Hello

I am trying to setup a samba share - actually replace winbind on a
current samba server and I am basing my change on these instructions.

http://www.freeipa.org/page/Howto/Integrating_a_Samba_File_Server_With_IPA

The IPA servers is version ipa-server-4.4.0-14.el7 and I have trust
established between AD and IPA.  Samba server is on RHEL 6.8

Ideally, I would prefer to leave samba on RHEL 6 and it looks like
RHEL 6 is currently using sssd-1.13.3-22.el6_8.4.x86_64.  According to
above link, you need sssd v1.12.2 and above. Would the version on RHEL
6 above be bundling sssd-libwbclient by any chance?  If not, is it
possible to install sssd-libwbclient on RHEL 6?

Also, on smb.conf, its a bit ambiguous what REALM need to be used.
Does one need to use IPA REALM or active directory REALM on these two
lines below?

        workgroup = MY
        realm = MY.REALM

Lastly, when I followed the above article to setup samba, I got the
following errors when I attempted to connect to samba from Windows.
What would be potential places to go check for misconfiguration?

Dec 28 17:49:41 manganese smbd[30221]: [2016/12/28 17:49:41.503322,
0] libads/kerberos_verify.c:75(ads_dedicated_keytab_verify_ticket)
Dec 28 17:49:41 manganese smbd[30221]:   krb5_rd_req failed (Wrong
principal in request)
Dec 28 17:49:41 manganese smbd[30221]: [2016/12/28 17:49:41.507090,
0] libads/kerberos_verify.c:75(ads_dedicated_keytab_verify_ticket)
Dec 28 17:49:41 manganese smbd[30221]:   krb5_rd_req failed (Wrong
principal in request)

Regards,
William

-- 
Manage your subscription for the Freeipa-users mailing list:
https://www.redhat.com/mailman/listinfo/freeipa-users
Go to http://freeipa.org for more info on the project

Reply via email to