cancel
Showing results for 
Search instead for 
Did you mean: 

Frustration Labs 3.0b Kerberos

jread
Champ in-the-making
Champ in-the-making
I have tried for over a week now to get a installation working with a windows xp server MySQL and AD authentication (Kerberso and LDAP).

I have tried over and over again reinstalling Windows with clean installs. I have also tried with Ubuntu and gotten pretty much the same results. I have read every post on the Forum and every wiki page and at this point I do not believe that Alfresco is ready to intergrate into a Kerberos plateform at least not for us humans who only work with computers everyday.

I have followed this wiki page to the last comma,  http://wiki.alfresco.com/wiki/Configuring_the_CIFS_and_web_servers_for_Kerberos/AD_integrationand it does not work I have been able to use MIT's Leash  found here http://web.mit.edu/kerberos/dist/index.htmland proven that all my Kerberos confgurations are correct but I get pages of errors always starting with Context initialization failed.

I found many Forms with the same basic questions an no answers. To me the difficulty in setting up a simple AD sign-on is a show stopper. My company won't even look at the product if I can not get this to work.

I do not think I am stupid I have many other "open source" systems running. Squid (with ad authentication and Dansguardian) Zimbra (with AD authentication)Openfire (yes with AD authentication) Is there anyone out there who can give a clear direction to make this seamingly promissing product work.

All the Form pages I have looked at end at a seamingly dead end with out a resolution. Many are very old.

Please someone help….
12 REPLIES 12

jread
Champ in-the-making
Champ in-the-making
Thank you for your assistance

I did the same as you I googled the error message and most of the messages were so unclear.

I did use the KDC name that did not work. All of the kerberos tools I could find could do the authentication. But I think there is something funcky about Alfrescos setup.

I am quiting this… Since I have used a whole week and have nothing to show for it.

I will try some other authentication method. LDAP alone ??? or chaining…

Jim

alexander
Champ in-the-making
Champ in-the-making
Hi

Not sure if it is useful  - I spent some time trying to make Windows Kerberos to work with community 2.1 and the result was that I could make CIFS work with kerberos to provide SSO, but for web interface I had to go back to NTLM. It may be that proper support was introduced in Enterprise patches (wich I did not tried). Did not tried with 3.0 labs though.

Thanks
Alexander

wuff
Champ in-the-making
Champ in-the-making
Cannot find the KDC for domain AD.AUDUBON.COM

Long ago, but maybe other people will search for this (like me), so just the|one short solution:

Java needs the krb5.conf, try to copy (not just a shortcut!) krb5.ini to alfresco/jdk/jre/lib/security and rename it to krb5.conf.
Further information at http://java.sun.com/j2se/1.4.2/docs/guide/security/jgss/tutorials/KerberosReq.html
Getting started

Tags


Find what you came for

We want to make your experience in Hyland Connect as valuable as possible, so we put together some helpful links.