Connect to windows machine with Kerberos

40 views
Skip to first unread message

Narmada Karthika

unread,
May 4, 2023, 1:09:41 PM5/4/23
to Ansible Project
I am using kerberos to connect to windows hosts to run playbook, for this I have to kinit username and password everyday if not I need to specify the password on the inventory file which is not great idea. So some one please suggest me how can I save the password details. 
Thanks in advance..

Ravi yadav

unread,
May 5, 2023, 3:24:42 AM5/5/23
to Ansible Project
Hello Narmada, 

I assume you have DC in your enviroment. you have to follow steps as mentioned in below link to establise permanent kerberos authentication.
please check.

Ravi.

Narmada Karthika

unread,
May 5, 2023, 1:26:38 PM5/5/23
to Ansible Project
I have done all these I am able to run playbooks on windows machines using kerberos.  I did kinit user...@DOMAIN.COM, but  I need to do this everyday. so followed the docs and implemented ansible-vault which is also working. Using ansible-vault I have to save the password for the enctyption/decryption some where on the server. So my question now is is there anyway ansible decrypts the password while executing the playbook. 

Dick Visser

unread,
May 5, 2023, 4:45:47 PM5/5/23
to ansible...@googlegroups.com
What is your question exactly?



--
You received this message because you are subscribed to the Google Groups "Ansible Project" group.
To unsubscribe from this group and stop receiving emails from it, send an email to ansible-proje...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/ansible-project/7f727b50-5792-4763-9881-a0b1b0edadb8n%40googlegroups.com.
--
Sent from Gmail Mobile

Narmada Karthika

unread,
May 5, 2023, 5:46:05 PM5/5/23
to Ansible Project
sure I will get back to this again, but I see this error all of a sudden
kerberos: the python kerberos library is not installed
I have all necessary components installed

Narmada Karthika

unread,
May 5, 2023, 5:52:24 PM5/5/23
to Ansible Project
pip list |grep -i kerb
pykerberos         1.2.4
requests-kerberos  0.14.0

Narmada Karthika

unread,
May 5, 2023, 6:23:36 PM5/5/23
to Ansible Project
also I followed one of your previous docs, I see
[teamci-deploy-user@server01 win]$ echo $ANSIBLE_PYTHON
/usr/bin/python2
how can I change this to python 3
Reply all
Reply to author
Forward
Message has been deleted
0 new messages