search for: doain

Displaying 5 results from an estimated 5 matches for "doain".

Did you mean: domain
2018 Mar 22
2
[SamLogon, network] vs [Kerberos KDC, ENC-TS Pre-authentication]
Hi, This is just curiosity. We are monitoring failed logons, and there seem to be three types: - LDAP,simple bind/TLS (obious, failed ldap logons) and these two: - SamLogon,network - Kerberos KDC,ENC-TS Pre-authentication Could someone explain what (the difference between) these two types is? Google doesn't really seem to help. MJ
2018 Mar 26
1
[SamLogon, network] vs [Kerberos KDC, ENC-TS Pre-authentication]
...in joined workstation No, that would be SamLogon,interactive. SamLogon,network is NTLM authentication accessing another server in the domain (in general). > - Kerberos KDC,ENC-TS Pre-authentication is something like: an already > logged on user accessing another server within the same AD doain No, that is most likely a user getting their first ticket on logon. I'm glad to hear you are making good use of the audit log feature. I hope this helps, Andrew Bartlett -- Andrew Bartlett http://samba.org/~abartlet/ Authentication Developer, Samba Team http://sa...
2013 Dec 03
2
winbind when machine account is not allowed to read users from ad
...grant read access to the user list for the machine account. Only each user can read his own entry. Due to the privacy police this behaviour can not be changed. How do I tell winbind to use the user account to look up the user and not use the machine account. Kerberos is working fine: kinit user at DOAIN.NET gives a ticket. Also ntlm_auth is also working: ntlm_auth --username=USER -> NT_STATUS_OK: Success (0x0) wbinfo -u only show local users and old (deprecated) domain users. wbinfo -g works normal. (groups are readable by machine accounts) For idmap we use the rid mechanism. Has anybody a h...
2005 Apr 25
1
root passwd not working anymore
...o get an answer for this one, I have a working samba PDC with LDAP backend, recently i tried to add a W2k Workstation to the domain using root account and it returned with a wrong password, but i am able to login using the same account to the server, I've tried changing the password to join the doain and it worked again, but I'd like to know what made the password unable to join machines to the domain anymore, here is the level 10 log from the machine that failed to join with the old password NT user token: (NULL) [2005/04/23 08:51:32, 5] auth/auth_util.c:debug_unix_user_token(505) UNI...
2006 Nov 01
0
ADS and Winbind problems with joining domain and listing users/ groups
Hi I am having trouble joining a Samba 3.0.22 (Ubuntu 6.06) machine to an AD. I have done a heap of googling and can't find anything that seems to fix the problem. This sequence of commands shows the problem (I have now tried to join the doain a number of times hence the modifying old account): # net ads join [2006/11/01 15:32:56, 0] libads/ldap.c:ads_add_machine_acct(1414) ads_add_machine_acct: Host account for mail already exists - modifying old account Using short domain name -- SERVICES Joined 'MAIL' to realm 'SERVICES...