Guest User

Untitled

a guest
Jun 2nd, 2013
114
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. ##############################/usr/local/samba/etc/smb.conf##################################
  2. [global]
  3. workgroup = MTOLYMPUS
  4. realm = MTOLYMPUS.LOCAL
  5. netbios name = SERVER
  6. server role = active directory domain controller
  7. server services = s3fs, rpc, nbt, wrepl, ldap, cldap, kdc, drepl, winbind, ntp_signd, kcc, dnsupdate
  8. interfaces = eth2 lo
  9. bind interfaces only = Yes
  10.  
  11. [netlogon]
  12. path = /usr/local/samba/var/locks/sysvol/mtolympus.local/scripts
  13. read only = No
  14.  
  15. [sysvol]
  16. path = /usr/local/samba/var/locks/sysvol
  17. read only = No
  18.  
  19.  
  20. #############################/usr/local/samba/private/krb5.conf (SAME AS /etc/krb5.conf)######################################
  21. [logging]
  22. default = FILE:/var/log/krb5libs.log
  23. kdc = FILE:/var/log/krb5kdc.log
  24. admin_server = FILE:/var/log/kadmind.log
  25.  
  26. [libdefaults]
  27. default_realm = MTOLYMPUS.LOCAL
  28. dns_lookup_realm = true
  29. dns_lookup_kdc = true
  30. check-ticket-addresses = false
  31. forwardable = true
  32.  
  33. [realms]
  34. MTOLYMPUS.LOCAL = {
  35. kdc = server.MTOLYMPUS.LOCAL
  36. admin_server = server.MTOLYMPUS.LOCAL
  37. default_domain = MTOLYMPUS.LOCAL
  38. }
  39.  
  40. [domain_realm]
  41. .mtolympus.local = MTOLYMPUS.LOCAL
  42. mtolympus.local = MTOLYMPUS.LOCAL
  43.  
  44.  
  45. ###############################################/etc/named.conf######################################################
  46. //
  47. // named.conf
  48. //
  49. // Provided by Red Hat bind package to configure the ISC BIND named(8) DNS
  50. // server as a caching only nameserver (as a localhost DNS resolver only).
  51. //
  52. // See /usr/share/doc/bind*/sample/ for example named configuration files.
  53. //
  54.  
  55. options {
  56.  
  57. listen-on port 53 { any; };
  58. listen-on-v6 port 53 { ::1; };
  59. auth-nxdomain yes;
  60. directory "/var/named";
  61. dump-file "/var/named/data/cache_dump.db";
  62. statistics-file "/var/named/data/named_stats.txt";
  63. memstatistics-file "/var/named/data/named_mem_stats.txt";
  64. forwarders { 8.8.8.8; 172.20.2.1; 209.18.47.61; 209.18.47.62; };
  65. // dnssec-enable no;
  66. // dnssec-validation no;
  67. // bindkeys-file "/etc/named.iscdlv.key";
  68. // managed-keys-directory "/var/named/dynamic";
  69. allow-query { any; };
  70. tkey-gssapi-keytab "/usr/local/samba/private/dns.keytab";
  71. allow-recursion { localhost; 127.0.0.1; 127.0.1.1; 127.0.0.0/24; 192.168.1.0/24; 172.20.2.0/24; 10.1.150.0/24; 10.0.0.0/24; 10.0.1.0/24; 10.0.2.0/24; 10.0.3.0/24; 10.0.4.0/24; 10.0.5.0/24; 10.0.6.0/24; 10.0.7.0/24; 10.0.8.0/24; 10.0.9.0/24; 10.0.10.0/24; };
  72. allow-update { 10.0.0.106; 10.0.6.1; 10.0.6.101; localhost; 127.0.0.1; 127.0.1.1; 127.0.0.0/24; 10.0.0.0/8; };
  73. };
  74.  
  75.  
  76. logging {
  77. channel default_debug {
  78. file "data/named.run";
  79. severity dynamic;
  80. };
  81. };
  82.  
  83. zone "." IN {
  84. type hint;
  85. file "named.ca";
  86. };
  87.  
  88. zone "MYEXTERNALDOMAIN.NET" IN {
  89. type master;
  90. file "/var/named/zones/external.MYEXTERNALDOMAIN.NET.db";
  91. };
  92.  
  93. include "/etc/named.rfc1912.zones";
  94. include "/etc/named.root.key";
  95. include "/usr/local/samba/private/named.conf";
  96.  
  97.  
