[Samba] Samba domain members and MIT Kerberos configuration...

Rowland Penny rpenny at samba.org
Tue Dec 28 15:38:31 UTC 2021


On Tue, 2021-12-28 at 15:49 +0100, Marco Gaiarin via samba wrote:
> Mandi! Rowland Penny via samba
>   In chel di` si favelave...
> 
> > > ...but i was used in debian/ubuntu to let heimdal kerberos
> > > debhelper to
> > > setup /etc/krb5.conf. A krb5.conf setup for heimdal/debian will
> > > work for
> > > RH/MIT?
> > When you refer to MIT, you are referring to the kerberos tools, not
> > the
> > KDC.
> 
> It is a sentence or a question? ;-)

No, a statement :-)

KDC stands for 'Key Distribution Center' 

> 
> AFAIK the KDC is simply 'samba', so i supposed to speak of kerberos
> library/tools, not the KDC...

No, 'KDC' isn't simply 'Samba', Samba when running as a DC, is a KDC
and a dns & LDAP server. This means your Unix domain member needs to
run tools to use these and from the kerberos point of view, it doesn't
matter whether these tools are MIT or Heimdal, you just use the ones
that come with your distro.

Rowland





More information about the samba mailing list