Benjamin Schell
2005-Aug-03 19:23 UTC
[Samba] Error: "The local policy of this system does not permit you to logon interactively"
Hi all, I have been having a bit of trouble setting up my Samba 3-OpenLDAP PDC...This is something totally new to me (no previous Samba experience at all). I've had several speedbumps, but I've finally got my setup almost complete. I can join computers to the domain, however, if I try to logon with a user, I get the above error from Windows. I can logon as a Domain Administrator, but if the user is a member of any other group, they cannot login. I have setup my machine to use LDAP for authentication via pam as well, and I am currently suspecting some issues with my group mappings, but I'm not sure. This is my first experience with LDAP as well (and by extension pam_ldap, etc.), so it could be a possible issue there... I'm not including any configs, but they can be posted easily. Any and all help greatly appreciated! I've scoured for help and it could be something quite dumb/easy to fix. Thanks! -Ben
Seemingly Similar Threads
- Security implications of using ControlMaster
- [Resolved] Found a way of allowing pam_ldap users (with pam_groupdn or pam_check_host_attr restrictions), AND allowing local root authentication, without pam_unix.so taking presense due to getpwent() returns ldap-users
- Problem with PDC OpenLDAP logon at Win2K/XP
- windows users can login but OS X users cannot
- pam_ldap-184 compile error