On Thu, Dec 17, 2009 at 2:18 PM, Michael Calmer <m...@suse.de> wrote:
> One solution would be to tell the Windows Server, that your kerberos > installation do not support aes. > > [libdefaults] > ... > default_tkt_enctypes = arcfour-hmac-md5 des-cbc-crc des-cbc-md5 > default_tgs_enctypes = arcfour-hmac-md5 des-cbc-crc des-cbc-md5 > > I hope this helps. I remember a conversation from Samba group some time ago in which it is possible to set the msDS-SupportedEncryptionTypes from the client. > > -- > MFG > > Michael Calmer -- Ravi Channavajhala CTO http://www.dciera.com ________________________________________________ Kerberos mailing list Kerberos@mit.edu https://mailman.mit.edu/mailman/listinfo/kerberos