Displaying 20 results from an estimated 700 matches similar to: "Configure usage of MS Kerberos"
2009 May 20
1
[PATCH server] update host-browser to use ipa commands rather than kadmin
This completes the server side daemons ipa support
---
installer/modules/ovirt/manifests/ovirt.pp | 5 ++++
src/host-browser/host-browser.rb | 29 +++++++++++++++++++++------
2 files changed, 27 insertions(+), 7 deletions(-)
diff --git a/installer/modules/ovirt/manifests/ovirt.pp b/installer/modules/ovirt/manifests/ovirt.pp
index 2e91e69..d3d01d6 100644
---
2012 Jul 13
1
Understanding kerberos principals in samba4
Hi,
When I have a service on a client that tries to use kerberos and I get
errors such as these in the log.samba file:
Kerberos: UNKNOWN -- host/ubuntu-test.mydomain.net @ MYDOMAIN.NET: no such
entry found in hdb
Does this mean that the kerberos authentication system is looking for the
principal "host/ubuntu-test.mydomain.net @ MYDOMAIN.NET" in samba4's domain
or in the
2009 Aug 11
0
[PATCH server] Added support for remote logging with rsyslog-gssapi to server.
Nodes will use rsyslog to forward their logs to the server in
/var/log/remote.
---
installer/modules/ovirt/files/rsyslog.conf | 65 ++++++++++++++++++++
installer/modules/ovirt/manifests/ovirt.pp | 26 ++++++++
.../modules/ovirt/templates/ovirt-dns.conf.erb | 1 +
ovirt-server.spec.in | 3 +
scripts/ovirt-rsyslog-kerbsetup
2009 Dec 02
1
Kerberos + NFSv4 difficulties
Hey All,
I recently have been trying to setup an NFSv4 share that utilizes Kerberos. My experience in general with NFS is very slim however I feel like I am very close to getting this project completed. Currently I have the following things in place:
1) NFS server nfs.example.net (VM#2) - Running CentOS 5.4 with all of the latest updates and NFS-related packages
2) Kerberos KDC running on
2006 Oct 31
0
6403208 kadmin.local -q ''cpw -randkey <princ>'' not using all supported enctypes
Author: willf
Repository: /hg/zfs-crypto/gate
Revision: efc14bf5fbfc26ff040aab6292cb3b1d7b6334aa
Log message:
6403208 kadmin.local -q ''cpw -randkey <princ>'' not using all supported enctypes
Files:
update: usr/src/cmd/krb5/kadmin/cli/kadmin.c
2016 Feb 25
1
Trouble adding a service principal to keytab
Hi,
I am new to samba and Kerberos so please be gentle!
I have built a samba AD DC (v4.3.5) on Centos Linux from source and am
trying to add a service principal and generate a keytab containing the
principal. However the principal entry does not appear in the keytab.
Here's what I did:
[root at bones ~]# samba-tool spn add
GEMSTONE64/bunk.gemtalksystems.com at
2011 Jul 19
1
nfsv4 and kerberos - fails to mount
I have been trying all sorts of things to get this working.
nfsv4 works fine if I just use the nfs-v3 form of export
i.e.
/nfs4exports
192.168.230.237/24(ro,fsid=0,sync,insecure,no_root_squash,no_subtree_check,squash_uids=0-99)
/nfs4exports/NDG
192.168.230.237/24(rw,insecure,no_subtree_check,nohide,sync,no_root_squash,squash_uids=0-99)
but this is inherently open to all on this machine.
so then
2002 Nov 01
0
Re: Samba PDC and Kerberos(MIT or SEAM in Uinx,without microsoft ADS)
Jonathan Higgins wrote:
>
> A few more questions and comments... related to this topic
>
> If Kerberos is the back-end to LDAP.. there is no need to synchronize or store a >password in the LDAP tree.. just the principal for the user in the userpassword >attribute: userpassword = {kerberos}name@domain
That is correct. I did not mean sync between Kerberos and LDAP, I mean
sync
2004 Nov 30
1
Kerberos authentication sigsegvs
Hi
I'm having major problems setting up Samba 3.0.9 with kerberos
authentication. I have also tried with 3.0.8(from Debian SID) with same
result.
smb.conf[1] has 'security = ads' , and 'use kerberos keytab = yes'.
I have set up pam_krb5 and I get TGTs that works with my ssh
servers.
But, when I try to authenticate using smbclient -k -L server I
get:
"session setup failed:
2018 Oct 23
2
Again NFSv4 and Kerberos at the 'samba way'...