  98. #########################################/usr/local/samba/private PERMISSION#######################################
  99. [root@server private]# ls -al
  100. total 11668
  101. drwxr-xr-x 7 root root 4096 Jun 1 23:25 .
  102. drwxr-xr-x 11 root root 4096 Jun 1 19:47 ..
  103. drwxrwxr-x 3 named named 4096 Jun 1 19:47 dns
  104. -rw-r----- 1 named named 807 Jun 1 19:47 dns.keytab
  105. -rw-r--r-- 1 root root 2270 Jun 1 19:47 dns_update_list
  106. -rw------- 1 root root 1286144 Jun 1 19:47 hklm.ldb
  107. -rw------- 1 root root 1609728 Jun 1 21:09 idmap.ldb
  108. -rw-r--r-- 1 root root 490 Jun 1 22:25 krb5.conf
  109. -rw-r--r-- 1 root root 127 Jun 1 21:02 krb5.conf.backup
  110. srwxrwxrwx 1 root root 0 Jun 1 22:57 ldapi
  111. drwxr-x--- 2 root root 4096 Jun 1 22:57 ldap_priv
  112. -rw-r--r-- 1 named named 555 Jun 1 22:15 named.conf
  113. -rw-r--r-- 1 root root 555 Jun 1 22:13 named.conf.old
  114. -r--r--r-- 1 named named 234 Jun 1 20:01 named.conf.update
  115. -rw-r--r-- 1 named named 2212 Jun 1 19:47 named.txt
  116. -rw------- 1 root root 1286144 Jun 1 19:47 privilege.ldb
  117. -rw------- 1 root root 696 Jun 1 20:01 randseed.tdb
  118. -rw------- 1 root root 4251648 Jun 1 19:47 sam.ldb
  119. drwxr-x--- 2 root named 4096 Jun 1 19:47 sam.ldb.d
  120. -rw------- 1 root root 438272 Jun 1 22:57 schannel_store.tdb
  121. -rw------- 1 root root 1167 Jun 1 19:47 secrets.keytab
  122. -rw------- 1 root root 1286144 Jun 1 19:47 secrets.ldb
  123. -rw------- 1 root root 430080 Jun 1 22:57 secrets.tdb
  124. -rw------- 1 root root 1286144 Jun 1 19:47 share.ldb
  125. drwxr-xr-x 3 root root 4096 Jun 1 20:01 smbd.tmp
  126. -rw-r--r-- 1 root root 955 Jun 1 19:47 spn_update_list
  127. drwxr-xr-x 2 root root 4096 Jun 1 20:01 tls
  128. [root@server private]#
  129.  
  130.  
  131.  
  132.  
  133.  
  134.  
  135.  
  136.  
  137.  
  138. ####################################################/etc/ntp.conf########################################################
  139. [root@server samba]# cat /etc/ntp.conf
  140. server 127.127.1.0
  141. fudge 127.127.1.0 stratum 10
  142. server 0.pool.ntp.org iburst prefer
  143. server 1.pool.ntp.org iburst prefer
  144. driftfile /var/lib/ntp/ntp.drift
  145. logfile /var/log/ntp
  146. ntpsigndsocket /usr/local/samba/var/lib/ntp_signd/
  147. restrict default kod nomodify notrap nopeer mssntp
  148. restrict 127.0.0.1
  149. restrict 0.pool.ntp.org mask 255.255.255.255 nomodify notrap nopeer noquery
  150. restrict 1.pool.ntp.org mask 255.255.255.255 nomodify notrap nopeer noquery
  151.  
  152.  
  153.  
  154.  
  155.  
  156.  
  157.  
  158.  
  159.  
  160. ##########################################/usr/local/samba/private/named.conf################################################
  161. [root@server private]# cat named.conf
  162. # This DNS configuration is for BIND 9.8.0 or later with dlz_dlopen support.
  163. #
  164. # This file should be included in your main BIND configuration file
  165. #
  166. # For example with
  167. # include "/usr/local/samba/private/named.conf";
  168.  
  169. #
  170. # This configures dynamically loadable zones (DLZ) from AD schema
  171. # Uncomment only single database line, depending on your BIND version
  172. #
  173. dlz "AD DNS Zone" {
  174. # For BIND 9.8.0
  175. database "dlopen /usr/local/samba/lib/bind9/dlz_bind9.so";
  176.  
  177. # For BIND 9.9.0
  178. # database "dlopen /usr/local/samba/lib/bind9/dlz_bind9_9.so";
  179. };
  180.  
  181.  
  182.  
