1
0
mirror of https://github.com/samba-team/samba.git synced 2025-02-23 09:57:40 +03:00

r11471: Describe how kerberos forwarding works with the ntvfs.

Andrew Bartlett
This commit is contained in:
Andrew Bartlett 2005-11-02 04:24:04 +00:00 committed by Gerald (Jerry) Carter
parent 49d489c81d
commit 66d7a51394

View File

@ -3,8 +3,13 @@ backend that talks to a remote CIFS server. The primary aim of this
backend is for debugging and development, although some poeple may
find it useful as a CIFS gateway.
There are two modes of operation: Password specified and delegated
credentials.
Here is a typical config:
Password specified:
-------------------
This uses a static username/password in the config file, example:
[myshare]
ntvfs handler = cifs
@ -14,3 +19,22 @@ Here is a typical config:
cifs:domain = TESTDOM
cifs:share = test
Delegated credentials:
----------------------
If your incoming user is authenticated with Kerberos, and the machine
account for this Samba4 proxy server is 'trusted for delegation', then
the Samba4 proxy can forward the client's credentials to the target.
You must be joined to the domain (net join <domain> member).
To set 'trusted for delegation' with MMC, see the checkbox in the
Computer account property page under Users and Computers.
[myshare]
ntvfs handler = cifs
cifs:server = myserver
cifs:share = test