Authenticating off a Windows 2003 ADS DC with Samba/Winbind

Rafiq_Maniar at Dell.com Rafiq_Maniar at Dell.com
Wed Nov 17 10:29:03 UTC 2004


How do I get wbinfo to use ADS? Surely it should just take its
configuration from smb.conf? I've looked at the manpage and
there doesn't seem to be any rpc/ads options.

Someone else mentioned that the domain TEST.COM may be a problem. I
don't think so, my nslookup's all work fine, and the DNS server
is running on the W2K3 box and it performs lookups purely for the
TEST.COM domain and doesn't forward queries anywhere.

Using krb5-workstation-1.3.4-7 as installed by FC3. I *think* my
kerberos is working ok cause I can kinit and login using smbclient.
Can't say I know anything much about kerberos though. 

Rafiq

-----Original Message-----
From: sharif islam [mailto:sharif.islam at gmail.com]
Sent: 16 November 2004 19:25
To: For users of Fedora Core releases
Subject: Re: Authenticating off a Windows 2003 ADS DC with Samba/Winbind


On Tue, 16 Nov 2004 18:00:41 -0000, rafiq_maniar at dell.com
<rafiq_maniar at dell.com> wrote:
[.....]

>[root at gx280rmaniarFC3 samba]# wbinfo -t
>checking the trust secret via RPC calls failed
> error code was NT_STATUS_INTERNAL_ERROR (0xc00000e5)
>Could not check secret

This is using RPC, not ADS. So that should fail. 
What version of krb5 are you using? I think I couldn't get krb5-1.2..7
work with ADS. I had to install krb5-1.3.5 from source.


-- 
Sharif Islam                            http://www.sharifislam.com
Research Programmer            
Library Systems Office

-- 
fedora-list mailing list
fedora-list at redhat.com
To unsubscribe: http://www.redhat.com/mailman/listinfo/fedora-list




More information about the users mailing list