Krutskikh Ivan
2015-Nov-27 10:38 UTC
[Samba] Failed to find authenticated user via getpwnam(), denying access
Hi, I have a very strange issue with samba as an ad member server. log.smbd goes: check_ntlm_password: Checking password for unmapped user [TSNR]\[Administrator]@[ADMIN] with the new password interface [2015/11/27 19:09:26.196960, 3] ../source3/auth/auth.c:180(auth_check_ntlm_password) check_ntlm_password: mapped user is: [TSNR]\[Administrator]@[ADMIN] [2015/11/27 19:09:26.196993, 4] ../source3/smbd/sec_ctx.c:216(push_sec_ctx) push_sec_ctx(0, 0) : sec_ctx_stack_ndx = 1 [2015/11/27 19:09:26.197021, 4] ../source3/smbd/uid.c:485(push_conn_ctx) push_conn_ctx(0) : conn_ctx_stack_ndx = 0 [2015/11/27 19:09:26.197046, 4] ../source3/smbd/sec_ctx.c:316(set_sec_ctx) setting sec ctx (0, 0) - sec_ctx_stack_ndx = 1 [2015/11/27 19:09:26.201658, 4] ../source3/smbd/sec_ctx.c:424(pop_sec_ctx) pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0 [2015/11/27 19:09:26.201780, 3] ../source3/auth/auth_util.c:1247(check_account) Failed to find authenticated user TSNR\administrator via getpwnam(), denying access. [2015/11/27 19:09:26.201846, 2] ../source3/auth/auth.c:288(auth_check_ntlm_password) check_ntlm_password: Authentication for user [Administrator] -> [Administrator] FAILED with error NT_STATUS_NO_SUCH_USER [2015/11/27 19:09:26.201893, 2] ../auth/gensec/spnego.c:743(gensec_spnego_server_negTokenTarg) SPNEGO login failed: NT_STATUS_NO_SUCH_USER wbinfo -g -u shows all my domain users and groups, domain uses rfc-2307 and all unix attrs are in place. The weirdest thing is that this happens on 3 servers out of 4 in the system. All configs are more or less identical. Please help me narrow down this issue. Thanks in advance!
L.P.H. van Belle
2015-Nov-27 10:58 UTC
[Samba] Failed to find authenticated user via getpwnam(), denying access
Hai,> The weirdest thing is that this happens on 3 servers out of 4 in the > system. All configs are more or less identical.If that is the case, check the time sync on the servers. Make sure its in sync with the dc's. If all servers are in sync. How is user Administrator mapped to root, is this user_mapping done on that server? Greetz, Louis> -----Oorspronkelijk bericht----- > Van: samba [mailto:samba-bounces at lists.samba.org] Namens Krutskikh Ivan > Verzonden: vrijdag 27 november 2015 11:39 > Aan: samba > Onderwerp: [Samba] Failed to find authenticated user via getpwnam(), > denying access > > Hi, > > I have a very strange issue with samba as an ad member server. > > log.smbd goes: > > check_ntlm_password: Checking password for unmapped user > [TSNR]\[Administrator]@[ADMIN] with the new password interface > [2015/11/27 19:09:26.196960, 3] > ../source3/auth/auth.c:180(auth_check_ntlm_password) > check_ntlm_password: mapped user is: [TSNR]\[Administrator]@[ADMIN] > [2015/11/27 19:09:26.196993, 4] > ../source3/smbd/sec_ctx.c:216(push_sec_ctx) > push_sec_ctx(0, 0) : sec_ctx_stack_ndx = 1 > [2015/11/27 19:09:26.197021, 4] ../source3/smbd/uid.c:485(push_conn_ctx) > push_conn_ctx(0) : conn_ctx_stack_ndx = 0 > [2015/11/27 19:09:26.197046, 4] > ../source3/smbd/sec_ctx.c:316(set_sec_ctx) > setting sec ctx (0, 0) - sec_ctx_stack_ndx = 1 > [2015/11/27 19:09:26.201658, 4] > ../source3/smbd/sec_ctx.c:424(pop_sec_ctx) > pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0 > [2015/11/27 19:09:26.201780, 3] > ../source3/auth/auth_util.c:1247(check_account) > Failed to find authenticated user TSNR\administrator via getpwnam(), > denying access. > [2015/11/27 19:09:26.201846, 2] > ../source3/auth/auth.c:288(auth_check_ntlm_password) > check_ntlm_password: Authentication for user [Administrator] -> > [Administrator] FAILED with error NT_STATUS_NO_SUCH_USER > [2015/11/27 19:09:26.201893, 2] > ../auth/gensec/spnego.c:743(gensec_spnego_server_negTokenTarg) > SPNEGO login failed: NT_STATUS_NO_SUCH_USER > > wbinfo -g -u shows all my domain users and groups, domain uses rfc-2307 > and > all unix attrs are in place. > > The weirdest thing is that this happens on 3 servers out of 4 in the > system. All configs are more or less identical. > > Please help me narrow down this issue. > > Thanks in advance! > -- > To unsubscribe from this list go to the following URL and read the > instructions: https://lists.samba.org/mailman/options/samba
Possibly Parallel Threads
- unique index violation on objectSid on samba ad
- Cannot chown file to active directory user/group on member server
- Cannot chown file to active directory user/group on member server
- unique index violation on objectSid on samba ad
- sysvol acl's broken beyond repair