search for: ldap_utils

Displaying 20 results from an estimated 72 matches for "ldap_utils".

2016 Oct 04
0
Fwd: Winbind Preauthentication failed
...:51 fs1 winbindd[31235]: kerberos_kinit_password FS1$@DOMAIN.LOCAL failed: Preauthentication failed # LOG WINBIND ------------------------------------------------------------ ------------------------------------------------------------------- [2016/09/29 09:37:46.941460, 1] ../source3/libads/ldap_utils. c:91(ads_do_search_retry_internal) Reducing LDAP page size from 1000 to 500 due to IO_TIMEOUT [2016/09/29 11:07:58.809921, 1] ../source3/libads/ldap_utils. c:91(ads_do_search_retry_internal) Reducing LDAP page size from 500 to 250 due to IO_TIMEOUT [2016/09/29 13:32:16.102572, 1] ../source3/...
2007 Nov 05
0
Samba 3.0.26a, windows 2k3 r2 SFU, problems with auth/nss
...sc.c:winbindd_priv_pipe_dir(524) [ 1462]: request location of privileged pipe [2007/11/05 10:02:31, 3] nsswitch/winbindd_user.c:winbindd_list_users(754) [ 1462]: list users [2007/11/05 10:02:31, 3] nsswitch/winbindd_ads.c:query_user_list(169) ads: query_user_list [2007/11/05 10:02:31, 5] libads/ldap_utils.c:ads_do_search_retry_internal(64) Search for (objectCategory=user) in <dc=GUTHRIESOUND,dc=ORG> gave 29 replies [2007/11/05 10:02:31, 5] libads/ldap_utils.c:ads_do_search_retry_internal(64) Search for (|(attributeId=1.2.840.113556.1.6.18.1.310)(attributeId=1.2.840.113556.1.6.18.1.311)(at...
2007 Apr 30
0
winbind's libads/ldap_utils.c repeatedly says 'failed to reconnect (Timed out)'
...o is still accessible; it just can't figure out what groups a person is in. I'm using idmap backend = ad , and winbind nss info = sfu. Looking in /var/log/samba/log.wb-ADDOMAINNAME, I see many lines at seemingly randomly time intervals that read like this: [2007/04/30 04:30:16, 1] libads/ldap_utils.c:ads_do_search_retry(77) ads_search_retry: failed to reconnect (Timed out) Are these lines related to my need to restart winbind? Either way, are they indicative of a problem that should be fixed? If so, any idea how to fix the probem? Thanks, Jon Relevant smb.conf directives follow:...
2008 Jun 01
2
Winbind issue
...ads.c:query_user_list(209) Not a user account? atype=0x30000000 [2008/06/01 00:16:31, 1] nsswitch/winbindd_ads.c:query_user_list(209) Not a user account? atype=0x30000000 [2008/06/01 00:17:53, 1] nsswitch/idmap.c:idmap_init(377) Initializing idmap domains [2008/06/01 00:17:53, 1] libads/ldap_utils.c:ads_do_search_retry_internal(115) ads reopen failed after error Referral [2008/06/01 00:17:53, 1] libads/ldap_utils.c:ads_do_search_retry_internal(115) ads reopen failed after error Referral [2008/06/01 00:17:54, 1] libads/ldap_utils.c:ads_do_search_retry_internal(115) ads reopen faile...
2020 Mar 02
2
Samba slow AD authentication eventually succeed
Hello, I have a customer that complains about slow AD authentication when accessing the share, eventually succeed (Samba is a DC memer) In the logs I can see the following errors: [2020/02/24 14:11:16.775884,? 1] ../source3/libads/ldap_utils.c:93(ads_do_search_retry_internal) ? Reducing LDAP page size from 1000 to 500 due to IO_TIMEOUT [2020/02/24 14:11:16.775902,? 3] ../source3/libads/ldap_utils.c:102(ads_do_search_retry_internal) ? Reopening ads connection to realm 'PFIN.CH' after error Time limit exceeded [2020/02/25 09...
2020 Oct 12
2
samba AD problem after re-join domain
...=36145, effective(0, 0), real(0, 0)] ../../source3/rpc_client/cli_pipe.c:422(cli_pipe_validate_current_pdu) ? ../../source3/rpc_client/cli_pipe.c:422: Bind NACK received from host dc1.ad.eecs.yorku.ca! [2020/10/12 09:44:11.598150,? 1, pid=36145, effective(0, 0), real(0, 0)] ../../source3/libads/ldap_utils.c:93(ads_do_search_retry_internal) ? Reducing LDAP page size from 1000 to 500 due to IO_TIMEOUT (Which is strange because this means that if you reboot he DC, then the clients start talking slower to it when it comes back up?? I don't think the number ever increases unless you restart winbi...
