[Samba] Freebsd 6.1 and Kerberos in rc.conf

Alberto Moreno portsbsd at gmail.com
Fri Oct 27 18:24:37 GMT 2006


2006/10/27, Matt <mes5048 at gmail.com>:
>
> I am familiar with freebsd 6.1 as I use it regularly.  Here is how you
> enable kerberos.  Add these lines to your rc.conf.
> kerberos5_server_enable="YES"
> kadmind5_server_enable="YES"
> kpasswdd_server_enable="YES"
>
> The other options you can pretty much ignore.  Those are for if you have a
> non-standard install of FreeBSD.  I am assuming you are using the version of
> Heimdal included with FreeBSD 6.1.  If you are, it is version 0.6.6 so you
> do not have to specify any special encryption algorithm.
>
> On 10/27/06, Cleber P. de Souza <cleberps at gmail.com > wrote:
> >
> > I'm not familiar about FreeBSD settings, but about kerberos and AD
> > you'll need also pay attention to your clock syncronization, because
> > if your Win2k3 and FreeBSD's clock differs more than 5 minutes you'll
> > get errors to connect.
> >
> > On 10/27/06, Alberto Moreno < portsbsd at gmail.com> wrote:
> > >   Hi people.
> > >
> > >   Im reading the samba manual to join my freebsd box with to an win2k3
> > AD
> > > Domain, i install samba from ports with support for AD, already check
> > that
> > > my samba program has been build with support for kerberos, ldap and
> > all the
> > > stuff the manual recommended, now about kerberos, we have some stuff
> > in
> > > /etc/rc.conf
> > >
> > > #
> > > # kerberos. Do not run the admin daemons on slave servers
> > > #
> > >
> > > kerberos5_server_enable="NO" # Run a kerberos 5 master server (or NO).
> > >
> > > kerberos5_server="/usr/libexec/kdc" # path to kerberos 5 KDC
> > >
> > > kerberos5_server_flags="" # Additional flags to the kerberos 5 server
> > >
> > > kadmind5_server_enable="NO" # Run kadmind (or NO)
> > >
> > > kadmind5_server="/usr/libexec/kadmind" # path to kerberos 5 admin
> > daemon
> > >
> > > kpasswdd_server_enable="NO" # Run kpasswdd (or NO)
> > >
> > > kpasswdd_server="/usr/libexec/kpasswdd" # path to kerberos 5 passwd
> > daemon
> > >
> > >  Which options we neen to enable...?
> > >
> > >  There is something extra that we need to do with kerberos before i
> > try to
> > > join this machine..?
> > >
> > >  Another thing, there is one var in smb.conf that ask for a wins
> > server, my
> > > domain doesnt have any wins server, do i need this var...?
> > >
> > >  Any tip will be apreciated, thanks for your time!!!
> > >
> > > --
> > > LIving the dream...
> > > --
> > > To unsubscribe from this list go to the following URL and read the
> > > instructions:  https://lists.samba.org/mailman/listinfo/samba
> > >
> >
> >
> > --
> > ***
> > Cleber P. de Souza
> > --
> > To unsubscribe from this list go to the following URL and read the
> > instructions:  https://lists.samba.org/mailman/listinfo/samba
> >
>
>

 Hi guys.

  Them, i read some post about the Time between AD and Samba server, them is
better to setup on local time server(NTP) to help this comunication?

   Thanks for your answers.
-- 
LIving the dream...


More information about the samba mailing list