Please note that the Samba 3.5.9 release notes have been extended after the release. The following paragraph on the changed Kerberos behaviour has been added for clarification:
-----8<------------------snip--------------8<-------------- New Kerberos behaviour ---------------------- A new parameter 'client use spnego principal' defaults to 'no' and mean Samba will use CIFS/hostname to obtain a kerberos ticket, acting more like Windows when using Kerberos against a CIFS server in smbclient, winbind and other Samba client tools. This will change which servers we will successfully negotiate kerberos connections to. This is due to Samba no longer trusting a server-provided hint which is not available from Windows 2008 or later. For correct operation with all clients, all aliases for a server should be recorded as a as a servicePrincipalName on the server's record in AD. ----->8------------------snap-------------->8-------------- You can find the complete updated release notes at http://samba.org/samba/history/samba-3.5.9.html. Cheers, Karolin -- Samba http://www.samba.org SerNet http://www.sernet.de sambaXP http://www.sambaxp.org -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
