Reminder about Samba4's secrets.keytab

Guenther Deschner gd at samba.org
Wed Dec 21 22:14:57 GMT 2005


Hi Andrew,

On Thu, Dec 22, 2005 at 06:11:27AM +1100, Andrew Bartlett wrote:
> Just a quick note to Samba4 developers, who are trying to chase down
> issues with ethereal.
> 
> Ethereal supports decrypting kerberos data with a keytab (Preferences ->
> Protocols -> KRB5 -> Try to decrypt Kerberos blobs).  
> 
> You may point it at the 'secrets.keytab' in the Samba4 private
> directory, which automatically contains the krbtgt and Samba server
> keys.
> 
> For windows domains, I'm intending to write a 'net samdump keytab'
> utility, to directly dump the remote windows realm keys into a keytab.

what makes you think that this is a samba4 only matter? When Samba3 uses a
keytab (typically /etc/krb5.keytab), I use the same mechanism to read
packets in ethereal, are you planning to port the "net samdump keytab" to
samba3 as well? Otherwise I'd like to do that.

Guenther
-- 
Günther Deschner                    GPG-ID: 8EE11688
Novell / SUSE LINUX                       gd at suse.de
Samba Team                              gd at samba.org
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.samba.org/archive/samba-technical/attachments/20051221/0296a02c/attachment.bin


More information about the samba-technical mailing list