# kinit ldapmaster/admin ldapmaster/[email protected]'s Password:e verifichiamo di aver ottenuto le credenziali:
# klist
Credentials cache: FILE:/tmp/krb5cc_0
        Principal: ldapmaster/[email protected]
  
  Issued           Expires          Principal
Apr 16 14:15:03  Apr 17 12:28:23  krbtgt/[email protected]
proviamo quindi a fare un accesso al server LDAP:
# ldapwhoami -Y GSSAPI SASL/GSSAPI authentication started SASL username: ldapmaster/[email protected] SASL SSF: 56 SASL installing layers dn:krb5PrincipalName=ldapmaster/[email protected],ou=kerberosprincipals,ou=users,dc=esempio,dc=lan Result: Success (0)e ri-verifichiamo le credenziali:
# klist
Credentials cache: FILE:/tmp/krb5cc_0
        Principal: ldapmaster/[email protected]
 Issued           Expires          Principal
Apr 16 14:21:17  Apr 17 12:34:37  krbtgt/[email protected]
Apr 16 14:21:25  Apr 17 12:34:37  ldap/[email protected]
Proviamo quindi con samba:
# kdestroy
# kinit addmachine/admin
# smbclient //pdc/netlogon -k
OS=[Unix] Server=[Samba 3.0.24]
smb: \>
# klist
Credentials cache: FILE:/tmp/krb5cc_0
        Principal: addmachine/[email protected]
  Issued           Expires          Principal
Apr 16 14:18:19  Apr 17 12:31:39  krbtgt/[email protected]
Apr 16 14:18:24  Apr 17 12:31:39  cifs/[email protected]
Stefano Sasso 2009-04-16