2003 Jul 23
1
Samba 3.0 beta 3 issues
...f the groups mentioned ("AIM User Group" etc.) are valid groups in our domain. Some more winbind errors from the other day when the server failed: [2003/07/21 11:06:00, 1] nsswitch/winbindd_util.c:rescan_trusted_domains(167) scanning trusted domain list [2003/07/21 11:10:00, 1] libads/ldap_utils.c:ads_do_search_retry(76) ads reopen failed after error Success [2003/07/21 11:10:00, 1] libads/ads_ldap.c:ads_name_to_sid(64) name_to_sid: root not found [2003/07/21 11:10:00, 1] nsswitch/winbindd_group.c:winbindd_getgroups(947) user 'root' does not exist [2003/07/21 11:10:59, 1] lib...
2003 Dec 02
2
Problem with , in Common Name when running samba3 as ADS Member (Problem with Group-Contents)
...dd_cache.c:lookup_groupmem(1236) lookup_groupmem: [Cached] - doing backend query for info for domain TOPALISWORLD [2003/12/02 12:24:24, 10] nsswitch/winbindd_ads.c:lookup_groupmem(697) ads: lookup_groupmem TOPALISWORLD sid=S-1-5-21-525015883-470239122-8547516-513 [2003/12/02 12:24:24, 5] libads/ldap_utils.c:ads_do_search_retry(52) Search for (objectSid=\01\05\00\00\00\00\00\05\15\00\00\00\4B\1B\4B\1F\92\47\07\1C\BC\6C\82\00\01\02\00\00) gave 1 replies [2003/12/02 12:24:24, 3] nsswitch/winbindd_ads.c:dn_lookup(361) ads: dn_lookup [2003/12/02 12:24:24, 5] libads/ldap_utils.c:ads_do_search_retry(52...
2003 May 12
3
winbind crash
...libads/sasl.c:ads_sasl_spnego_bind(183) got OID=1 2 840 113554 1 2 2 3 [2003/05/12 14:08:24, 3] libads/sasl.c:ads_sasl_spnego_bind(183) got OID=1 3 6 1 4 1 311 2 2 10 [2003/05/12 14:08:24, 3] libads/sasl.c:ads_sasl_spnego_bind(190) got principal=fozzy$@CJNTECH [2003/05/12 14:08:24, 1] libads/ldap_utils.c:ads_do_search_retry(76) ads reopen failed after error Success winbindd: ../../../libraries/libldap/getvalues.c:36: ldap_get_values: Assertion `entry != ((void *)0)' failed. Any ideas? Cheers, Paul --------------------------------------------------------- Paul Eggleton Ph...
2020 Oct 12
1
samba AD problem after re-join domain
...t; ../../source3/rpc_client/cli_pipe.c:422(cli_pipe_validate_current_pdu) >> ? ../../source3/rpc_client/cli_pipe.c:422: Bind NACK received from >> host dc1.ad.eecs.yorku.ca! >> [2020/10/12 09:44:11.598150,? 1, pid=36145, effective(0, 0), real(0, >> 0)] ../../source3/libads/ldap_utils.c:93(ads_do_search_retry_internal) >> ? Reducing LDAP page size from 1000 to 500 due to IO_TIMEOUT >> >> (Which is strange because this means that if you reboot he DC, then >> the clients start talking slower to it when it comes back up?? I >> don't think the num...
2003 Apr 17
0
winbindd crashing/stopping
...is the same account in both entries. Any help would be appreciated. got principal=KDC@DOMAIN [2003/04/16 16:16:47, 3] libads/ldap.c:ads_do_paged_search(500) ldap_search_ext_s((distinguishedName=***AD Domain User Account***)) -> Can't contact LDAP server [2003/04/16 16:16:47, 3] libads/ldap_utils.c:ads_do_search_retry(60) Reopening ads connection to realm 'DOMAIN' after error Can't contact LDAP server [2003/04/16 16:16:47, 5] libads/ldap.c:ads_try_connect(53) ads_try_connect: trying ldap server 'KDC' port 389 [2003/04/16 16:16:47, 3] libads/ldap.c:ads_connect(267)...
2016 Apr 15
3
Domain member seems to work, wbinfo -u not
...6.591090,  3, pid=2873, effective(0, 0), real(0, 0)] ../source3/libads/ldap.c:904(ads_do_paged_search_args)   ads_do_paged_search_args: ldap_search_with_timeout((objectCategory=user)) -> Time limit exceeded [2016/04/14 12:17:26.591143,  1, pid=2873, effective(0, 0), real(0, 0)] ../source3/libads/ldap_utils.c:135(ads_do_search_retry_internal)   ads reopen failed after error Time limit exceeded [2016/04/14 12:17:26.591154,  1, pid=2873, effective(0, 0), real(0, 0), class=winbind] ../source3/winbindd/winbindd_ads.c:319(query_user_list)   query_user_list ads_search: Time limit exceeded [2016/04/14 12:17:...
