<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Kerberos auth on HEAD in Alfresco Archive</title>
    <link>https://connect.hyland.com/t5/alfresco-archive/kerberos-auth-on-head/m-p/201474#M154604</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I've seen such an issue before, but not in the context of CIFS. Alfresco used to require a valid local authentication in order to validate a ticket. However, I don't think CIFS uses tickets.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 17 Feb 2009 12:48:30 GMT</pubDate>
    <dc:creator>rogier_oudshoor</dc:creator>
    <dc:date>2009-02-17T12:48:30Z</dc:date>
    <item>
      <title>Kerberos auth on HEAD</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/kerberos-auth-on-head/m-p/201470#M154600</link>
      <description>Hello all,It's been several days I am trying to make kerberos authentication work (against AD running on Win2003 R2), both with the regular 3.0 labs and now the SVN version (rev 12844). The server running alfresco is a gentoo 64bits (xen virtualized), tomcat is tomcat-6.0.18.Kerberos seems to work f</description>
      <pubDate>Fri, 23 Jan 2009 16:37:21 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/kerberos-auth-on-head/m-p/201470#M154600</guid>
      <dc:creator>chapeaurouge</dc:creator>
      <dc:date>2009-01-23T16:37:21Z</dc:date>
    </item>
    <item>
      <title>Re: Kerberos auth on HEAD</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/kerberos-auth-on-head/m-p/201471#M154601</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I got it working for the web and webdav ok.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;No luck for CIFS, but this seems to be a topic coming up quite often. I haven't seen any clear solution to that. Is there actually one?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 13 Feb 2009 11:33:06 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/kerberos-auth-on-head/m-p/201471#M154601</guid>
      <dc:creator>chapeaurouge</dc:creator>
      <dc:date>2009-02-13T11:33:06Z</dc:date>
    </item>
    <item>
      <title>Re: Kerberos auth on HEAD</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/kerberos-auth-on-head/m-p/201472#M154602</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Could you share your CIFS configuration section from the file-servers-custom.xml of file-servers.xml? That would help us greatly in spotting issues &lt;img id="smileywink" class="emoticon emoticon-smileywink" src="https://connect.hyland.com/i/smilies/16x16_smiley-wink.png" alt="Smiley Wink" title="Smiley Wink" /&gt;&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 16 Feb 2009 08:11:20 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/kerberos-auth-on-head/m-p/201472#M154602</guid>
      <dc:creator>rogier_oudshoor</dc:creator>
      <dc:date>2009-02-16T08:11:20Z</dc:date>
    </item>
    <item>
      <title>Re: Kerberos auth on HEAD</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/kerberos-auth-on-head/m-p/201473#M154603</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Sure. Here are the most relevant part of my file-servers.xml.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="CIFS Server"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;serverEnable enabled="true"/&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;host name="${cifs.localname}" domain="${cifs.domain}"/&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;comment&amp;gt;Alfresco CIFS Server&amp;lt;/comment&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Set to the broadcast mask for the subnet –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;broadcast&amp;gt;${cifs.broadcast}&amp;lt;/broadcast&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Use Java socket based NetBIOS over TCP/IP and native SMB on linux –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;tcpipSMB platforms="linux,solaris,macosx"/&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;netBIOSSMB platforms="linux,solaris,macosx"/&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Can be mapped to non-privileged ports, then use firewall rules to forward&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; requests from the standard ports –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;tcpipSMB port="1445" platforms="linux,solaris,macosx"/&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;netBIOSSMB sessionPort="1139" namePort="1137" datagramPort="1138" platforms="linux,solaris,macosx"/&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; –&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;hostAnnounce interval="5"/&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Use Win32 NetBIOS interface on Windows –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;Win32NetBIOS/&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;Win32Announce interval="5"/&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– CIFS authentication –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;authenticator type="enterprise"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;KDC&amp;gt;dcbi.mydomain.com&amp;lt;/KDC&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;Realm&amp;gt;MYDOMAIN&amp;lt;/Realm&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;Password&amp;gt;alfresco&amp;lt;/Password&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;Principal&amp;gt;cifs/gandalf-white.mydomain.com&amp;lt;/Principal&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/authenticator&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;lt;!