[Samba] Samba 4 kerberos and kinit

steve steve at steve-ss.com
Fri Jan 13 05:45:17 MST 2012

> 'I have setup a real user that the daemon will run as, and have given 
> that user a valid kerberos tgt' and gives this line in /etc/nslcd.conf
> krb5_ccname /var/run/nslcd/nslcd.tkt
> How has the guy 'given that user a valid kerberos tgt'?
> IOW, how do _I_ on openSUSE 12.1 get that magic nslcd.tkt file to put 
> in /var/run/nslcd ?????
> Its been a long night!
> Cheers
> Steve

It's to do with the host principal no?

I need to do the equivalent of this:
kadmin add -r host/machine.sample.com

How do I specify the 'r' option with samba-tool??

So that translates to:
<spn host user stuff>
samba-tool domain exportkeytab /etc/krb5.keytab --principal=host/REALM
Where do I put the r ???!!


