> -----Original Message-----
> From: Nicolas Williams [mailto:[EMAIL PROTECTED]
> Sent: Tuesday, April 01, 2008 6:09 PM
> To: Leopold, Corey
> Cc: Natalie Li; [email protected]
> Subject: Re: [storage-discuss] B85 CIFS - Active Directory - Kerberos
>
> On Tue, Apr 01, 2008 at 07:06:15PM -0400, Leopold, Corey wrote:
> > Hmm... Now to figure why pam/login uses a different name for keytab
host
> > principal entries....
>
> If they're being terse then that's just fine. The issue may have to
do
> with what your system thinks its realm is. What does your
> /etc/krb5/krb5.conf contain?
>
> smbadm join does not configure Kerberos...
>
> Nico
> --
Here it is....
------------------------------------------
[libdefaults]
default_realm = XXX.COM
# verify_ap_req_nofail = false
[realms]
XXX.COM = {
kdc = yyy.yyy.yyy.yyy
# kdc = ___slave_kdc1___
# kdc = ___slave_kdc2___
# kdc = ___slave_kdcN___
admin_server = yyy.yyy.yyy.yyy
}
[domain_realm]
xxx.xxx.com = XXX.COM
[logging]
default = FILE:/var/krb5/kdc.log
kdc = FILE:/var/krb5/kdc.log
kdc_rotate = {
period = 1d
versions = 10
}
[appdefaults]
kinit = {
renewable = true
forwardable= true
}
gkadmin = {
help_url =
http://docs.sun.com:80/ab2/coll.384.1/SEAM/@AB2PageView/1195
}
_______________________________________________
storage-discuss mailing list
[email protected]
http://mail.opensolaris.org/mailman/listinfo/storage-discuss