–&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;WINS&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;primary&amp;gt;1.2.3.4&amp;lt;/primary&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;secondary&amp;gt;5.6.7.8&amp;lt;/secondary&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/WINS&amp;gt;&lt;BR /&gt;–&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;sessionDebug flags="Negotiate,Socket"/&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt; &amp;lt;config evaluator="string-compare" condition="Filesystem Security"&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;authenticator type="enterprise"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;KDC&amp;gt;dcbi.mydomain.com&amp;lt;/KDC&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;Realm&amp;gt;MYDOMAIN&amp;lt;/Realm&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;Password&amp;gt;alfresco&amp;lt;/Password&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;Principal&amp;gt;cifs/gandalf-white.mydomain.com&amp;lt;/Principal&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/authenticator&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;At start-up:&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;18:22:14,540 User:System DEBUG [smb.protocol.auth] Logged on using principal cifs/gandalf-white.mydomain.com@MYDOMAIN&lt;BR /&gt;18:22:14,540 User:System DEBUG [smb.protocol.auth] Enabling mechTypes :-&lt;BR /&gt;18:22:14,540 User:System DEBUG [smb.protocol.auth]&amp;nbsp;&amp;nbsp; Kerberos5&lt;BR /&gt;18:22:14,540 User:System DEBUG [smb.protocol.auth]&amp;nbsp;&amp;nbsp; MS-Kerberos5&lt;BR /&gt;18:22:14,541 User:System DEBUG [smb.protocol.auth]&amp;nbsp;&amp;nbsp; NTLMSSP&lt;BR /&gt;18:22:14,547 User:System INFO&amp;nbsp; [alfresco.smb.protocol] CIFS server started&lt;BR /&gt;18:22:14,547 User:System INFO&amp;nbsp; [alfresco.smb.protocol] FTP server NOT started&lt;BR /&gt;18:22:14,547 User:System INFO&amp;nbsp; [alfresco.smb.protocol] NFS server NOT started&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;Here is the log output:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;18:22:29,634&amp;nbsp; DEBUG [smb.protocol.auth] NT Session setup SPNEGO, MID=8, UID=0, PID=65279&lt;BR /&gt;18:22:29,639&amp;nbsp; DEBUG [smb.protocol.auth] Kerberos AP-REQ - [AP-REQ:APOptions=MutualAuth ,Ticket=Len=&lt;BR /&gt;912,Authenticator=EncType=3,Kvno=-1,Len=168]&lt;BR /&gt;18:22:29,640&amp;nbsp; DEBUG [smb.protocol.auth] Kerberos mutual auth required, parsing AP-REQ&lt;BR /&gt;18:22:29,666&amp;nbsp; DEBUG [smb.protocol.auth] Using OID MS Kerberos5 for NegTokenTarg&lt;BR /&gt;18:22:29,670&amp;nbsp; DEBUG [smb.protocol.auth] Created NegTokenTarg using updated AP-REP, added subkey&lt;BR /&gt;18:22:29,670&amp;nbsp; DEBUG [smb.protocol.auth] Machine account logon, MPWKS150$, as null logon&lt;BR /&gt;18:22:29,670&amp;nbsp; DEBUG [smb.protocol.auth] Logged on using Kerberos, user MPWKS150$&lt;BR /&gt;18:22:29,671&amp;nbsp; DEBUG [smb.protocol.auth] User&amp;nbsp; logged on&amp;nbsp; (type Null)&lt;BR /&gt;18:22:29,672&amp;nbsp; DEBUG [smb.protocol.auth] Allocated UID=0 for VC=[0:0,[:null,Windows 2002 Service Pac&lt;BR /&gt;k 3 2600,Windows 2002 5.1,10.250.15.39],Tree=0,Searches=0]&lt;BR /&gt;18:22:29,695&amp;nbsp; DEBUG [smb.protocol.auth] NT Session setup SPNEGO, MID=24, UID=0, PID=65279&lt;BR /&gt;18:22:29,701&amp;nbsp; DEBUG [smb.protocol.auth] Kerberos AP-REQ - [AP-REQ:APOptions=MutualAuth ,Ticket=Len=&lt;BR /&gt;1184,Authenticator=EncType=3,Kvno=-1,Len=168]&lt;BR /&gt;18:22:29,701&amp;nbsp; DEBUG [smb.protocol.auth] Kerberos mutual auth required, parsing AP-REQ&lt;BR /&gt;18:22:29,717&amp;nbsp; DEBUG [smb.protocol.auth] Using OID MS Kerberos5 for NegTokenTarg&lt;BR /&gt;18:22:29,719&amp;nbsp; DEBUG [smb.protocol.auth] Created NegTokenTarg using updated AP-REP, added subkey&lt;BR /&gt;18:22:29,841 User:fredb ERROR [smb.protocol.auth] Kerberos logon error&lt;BR /&gt;18:22:29,841 User:fredb ERROR [smb.protocol.auth] org.alfresco.repo.security.authentication.Authent&lt;BR /&gt;icationException: Could not find user by userName: fredb&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;So, if log in with a user and try to access a CIFS share, and the user didn't previously existed in Alfresco, it does get in somehow. I can see the user when going to the alfresco admin console that got created. So it authenticates, but then, fails to find the user? &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I wish this was a trivial config issue &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://connect.hyland.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Thanks for any tips..&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;fred&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 16 Feb 2009 10:35:47 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/kerberos-auth-on-head/m-p/201473#M154603</guid>
      <dc:creator>chapeaurouge</dc:creator>
      <dc:date>2009-02-16T10:35:47Z</dc:date>
    </item>
    <item>
      <title>Re: Kerberos auth on HEAD</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/kerberos-auth-on-head/m-p/201474#M154604</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I've seen such an issue before, but not in the context of CIFS. Alfresco used to require a valid local authentication in order to validate a ticket. However, I don't think CIFS uses tickets.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 17 Feb 2009 12:48:30 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/kerberos-auth-on-head/m-p/201474#M154604</guid>
      <dc:creator>rogier_oudshoor</dc:creator>
      <dc:date>2009-02-17T12:48:30Z</dc:date>
    </item>
  </channel>
</rss>