  183.  
  184.  
  185.  
  186. #######################################/usr/local/samba/private/named.conf.update#################################################
  187. [root@server private]# cat named.conf.update
  188. /* this file is auto-generated - do not edit */
  189. update-policy {
  190. grant MTOLYMPUS.LOCAL ms-self * A AAAA;
  191. grant Administrator@MTOLYMPUS.LOCAL wildcard * A AAAA SRV CNAME;
  192. grant SERVER$@mtolympus.local wildcard * A AAAA SRV CNAME;
  193. };
  194.  
  195.  
  196.  
  197.  
  198.  
  199. ################################/var/log/messages (WHEN STARTING NAMED)######################################################
  200. Jun 1 23:29:31 server named[6163]: BIND 9 is maintained by Internet Systems Consortium,
  201. Jun 1 23:29:31 server named[6163]: Inc. (ISC), a non-profit 501(c)(3) public-benefit
  202. Jun 1 23:29:31 server named[6163]: corporation. Support and training for BIND 9 are
  203. Jun 1 23:29:31 server named[6163]: available at https://www.isc.org/support
  204. Jun 1 23:29:31 server named[6163]: ----------------------------------------------------
  205. Jun 1 23:29:31 server named[6163]: adjusted limit on open files from 4096 to 1048576
  206. Jun 1 23:29:31 server named[6163]: found 2 CPUs, using 2 worker threads
  207. Jun 1 23:29:31 server named[6163]: using up to 4096 sockets
  208. Jun 1 23:29:31 server named[6163]: using default UDP/IPv4 port range: [1024, 65535]
  209. Jun 1 23:29:31 server named[6163]: using default UDP/IPv6 port range: [1024, 65535]
  210. Jun 1 23:29:31 server named[6163]: no IPv6 interfaces found
  211. Jun 1 23:29:31 server named[6163]: listening on IPv4 interface lo, 127.0.0.1#53
  212. Jun 1 23:29:31 server named[6163]: listening on IPv4 interface eth0, XX.XX.XXX.XXX#53
  213. Jun 1 23:29:31 server named[6163]: listening on IPv4 interface eth0:1, XXX.XX.XXX.XXX#53
  214. Jun 1 23:29:31 server named[6163]: listening on IPv4 interface eth2, 10.0.0.1#53
  215. Jun 1 23:29:31 server named[6163]: listening on IPv4 interface eth2:1, 10.0.0.2#53
  216. Jun 1 23:29:31 server named[6163]: listening on IPv4 interface eth1, 172.20.2.254#53
  217. Jun 1 23:29:31 server named[6163]: generating session key for dynamic DNS
  218. Jun 1 23:29:31 server named[6163]: sizing zone task pool based on 16 zones
  219. Jun 1 23:29:31 server named[6163]: zone 'XXX.XX.XX.in-addr.arpa' allows updates by IP address, which is insecure
  220. Jun 1 23:29:31 server named[6163]: Loading 'AD DNS Zone' using driver dlopen
  221. Jun 1 23:29:31 server named[6163]: samba_dlz: started for DN DC=mtolympus,DC=local
  222. Jun 1 23:29:31 server named[6163]: samba_dlz: starting configure
  223. Jun 1 23:29:31 server named[6163]: samba_dlz: configured writeable zone 'mtolympus.local'
  224. Jun 1 23:29:31 server named[6163]: samba_dlz: configured writeable zone '_msdcs.mtolympus.local'
  225. Jun 1 23:29:31 server named[6163]: set up managed keys zone for view _default, file 'dynamic/managed-keys.bind'
  226. Jun 1 23:29:31 server named[6163]: Warning: 'empty-zones-enable/disable-empty-zone' not set: disabling RFC 1918 empty zones
  227. Jun 1 23:29:31 server named[6163]: automatic empty zone: 127.IN-ADDR.ARPA
  228. Jun 1 23:29:31 server named[6163]: automatic empty zone: 254.169.IN-ADDR.ARPA
  229. Jun 1 23:29:31 server named[6163]: automatic empty zone: 2.0.192.IN-ADDR.ARPA
  230. Jun 1 23:29:31 server named[6163]: automatic empty zone: 100.51.198.IN-ADDR.ARPA
  231. Jun 1 23:29:31 server named[6163]: automatic empty zone: 113.0.203.IN-ADDR.ARPA
  232. Jun 1 23:29:31 server named[6163]: automatic empty zone: 255.255.255.255.IN-ADDR.ARPA
  233. Jun 1 23:29:31 server named[6163]: automatic empty zone: 0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.IP6.ARPA
