Looks about right.
That said, you don't need 'client min protocol' on the DC. You need
the client max protocol on the domain member and server min protocol on
the DC to overlap.
Andrew Bartlett
On Wed, 2019-11-27 at 17:04 +0100, Stefan Kania via samba
wrote:> Error verifying signature: parse error
> --------------ms060308020506090108040201
> Content-Type: text/plain; charset=utf-8
> Content-Transfer-Encoding: quoted-printable
> Content-Language: de-DE
>
> that's it we set:
>
> server min protocol =3D NT1
> client min protocol =3D NT1
>
> on the DCs and we could join the domain. As soon as we set up a new
> fileserver to replace the old ubuntu 12.04 we will remove the parameters
>
> thanks for all the help
>
> Stefan
>
> Am 27.11.19 um 16:46 schrieb Andreas Krummrich:
> > Hi,
> >
> > I had such a Problem with an old SLES 11 and Samba 3.6. I needed to
ena> ble SMB1 on the DC. Samba 4.11 disables SMB1 Boy default.=20
> > Regards
> > Andreas
> >
> > Von meinem iPhone gesendet
> >
> > > Am 27.11.2019 um 16:43 schrieb Stefan Kania via samba <samba
at lists.sam> ba.org>:
> > > =EF=BB=BFwhen we try to join we get the following error message:
> > >
> > > Failed to join domain: failed to lookup DC info for domain
#our-domain> '
> > > over rpc:NT_STATUS_INVALID_NETWORK_RESPONSE
> > >
> > > looking up the dc and all SRV-Records is working. A "kinit
> > > administrator" is working to.
> > >
> > > Stefan
> > >
> > > > Am 27.11.19 um 16:37 schrieb Rowland penny via samba:
> > > > > On 27/11/2019 14:37, Stefan Kania via samba wrote:
> > > > > Hi Louis,
> > > > >
> > > > > it's an old ubuntu 12.04 with samba 3.6.25.
It's a fileserver with D> RBD
> > > > > and we have to join the server until a new one is ready
to use.
> > > > Going back to 2012/13, I used 12.04 against a Samba 4.0.x AD
DC, so i> t
> > > > should work.
> > > >
> > > > Rowland
> > > >
> > > >
> > > >
> > > --=20
> > > Stefan Kania
> > > Landweg 13
> > > 25693 St. Michaelisdonn
> > >
> > >
> > > Signieren jeder E-Mail hilft Spam zu reduzieren und sch=C3=BCtzt
Ihre > Privatsph=C3=A4re. Ein kostenfreies Zertifikat erhalten Sie unter
https:/> /www.dgn.de/dgncert/index.html
> > >
> > >
> > >
> > > --=20
> > > To unsubscribe from this list go to the following URL and read
the
> > > instructions: https://lists.samba.org/mailman/options/samba
>
> --=20
> Stefan Kania
> Landweg 13
> 25693 St. Michaelisdonn
>
>
> Signieren jeder E-Mail hilft Spam zu reduzieren und sch=C3=BCtzt Ihre
Pri> vatsph=C3=A4re. Ein kostenfreies Zertifikat erhalten Sie unter
https://ww> w.dgn.de/dgncert/index.html
>
>
>
>
>
> --------------ms060308020506090108040201--
>
--
Andrew Bartlett http://samba.org/~abartlet/
Authentication Developer, Samba Team http://samba.org
Samba Developer, Catalyst IT http://catalyst.net.nz/services/samba