[23854] in Kerberos

home help back first fref pref prev next nref lref last post

problem with tickets verification

daemon@ATHENA.MIT.EDU (Maxime Pejot)
Mon May 9 14:56:38 2005

Content-class: urn:content-classes:message
MIME-Version: 1.0
Date: Mon, 9 May 2005 14:28:45 +0200
Message-ID: <256FEA6D80DE934EB638E4ED10892544011A6BEE@CBH28>
From: "Maxime Pejot" <maxime.pejot@mckesson.fr>
To: <kerberos@mit.edu>
Content-Type: text/plain;
	charset="us-ascii"
Errors-To: kerberos-bounces@mit.edu
Content-Transfer-Encoding: 8bit

Hello from France! And gratz for the job you are doing
 
I'm busy installing and configuring a Linux server, with a samba based
file-sharing system, using an AD authentication on a widows 2k server.
I tried to use samba v 3.0.14, with Kerberos v 1.2.7. My configuration
file looks like that :
 
Krb5.conf :
 
[libdefaults]
 ticket_lifetime = 24000
 default_realm = DOMAIN.MCK
 dns_lookup_realm = false
 dns_lookup_kdc = false 
 
[realms]
 domain.MCK = {
  kdc = serv.domain.mck
  admin_server = serv.domain.mck
  default_domain = domain.mck
}
 
[domain_realm]
 .domain.mck = DOMAIN.MCK
 domain.mck = DOMAIN.MCK
 
[stuff]
 
And as I try to connect my linux server from a windows 2k client, I get,
in the log.smbd file:
 
[2005/05/09 12:08:10, 1] smbd/sesssetup.c:reply_spnego_kerberos(173)
  Failed to verify incoming ticket!
=> Here is what I get when login and pass are good. When they aren't, I
also get
NT_STATUS_NO_SUCH_USER or simply nothing if pass is bad and login good.
I can't see where the problem is. Please, give me an answer or a
beginning, because this blocks me a lot.
 
Thanks a lot for any ideas you can have
 
Mask
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post