How test that secret.keytab is synchronized with the entry in sam.ldb

Matthieu Patou mat+Informatique.Samba at matws.net
Tue May 4 08:59:38 MDT 2010


On 04/05/2010 09:14, Andrew Bartlett wrote:
> On Tue, 2010-05-04 at 09:06 +0400, Matthieu Patou wrote:
>    
>> Well i think that the title says all.
>>      
> In short, we never change the password, so it never needs to be updated.
>
>    
We just change it in upgradeprovision.
> The libnet_Join code sets the passwords to be the same at the start, and
> so it remains in sync until the password changes.
>
> To test, try and do an smbclient -L mydc --machine-pass
>
> That will use the local machine password to do a kinit or NTLM login.
> IF that works, they are in sync.
>
> Andrew Bartlett
>
>    



More information about the samba-technical mailing list