Hello. Time after time users can not log in in domain and im see this in logs(time stamps deleted): nmbd/nmbd_logonnames.c:become_logon_server_success(124) become_logon_server_success: Samba is now a logon server for workgroup HQ on subnet 172.16.1.3 ...skipping... nmbd/nmbd_incomingrequests.c:process_name_release_request(80) process_name_release_request: unicast name release request received for name PRINTER901<00> from IP 172.16.1.252 on subnet UNICAST_SUBNET. Error - should be sent to WINS server nmbd/nmbd_namequery.c:query_name_response(109) query_name_response: Multiple (2) responses received for a query on subnet 172.16.1.3 for name HQ<1d>. This response was from IP 172.16.1.40, reporting an IP address of 172.16.1.40. nmbd/nmbd_workgroupdb.c:dump_workgroups(282) dump_workgroups() dump workgroup on subnet 172.16.1.3: netmask= 255.255.255.0: HQ(1) current master browser = USACHEV-SV SAMBA 40809b3b (Samba Server) nmbd/nmbd_workgroupdb.c:dump_workgroups(282) dump_workgroups() dump workgroup on subnet UNICAST_SUBNET: netmask= 0.0.0.0: HQ(1) current master browser = UNKNOWN SAMBA 40809b3b (Samba Server) param/loadparm.c:set_server_role(4303) Server's Role (logon server) NOT ADVISED with domain-level security nmbd/nmbd_workgroupdb.c:dump_workgroups(282) dump_workgroups() dump workgroup on subnet 172.16.1.3: netmask= 255.255.255.0: HQ(1) current master browser = USACHEV-SV SAMBA 40809b3b (Samba Server) nmbd/nmbd_workgroupdb.c:dump_workgroups(282) dump_workgroups() dump workgroup on subnet UNICAST_SUBNET: netmask= 0.0.0.0: HQ(1) current master browser = UNKNOWN SAMBA 40809b3b (Samba Server) 172.16.1.40 = USACHEV-SV = WinXP SP2 How it become master browser??? Why? Im have such scheme: OS: FreeBSD-6.3 PDC + Master LDAP: smb.conf: [global] # Base workgroup = hq netbios name = dc server string = DC Server security = domain hosts allow = 172.16.1. 192.168.1. 127. encrypt passwords = yes admin users = admin time server = yes # LOG log file = /var/log/samba/log.%m max log size = 500 # LDAP passdb backend = ldapsam:ldap://localhost/ ldap suffix = ou=Samba,dc=fxclub,dc=org ldap user suffix = ou=Users ldap group suffix = ou=Groups ldap machine suffix = ou=Computers ldap admin dn = "cn=root,dc=fxclub,dc=org" ldap delete dn = no ldap ssl = off # Tuning socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192 # PDC local master = yes os level = 64 domain master = yes preferred master = yes domain logons = yes # Roaming profiles diabled logon path # WINS wins support = yes winbind use default domain = yes winbind separator = + dns proxy = no # Charset settings display charset = koi8-r unix charset = koi8-r dos charset = cp866 # Use inherited ACLs for directories nt acl support = yes inherit acls = yes map acl inherit = yes *scripts to add users,computers, etc* BDC + Slave LDAP smb.conf: only difference from PDC: # BDC local master = no os level = 50 domain master = no preferred master = no domain logons = yes # WINS wins support = no wins server = 172.16.1.2 remote announce = 172.16.1.2/hq -- Best regards, Proskurin Kirill