Please note that the Samba 3.5.9 release notes have been extended after
the release. The following paragraph on the changed Kerberos behaviour
has been added for clarification:

-----8<------------------snip--------------8<--------------
New Kerberos behaviour
----------------------

A new parameter 'client use spnego principal' defaults to 'no' and
mean Samba will use CIFS/hostname to obtain a kerberos ticket, acting
more like Windows when using Kerberos against a CIFS server in
smbclient, winbind and other Samba client tools.  This will change
which servers we will successfully negotiate kerberos connections to.
This is due to Samba no longer trusting a server-provided hint which
is not available from Windows 2008 or later.  For correct operation
with all clients, all aliases for a server should be recorded as a as
a servicePrincipalName on the server's record in AD.
----->8------------------snap-------------->8--------------

You can find the complete updated release notes at
http://samba.org/samba/history/samba-3.5.9.html.

Cheers,
Karolin

-- 
Samba                   http://www.samba.org
SerNet                  http://www.sernet.de
sambaXP                 http://www.sambaxp.org

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba

Reply via email to