Samba as a gateway to OpenAFS

Love lha at
Wed May 29 04:38:03 GMT 2002

Andrew Bartlett <abartlet at> writes:

> > > > > 1. Get rid of AFS's need for plaintext passwords.
> > Ah, of course credential forwarding/proxying would be a requirement for
> > making this work without giving the gateway special privileges; I'd
> > completely overlooked that.  I'm afraid I don't know the answer, though.
> > Perhaps someone currently doing Samba 3.0 work has run into this and can
> > say?
> I see no reason why this would not be possible.  We would need to do a
> little bit of work on the smbd side of things, but credential forwarding
> is pretty standard.  This assumes either a AD domain, or Samba modified
> to correctlly function with krb5 but without AD (which also implies
> windows clients joined to such a domain).

So, so how do you tell the client to forward creds to the fileserver, and
can you chose want creds you want to forward ?

More information about the samba-technical mailing list