[Samba] Configure Samba 3 to auth off a MIT KDC.

Andrew Bartlett abartlet at samba.org
Tue Sep 28 22:20:14 GMT 2004


On Tue, 2004-09-28 at 22:54, Bruce Marriner wrote:
> >Perhaps I proposed the patch to the wrong audience.  There are some
> >people who have an existing Kerberos site, and have even followed the
> >painful Microsoft howto on joining an MIT realm, and wish Samba to play
> >ball.  
> >
> >This is certainly not possible with Win98, so I suggest you instead just
> >setup a normal Samba domain.


> Is there no pam options where I could 
> use pam_krb5 or something along those lines? 

Domain Logons are technically incompatible with plaintext
authentication, and plaintext authentication is incompatible with the
whole idea behind kerberos - that is, no plaintext on the network...

Andrew Bartlett

-- 
Andrew Bartlett                                 abartlet at samba.org
Authentication Developer, Samba Team            http://samba.org
Student Network Administrator, Hawker College   abartlet at hawkerc.net
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba/attachments/20040929/e040354f/attachment.bin


More information about the samba mailing list