[PATCH] samba3-keytab

Luke Howard lukeh at PADL.COM
Mon Sep 15 13:02:53 GMT 2003


>[root at wildfire0 bin]# ldapmodify -h icads2.realm.org 
>SASL/GSSAPI authentication started
>SASL SSF: 56
>SASL installing layers
>dn: CN=wildfire0,OU=Computers,OU=Realm,DC=realm,DC=org
>changetype: modify
>add: servicePrincialName
>servicePrincipalName: HOST/wildfire0.domain.realm.org
>
>modifying entry "CN=wildfire0,OU=Computers,OU=Realm,DC=realm,DC=org
>ldap_modify: Constraint violation
>        additional info: 0000200B: AtrErr: DSID-03151F6D, #1:
>        0: 0000200B: DSID-03151F6D, problem 1005 (CONSTRAINT_ATT_TYPE),
>data 0, Att 90303 (servicePrincipalName)

As far as I am aware, the servicePrincipalName can be set over LDAP
when an entry is added, but can only be modified using the
WriteAccountSpn RPC.

-- Luke




More information about the samba-technical mailing list