
[2019/10/08 10:58:09.634532, 1]
../../source3/librpc/crypto/gse.c:660(gse_get_server_auth_token)
2010 Mar 30
0
KVNO of Exported Keytab out of Sync
Hi All,
This is my first post, and I'm new to Samba...
I'm working on a Squid project running on RHEL5.3. Samba v 3.4.5-42 x86 and have run into a problem. I use Kerberos authentication on my Squid box. After configuring Squid I joined my RH to my AD domain and then used Samba to generate a Keytab and add an HTTP SPN to it:
- export KRB5_KTNAME=FILE:/etc/squid/HTTP.keytab
- net ads
2019 Nov 05
0
Failed to find cifs/fs-share@dom.corp (kvno 109) in keytab
?:-) best answer ever..? just using samba-tool.. i like that response :-)?
?
?
So next time we should also do an check, and that can be can simply with samba-tool :-)
Thanks for the reply Banda, most welkom.
?
?
Greetz,
?
Louis?
?
-------------------------
?
Van: banda bassotti [mailto:bandabasotti at gmail.com]
Verzonden: dinsdag 5 november 2019 17:10
Aan: L.P.H. van Belle
CC: samba at
2019 Nov 05
1
Failed to find cifs/fs-share@dom.corp (kvno 109) in keytab
On 05/11/2019 12:17, banda bassotti via samba wrote:
> Luis, ok I'v removed everything, step 1:
>
> KRB5_KTNAME=FILE:/etc/krb5.keytab2 net ads keytab CREATE -P
I have said this once already, but, I will try again ;-)
You are creating a keytab, which may or may not be called /etc/krb5.keytab2
> step2:
> # KRB5_KTNAME=FILE:/etc/krb5.keytab2 net ads keytab ADD
>
2019 Dec 18
2
Failed to find [principal](kvno 4) in keytab MEMORY:cifs_srv_keytab (arcfour-hmac-md5)]
Yes, I am planning on upgrading the FreeNAS which will include a newer
version of samba.
However, I'm quite confident that this is not a duplicate of #12262.
To be clear: I'm offering to leave my production system in a degraded
state to help myself and the Samba developers understand exactly
what's going on here, to determine if this is a new bug, or an
existing one. I'm worried
2019 Dec 16
0
Failed to find [principal](kvno 4) in keytab MEMORY:cifs_srv_keytab (arcfour-hmac-md5)]
On 16/12/2019 20:22, Jonathon Reinhart via samba wrote:
> Hello everyone,
>
> I have a FreeNAS server (9.10 running samba 4.3.11-GIT-UNKNOWN) that's recently
> started emitting this error:
>
If you are running Samba 4.3.11 then you should be aware that it is EOL
and bug 12262 was fixed in 4.4, so I would suggest you upgrade to a
supported Samba version. You will probably find
2019 Dec 18
0
Failed to find [principal](kvno 4) in keytab MEMORY:cifs_srv_keytab (arcfour-hmac-md5)]
On 18/12/2019 14:34, Jonathon Reinhart wrote:
> On Wed, Dec 18, 2019 at 9:13 AM Rowland penny via samba
> <samba at lists.samba.org <mailto:samba at lists.samba.org>> wrote:
>
> Problem is, and as I said, Samba? 4.3.x is EOL as far as Samba is
> concerned and if you have found a bug in it, it is very, very
> unlikely
> to get fixed, unless it is
2019 Dec 27
0
Failed to find [principal](kvno 4) in keytab MEMORY:cifs_srv_keytab (arcfour-hmac-md5)]
On 27/12/2019 17:06, Jonathon Reinhart wrote:
> On Wed, Dec 18, 2019 at 9:52 AM Rowland penny via samba
> <samba at lists.samba.org <mailto:samba at lists.samba.org>> wrote:
>
> On 18/12/2019 14:34, Jonathon Reinhart wrote:
> > On Wed, Dec 18, 2019 at 9:13 AM Rowland penny via samba
> > <samba at lists.samba.org <mailto:samba at
2019 Dec 16
2
Failed to find [principal](kvno 4) in keytab MEMORY:cifs_srv_keytab (arcfour-hmac-md5)]
Hello everyone,
I have a FreeNAS server (9.10 running samba 4.3.11-GIT-UNKNOWN) that's recently
started emitting this error:
gss_accept_sec_context failed with [ Miscellaneous failure (see text):
Failed to find cifs/nas01 at EXAMPLE.COM(kvno 4) in keytab
MEMORY:cifs_srv_keytab (arcfour-hmac-md5)]
I've looked at bug 12262 [1], which is why I've cc'd Stefan Metzmacher.
I don't
2019 Oct 16
4
Failed to find cifs/fs-share@dom.corp (kvno 109) in keytab
Hi Rowland, I refer again after a week, perhaps missing an important piece
to the big picture: the error message appears ONLY when you access the
share using the netbios alias:
[Global]
workgroup = WG1
realm = DOM.CORP
netbios name = fs-a
netbios aliases = oldsamba
security = ADS
if you access the \\fs-a\sharename is ok if you access
\\oldsamba\sharename the logs report the
2019 Nov 05
0
Failed to find cifs/fs-share@dom.corp (kvno 109) in keytab
Hai,
I've re-read you thread, and there are a few things going-on..
