Cross-realm authentication

Jason Haar Jason.Haar at
Mon Dec 8 21:03:59 GMT 2003

>From this post, is it true that Samba doesn't support cross-domain
Active Directory authentication?

Would that mean if I run winbindd, then I can't "see" other AD domains
via Samba?

This is something I've reported before and would explain my symptoms of
being a AD member, "getent passwd" showing my AD domain plus NT4 domains
it has a trust with, but not being able to show other AD domains...

I'm now running Samba-3.0.1rc1 and I still have this problem.



On Fri, 2003-11-28 at 16:31, Fergus McKenzie-Kay wrote:
> Hi,
> I'm trying to use the patch posted on the samba technical list.  I still
> can't seem to get the cross-realm authentication working.  Is there
> anything I need to do configuration-wise that I might be missing?  At
> the moment I just have set the machine up as an ADS member and it still
> works with ADS kerberos authentication, but does not seem to accept my
> foreign realm ticket.
> Any ideas?
> here is the patch I'm talking about:
> Is this patch still relevant for 3.0 final?
> Thanks

More information about the samba-technical mailing list