From 2af06385ed4334c37191e9ccb49e86432531ff01 Mon Sep 17 00:00:00 2001 From: Andrew Bartlett Date: Fri, 14 Aug 2009 14:51:44 +1000 Subject: [PATCH] s4:provision Make sure that we don't use Kerberos to our LDAP backend This makes no sense, and just causes trouble - we are aiming for DIGEST-MD5 or NTLM. Andrew Bartlett --- source4/scripting/python/samba/provision.py | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/source4/scripting/python/samba/provision.py b/source4/scripting/python/samba/provision.py index e800b7ccaa1..5825e4726a5 100644 --- a/source4/scripting/python/samba/provision.py +++ b/source4/scripting/python/samba/provision.py @@ -39,7 +39,7 @@ import samba import subprocess import shutil -from credentials import Credentials +from credentials import Credentials, DONT_USE_KERBEROS from auth import system_session from samba import version, Ldb, substitute_var, valid_netbios_name, check_all_substituted, \ DS_BEHAVIOR_WIN2008 @@ -1348,6 +1348,8 @@ class ProvisionBackend(object): self.credentials = Credentials() self.credentials.guess(lp) + #Kerberos to an ldapi:// backend makes no sense + self.credentials.set_kerberos_state(DONT_USE_KERBEROS) self.ldap_backend_type = ldap_backend_type if ldap_backend_type == "fedora-ds": -- 2.34.1