[Samba] Samba 4 kerberos and kinit

steve steve at steve-ss.com
Wed Jan 11 15:48:14 MST 2012

After starting Samba 4, before anyone can do anything, Administrator has 
to do a kinit to get a new ticket. This creates a cache /tmp/krb5cc_0 
with an expiry time.

I've created a host principal and put it into the keytab:
samba-tool spn add host someuser
samba-tool domain exportkeytab /etc/krb5.keytab --principal=host/HH3.SITE

How can I keep Samba 4 up without having to get a new Administrator 
ticket every 10 hours?


More information about the samba mailing list