[Samba] Using the RedHat 9.0 Samba 3.0.13 RPM with Kerberos 1.4 from MIT

Greg Scott GregScott at InfraSupport.com
Sat Apr 2 03:36:07 GMT 2005


Hello - 

I have a problem where I need to authenticate a RedHat 9.0 system with a
Win 2003 domain.  After days ot labor and tinkering, I keep getting this
error when trying to join my Linux box to the Win2003 Active Directory
domain:

[root at infra-fw etc]# net ads join -S 10.10.10.100 -U administrator
administrator's password: 
[2005/04/01 21:24:41, 0] libads/kerberos.c:ads_kinit_password(146)
  kerberos_kinit_password administrator at INFRASUPPORTETC.COM failed: KRB5
error code 52
[2005/04/01 21:24:41, 0] utils/net_ads.c:ads_startup(191)
  ads_connect: KRB5 error code 52

Google pointed me to some advice here:
http://lists.samba.org/archive/samba/2004-July/090137.html

And this quote from John Terpstra:
> Only MIT Kerberos 1.3.1 or later will work with Windows 2003 Server
ADS. 

So I downloaded and built the latest and greatest release of MIT
Kerberos, krb5 1.4.  

This all leads up to my question - is there a way for the Samba 3.0.13
RPM to use my newly built release of Kerberos instead of the RPM, or do
I need to also build Samba from source?  And if I need to build Samba
from source, how do I tell the source build to use the 1.4 release of
Kerberos instead of the 1.2.7 release bundled with RedHat 9.0?

Thanks

- Greg Scott
  GregScott at InfraSupportEtc.com
  cell phone 651-260-1051









More information about the samba mailing list