[Samba] Samba LDAP kerberos tickets problem

2011-11-16 Thread DAVID ZHOU
Hi, I am using Samba to join AD.But have a problem with version 3.4.7 which not meet in version 3.2.5. Here is my steps: in version 3.2.5 1. set smb.conf and krb5.conf the realm to test.com; in smb.conf set use kerberos keytab = true 2. net ads join -U Administrator%Password

Re: [Samba] samba, ldap, kerberos

2010-02-17 Thread Pramathesh Ambasta
samba-requ...@lists.samba.org wrote: Subject: Re: [Samba] samba, ldap, kerberos From: Natxo Asenjo natxo.ase...@gmail.com Date: Mon, 15 Feb 2010 09:42:18 +0100 To: Samba Mail List samba@lists.samba.org To: Samba Mail

Re: [Samba] samba, ldap, kerberos

2010-02-15 Thread Natxo Asenjo
On Mon, Feb 15, 2010 at 7:27 AM, Pramathesh Ambasta pramathesh.amba...@gmail.com wrote: Though I am not new to samba, I am new to this so will really appreciate guidance. If I want to implement a single sign on scheme using openldap and kerberos on a linux server, how can samba be integrated

[Samba] samba, ldap, kerberos

2010-02-14 Thread Pramathesh Ambasta
Though I am not new to samba, I am new to this so will really appreciate guidance. If I want to implement a single sign on scheme using openldap and kerberos on a linux server, how can samba be integrated into this scheme? As far as I can understand from the docs, the discussions on samba and

Re: [Samba] Samba - LDAP - Kerberos

2007-04-05 Thread Andrew Bartlett
On Wed, 2007-04-04 at 15:18 +0200, Jörg Herzinger wrote: The other option is the smbk5pwd module for openldap, and setting 'ldap password sync = yes'. I've not used it myself, but I'm told it works. Hmm, thanks, but this module is just a dirty trick in my eyes and it works just for

Re: [Samba] Samba - LDAP - Kerberos

2007-04-05 Thread Jörg Herzinger
Like Kerberos, Samba needs the password-equivilant values, or some other process that will perform the same calculations on them (like a DC for a member server). There isn't any way around that. Interestingly Heimdal 0.8 includes code to do this in the KDC (we don't have a client for this

Re: [Samba] Samba - LDAP - Kerberos

2007-04-05 Thread Andrew Bartlett
On Thu, 2007-04-05 at 14:35 +0200, Jörg Herzinger wrote: Like Kerberos, Samba needs the password-equivilant values, or some other process that will perform the same calculations on them (like a DC for a member server). There isn't any way around that. Interestingly Heimdal 0.8 includes

Re: Re: [Samba] Samba - LDAP - Kerberos

2007-04-04 Thread Jörg Herzinger
I already thought that this is not possible. Is there no other way of authenticating samba? PAM, SASL, ANYTHING. I mean, I like samba, but in terms of user authentication it really isn't flexible. -- To unsubscribe from this list go to the following URL and read the instructions:

Re: [Samba] Samba - LDAP - Kerberos

2007-04-04 Thread Andrew Bartlett
On Tue, 2007-04-03 at 21:47 -0400, Sean Elble wrote: On 4/3/07 1:20 PM, Jörg Herzinger [EMAIL PROTECTED] wrote: Hello. I'm trying to implement a single-sign-on system with MIT-Kerberos and OpenLDAP. These two are currently working pretty well, but now I'm trying to add samba to this

Re: [Samba] Samba - LDAP - Kerberos

2007-04-04 Thread Jörg Herzinger
The other option is the smbk5pwd module for openldap, and setting 'ldap password sync = yes'. I've not used it myself, but I'm told it works. Hmm, thanks, but this module is just a dirty trick in my eyes and it works just for Heimdal Kerberos but I use MIT-Kerberos. I almost can't believe

[Samba] Samba - LDAP - Kerberos

2007-04-03 Thread Jörg Herzinger
Hello. I'm trying to implement a single-sign-on system with MIT-Kerberos and OpenLDAP. These two are currently working pretty well, but now I'm trying to add samba to this system. I've found a lot of tutorials about samba PDC with LDAP backend, but this is of course not quite what I want. My

Re: [Samba] Samba - LDAP - Kerberos

2007-04-03 Thread Sean Elble
On 4/3/07 1:20 PM, Jörg Herzinger [EMAIL PROTECTED] wrote: Hello. I'm trying to implement a single-sign-on system with MIT-Kerberos and OpenLDAP. These two are currently working pretty well, but now I'm trying to add samba to this system. I've found a lot of tutorials about samba PDC with

Re: [Samba] Samba + LDAP + ¿Kerberos?

