> -----Original Message-----
> From: Nicolas Williams [mailto:[EMAIL PROTECTED]
> Sent: Tuesday, April 01, 2008 6:09 PM
> To: Leopold, Corey
> Cc: Natalie Li; [email protected]
> Subject: Re: [storage-discuss] B85 CIFS - Active Directory - Kerberos
> 
> On Tue, Apr 01, 2008 at 07:06:15PM -0400, Leopold, Corey wrote:
> > Hmm... Now to figure why pam/login uses a different name for keytab
host
> > principal entries....
> 
> If they're being terse then that's just fine.  The issue may have to
do
> with what your system thinks its realm is.  What does your
> /etc/krb5/krb5.conf contain?
> 
> smbadm join does not configure Kerberos...
> 
> Nico
> --

Here it is....

------------------------------------------

[libdefaults]
        default_realm = XXX.COM
#       verify_ap_req_nofail = false

[realms]
        XXX.COM = {
                kdc = yyy.yyy.yyy.yyy
#                kdc = ___slave_kdc1___
#                kdc = ___slave_kdc2___
#                kdc = ___slave_kdcN___
                admin_server = yyy.yyy.yyy.yyy
        }

[domain_realm]
        xxx.xxx.com = XXX.COM

[logging]
        default = FILE:/var/krb5/kdc.log
        kdc = FILE:/var/krb5/kdc.log
        kdc_rotate = {
                period = 1d
                versions = 10
        }

[appdefaults]
        kinit = {
                renewable = true
                forwardable= true
        }
        gkadmin = {
                help_url =
http://docs.sun.com:80/ab2/coll.384.1/SEAM/@AB2PageView/1195
        }
_______________________________________________
storage-discuss mailing list
[email protected]
http://mail.opensolaris.org/mailman/listinfo/storage-discuss

Reply via email to