[Samba] Keytab MEMORY:cifs_srv_keytab is nonexistent or empty

Rowland penny rpenny at samba.org
Thu May 6 12:32:53 UTC 2021

On 06/05/2021 13:14, Jeremy Monnet wrote:
>  No, I didn't see that part ?! I hope I can still authenticate user 
> against an AD using sssd, and have samba autonomous to provide Shares  
> ? I couldn't find any article or information on that subject ?

Up until Samba 4.8.0 , the smbd daemon (which you need for shares) could 
'talk' directly to AD, so you could use sssd with Samba and have shares. 
When Samba 4.8.0 was released, things changed, smbd can no longer 'talk' 
to AD and on a Unix domain member, you need to use 'security = ADS' and 
run winbind and sssd and winbind are incompatible. If you want to use 
Samba with shares, you need to remove sssd.

> security = user is set automatically by realm when joining the domain. 
> Which made me think it was set to work :-)

If that is the case, then it is probably a bug in realmd, use 'net ads 
join' to join the domain.


More information about the samba mailing list