WINBIND_KRB5_LOCATOR(7) 7 WINBIND_KRB5_LOCATOR(7)NAME
winbind_krb5_locator - A plugin for MIT and Heimdal Kerberos for detecting KDCs using Windows semantics.
DESCRIPTION
This plugin is part of the samba(7) suite.
winbind_krb5_locator is a plugin that permits MIT and Heimdal Kerberos libraries to detect Kerberos Servers (for the KDC and kpasswd
service) using the same semantics that other tools of the Samba suite use. This include site-aware DNS service record lookups and caching
of closest dc. The plugin uses the public locator API provided by most modern Kerberos implementations.
PREREQUISITES
MIT Kerberos (at least version 1.5) or Heimdal Kerberos (at least version 1.0) is required.
The plugin queries the winbindd(8) daemon which needs to be configured and started separately.
The winbind_krb5_locator.so file needs to be manually copied to the plugin directory of the system Kerberos library. For MIT Kerberos this
is often: /usr/lib/krb5/plugins/libkrb5/. For Heimdal Kerberos this is often: /usr/lib/plugin/krb5/. Please check your local Kerberos
installation for the correct paths. No modification in /etc/krb5.conf is required to enable the use of this plugin.
After copying the locator plugin to the appropriate plugin directory it should immediately be available for use. Users should be able to
kinit into their kerberized Windows environment without any modification or servers being put manually into /etc/krb5.conf.
VERSION
This man page is correct for version 3 of the Samba suite.
AUTHOR
The original Samba software and related utilities were created by Andrew Tridgell. Samba is now developed by the Samba Team as an Open
Source project similar to the way the Linux kernel is developed.
The winbind_krb5_locator manpage was written by Guenther Deschner.
Samba 3.5 06/18/2010 WINBIND_KRB5_LOCATOR(7)
Check Out this Related Man Page
KRB524_CONVERT_CREDS_KDC(3) BSD Library Functions Manual KRB524_CONVERT_CREDS_KDC(3)NAME
krb524_convert_creds_kdc, krb524_convert_creds_kdc_ccache -- converts Kerberos 5 credentials to Kerberos 4 credentials
LIBRARY
Kerberos 5 Library (libkrb5, -lkrb5)
SYNOPSIS
#include <krb5/krb5.h>
krb5_error_code
krb524_convert_creds_kdc(krb5_context context, krb5_creds *in_cred, struct credentials *v4creds);
krb5_error_code
krb524_convert_creds_kdc_ccache(krb5_context context, krb5_ccache ccache, krb5_creds *in_cred, struct credentials *v4creds);
DESCRIPTION
Convert the Kerberos 5 credential to Kerberos 4 credential. This is done by sending them to the 524 service in the KDC.
krb524_convert_creds_kdc() converts the Kerberos 5 credential in in_cred to Kerberos 4 credential that is stored in credentials.
krb524_convert_creds_kdc_ccache() is different from krb524_convert_creds_kdc() in that way that if in_cred doesn't contain a DES session key,
then a new one is fetched from the KDC and stored in the cred cache ccache, and then the KDC is queried to convert the credential.
This interfaces are used to make the migration to Kerberos 5 from Kerberos 4 easier. There are few services that still need Kerberos 4, and
this is mainly for compatibility for those services. Some services, like AFS, really have Kerberos 5 supports, but still uses the 524 inter-
face to make the migration easier.
SEE ALSO krb5(3), krb5.conf(5)BSD March 20, 2004 BSD
:confused: I've been trying to get Samba working on RH7.2 but been failing. Could anyone give me some tips on what I should check to see what I'm doing wrong. I've double check everything. Maybe I could of forgot something. PLEASE HELP. (2 Replies)
Hello, I asked this question in the AIX subforum but never received an answer, probably because the AIX forum is not that heavily trafficked. Anyway, here it is..
I have never had any issues like this when compiling applications from source. When I try to compile samba-3.5.0pre2, configure runs... (9 Replies)
I am looking for a Samba Client for a redhat 4 installation.
I can't find it anywhere on the web. Does anyone have a link where i can find a working version ?
This is my version:
Red Hat Enterprise Linux AS release 4 (Nahant Update 7)
/usr/bin/file: ELF 32-bit LSB executable, Intel... (5 Replies)
Hi, I have configured check_snmp plugin and using the plugin i am able to monitor the uptime of the switch.
But the following fails
# /usr/local/nagios/libexec/check_snmp -H 10.10.10.1 -C ready -o ifOperStatus.1 -r 1 -m RFC1213-MIB
SNMP CRITICAL - *down(2)* |
#
Any suggestions ? (1 Reply)
Hi guys
i am using samba 5.9.I have downloaded samba 4 and other dependencies i.e.
glibc glibc-devel gcc python* libacl-devel krb5-workstation krb5-libs pam_krb5
trying to configure active directory feature for my small network.when i type
command /usr/local/samba/samba-tool domain... (2 Replies)
Hi all,
I have installed samba 3.6.22 on AIX 7.1 and join a windows AD with success.
All seem to work fine, I have configured smb.conf, methods.cfg, kerberos, user .... the following command work fine wbinfo -u, wbinfo -g, wbinfo -i, wbinfo -s, wbinfo -S, lsuser, id...
The unique... (20 Replies)
Has anyone attempted to define GPO / HBAC policies in Windows Server 2012 that could be respected by Kerberos/LDAP on AIX?
I'm looking to associate servers to groups so that when a user part of a group tries to login to a host not associated with that group, it would be denied. This would allow... (3 Replies)
Hi all
With the recent virus attacks we have been tasked with upgrading Samba to a "secure" version. Currently running 3.0.29a and looking to put the latest version down 4.6.5.
Being a lazy bod I have only ever installed this, a long time ago, when you could get it in BFF filesets. Have... (6 Replies)
Dear All,
Taking a break from Vue.js coding for the site, SEO and YT videos; and hopefully addressing some well deserved criticism from some here that I have been too focused on the visual aspects of the forums versus the substance and the community....
While the "current generation... (9 Replies)