2006-12-28 Thread Jim Hogan
Michael, All, I have been going back through the Samba archives looking to see if a Samba+LDAP+Kerberos configuration is possible given my situation. Mostly I see posts that say You can't get there from here., but I don't want to give up too easily. My situation is this: I have a new

Re: [Samba] Samba + LDAP + ¿Kerberos?

2006-12-28 Thread Jim Hogan
To answer my own question. Howard Chu, on the fedora-directory-users list, answered a slightly different version of the same query from me and I think has put me out of my misery :) https://www.redhat.com/archives/fedora-directory-users/2006-December/msg00165.html Now, my University

Re: [Samba] Samba + LDAP + ¿Kerberos?

2006-12-28 Thread Michael Schurter
PS - If you find my advice helpful, in lieu of lunch, I would accept entry into Washinton U's doctoral Computer Science Engineering program with a nice stipend. ;) Sorry - just noticed your e-mail address and since I'm interested in grad studies, I couldn't resist. :) Good luck with

Re: [Samba] Samba + LDAP + ¿Kerberos?

2006-11-25 Thread Michael Schurter
Asier Baranguán wrote: Hi! Perhaps this is not the appropiate list, but I need some advices. I have a working Samba PDC with a LDAP backend over a secure TLS connection, with W2000 and XP clients. I've readed in a lot of places that Kerberos is a very nice thing to have in the setup but I

[Samba] Samba + LDAP + ¿Kerberos?

2006-11-23 Thread Asier Baranguán
Hi! Perhaps this is not the appropiate list, but I need some advices. I have a working Samba PDC with a LDAP backend over a secure TLS connection, with W2000 and XP clients. I've readed in a lot of places that Kerberos is a very nice thing to have in the setup but I cannot see why. I know the

Re: [Samba] Samba + (LDAP + Kerberos V)

2004-10-22 Thread Gmes Gza
Andrew Bartlett rta: On Thu, 2004-10-21 at 06:46, Gmes Gza wrote: Matt Joyce rta: That's very easy to explain, because if you follow it you will have your kerberos using the Samba' MD4 password hash, and so all of your *nix and windows machine will use the same password. However as

Re: [Samba] Samba + (LDAP + Kerberos V)

2004-10-21 Thread Andrew Bartlett
On Thu, 2004-10-21 at 06:46, Gmes Gza wrote: Matt Joyce rta: That's very easy to explain, because if you follow it you will have your kerberos using the Samba' MD4 password hash, and so all of your *nix and windows machine will use the same password. However as Samba3 is able to emulte an

Re: [Samba] Samba + (LDAP + Kerberos V)

2004-10-21 Thread Tarjei Huse
Hi, You can read more about it at: https://sec.miljovern.no/bin/view/Info/HeimdalKerberosSambaAndOpenLdap I would be very happy for any input and suggestions to the howto. Tarjei Now, assuming the worst and samba is incapable of handling kerberos tickets, and assuming i manage to

[Samba] Samba + (LDAP + Kerberos V)

2004-10-20 Thread Matt Joyce
So like at least a handful of people before me I have begun the valiant stugle to unify logins at my place of business. I have setup a test LDAP + Kerberos V cluster. And I have Setup a test Samba 3 PDC. What I would like to do is get Samba to handle kerberos ticket granting and authentication

Re: [Samba] Samba + (LDAP + Kerberos V)

2004-10-20 Thread Gémes Géza
Matt Joyce írta: So like at least a handful of people before me I have begun the valiant stugle to unify logins at my place of business. I have setup a test LDAP + Kerberos V cluster. And I have Setup a test Samba 3 PDC. What I would like to do is get Samba to handle kerberos ticket granting

Re: [Samba] Samba + (LDAP + Kerberos V)

2004-10-20 Thread Gémes Géza
Matt Joyce írta: Gémes Géza wrote: Matt Joyce írta: So like at least a handful of people before me I have begun the valiant stugle to unify logins at my place of business. I have setup a test LDAP + Kerberos V cluster. And I have Setup a test Samba 3 PDC. What I would like to do is get Samba to

[Samba] Samba + LDAP + Kerberos

2003-07-21 Thread Doug Curtis
I have been working on getting the three of these to work together and I think that they are. (Mostly) Anyway the real question is: Is there a way to setup samba and the ldap scripts that are distributed with Samba so that they don't use a plain text password? Maybe I'm just too paranoid, but