[Samba] Problem with keytab: "Client not found in Kerberos database"

Rowland Penny rpenny at samba.org
Tue Dec 20 14:10:21 UTC 2016


On Tue, 20 Dec 2016 13:50:40 +0000
Brian Candler via samba <samba at lists.samba.org> wrote:

> Rowland Perry wrote:
> > >/imdap config AD : backend = rid /> >/ > /> How did you 'fix'
> > >this, on face value, there is nothing wrong with that line.
> 
> 
> "imdap" is not "idmap"
> 
> (so now you understand why I missed it after staring at it so long :-)

Oh yes ;-)



> I can't use rlm_krb5, because I plan to use PEAP+MSCHAP for wifi 
> authentication. The krb5 module requires a cleartext password, but 
> MSCHAP does not pass a cleartext password. (It is possible to use
> krb5 authentication with TTLS+PAP or TTLS+GTC, both of which send a
> cleartext password)

You might want to read this:

https://www.samba.org/samba/history/samba-4.5.0.html

Rowland



More information about the samba mailing list