[Samba] net ads join -> strong(er) authentication required

Guenther Deschner gd at samba.org
Wed Jul 1 10:26:13 GMT 2009

On Wed, Jul 01, 2009 at 12:03:28PM +0200, christoph.beyer at desy.de wrote:
> Hi,
> my windows folks migrated to AD 2008 R2, resulting in the following error 
> message when trying to join the domain:
> [HOST] /etc $ /opt/csw/bin/net ads join -U <USER>
> Enter <USER>'s password:
> [2009/07/01 11:51:28,  0] libads/sasl.c:ads_sasl_spnego_bind(819)
>   kinit succeeded but ads_sasl_spnego_krb5_bind failed: Strong(er)  
> authentication required
> Failed to join domain: failed to connect to AD: Strong(er) authentication 
> required
> Any hints ?

You might need to set "client ldap sasl wrapping" in order to make this
work.  See the manpage for possible settings.


Günther Deschner                    GPG-ID: 8EE11688
Red Hat                         gdeschner at redhat.com 
Samba Team                              gd at samba.org
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 197 bytes
Desc: not available
Url : http://lists.samba.org/archive/samba/attachments/20090701/88f3bc1f/attachment.bin

More information about the samba mailing list