All of lore.kernel.org
 help / color / mirror / Atom feed
From: Christian Lutz <christian.lutz-EnyPcy3oyxIb1SvskN2V4Q@public.gmane.org>
To: linux-cifs-u79uwXL29TY76Z2rM5mHXA@public.gmane.org
Subject: Question on Active Directory Authentication
Date: Fri, 04 Jul 2014 14:54:05 +0200	[thread overview]
Message-ID: <53B6A3ED.9060805@muenchen.de> (raw)

Hi everybody,

just one simple question regarding the authentication of users in the 
mount options: Is it possible to authenticate a user with his 
userPrincipalName attribute and a password or are there any more 
dependencies to get this to work (i. e. krb5 or other security options)?

Example: mount -t cifs //server/share /mnt -o 
username=my.upn.prefix-d7gQ9grfmP4pBLzJVN3leg@public.gmane.org,password=PASSWORD

The only working solution was with the default sAMAccountName Attribute.

Background:
We are building a new fileservice for Windows and Linux Clients. The 
users are stored in Active Directory. The username (sAMAccountName) is a 
random string created by the Server itself. The only login attribute the 
user knows is his UPN (which is also the mailaddress in our case).


Thanks in advance
Christian

-- 

Christian Lutz

Landeshauptstadt Muenchen
it@M - Dienstleister fuer Informations- und Telekommunikationstechnik
Geschäftsbereich Werkzeuge und Infrastruktur
Servicebereich Security und Netzwerkinfrastruktur
Serviceteam ID-Management
Komponentenverantwortlicher Active Directory

Buero: Herzog-Wilhelm-Straße 22, München
Postanschrift: Herzogspitalstr. 24, 80331 München

Telefon: +49 89 233-25596
Fax.: +49 89 233-98925596
E-Mail:	christian.lutz-EnyPcy3oyxIb1SvskN2V4Q@public.gmane.org

--------------------------------------------------------------------
Elektronische Kommunikation mit der Landeshauptstadt Muenchen - siehe:
http://www.muenchen.de/ekomm
--------------------------------------------------------------------

             reply	other threads:[~2014-07-04 12:54 UTC|newest]

Thread overview: 5+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2014-07-04 12:54 Christian Lutz [this message]
     [not found] ` <53B6A3ED.9060805-EnyPcy3oyxIb1SvskN2V4Q@public.gmane.org>
2014-07-08 11:04   ` AW: Question on Active Directory Authentication Tobias Doerffel
     [not found]     ` <zarafa.53bbd04a.78cf.1d5ae9d4134672c1-Re+uX9gtWIdJ209wn1+v+yQaj01YtLkH@public.gmane.org>
2014-07-09 11:05       ` Christian Lutz
     [not found] ` <53BD2217.1030304-EnyPcy3oyxIb1SvskN2V4Q@public.gmane.org>
2014-07-09 11:13   ` AW: " Tobias Doerffel
     [not found]     ` <zarafa.53bd23f4.13c0.46a6a8115b51d1f3-Re+uX9gtWIdJ209wn1+v+yQaj01YtLkH@public.gmane.org>
2014-07-16  7:43       ` Christian Lutz

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=53B6A3ED.9060805@muenchen.de \
    --to=christian.lutz-enypcy3oyxib1svskn2v4q@public.gmane.org \
    --cc=linux-cifs-u79uwXL29TY76Z2rM5mHXA@public.gmane.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.