[Samba] net ads join -> strong(er) authentication required

christoph.beyer at desy.de christoph.beyer at desy.de
Wed Jul 1 12:01:27 GMT 2009


Heyho Guenther,

thanks for the fast reply, 'client ldap sasl wrapping = sign' did the 
trick :D

cheers
christoph

On Wed, 1 Jul 2009, Guenther Deschner wrote:

> On Wed, Jul 01, 2009 at 12:03:28PM +0200, christoph.beyer at desy.de wrote:
>> Hi,
>>
>> my windows folks migrated to AD 2008 R2, resulting in the following error
>> message when trying to join the domain:
>>
>> [HOST] /etc $ /opt/csw/bin/net ads join -U <USER>
>> Enter <USER>'s password:
>> [2009/07/01 11:51:28,  0] libads/sasl.c:ads_sasl_spnego_bind(819)
>>   kinit succeeded but ads_sasl_spnego_krb5_bind failed: Strong(er)
>> authentication required
>> Failed to join domain: failed to connect to AD: Strong(er) authentication
>> required
>>
>> Any hints ?
>
> You might need to set "client ldap sasl wrapping" in order to make this
> work.  See the manpage for possible settings.
>
> Guenther
>
> -- 
> Günther Deschner                    GPG-ID: 8EE11688
> Red Hat                         gdeschner at redhat.com
> Samba Team                              gd at samba.org
>

best regards
 	~christoph


-- 
/*   Christoph Beyer     |   Office: Building 2b / 23     *\
  *   DESY                |    Phone: 040-8998-2317        *
  *   - IT -              |      Fax: 040-8998-4060        *
\*   22603 Hamburg       |     http://www.desy.de         */



More information about the samba mailing list