Displaying 20 results from an estimated 9000 matches similar to: "Location of KDC Principal Database on AD-DC"
2006 Mar 17
1
samba3 and heimdal: both using ldap as backends
samba-3.0.21c, heimdal-0.7.2
The heimdal documentation[1] talks about a samba integration when both
samba and heimdal are using ldap as their backends. I quote:
"Now you can proceed as in See Using LDAP to store the database. Heimdal
will pick up the Samba LDAP entries if they are in the same search space
as the Kerberos entries."
There is absolutely no further documentation.
I tried
2007 Oct 17
0
Samba4 KDC configuration
Hi everyone,
I am trying to figure out how samba4 is working (will work) and have a
couple of questions...
I know its not a stable version yet where everything is in place, but I?m
just curious of how
the final samba4 will look like...
How do you change encryption type for tickets, is there a hidden
krb5.confsomewhere ?
Is it possible to use aes encryption with samba4 (or will it be) ?
Where
2010 Sep 09
1
8.1 Heimdal KDC
Could somebody please confirm that they are actually using 8.1-R with
heimdal as a KDC successfully? A little confirmation would help me greatly.
Thanks,
Jason C. Wells
2005 Jun 28
3
sync ldap samba passwds with heimdal kerberos passwds
How do I sync whem.
I have tryied out this in my smb.conf
unix password sync = yes
passwd program = /usr/sbin/kadmin -l passwd %u
passwd chat = "*Password:*" %n\n "*Password:*" %n\n "*"
But then i try to change a passwd in windows it rejects it, and
telling me that I dont have permissing to change the passwd.
Anyone solved this issue?
2015 Oct 08
4
Samba AD PDC , LDAP and Single-Sign-On (was: re: Samba Internal DNS vs. BIND_DLZ)
I'm very confused. I have a Samba4 AD/DC which works great for Windows
Authentication with our Windows 7 workstations.
Now, I am trying to implement single-sign-on for our coming-soon Linux workstations.
All web documentation I've so far found on this references OpenLDAP as the server
and describes server-side commands such as kadmin and slapd-config to get things
set up on the
2004 May 05
0
FreeBSD Security Advisory FreeBSD-SA-04:09.kadmind
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
=============================================================================
FreeBSD-SA-04:09.kadmind Security Advisory
The FreeBSD Project
Topic: heimdal kadmind remote heap buffer overflow
Category: contrib
Module: crypto_heimdal
2004 May 05
0
FreeBSD Security Advisory FreeBSD-SA-04:09.kadmind
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
=============================================================================
FreeBSD-SA-04:09.kadmind Security Advisory
The FreeBSD Project
Topic: heimdal kadmind remote heap buffer overflow
Category: contrib
Module: crypto_heimdal
2016 Feb 25
1
Trouble adding a service principal to keytab
Hi,
I am new to samba and Kerberos so please be gentle!
I have built a samba AD DC (v4.3.5) on Centos Linux from source and am
trying to add a service principal and generate a keytab containing the
principal. However the principal entry does not appear in the keytab.
Here's what I did:
[root at bones ~]# samba-tool spn add
GEMSTONE64/bunk.gemtalksystems.com at
2004 Oct 25
1
OpenSSH/Heimdal/MIT KDC problem/question
Hi,
I'm running OpenSSH 3.8 & 3.9, compiled against Heimdal 0.6.3 for it's
GSSAPI & AFS integration.
A couple weeks ago, we upgraded our MIT KDC from (ugh) Kerberos 5 1.0.6
to the lastest and greatest 1.3.5. However, it seems that as part of
the upgrade, our GSSAPI credentials passing in OpenSSH stopped working.
Actually, didn't completely stop... You can still do a
2008 Oct 13
1
heimdal/AD documentation
as i promise last week, a incomplete documentation about configuring a trust
beetween a heimdal kdc and a windows AD domain
really sorry for non-french speakers
of course, i'm very interresting in any feedback...
Pascal
configuration
- le realm Kerberos est DEMO.LOCAL
- le realm du domaine AD est ad.demo.local
La configuration du KDC lui m?me ne pr?sente pas de difficult?
2003 Apr 01
0
kadmind patch error
Hello all
I have a problem using kadmind patch.
# cd /usr/src/kerberos5/libexec/k5admind
# make depend && make all install
...
