[Pkg-samba-maint] Bug#519570: Bug#519570: Kerberos working on samba 3.2.5 PDC, but failing when joining the domain

Juan Miguel Corral Cano cde_ruylopez at yahoo.es
Wed Oct 21 10:58:04 UTC 2009


Finally SOLVED!

It works with 3.4.2. The only thing you need is setting the parameter 
"kerberos method = system keytab" on smb.conf.

It looks like samba versions 3.2 and 3.3 were trying to verify the 
ticket against secrets database, instead of using the keytab first, and 
found wrong data. But 3.4 allows you to restrict the verification to the 
system keytab, so it finds the correct key.

So now it is possible to make a SSO samba server on lenny, following 
Eduardo's howto. Great!

Thank you very much. Best regards,
Juan.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: good_3.2.4_joined.log
Type: text/x-log
Size: 4347 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-samba-maint/attachments/20091021/97263721/attachment.bin>


More information about the Pkg-samba-maint mailing list