Re: RE: Re: Re: RE: [OpenAFS] ad+openafs

2016-05-14 Thread Benjamin Kaduk
rk. > > -原始邮件- > > 发件人: "Brandon Allbery" <ballb...@sinenomine.net> > > 发送时间: 2016-05-10 03:16:51 (星期二) > > 收件人: "zhaoxy...@ustc.edu.cn" <zhaoxy...@ustc.edu.cn>, "Benjamin Kaduk" > > <ka...@mit.edu> > > 抄送:

Re: RE: Re: Re: RE: [OpenAFS] ad+openafs

2016-05-13 Thread zhaoxy299
t;zhaoxy...@ustc.edu.cn>, "Benjamin Kaduk" > <ka...@mit.edu> > 抄送: "openafs-info@openafs.org" <openafs-info@openafs.org> > 主题: RE: Re: Re: RE: [OpenAFS] ad+openafs > > Do your systems have keytabs on them, with host instances? Using Kerberos for > log

Re: Re: Re: RE: [OpenAFS] ad+openafs

2016-05-13 Thread zhaoxy299
pam_krb5afs.so > > ~ > > > > > -原始邮件- > > 发件人: "Benjamin Kaduk" <ka...@mit.edu> > > 发送时间: 2016-05-06 23:17:46 (星期五) > > 收件人: zhaoxy...@ustc.edu.cn > > 抄送: > > 主题: Re: RE: [OpenAFS] ad+openafs > > > > You

Re: Re: RE: [OpenAFS] ad+openafs

2016-05-13 Thread zhaoxy299
tional pam_krb5afs.so ~ > -原始邮件- > 发件人: "Benjamin Kaduk" <ka...@mit.edu> > 发送时间: 2016-05-06 23:17:46 (星期五) > 收件人: zhaoxy...@ustc.edu.cn > 抄送: > 主题: Re: RE: [OpenAFS] ad+openafs > > You should keep the list cc'd for this thread; there are many other

RE: Re: Re: RE: [OpenAFS] ad+openafs

2016-05-09 Thread Brandon Allbery
To: Benjamin Kaduk <ka...@mit.edu> Cc: openafs-info@openafs.org; Brandon Allbery <ballb...@sinenomine.net> Subject: Re: Re: Re: RE: [OpenAFS] ad+openafs hi, sorry,i need to add something . i have three servers. ad +kerberos win2008 nis server openafs server linux redhat 6.

Re: [OpenAFS] ad+openafs

2016-05-04 Thread Jeffrey Altman
On 5/4/2016 1:44 AM, Benjamin Kaduk wrote: > 1.6.14 doesn't need to have single-DES enabled; we shouldn't be > recommending it. The rxkad.keytab method should work fine with AES keys. > > -Ben +1 To be clear, the entire reason that the KDF extension to the rxkad security class was implemented

RE: [OpenAFS] ad+openafs

2016-05-03 Thread Benjamin Kaduk
haoxy...@ustc.edu.cn > Sent: Tuesday, May 3, 2016 4:39 AM > To: openafs-info@openafs.org > Subject: [OpenAFS] ad+openafs > > > hi > > i install openafs1.6.14 on redhat 6.7 and i want to use the ad as krb5 auth . > > here is my steps: > > 1 install openafs1.6.14 on redh

Re: [OpenAFS] ad+openafs

2016-05-03 Thread Dirk Heinrichs
Am 03.05.2016 um 10:39 schrieb zhaoxy...@ustc.edu.cn: > 2 install ad on windows 2008 r2 If you don't already have AD and or Windows, yet, you can also use Linux/Samba. Bye... Dirk -- Dirk Heinrichs GPG Public Key CB614542 | Jabber: dirk.heinri...@altum.de Tox:

RE: [OpenAFS] ad+openafs

2016-05-03 Thread Brandon Allbery
...@openafs.org [mailto:openafs-info-ad...@openafs.org] On Behalf Of zhaoxy...@ustc.edu.cn Sent: Tuesday, May 3, 2016 4:39 AM To: openafs-info@openafs.org Subject: [OpenAFS] ad+openafs hi i install openafs1.6.14 on redhat 6.7 and i want to use the ad as krb5 auth . here is my steps: 1 install

[OpenAFS] ad+openafs

2016-05-03 Thread zhaoxy299
hi i install openafs1.6.14 on redhat 6.7 and i want to use the ad as krb5 auth . here is my steps: 1 install openafs1.6.14 on redhat6.7 2 install ad on windows 2008 r2 3 ktpass -princ afs/cellname@ADDOMAINNAME -mapuser afscell@ADDOMAINNAME \ -mapOp add -out afs-keytab +rndPass -crypto