[Fwd: Re: [PATCH] keytab management for ADS mode.]

Jeremy Allison jra at samba.org
Wed Jan 28 23:28:47 GMT 2004


On Wed, Jan 28, 2004 at 06:15:57PM -0500, Rakesh Patel wrote:
> Were the machines joined using Samba, or were they normal Win2k/XP 
> clients which joined using
> normal MS mechanisms?

Joined using the Samba net command.

> Samba only registers host/machine and cifs/machine - the patch added 
> host/machine.domain and cifs/machine.domain

Yeah, the problem is this will only work for new "net" command joins,
the old ones still have a principal name of NETBIOSNAME.

> Take a look at the AD entry to see what 
> servicePrincipalNames were created.

Well I'd rather believe what their KDC returns than what is saved
in their LDAP server. What the KDC returns is what the clients use,
I don't care what is in the LDAP db.

Jeremy.


More information about the samba-technical mailing list