I suggest you do the following..
Change these.
/etc/krb5.conf
[libdefaults]
default_realm = DOM.CORP
dns_lookup_kdc = true
dns_lookup_realm = false
forwardable = true
proxiable = true
kdc_timesync = 1
debug = false
/etc/samba/smb.conf
[Global]
workgroup = WG1
realm = DOM.CORP
# Netbios names in
2019 Nov 05
0
Failed to find cifs/fs-share@dom.corp (kvno 109) in keytab
Hai,
> > Change this one.
> > /etc/hosts
> > 10.0.0.2 fs-a.dom.corp fs-a oldsamba # Old/wrong
> > 10.0.0.2 fs-a.dom.corp fs-a oldsamba.dom.corp oldsamba #
> new/correct
> > Or
> > 10.0.0.2 fs-a.dom.corp fs-a oldsamba.dom.corp # new/correct
> No, none of them are correct
No, Rowland, your really wrong here. ( i dont say that often.. ) :-p
But i give
2016 Feb 22
2
Re: Cubietruck: QEMU, KVM and Fedora
[CCing the libguestfs mailing list - as Rich responded on IRC about your
question on timeout.]
On Sun, Feb 21, 2016 at 10:07 PM, Thomas Kee <xsited@yahoo.com> wrote:
> Hi Kashyap,
>
> Thanks for offering to help. The day job caused a pause and it took me an
> hour to reassert where I was in the process. I usually hang out on freenet
> as xsited. I am still reading the
2019 Dec 18
2
Failed to find [principal](kvno 4) in keytab MEMORY:cifs_srv_keytab (arcfour-hmac-md5)]
On Wed, Dec 18, 2019 at 9:13 AM Rowland penny via samba <
samba at lists.samba.org> wrote:
> Problem is, and as I said, Samba 4.3.x is EOL as far as Samba is
> concerned and if you have found a bug in it, it is very, very unlikely
> to get fixed, unless it is still in a later, supported, Samba version.
>
Of course; I wouldn't expect any more patches for 4.3.x. I've dug
2019 Oct 08
4
Failed to find cifs/fs-share@dom.corp (kvno 109) in keytab
hello, today the following problem occurred:
[2019/10/08 09: 57: 23.568282, 1]
../../source3/librpc/crypto/gse.c:660(gse_get_server_auth_token)
gss_accept_sec_context failed with [Miscellaneous failure (see text):
Failed to find cifs/fs-share at dom.corp (kvno 109) in keytab
MEMORY: cifs_srv_keytab (arcfour-hmac-md5)]
in my smb.conf I have the lines:
kerberos method = dedicated keytab
2019 Dec 27
3
Failed to find [principal](kvno 4) in keytab MEMORY:cifs_srv_keytab (arcfour-hmac-md5)]
On Wed, Dec 18, 2019 at 9:52 AM Rowland penny via samba <
samba at lists.samba.org> wrote:
> On 18/12/2019 14:34, Jonathon Reinhart wrote:
> > On Wed, Dec 18, 2019 at 9:13 AM Rowland penny via samba
> > <samba at lists.samba.org <mailto:samba at lists.samba.org>> wrote:
> >
> > Problem is, and as I said, Samba 4.3.x is EOL as far as Samba is
>
2014 Dec 09
0
Re: [Qemu-devel] Cubietruck: cannot create KVM guests: "kvm_init_vcpu failed: Invalid argument"
On Tue, Dec 09, 2014 at 04:59:33PM +0000, Richard W.M. Jones wrote:
> On Tue, Dec 09, 2014 at 05:48:04PM +0100, Kashyap Chamarthy wrote:
> > On Tue, Dec 09, 2014 at 11:27:02AM +0000, Richard W.M. Jones wrote:
> > > On Tue, Dec 09, 2014 at 10:53:41AM +0000, Peter Maydell wrote:
> > > > On 9 December 2014 at 10:50, Kashyap Chamarthy <kchamart@redhat.com> wrote:
2015 Jan 15
1
Fwd: Re: Samba4 and sssd, keytab file expires?
Hi Rowland,
this posting ended a lot of grief I had with expired keytabs.
While this is presumably an issue of sssd, I have no chance to
attack the issue right at its root*). But rejoining the domain
with the lines
dedicated keytab file = /etc/krb5.memberserver.keytab
kerberos method = secrets and keytab
winbind refresh tickets = Yes
seems to fix it. Phew...
Maybe You or someone
2016 Feb 29
1
RasPi 3.x and RH-based Distro (Slightly OT)
+1
I just today installed CentOS Userland on a Raspberry Pi 2B and have
started using it as a firewall. It is fast and really works perfectly
for this use case. I have an HDMI to VGA adapter and a PS/2
mouse/keyboard to USB adapter to connect to my 16 port KVM switch. I use
a Gb Ethernet dongle for the internal network and connect the on-board
NIC to the external network.
I have a few more