  234. Jun 1 23:29:31 server named[6163]: automatic empty zone: D.F.IP6.ARPA
  235. Jun 1 23:29:31 server named[6163]: automatic empty zone: 8.E.F.IP6.ARPA
  236. Jun 1 23:29:31 server named[6163]: automatic empty zone: 9.E.F.IP6.ARPA
  237. Jun 1 23:29:31 server named[6163]: automatic empty zone: A.E.F.IP6.ARPA
  238. Jun 1 23:29:31 server named[6163]: automatic empty zone: B.E.F.IP6.ARPA
  239. Jun 1 23:29:31 server named[6163]: automatic empty zone: 8.B.D.0.1.0.0.2.IP6.ARPA
  240. Jun 1 23:29:31 server named[6163]: zone 'version.bind' allows updates by IP address, which is insecure
  241. Jun 1 23:29:31 server named[6163]: zone 'hostname.bind' allows updates by IP address, which is insecure
  242. Jun 1 23:29:31 server named[6163]: zone 'authors.bind' allows updates by IP address, which is insecure
  243. Jun 1 23:29:31 server named[6163]: zone 'id.server' allows updates by IP address, which is insecure
  244. Jun 1 23:29:31 server named[6163]: command channel listening on 127.0.0.1#953
  245. Jun 1 23:29:31 server named[6163]: zone 0.in-addr.arpa/IN: loaded serial 0
  246.  
  247.  
  248.  
  249.  
  250.  
  251. ############################################/var/log/messages (starting samba.. shouldnt there be more here?)####################################
  252. Jun 1 23:32:10 server smbd[6208]: [2013/06/01 23:32:10.481398, 0] ../source3/smbd/server.c:1280(main)
  253. Jun 1 23:32:10 server smbd[6208]: standard input is not a socket, assuming -D option
  254.  
  255.  
  256.  
  257.  
  258.  
  259.  
  260. ##########################################RUNNING samba_dnsupdate --verbose#############################################################
  261. [root@server private]# samba_dnsupdate --verbose
  262. IPs: ['10.0.0.1']
  263. Looking for DNS entry A mtolympus.local 10.0.0.1 as mtolympus.local.
  264. Looking for DNS entry A server.mtolympus.local 10.0.0.1 as server.mtolympus.local.
  265. Looking for DNS entry A gc._msdcs.mtolympus.local 10.0.0.1 as gc._msdcs.mtolympus.local.
  266. Looking for DNS entry CNAME 227223e0-245c-496d-8b16-b4796c8777f7._msdcs.mtolympus.local server.mtolympus.local as 227223e0-245c-496d-8b16-b4796c8777f7._msdcs.mtolympus.local.
  267. Looking for DNS entry SRV _kpasswd._tcp.mtolympus.local server.mtolympus.local 464 as _kpasswd._tcp.mtolympus.local.
  268. Checking 0 100 464 server.mtolympus.local. against SRV _kpasswd._tcp.mtolympus.local server.mtolympus.local 464
  269. Looking for DNS entry SRV _kpasswd._udp.mtolympus.local server.mtolympus.local 464 as _kpasswd._udp.mtolympus.local.
  270. Checking 0 100 464 server.mtolympus.local. against SRV _kpasswd._udp.mtolympus.local server.mtolympus.local 464
  271. Looking for DNS entry SRV _kerberos._tcp.mtolympus.local server.mtolympus.local 88 as _kerberos._tcp.mtolympus.local.
  272. Checking 0 100 88 server.mtolympus.local. against SRV _kerberos._tcp.mtolympus.local server.mtolympus.local 88
  273. Looking for DNS entry SRV _kerberos._tcp.dc._msdcs.mtolympus.local server.mtolympus.local 88 as _kerberos._tcp.dc._msdcs.mtolympus.local.
  274. Checking 0 100 88 server.mtolympus.local. against SRV _kerberos._tcp.dc._msdcs.mtolympus.local server.mtolympus.local 88
  275. Looking for DNS entry SRV _kerberos._tcp.default-first-site-name._sites.mtolympus.local server.mtolympus.local 88 as _kerberos._tcp.default-first-site-name._sites.mtolympus.local.
  276. Checking 0 100 88 server.mtolympus.local. against SRV _kerberos._tcp.default-first-site-name._sites.mtolympus.local server.mtolympus.local 88
  277. Looking for DNS entry SRV _kerberos._tcp.default-first-site-name._sites.dc._msdcs.mtolympus.local server.mtolympus.local 88 as _kerberos._tcp.default-first-site-name._sites.dc._msdcs.mtolympus.local.
  278. Checking 0 100 88 server.mtolympus.local. against SRV _kerberos._tcp.default-first-site-name._sites.dc._msdcs.mtolympus.local server.mtolympus.local 88
  279. Looking for DNS entry SRV _kerberos._udp.mtolympus.local server.mtolympus.local 88 as _kerberos._udp.mtolympus.local.
  280. Checking 0 100 88 server.mtolympus.local. against SRV _kerberos._udp.mtolympus.local server.mtolympus.local 88
  281. Looking for DNS entry SRV _ldap._tcp.mtolympus.local server.mtolympus.local 389 as _ldap._tcp.mtolympus.local.
  282. Checking 0 100 389 server.mtolympus.local. against SRV _ldap._tcp.mtolympus.local server.mtolympus.local 389
  283. Looking for DNS entry SRV _ldap._tcp.dc._msdcs.mtolympus.local server.mtolympus.local 389 as _ldap._tcp.dc._msdcs.mtolympus.local.
  284. Checking 0 100 389 server.mtolympus.local. against SRV _ldap._tcp.dc._msdcs.mtolympus.local server.mtolympus.local 389
  285. Looking for DNS entry SRV _ldap._tcp.gc._msdcs.mtolympus.local server.mtolympus.local 3268 as _ldap._tcp.gc._msdcs.mtolympus.local.
  286. Checking 0 100 3268 server.mtolympus.local. against SRV _ldap._tcp.gc._msdcs.mtolympus.local server.mtolympus.local 3268
  287. Looking for DNS entry SRV _ldap._tcp.pdc._msdcs.mtolympus.local server.mtolympus.local 389 as _ldap._tcp.pdc._msdcs.mtolympus.local.
  288. Checking 0 100 389 server.mtolympus.local. against SRV _ldap._tcp.pdc._msdcs.mtolympus.local server.mtolympus.local 389
  289. Looking for DNS entry SRV _ldap._tcp.default-first-site-name._sites.mtolympus.local server.mtolympus.local 389 as _ldap._tcp.default-first-site-name._sites.mtolympus.local.
  290. Checking 0 100 389 server.mtolympus.local. against SRV _ldap._tcp.default-first-site-name._sites.mtolympus.local server.mtolympus.local 389
  291. Looking for DNS entry SRV _ldap._tcp.default-first-site-name._sites.dc._msdcs.mtolympus.local server.mtolympus.local 389 as _ldap._tcp.default-first-site-name._sites.dc._msdcs.mtolympus.local.
  292. Checking 0 100 389 server.mtolympus.local. against SRV _ldap._tcp.default-first-site-name._sites.dc._msdcs.mtolympus.local server.mtolympus.local 389
  293. Looking for DNS entry SRV _ldap._tcp.default-first-site-name._sites.gc._msdcs.mtolympus.local server.mtolympus.local 3268 as _ldap._tcp.default-first-site-name._sites.gc._msdcs.mtolympus.local.
  294. Checking 0 100 3268 server.mtolympus.local. against SRV _ldap._tcp.default-first-site-name._sites.gc._msdcs.mtolympus.local server.mtolympus.local 3268
  295. Looking for DNS entry SRV _ldap._tcp.96f62427-f474-4cbf-b4d1-ce025a2ea27a.domains._msdcs.mtolympus.local server.mtolympus.local 389 as _ldap._tcp.96f62427-f474-4cbf-b4d1-ce025a2ea27a.domains._msdcs.mtolympus.local.
  296. Checking 0 100 389 server.mtolympus.local. against SRV _ldap._tcp.96f62427-f474-4cbf-b4d1-ce025a2ea27a.domains._msdcs.mtolympus.local server.mtolympus.local 389
  297. Looking for DNS entry SRV _gc._tcp.mtolympus.local server.mtolympus.local 3268 as _gc._tcp.mtolympus.local.
  298. Checking 0 100 3268 server.mtolympus.local. against SRV _gc._tcp.mtolympus.local server.mtolympus.local 3268
  299. Looking for DNS entry SRV _gc._tcp.default-first-site-name._sites.mtolympus.local server.mtolympus.local 3268 as _gc._tcp.default-first-site-name._sites.mtolympus.local.
  300. Checking 0 100 3268 server.mtolympus.local. against SRV _gc._tcp.default-first-site-name._sites.mtolympus.local server.mtolympus.local 3268
  301. No DNS updates needed
  302.  
  303.  
  304.  
  305.  
  306.  
  307. #############################################################/etc/resolv.conf##################################################################
  308. [root@server private]# cat /etc/resolv.conf
  309. search MYEXTERNALDOMAN.NET
  310. search mtolympus.local
  311. domain MYEXTERNALDOMAIN.NET
  312. domain mtolympus.local
  313. nameserver 10.0.0.1
  314.  
  315.  
  316.  
  317.  
  318.  
  319.  
  320.  
  321.  
  322.  
  323.  
  324. #############################################################/etc/hosts#####################################################################
  325. [root@server private]# cat /etc/hosts
  326. 127.0.0.1 localhost localhost.localdomain localhost4 localhost4.localdomain4
  327. ::1 localhost localhost.localdomain localhost6 localhost6.localdomain6
  328. 127.0.0.1 autoreply autoreply.MYEXTERNALDOMAIN.NET
  329. 127.0.0.1 mail mail.MYEXTERNALDOMAN.NET
  330. 127.0.0.1 SERVER.MTOLYMPUS.LOCAL SERVER
  331. [root@server private]#
  332.  
  333.  
  334.  
  335.  
  336.  
  337.  
  338.  
  339.  
  340.  
  341.  
  342.  
  343. ################################################/usr/local/samba/bin/smbclient -L localhost -U%###############################################
  344. [root@server private]# /usr/local/samba/bin/smbclient -L localhost -U%
  345. Domain=[MTOLYMPUS] OS=[Unix] Server=[Samba 4.0.6]
  346.  
  347. Sharename Type Comment
  348. --------- ---- -------
  349. netlogon Disk
  350. sysvol Disk
  351. IPC$ IPC IPC Service (Samba 4.0.6)
  352. Domain=[MTOLYMPUS] OS=[Unix] Server=[Samba 4.0.6]
  353.  
  354. Server Comment
  355. --------- -------
  356.  
  357. Workgroup Master
  358. --------- -------
  359. [root@server private]#
  360.  
  361.  
  362.  
  363.  
  364.  
  365.  
  366.  
  367.  
  368.  
  369.  
  370.  
  371.  
  372.  
  373. ##########################################smbclient //localhost/netlogon -UAdministrator%'MYPASSWORD' -c 'ls'#####################################
  374. [root@server private]# smbclient //localhost/netlogon -UAdministrator%'MYPASSWORD' -c 'ls'
  375. Domain=[MTOLYMPUS] OS=[Unix] Server=[Samba 4.0.6]
  376. . D 0 Sat Jun 1 19:47:08 2013
  377. .. D 0 Sat Jun 1 19:47:17 2013
  378.  
  379. 50396 blocks of size 1048576. 42259 blocks available
  380. [root@server private]#
  381.  
  382.  
  383.  
  384.  
  385.  
  386.  
  387.  
  388.  
  389.  
  390.  
  391.  
  392.  
  393.  
  394.  
  395. ####################################################host -t SRV _ldap._tcp.MTOLYMPUS.LOCAL##############################################
  396.  
  397. [root@server private]# host -t SRV _ldap._tcp.MTOLYMPUS.LOCAL
  398. _ldap._tcp.MTOLYMPUS.LOCAL has SRV record 0 100 389 server.mtolympus.local.
  399. [root@server private]#
  400.  
  401.  
  402.  
  403.  
  404.  
  405.  
  406.  
  407.  
  408.  
  409.  
  410.  
  411.  
  412.  
  413. #########################################################kinit administrator@MYDOMAIN.LOCAL###########################################
  414. [root@server private]# kinit administrator@MTOLYMPUS.LOCAL
  415. Password for administrator@MTOLYMPUS.LOCAL:
  416. Warning: Your password will expire in 41 days on Sat Jul 13 19:47:14 2013
  417. [root@server private]#
  418.  
  419.  
  420.  
  421.  
  422.  
  423.  
  424.  
  425. ######################################################################klist#########################################################
  426. [root@server private]# klist
  427. Ticket cache: FILE:/tmp/krb5cc_0
  428. Default principal: administrator@MTOLYMPUS.LOCAL
  429.  
  430. Valid starting Expires Service principal
  431. 06/01/13 23:39:32 06/02/13 09:39:32 krbtgt/MTOLYMPUS.LOCAL@MTOLYMPUS.LOCAL
  432. renew until 06/02/13 23:39:27
  433. [root@server private]#
RAW Paste Data