Re: [Samba] net ads join -> strong(er) authentication required

2009-07-01 Thread Charles Marcus
On 7/1/2009, christoph.be...@desy.de (christoph.be...@desy.de) wrote:
> my windows folks migrated to AD 2008 R2

Interesting... seeing as its not even released yet...

-- 

Best regards,

Charles
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


Re: [Samba] net ads join -> strong(er) authentication required

2009-07-01 Thread christoph . beyer

Heyho Guenther,

thanks for the fast reply, 'client ldap sasl wrapping = sign' did the 
trick :D


cheers
christoph

On Wed, 1 Jul 2009, Guenther Deschner wrote:


On Wed, Jul 01, 2009 at 12:03:28PM +0200, christoph.be...@desy.de wrote:

Hi,

my windows folks migrated to AD 2008 R2, resulting in the following error
message when trying to join the domain:

[HOST] /etc $ /opt/csw/bin/net ads join -U 
Enter 's password:
[2009/07/01 11:51:28,  0] libads/sasl.c:ads_sasl_spnego_bind(819)
  kinit succeeded but ads_sasl_spnego_krb5_bind failed: Strong(er)
authentication required
Failed to join domain: failed to connect to AD: Strong(er) authentication
required

Any hints ?


You might need to set "client ldap sasl wrapping" in order to make this
work.  See the manpage for possible settings.

Guenther

--
Günther DeschnerGPG-ID: 8EE11688
Red Hat gdesch...@redhat.com
Samba Team  g...@samba.org



best regards
~christoph


--
/*   Christoph Beyer |   Office: Building 2b / 23 *\
 *   DESY|Phone: 040-8998-2317*
 *   - IT -  |  Fax: 040-8998-4060*
\*   22603 Hamburg   | http://www.desy.de */

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba

Re: [Samba] net ads join -> strong(er) authentication required

2009-07-01 Thread Guenther Deschner
On Wed, Jul 01, 2009 at 12:03:28PM +0200, christoph.be...@desy.de wrote:
> Hi,
>
> my windows folks migrated to AD 2008 R2, resulting in the following error 
> message when trying to join the domain:
>
> [HOST] /etc $ /opt/csw/bin/net ads join -U 
> Enter 's password:
> [2009/07/01 11:51:28,  0] libads/sasl.c:ads_sasl_spnego_bind(819)
>   kinit succeeded but ads_sasl_spnego_krb5_bind failed: Strong(er)  
> authentication required
> Failed to join domain: failed to connect to AD: Strong(er) authentication 
> required
>
> Any hints ?

You might need to set "client ldap sasl wrapping" in order to make this
work.  See the manpage for possible settings.

Guenther

-- 
Günther DeschnerGPG-ID: 8EE11688
Red Hat gdesch...@redhat.com 
Samba Team  g...@samba.org


pgpEWrqEyjqSv.pgp
Description: PGP signature
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba

[Samba] net ads join -> strong(er) authentication required

2009-07-01 Thread christoph . beyer

Hi,

my windows folks migrated to AD 2008 R2, resulting in the following error 
message when trying to join the domain:


[HOST] /etc $ /opt/csw/bin/net ads join -U 
Enter 's password:
[2009/07/01 11:51:28,  0] libads/sasl.c:ads_sasl_spnego_bind(819)
  kinit succeeded but ads_sasl_spnego_krb5_bind failed: Strong(er) 
authentication required
Failed to join domain: failed to connect to AD: Strong(er) authentication 
required


Any hints ?

best regards
~christoph


--
/*   Christoph Beyer |   Office: Building 2b / 23 *\
 *   DESY|Phone: 040-8998-2317*
 *   - IT -  |  Fax: 040-8998-4060*
\*   22603 Hamburg   | http://www.desy.de */


--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba