Displaying 20 results from an estimated 72 matches for "ldap_utils".
2016 Oct 04
0
Fwd: Winbind Preauthentication failed
...:51 fs1 winbindd[31235]: kerberos_kinit_password
FS1$@DOMAIN.LOCAL failed: Preauthentication failed
# LOG WINBIND
------------------------------------------------------------
-------------------------------------------------------------------
[2016/09/29 09:37:46.941460, 1] ../source3/libads/ldap_utils.
c:91(ads_do_search_retry_internal)
Reducing LDAP page size from 1000 to 500 due to IO_TIMEOUT
[2016/09/29 11:07:58.809921, 1] ../source3/libads/ldap_utils.
c:91(ads_do_search_retry_internal)
Reducing LDAP page size from 500 to 250 due to IO_TIMEOUT
[2016/09/29 13:32:16.102572, 1] ../source3/...
2007 Nov 05
0
Samba 3.0.26a, windows 2k3 r2 SFU, problems with auth/nss
...sc.c:winbindd_priv_pipe_dir(524)
[ 1462]: request location of privileged pipe
[2007/11/05 10:02:31, 3] nsswitch/winbindd_user.c:winbindd_list_users(754)
[ 1462]: list users
[2007/11/05 10:02:31, 3] nsswitch/winbindd_ads.c:query_user_list(169)
ads: query_user_list
[2007/11/05 10:02:31, 5]
libads/ldap_utils.c:ads_do_search_retry_internal(64)
Search for (objectCategory=user) in <dc=GUTHRIESOUND,dc=ORG> gave 29
replies
[2007/11/05 10:02:31, 5]
libads/ldap_utils.c:ads_do_search_retry_internal(64)
Search for
(|(attributeId=1.2.840.113556.1.6.18.1.310)(attributeId=1.2.840.113556.1.6.18.1.311)(at...
2007 Apr 30
0
winbind's libads/ldap_utils.c repeatedly says 'failed to reconnect (Timed out)'
...o is still accessible; it just can't figure out what groups a person
is in. I'm using idmap backend = ad , and winbind nss info = sfu.
Looking in /var/log/samba/log.wb-ADDOMAINNAME, I see many lines at
seemingly randomly time intervals that read like this:
[2007/04/30 04:30:16, 1] libads/ldap_utils.c:ads_do_search_retry(77)
ads_search_retry: failed to reconnect (Timed out)
Are these lines related to my need to restart winbind? Either way, are
they indicative of a problem that should be fixed? If so, any idea how
to fix the probem?
Thanks,
Jon
Relevant smb.conf directives follow:...
2008 Jun 01
2
Winbind issue
...ads.c:query_user_list(209)
Not a user account? atype=0x30000000
[2008/06/01 00:16:31, 1] nsswitch/winbindd_ads.c:query_user_list(209)
Not a user account? atype=0x30000000
[2008/06/01 00:17:53, 1] nsswitch/idmap.c:idmap_init(377)
Initializing idmap domains
[2008/06/01 00:17:53, 1]
libads/ldap_utils.c:ads_do_search_retry_internal(115)
ads reopen failed after error Referral
[2008/06/01 00:17:53, 1]
libads/ldap_utils.c:ads_do_search_retry_internal(115)
ads reopen failed after error Referral
[2008/06/01 00:17:54, 1]
libads/ldap_utils.c:ads_do_search_retry_internal(115)
ads reopen faile...
2020 Mar 02
2
Samba slow AD authentication eventually succeed
Hello,
I have a customer that complains about slow AD authentication when
accessing the share, eventually succeed (Samba is a DC memer)
In the logs I can see the following errors:
[2020/02/24 14:11:16.775884,? 1]
../source3/libads/ldap_utils.c:93(ads_do_search_retry_internal)
? Reducing LDAP page size from 1000 to 500 due to IO_TIMEOUT
[2020/02/24 14:11:16.775902,? 3]
../source3/libads/ldap_utils.c:102(ads_do_search_retry_internal)
? Reopening ads connection to realm 'PFIN.CH' after error Time limit
exceeded
[2020/02/25 09...
2020 Oct 12
2
samba AD problem after re-join domain
...=36145, effective(0, 0), real(0, 0)]
../../source3/rpc_client/cli_pipe.c:422(cli_pipe_validate_current_pdu)
? ../../source3/rpc_client/cli_pipe.c:422: Bind NACK received from host
dc1.ad.eecs.yorku.ca!
