Втыкаю хост с установленной FreeBSD 5.3 в AD членом домена:
-su-2.05b# cat /usr/local/etc/smb.conf
[global]
workgroup = MY
realm = MY.DOMAIN.INT
security = ADS
encrypt passwords = yes
password server = servak
allow trusted domains = No
idmap backend = idmap_rid:MY=10000-100000
idmap uid = 10000-100000
idmap gid = 10000-100000
template homedir = /home/%U
template shell = /bin/sh
winbind cache time = 3600
winbind nested groups = Yes
winbind use default domain = Yes
-su-2.05b# cat /etc/krb5.conf
[libdefaults]
default_realm = MY.DOMAIN.INT
[realms]
MY.DOMAIN.INT = }
kdc = servak.my.domain.int
}
[domain_realms]
.my.domain.int = MY.DOMAIN.INT
-su-2.05b#
Тестирую:
-su-2.05b# kinit mylogin@MY.DOMAIN.INT
kinit: krb5_init_context failed: 22
-su-2.05b#
Где грабли?