RES: [Samba] Samba and Kerberos

Estevam Henrique Carvalho estevamh at bmf.com.br
Thu Jun 3 15:37:16 GMT 2004


I've done that using pam_winbind + courier.

-----Mensagem original-----
De: samba-bounces+ecarvalho=bmf.com.br at lists.samba.org
[mailto:samba-bounces+ecarvalho=bmf.com.br at lists.samba.org] Em nome de
pll+samba at permabit.com
Enviada em: quinta-feira, 3 de junho de 2004 11:06
Para: samba at lists.samba.org
Assunto: [Samba] Samba and Kerberos


Is there anyway to have Samba auth against Kerberos?

I'm not looking for DC capability, or integration with AD, or 
anything fancy.  I don't want/need Samba to obtain K5 tickets on 
behalf of the client. All I want is to have Samba auth the username and 
password against an existing kerberos environment much like I have 
IMAP doing now.

Is it possible to have Samba auth against PAM, which could be 
configured to use pam_krb5.so?  If so, can someone point me to docs 
on doing this?  I found http://www.samba.org/samba/docs/man/pam.html
which seems to indicate it's possible, however, I'm also assuming 
that to use this, I'd need to have the Windows clients transmitting 
their passwords in cleartext, which I'm not so keen on (unless 
there's some way to run Samba over SSL or the like?)

Thanks for any pointers anyone can throw my way.
-- 
Seeya,
Paul

GPG Key fingerprint = 1660 FECC 5D21 D286 F853  E808 BB07 9239 53F1 28EE

	 If you're not having fun, you're not doing it right!


-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


========================================================= 
Esta mensagem pode conter informacao confidencial e/ou privilegiada. Se voce
nao for o destinatario ou a pessoa autorizada a receber esta mensagem, nao
devera utilizar, copiar, alterar, divulgar a informacao nela contida ou
tomar qualquer acao baseada nessas informacoes. Se voce recebeu esta
mensagem por engano, por favor avise imediatamente o remetente, respondendo
o e-mail e em seguida apague-o. Agradecemos sua cooperacao. 

This message may contain confidential and/or privileged information. If you
are not the addressee or authorized to receive this for the addressee, you
must not use, copy, disclose, change, take any action based on this message
or any information herein. If you have received this message in error,
please advise the sender immediately by reply e-mail and delete this
message. Thank you for your cooperation. 
========================================================= 


More information about the samba mailing list