[Samba] Forcing Kerberos from Pam/Winbind samba-3.0.0rc4
Steve Smtih
ssmith315 at sbcglobal.net
Fri Sep 19 17:16:00 GMT 2003
What is required to force Kerberos authentication from
Pam->Winbind? See winbindd log below - common
operations like wbinfo -u work fine.
Connecting to 10.99.100.205 at port 445
Doing spnego session setup (blob length=123)
got OID=1 2 840 48018 1 2 2
got OID=1 2 840 113554 1 2 2
got OID=1 2 840 113554 1 2 2 3
got OID=1 3 6 1 4 1 311 2 2 10
got principal=fmsamrvm002$@AMRVM.CORPVM.SMITHCO.COM
Doing kerberos session setup
Advancing clock by 7 seconds to cope with clock skew
signing_good: SMB signature check failed on seq 1!
SMB Signature verification failed on incoming packet!
failed kerberos session setup with NT_STATUS_OK
failed anonymous session setup with NT_STATUS_OK
[14342]: request interface version
[14342]: request location of privileged pipe
[14342]: pam auth amrvm\ssmith315
get_trust_pw: could not fetch trust account password
for my domain AMRVM
Plain-text authentication for user amrvm\ssmith315
returned NT_STATUS_CANT_ACCESS_DOMAIN_INFO (PAM: 4)
More information about the samba
mailing list