|
发表于 2006-11-9 17:31:27
|
显示全部楼层
Post by rongam
我按下面的步骤做,想把一台linux机子加入到公司的win2003域中,但一开始我就遇到问题了.
1.samba服务器软件需求
krb5-workstation-1.2.7-19
pam_krb5-1.70-1
krb5-devel-1.2.7-19
krb5-libs-1.2.7-19
samba-3.0.5-2
........................
我在第二步配置kerberos的时候就不行,我的krb5.conf配置文件:
[logging]
default = FILE:/var/log/krb5libs.log
kdc = FILE:/var/log/krb5kdc.log
admin_server = FILE:/var/log/kadmind.log
[libdefaults]
ticket_lifetime = 24000
default_realm = EXAS.COM
dns_lookup_realm = false
dns_lookup_kdc = false
[realms]
EXAS.COM = {
kdc = 192.168.2.248
# admin_server = kerberos.EXAS.com:749
default_domain = EXAS.COM
}
[domain_realm]
.exas.com = EXAS.COM
exas.com = EXAS.COM
.......................
当我输入kinit filesrv@EXAS.COM时老是提示错误:
kinit(v5): Cannot find KDC for requested realm while getting initial credentials.
这到底是什么问题????
"# admin_server = kerberos.EXAS.com:749" 不应该被注释, admin_server是你的域控制器,所有的域用户信息都是从这里获取,krb5就是将登录Linux的用户信息与admin_server比对来确定是否让该用户登陆。 |
|