[Samba] desactivating NTLM fallback when accessing a share and kerberos auth fails

Volker Lendecke Volker.Lendecke at SerNet.DE
Thu Feb 12 11:09:05 GMT 2009

On Thu, Feb 12, 2009 at 09:49:01AM +0100, Guillaume Rousse wrote:
> Is there any way to either:
> - perform some kind of name canonicalization, either on client or server 
> side ?

Set the correct service principal names in your DC.

> - desactivate any kind of authentication but kerberos, either for this 
> share, or globally ?

No, not possible.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.samba.org/archive/samba/attachments/20090212/5ecceb02/attachment.bin

More information about the samba mailing list