Jeff Layton
2014-02-19 01:03:48 UTC
On Tue, 18 Feb 2014 21:31:30 +0000
ink maybe you can help me.
list. I've cc'ed it here...
with mount information/flags.
m ticket.
I=92d like the user to auto enter a kinit command when they first log =
in. Do you know how to make this work?
time, or nowadays something like sssd.
--=20
Jeff Layton <jlayton-H+wXaHxf7aLQT0dZR+***@public.gmane.org>
Jeff,
=20
My name is David Swanger, I am computer analyst at Auburn University.=
I have a server issue and your Red Hat Summit web site leads me to th==20
My name is David Swanger, I am computer analyst at Auburn University.=
ink maybe you can help me.
=20
Typically, these sorts of questions get sent to the linux-cifs mailinglist. I've cc'ed it here...
http://www.redhat.com/promo/summit/2010/presentations/summit/in-the-w=
eeds/wed/jlayton-310-interoperability/jlayton_summit_2010-Final.pdf=20
I have a RHEL 6 server. Users authenticate with an AD server and tha=
t works fine. I used Powerbroker to help connect to the AD server.I have a RHEL 6 server. Users authenticate with an AD server and tha=
=20
Never heard of powerbroker, sorry...I want users to be able to cifs mount their home directories from a S=
amba server using pam_mount and kerberos. I have a pam_mount.conf.xml =with mount information/flags.
=20
Here is what happens. People log in and their home directories do no=
t mount. In the system log, they are trying and failing to get a syste=Here is what happens. People log in and their home directories do no=
m ticket.
=20
=20
Feb 18 15:15:38 mallard2 cifs.upcall: handle_krb5_mech: getting servi=
ce ticket for ausamba.auburn.edu=20
Feb 18 15:15:38 mallard2 cifs.upcall: handle_krb5_mech: getting servi=
=20
Feb 18 15:15:38 mallard2 cifs.upcall: cifs_krb5_get_req: unable to re=
solve (null) to ccacheFeb 18 15:15:38 mallard2 cifs.upcall: cifs_krb5_get_req: unable to re=
=20
Feb 18 15:15:38 mallard2 cifs.upcall: handle_krb5_mech: failed to obt=
ain service ticket (-1765328245)Feb 18 15:15:38 mallard2 cifs.upcall: handle_krb5_mech: failed to obt=
=20
However, if they enter a kinit command, enter their password, log out=
then log back in, then their home dirs are mounted. Basically I guess=However, if they enter a kinit command, enter their password, log out=
I=92d like the user to auto enter a kinit command when they first log =
in. Do you know how to make this work?
=20
Typically, you use something like pam_krb5 to get krb5 creds at logintime, or nowadays something like sssd.
If you can help, I would appreciate it. If not, I understand.
=20
Good luck!=20
--=20
Jeff Layton <jlayton-H+wXaHxf7aLQT0dZR+***@public.gmane.org>