[Freeipa-users] Assistance with Samba share intergration with IPA
William Muriithi
william.muriithi at gmail.com
Wed Dec 28 23:15:33 UTC 2016
Hello
I am trying to setup a samba share - actually replace winbind on a
current samba server and I am basing my change on these instructions.
http://www.freeipa.org/page/Howto/Integrating_a_Samba_File_Server_With_IPA
The IPA servers is version ipa-server-4.4.0-14.el7 and I have trust
established between AD and IPA. Samba server is on RHEL 6.8
Ideally, I would prefer to leave samba on RHEL 6 and it looks like
RHEL 6 is currently using sssd-1.13.3-22.el6_8.4.x86_64. According to
above link, you need sssd v1.12.2 and above. Would the version on RHEL
6 above be bundling sssd-libwbclient by any chance? If not, is it
possible to install sssd-libwbclient on RHEL 6?
Also, on smb.conf, its a bit ambiguous what REALM need to be used.
Does one need to use IPA REALM or active directory REALM on these two
lines below?
workgroup = MY
realm = MY.REALM
Lastly, when I followed the above article to setup samba, I got the
following errors when I attempted to connect to samba from Windows.
What would be potential places to go check for misconfiguration?
Dec 28 17:49:41 manganese smbd[30221]: [2016/12/28 17:49:41.503322,
0] libads/kerberos_verify.c:75(ads_dedicated_keytab_verify_ticket)
Dec 28 17:49:41 manganese smbd[30221]: krb5_rd_req failed (Wrong
principal in request)
Dec 28 17:49:41 manganese smbd[30221]: [2016/12/28 17:49:41.507090,
0] libads/kerberos_verify.c:75(ads_dedicated_keytab_verify_ticket)
Dec 28 17:49:41 manganese smbd[30221]: krb5_rd_req failed (Wrong
principal in request)
Regards,
William
More information about the Freeipa-users
mailing list