Доброго времени суток.
Такая пробелема родилась: при попытке сделать "net join -U admin" вылазит
kerberos_kinit_password admin@DOMAIN.RU failed: Response too big for UDP, retry with TCP,
НООООООО я в krb5.conf явно прописал TCP и "kinit admin" проходит нормально, т.е. билетик выдаётся.
Где еще надо прописать TCP ???ОС FreeBSD 6.2., samba-3.0.28, heimdal-1.0.1
Конфиги:
/etc/krb5.conf
[libdefaults]
default_realm = DOMAIN.RU
[realms]
DOMAIN.RU = {
kdc = tcp/servername.domain.ru
admin_server = servername.domain.ru }
[domain_realm]
.domain.ru = DOMAIN.RU
[logging]
kdc = FILE:/var/log/krb5kdc.log
admin_server = FILE:/var/log/kadmin.log
default = FILE:/var/log/krb5lib.log
/usr/local/etc/smb.conf
[global]
workgroup = domain
server string = Samba Server
netbios name = smbs
security = ADS
###################################
auth methods = winbind
map to guest = Bad User
client NTLMv2 auth = yes
####################################
hosts allow = xx.yy.
guest account = nobody
log file = /var/log/samba/log.%m
max log size = 50000
idmap uid = 10000-20000
idmap gid = 10000-20000
password server = xx.yy.z.qq # ip контролера домена
realm = domain.ru
winbind use default domain = yes
socket options = TCP_NODELAY
# charset settings
display charset = koi8-r
unix charset = koi8-r
dos charset = 866