[2020/10/12 09:44:11.598150,? 1, pid=36145, effective(0, 0), real(0, 0)]
../../source3/libads/ldap_utils.c:93(ads_do_search_retry_internal)
? Reducing LDAP page size from 1000 to 500 due to IO_TIMEOUT
(Which is strange because this means that if you reboot he DC, then the
clients start talking slower to it when it comes back up?? I don't think
the number ever increases unless you restart winbi...
2003 Jul 23
1
Samba 3.0 beta 3 issues
...f the groups mentioned ("AIM User Group" etc.) are valid groups in
our domain.
Some more winbind errors from the other day when the server failed:
[2003/07/21 11:06:00, 1]
nsswitch/winbindd_util.c:rescan_trusted_domains(167)
scanning trusted domain list
[2003/07/21 11:10:00, 1] libads/ldap_utils.c:ads_do_search_retry(76)
ads reopen failed after error Success
[2003/07/21 11:10:00, 1] libads/ads_ldap.c:ads_name_to_sid(64)
name_to_sid: root not found
[2003/07/21 11:10:00, 1]
nsswitch/winbindd_group.c:winbindd_getgroups(947)
user 'root' does not exist
[2003/07/21 11:10:59, 1] lib...
2003 Dec 02
2
Problem with , in Common Name when running samba3 as ADS Member (Problem with Group-Contents)
...dd_cache.c:lookup_groupmem(1236)
lookup_groupmem: [Cached] - doing backend query for info for domain TOPALISWORLD
[2003/12/02 12:24:24, 10] nsswitch/winbindd_ads.c:lookup_groupmem(697)
ads: lookup_groupmem TOPALISWORLD sid=S-1-5-21-525015883-470239122-8547516-513
[2003/12/02 12:24:24, 5] libads/ldap_utils.c:ads_do_search_retry(52)
Search for (objectSid=\01\05\00\00\00\00\00\05\15\00\00\00\4B\1B\4B\1F\92\47\07\1C\BC\6C\82\00\01\02\00\00) gave 1 replies
[2003/12/02 12:24:24, 3] nsswitch/winbindd_ads.c:dn_lookup(361)
ads: dn_lookup
[2003/12/02 12:24:24, 5] libads/ldap_utils.c:ads_do_search_retry(52...
2003 May 12
3
winbind crash
...libads/sasl.c:ads_sasl_spnego_bind(183)
got OID=1 2 840 113554 1 2 2 3
[2003/05/12 14:08:24, 3] libads/sasl.c:ads_sasl_spnego_bind(183)
got OID=1 3 6 1 4 1 311 2 2 10
[2003/05/12 14:08:24, 3] libads/sasl.c:ads_sasl_spnego_bind(190)
got principal=fozzy$@CJNTECH
[2003/05/12 14:08:24, 1] libads/ldap_utils.c:ads_do_search_retry(76)
ads reopen failed after error Success
winbindd: ../../../libraries/libldap/getvalues.c:36: ldap_get_values:
Assertion
`entry != ((void *)0)' failed.
Any ideas?
Cheers,
Paul
---------------------------------------------------------
Paul Eggleton Ph...
2020 Oct 12
1
samba AD problem after re-join domain
...t; ../../source3/rpc_client/cli_pipe.c:422(cli_pipe_validate_current_pdu)
>> ? ../../source3/rpc_client/cli_pipe.c:422: Bind NACK received from
>> host dc1.ad.eecs.yorku.ca!
>> [2020/10/12 09:44:11.598150,? 1, pid=36145, effective(0, 0), real(0,
>> 0)] ../../source3/libads/ldap_utils.c:93(ads_do_search_retry_internal)
>> ? Reducing LDAP page size from 1000 to 500 due to IO_TIMEOUT
>>
>> (Which is strange because this means that if you reboot he DC, then
>> the clients start talking slower to it when it comes back up?? I
>> don't think the num...