/usr/src/kerberos5/libexec/k5admind/../../../crypto/heimdal/lib/hdb/hdb.h:41:
hdb_asn1.h: No such file or directory
In file included from
/usr/src/kerberos5/libexec/k5admind/../../../crypto/heimdal/kadmin/kadm_conn.c:34:
2015 Aug 19
1
upgrade-ing samba on debian jessie. ( 4.1.17 to 4.2.3 sernet ) fails and solutions.
hai,
?
Just an informational message and below the fixed for the problems..?
?
when upgrading a member server with debian jessie with samba 4.1.17? with samba and winbind installed.?
?
For me this was on?my print server.
?
steps to take.
?
setup the apt sources for sernet.
?
install the sernet packages.
apt-get install sernet-samba sernet-samba-winbind sernet-samba-common sernet-samba-libs
2004 Jun 25
1
Compilation with Kerberos problem
I'm trying to compile Samba 3.0.4 with Active Directory support on
OpenBSD 3.5, using the native Kerberos libraries (which happens to be
Heimdal 0.6). Unfortunately, ./configure isn't working right. If anyone
can help me figure out what the problem is, i would appreciate it.
First a bit of info on OpenBSD's Kerberos path layout, in case it
matters:
/usr/libexec - daemons
2005 Oct 03
3
Problems compiling 3.0.20a with heimdal 0.7
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Hi everybodey,
i can't compile 3.0.20 the following message occurs :
Compiling dynconfig.c
In file included from include/includes.h:452,
~ from dynconfig.c:21:
/usr/local/heimdal-0.7/include/krb5.h:660: error: syntax error at '#' token
/usr/local/heimdal-0.7/include/krb5.h:660: warning: no semicolon at end
of struct or
2012 Jul 13
1
Understanding kerberos principals in samba4
Hi,
When I have a service on a client that tries to use kerberos and I get
errors such as these in the log.samba file:
Kerberos: UNKNOWN -- host/ubuntu-test.mydomain.net @ MYDOMAIN.NET: no such
entry found in hdb
Does this mean that the kerberos authentication system is looking for the
principal "host/ubuntu-test.mydomain.net @ MYDOMAIN.NET" in samba4's domain
or in the
2004 Oct 11
1
Samba 3.0.7, SuSE 8.2 and Heimdal Compile Problem
Trying to follow Chapter 9.3.3 of S3BE to create a SuSE 8.2 Active Directory
domain member server.
9.3.3 says heimdal >= .6 is required. I installed the Sernet packages and saw
0.6.2 source is included. Running ./configure after unpacking the heimdal
source completes OK, but running make results in the following errors:
creating libss.la
/usr/bin/sed: can't read
2004 Dec 22
1
Samba 3.0.10 ADS setup issue
I am attempting to setup Samba 3.0.10 on a Windows 2000 Active Directory
domain. The problem I'm having is getting Samba to configure correctly
to get the Kerberos library.
I've gone through previous posts and have tried doing what others
suggested but I still keep getting the error of:
"configure: error: libkrb5 is needed for Active Directory support"
The current configure
2005 Oct 24
1
3.0.20b and Heimdal
On Mon, Oct 24, 2005 at 03:35:41PM -0400, William Jojo wrote:
>
> Has anyone been able to get Heimdal 0.7.1 with Samba 3.0.20b to compile successfully without commenting out the __cplusplus stuff in include/includes.h? If I comment it out, it's fine on FC3. The Heimdal people are using "private" as a structure member name, so I know it's a Heimdal problem :-).
I think you
2023 Jan 29
1
Upgrading from Samba 4.8.2 to 4.15.5
On 1/29/23 09:12, Rowland Penny via samba wrote:
>
>
> On 29/01/2023 14:00, Michael Tokarev via samba wrote:
>> 29.01.2023 16:51, Rowland Penny via samba wrote:
>>
>>> ?From the distros you mentioned, the first two didn't supply Samba
>>> packages that could be provisioned as a DC, As far as I am aware,
>>> Slackware is the same. Arch did
2020 Oct 29
2
Samba4 ROLE_STANDALONE vs Kerberos = NT_STATUS_LOGON_FAILURE
My OS Gentoo Linux
Samba & krb5 version:
app-crypt/heimdal-7.6.0? abi_x86_32 abi_x86_64 berkdb caps ipv6 libressl
lmdb selinux ssl static-libs
net-fs/samba-4.11.13-r1 abi_x86_64 acl addc addns ads client cups gpg
json ldap pam profiling-data python python_single_target_python3_7 quota
selinux syslog system-heimdal winbind
My /etc/samba/smb.conf (testparm)
Load smb config files from