Sorry, i come back to this topic in a different thread, because i'm
still totally puzzled with the previuous one. Louis, sorry me. ;(
I've tried to start with this, that seems very simple:
https://wiki.debian.org/NFS/Kerberos
And so i've done:
a) installed 'nfs-kernel-server' on server, 'nfs-common' on client.
Ok, this is easy.
b) AFAI've understood i need
2004 Oct 19
1
[LLVMdev] Re:question about Insert callInst to call a function in library
Thanks Chris, but the method you mentioned is not what I want. Maybe I didn't make it clear.
As you said, /runtime/libprofile is runtime library for the following function.
llvm_start_func_profiling
llvm_start_block_profiling
llvm_start_basic_block_tracing
llvm_trace_basic_block
And those above functions can be inserted into basic block etc for getting profile. However, those
2012 Mar 21
0
Kerberos failed password not working
Hello,
? I have recently set up a system to test the relatively new ability of Kerberos to track failed password attempts and lock out users for a given period of time if they exceed a threshold.? My system is Centos 6.2 running the krb5-server-1.9-22.el6_2.1.x86_64 RPM.? I have created a testuser in the Kerberos domain, and applied the policy as shown below.? If I then attempt to log on to the
2003 Nov 13
1
Client accessing Samba doesn't authenticate against Active Directory
When a Windows client attempts to browse shares on a Samba 3.0 server
authenticating against a Windows 2003 Active Directory domain, it
requests credentials. Typing in user name and password fails.
Basically, I can't see even see the shares.
If I give username/password for a user in smbpasswd, then I can browse
the Samba server.
Configuration info:
ADS server: LICENSE
ADS server IP:
2020 Aug 25
0
X.Org server security advisory: August 25, 2020
Multiple input validation failures in X server extensions
=========================================================
All theses issuses can lead to local privileges elevation
on systems where the X server is running privileged.
* CVE-2020-14345 / ZDI CAN 11428 XkbSetNames Out-Of-Bounds Access
The handler for the XkbSetNames request does not validate the request
length before accessing its
2003 Feb 12
2
Samba 3.0 AD usage problems
Dear all,
I downloaded samba3.0-alpha21 and followed each step in "ADS-HOWTO.txt".
But mapping a network directory from a Windows client failed (step 4:
Test your server setup).
(Succeeded in other steps.... Including step 5)
Only local users in the samba server can access the share folder.
(Please refer to the smb.conf listed below...)
And "#kadmin -p administrator" fails
2003 Oct 05
0
nwebie problems.
Hi there
I'm built samba-3.0.0-2 from the src rpm on a redhat 7.1 system.
I had to make sure a few ldap and kerberos devel rpms were installed, but I
managed to build and install it eventually.
I added:
--with-ads \
--with-krb5=/usr/kerberos \
--with-ldap
to the SPEC file for the package.
I followed mainly whats in here:
2015 Sep 04
1
Authentication against Apple Open Directory (was: Re: LDAP authentication without Samba schema)
On Fri, Sep 04, 2015 at 12:05:56PM +1200, Andrew Bartlett wrote:
> On Wed, 2015-08-12 at 06:18 -0700, John Hixson wrote:
> > Hi,
> >
> > I am in a position where I would like to have LDAP authentication for
> > CIFS shares, but cannot modify the LDAP server. The LDAP server is
> > Open
> > Directory and does not have the Samba schema included or configured.
2015 Sep 04
0
Authentication against Apple Open Directory (was: Re: LDAP authentication without Samba schema)
On Wed, 2015-08-12 at 06:18 -0700, John Hixson wrote:
> Hi,
>
> I am in a position where I would like to have LDAP authentication for
> CIFS shares, but cannot modify the LDAP server. The LDAP server is
> Open
> Directory and does not have the Samba schema included or configured.
> I
> only have read only access, a keytab, and possibly a read only bind
> user. Is this
2008 May 29
2
Config for NFSv4 an Kerberos on CentOS 5.1
Hi list,
Is it possible to set up an NFSv4/Kerberos environment on CentOS 5.1?
I set up Kerberos and NFS but get several erros
"Warning: rpc.gssd appears not to be running.
mount.nfs4: Permission denied"
Is this an CentOS oder an config problem?
Greetings
Sebastian
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type:
2004 May 05
0
FreeBSD Security Advisory FreeBSD-SA-04:09.kadmind
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
=============================================================================
FreeBSD-SA-04:09.kadmind Security Advisory
The FreeBSD Project
Topic: heimdal kadmind remote heap buffer overflow
Category: contrib
Module: crypto_heimdal