[Samba] kerberos and Win2003AD problems

treklor peter.rolkert at vv.se
Mon Aug 30 12:04:50 GMT 2004


Hi!

I've upgraded Samba-3.0.4 to 3.0.6 and now I can map shares but not 
read/write/update any folders/files on the samba share.
When I ran 3.0.4 everything worked fine, I even used the ACL settings
on files and folders and that worked too.
My problem then was when the kerberos ticket had expired, everything
stopped working, so I downloaded the the 3.0.6 version and installed it
hoping that this would resolve my problem with updating tickets.
No such luck. :-( Instead I got new problems, see errormessage. :-(

My Question: How do I configure Samba 3.0.6 and kerberos to work with 
Windows 2003 AD as a memberserver?


Errormessage in log.winbindd:
[2004/08/30 13:22:46, 1] libsmb/clikrb5.c:ads_krb5_mk_req(313)
   krb5_cc_get_principal failed (No credentials cache found)

My kerberos tickets:
bash-2.05# klist -5
Ticket cache: FILE:/tmp/krb5cc_0
Default principal: administrator at TESTDOMAIN.COM

Valid starting     Expires            Service principal
08/30/04 12:53:44  08/30/04 22:53:49  krbtgt/TESTDOMAIN.COM at TESTDOMAIN.COM
         renew until 08/31/04 12:53:44
08/30/04 12:55:07  08/30/04 22:53:49  dc-w2003ad$@TESTDOMAIN.COM
         renew until 08/31/04 12:53:44
08/30/04 12:55:07  08/30/04 12:57:07  kadmin/changepw at TESTDOMAIN.COM
         renew until 08/30/04 12:57:07
08/30/04 12:56:47  08/30/04 22:53:49  samba3server$@TESTDOMAIN.COM
         renew until 08/31/04 12:53:44



More information about the samba mailing list