2003 Apr 17
0
winbindd crashing/stopping
...is the same account in both entries. Any help would be appreciated.
got principal=KDC@DOMAIN
[2003/04/16 16:16:47, 3] libads/ldap.c:ads_do_paged_search(500)
ldap_search_ext_s((distinguishedName=***AD Domain User Account***)) -> Can't
contact LDAP server
[2003/04/16 16:16:47, 3] libads/ldap_utils.c:ads_do_search_retry(60)
Reopening ads connection to realm 'DOMAIN' after error Can't contact LDAP
server
[2003/04/16 16:16:47, 5] libads/ldap.c:ads_try_connect(53)
ads_try_connect: trying ldap server 'KDC' port 389
[2003/04/16 16:16:47, 3] libads/ldap.c:ads_connect(267)...
2016 Apr 15
3
Domain member seems to work, wbinfo -u not
...6.591090, 3, pid=2873, effective(0, 0), real(0, 0)] ../source3/libads/ldap.c:904(ads_do_paged_search_args)
ads_do_paged_search_args: ldap_search_with_timeout((objectCategory=user)) -> Time limit exceeded
[2016/04/14 12:17:26.591143, 1, pid=2873, effective(0, 0), real(0, 0)] ../source3/libads/ldap_utils.c:135(ads_do_search_retry_internal)
ads reopen failed after error Time limit exceeded
[2016/04/14 12:17:26.591154, 1, pid=2873, effective(0, 0), real(0, 0), class=winbind] ../source3/winbindd/winbindd_ads.c:319(query_user_list)
query_user_list ads_search: Time limit exceeded
[2016/04/14 12:17:...
2012 Sep 24
3
"Out of Memory error
...3.5.10 and i have a big quantity of errors
in logs :
[2012/09/24 16:01:29.248286, 1]
winbindd/winbindd_ads.c:728(lookup_usergroups_memberof)
lookup_usergroups_memberof ads_search
member=CN=TESTDD,OU=Villeurbanne,OU=ExEA,DC=ELIOTT,DC=fr: Out of memory
[2012/09/24 16:03:38.498533, 1]
libads/ldap_utils.c:323(ads_ranged_search_internal)
could not pull first usnChanged!
[2012/09/24 16:03:38.498615, 1]
winbindd/winbindd_ads.c:728(lookup_usergroups_memberof)
lookup_usergroups_memberof ads_search
member=CN=Victor,OU=utilisateurs,OU=Siege,OU=ExEA,DC=ELIOTT=fr: Out of
memory
[2012/09/24 17:01:...
2003 Sep 15
1
winbindd using FQDN domain name now?
...vel 5) from an XP Home box (not
a domain member):
[2003/09/15 15:46:49, 3]
nsswitch/winbindd_user.c:winbindd_getpwnam(112)
[ 6439]: getpwnam genosha-neil
[2003/09/15 15:46:49, 3] nsswitch/winbindd_ads.c:sequence_number(778)
ads: fetch sequence_number for GENOSHA
[2003/09/15 15:46:49, 5] libads/ldap_utils.c:ads_do_search_retry(52)
Search for (objectclass=*) gave 1 replies
[2003/09/15 15:46:49, 3] nsswitch/winbindd_ads.c:name_to_sid(312)
ads: name_to_sid
[2003/09/15 15:46:49, 5] libads/ldap_utils.c:ads_do_search_retry(52)
Search for
(|(sAMAccountName=neil)(userPrincipalName=neil@GENOSHA.ENFUSIO...
2019 Jul 16
2
samba 4.8 client and 4.9 AD DC: Reducing LDAP page size from 1000 to 500 due to IO_TIMEOUT
...ile = /usr/local/samba/private/tls/dc1.key.pem
tls certfile = /usr/local/samba/private/tls/dc1.cert.pem
tls cafile = /usr/local/samba/private/tls/ca-chain.cert.pem
apply group policies = yes
winbind log from file server:
[2019/07/16 16:45:38.693115, 1]
../source3/libads/ldap_utils.c:93(ads_do_search_retry_internal)
Reducing LDAP page size from 1000 to 500 due to IO_TIMEOUT
[2019/07/16 16:45:38.758657, 1]
../source3/libads/ldap_utils.c:111(ads_do_search_retry_internal)
ads_search_retry: failed to reconnect (No logon servers are currently
available to service the logon re...
