Billy Macdonald
2006-Mar-08 19:48 UTC
[Samba] Authentication problems during a Windows DC reboot
Hi, I currently have samba (samba-3.0.14a) on a fedora server (Fedora Core release 1 (Yarrow)). I use it only for NTLM authentication for squid ( squid-2.5.STABLE9). The samba service is joined to the AD domain and works great. However this morning the NT admin team needed to reboot two of our 11 domain controllers. During the time winbindd doesn't seem to have been able to switch to a different server and didn't stop working again until after we restarted winbindd. Is this expected? I tried searching the archives but didn't have much luck. Thanks, Billy smb.conf: global] workgroup = ******* netbios name = ****** winbind use default domain = yes winbind uid = 10000-20000 winbind gid = 10000-20000 winbind enum users = yes winbind enum groups = yes wins server = x.x.x.x security = ads realm = ******* domain master = no local master = no preferred master = no os level = 0
Thomas Limoncelli
2006-Mar-08 21:11 UTC
[Samba] Authentication problems during a Windows DC reboot
Billy Macdonald wrote:> The samba service is joined to the AD domain and works great. However > this morning the NT admin team needed to reboot two of our 11 domain > controllers. During the time winbindd doesn't seem to have been able to > switch to a different server and didn't stop working again until after we > restarted winbindd.What errors do you see in the winbindd log(s)? We've suffered similar problems with 3.0.21b and AFAIK they're now fixed in 3.0.21c (check the release notes for socket-related fixes). We'd need to see your log to tell whether your 3.0.14a problems are the same. BTW, what's the content of your krb5.conf (if any)? -TL