Samba just needs the cifs/ key on the ipa server. So it is probably a good idea to configure samba to use a different keytab file so thatwe do not risk samba commands (net, or similar) to mess up the system keytab.
I already have a patch for this issue, but hold it back until Alexander has finished his major changes to ipa-adtrust-install. I re-assing this ticket to him and send him my patch.
This will be handled as part of the major enhancements in #2189.
Working. Will be available as part of larger patchset to support trusts.
Done.
master: dd244c0
Metadata Update from @simo: - Issue assigned to abbra - Issue set to the milestone: FreeIPA 3.0 Trust Effort - 2012/02
Login to comment on this ticket.