What does kinit say, if you have the
e.g. "kdc = tcp/192.168.1.1" line in your krb.conf?

I'm using the same (0.6.3) heimdal version that does not have a tcp fallback. But could not get kinit to using UDP with this line in the krb5.conf.

~ Martin


Nejc Škoberne schrieb:
Hi again,

You could either use an administrative account which is not a member of so many groups (causing the "packet too big" error), or use a more recent version of samba. In any version <= 3.0.22 the tcp fallback is not implemented during the kpasswd request. The krb5.conf kdc line is not taken into account at this place.

I upgraded Samba to 3.0.25a and tried again with the user, who has administrator privileges but is not in so many groups. I get a bit different message, but it
is still a no go:

[EMAIL PROTECTED]:~# net ads join -U domainadmin%idsrmap978
[2007/07/11 11:36:34, 0] libads/kerberos.c:ads_kinit_password(227)
kerberos_kinit_password [EMAIL PROTECTED] failed: Response too big for UDP, retry with TCP
Failed to join domain: NT_STATUS_PROTOCOL_UNREACHABLE

Any ideas?

Thanks,
Nejc


--
Martin Zielinski             [EMAIL PROTECTED]
Software Development
SEH Computertechnik GmbH     www.seh.de

--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba

Reply via email to