2020 Oct 12
0
samba AD problem after re-join domain
...0,
> 0)]
> ../../source3/rpc_client/cli_pipe.c:422(cli_pipe_validate_current_pdu)
> ? ../../source3/rpc_client/cli_pipe.c:422: Bind NACK received from
> host dc1.ad.eecs.yorku.ca!
> [2020/10/12 09:44:11.598150,? 1, pid=36145, effective(0, 0), real(0,
> 0)] ../../source3/libads/ldap_utils.c:93(ads_do_search_retry_internal)
> ? Reducing LDAP page size from 1000 to 500 due to IO_TIMEOUT
>
> (Which is strange because this means that if you reboot he DC, then
> the clients start talking slower to it when it comes back up?? I don't
> think the number ever increases u...
2003 Oct 01
1
3.0.0, winbind issues
...OID=1 3 6 1 4 1 311 2 2 10
[2003/10/02 04:49:00, 3] libads/sasl.c:ads_sasl_spnego_bind(191)
got principal=fozzy$@CJNTECH
[2003/10/02 04:49:00, 3] libads/ldap.c:ads_do_paged_search(451)
ldap_search_ext_s((objectCategory=group)) -> Can't contact LDAP server
[2003/10/02 04:49:00, 3] libads/ldap_utils.c:ads_do_search_retry(60)
Reopening ads connection to realm 'CJNTECH' after error Can't contact
LDAP server
[2003/10/02 04:49:00, 3] libads/ldap.c:ads_connect(218)
Connected to LDAP server 192.168.55.6
[2003/10/02 04:49:00, 3] libads/ldap.c:ads_server_info(1886)
got ldap server na...
2013 Jan 14
0
Solaris 11.1 + Samba 3.6.6 + ads + getent group - a bug, perhaps?
...turns domain users perfectly.
What I *can't* seem to do is getent group in any way, shape or form.
My /etc/nsswitch.conf is sane:
passwd: files winbind
group: files winbind
hosts: files dns
ipnodes: file
When I do try to getent group, I see:
[2013/01/14 20:03:36.835081, 1, pid=788] libads/ldap_utils.c:134(ads_do_search_retry_internal)
ads reopen failed after error Timelimit exceeded
[2013/01/14 20:03:36.835209, 1, pid=788] libads/ldap_utils.c:315(ads_ranged_search_internal)
ads_search: Timelimit exceeded
[2013/01/14 20:03:36.835261, 0, pid=788] winbindd/winbindd_ads.c:1084(lookup_groupme...
2004 Jan 07
0
Samba3.0.1pre1 winbind failing against domain groups(ADS)
...tch/winbindd_misc.c:winbindd_domain_info(219)
[23792]: domain_info [LABOR.AK]
[2004/01/07 13:20:43, 3] nsswitch/winbindd_user.c:winbindd_getpwnam(113)
[23792]: getpwnam labor\tim
[2004/01/07 13:20:43, 3] nsswitch/winbindd_ads.c:name_to_sid(313)
ads: name_to_sid
[2004/01/07 13:20:43, 5] libads/ldap_utils.c:ads_do_search_retry(56)
Search for (|(sAMAccountName=tim)(userPrincipalName=tim@LABOR.AK))
gave 1 replies
[2004/01/07 13:20:43, 3] libads/ads_ldap.c:ads_name_to_sid(82)
ads name_to_sid mapped tim
[2004/01/07 13:20:43, 3] nsswitch/winbindd_group.c:winbindd_getgroups(932)
[23792]: getgroups L...
2008 Nov 19
0
File sharing is ok, but new ADS user validation is not ok
...008/11/19 13:12:41, 3] winbindd/winbindd_ads.c:query_user(426)
ads: query_user
[2008/11/19 13:12:41, 3] libads/ldap.c:ads_do_paged_search_args(779)
ads_do_paged_search_args:
ldap_search_with_timeout((objectSid=\01\05\00...)) -> Can't contact
LDAP server
[2008/11/19 13:12:41, 3] libads/ldap_utils.c:ads_do_search_retry_internal(76)
Reopening ads connection to realm 'ADS.IU.EDU' after error Can't
contact LDAP server
[2008/11/19 13:12:41, 3] libsmb/namequery.c:get_dc_list(1909)
get_dc_list: preferred server list: "iu-mssg-adsdc06.ads.iu.edu, ads.iu.edu"
[2008/11/19 1...