2012 Sep 24
3
"Out of Memory error
...3.5.10 and i have a big quantity of errors in logs : [2012/09/24 16:01:29.248286, 1] winbindd/winbindd_ads.c:728(lookup_usergroups_memberof) lookup_usergroups_memberof ads_search member=CN=TESTDD,OU=Villeurbanne,OU=ExEA,DC=ELIOTT,DC=fr: Out of memory [2012/09/24 16:03:38.498533, 1] libads/ldap_utils.c:323(ads_ranged_search_internal) could not pull first usnChanged! [2012/09/24 16:03:38.498615, 1] winbindd/winbindd_ads.c:728(lookup_usergroups_memberof) lookup_usergroups_memberof ads_search member=CN=Victor,OU=utilisateurs,OU=Siege,OU=ExEA,DC=ELIOTT=fr: Out of memory [2012/09/24 17:01:...
2003 Sep 15
1
winbindd using FQDN domain name now?
...vel 5) from an XP Home box (not a domain member): [2003/09/15 15:46:49, 3] nsswitch/winbindd_user.c:winbindd_getpwnam(112) [ 6439]: getpwnam genosha-neil [2003/09/15 15:46:49, 3] nsswitch/winbindd_ads.c:sequence_number(778) ads: fetch sequence_number for GENOSHA [2003/09/15 15:46:49, 5] libads/ldap_utils.c:ads_do_search_retry(52) Search for (objectclass=*) gave 1 replies [2003/09/15 15:46:49, 3] nsswitch/winbindd_ads.c:name_to_sid(312) ads: name_to_sid [2003/09/15 15:46:49, 5] libads/ldap_utils.c:ads_do_search_retry(52) Search for (|(sAMAccountName=neil)(userPrincipalName=neil@GENOSHA.ENFUSIO...
2019 Jul 16
2
samba 4.8 client and 4.9 AD DC: Reducing LDAP page size from 1000 to 500 due to IO_TIMEOUT
...ile = /usr/local/samba/private/tls/dc1.key.pem tls certfile = /usr/local/samba/private/tls/dc1.cert.pem tls cafile = /usr/local/samba/private/tls/ca-chain.cert.pem apply group policies = yes winbind log from file server: [2019/07/16 16:45:38.693115, 1] ../source3/libads/ldap_utils.c:93(ads_do_search_retry_internal) Reducing LDAP page size from 1000 to 500 due to IO_TIMEOUT [2019/07/16 16:45:38.758657, 1] ../source3/libads/ldap_utils.c:111(ads_do_search_retry_internal) ads_search_retry: failed to reconnect (No logon servers are currently available to service the logon re...
2020 Oct 12
0
samba AD problem after re-join domain
...0, > 0)] > ../../source3/rpc_client/cli_pipe.c:422(cli_pipe_validate_current_pdu) > ? ../../source3/rpc_client/cli_pipe.c:422: Bind NACK received from > host dc1.ad.eecs.yorku.ca! > [2020/10/12 09:44:11.598150,? 1, pid=36145, effective(0, 0), real(0, > 0)] ../../source3/libads/ldap_utils.c:93(ads_do_search_retry_internal) > ? Reducing LDAP page size from 1000 to 500 due to IO_TIMEOUT > > (Which is strange because this means that if you reboot he DC, then > the clients start talking slower to it when it comes back up?? I don't > think the number ever increases u...
2003 Oct 01
1
3.0.0, winbind issues
...OID=1 3 6 1 4 1 311 2 2 10 [2003/10/02 04:49:00, 3] libads/sasl.c:ads_sasl_spnego_bind(191) got principal=fozzy$@CJNTECH [2003/10/02 04:49:00, 3] libads/ldap.c:ads_do_paged_search(451) ldap_search_ext_s((objectCategory=group)) -> Can't contact LDAP server [2003/10/02 04:49:00, 3] libads/ldap_utils.c:ads_do_search_retry(60) Reopening ads connection to realm 'CJNTECH' after error Can't contact LDAP server [2003/10/02 04:49:00, 3] libads/ldap.c:ads_connect(218) Connected to LDAP server 192.168.55.6 [2003/10/02 04:49:00, 3] libads/ldap.c:ads_server_info(1886) got ldap server na...
2013 Jan 14
0
Solaris 11.1 + Samba 3.6.6 + ads + getent group - a bug, perhaps?
...turns domain users perfectly. What I *can't* seem to do is getent group in any way, shape or form. My /etc/nsswitch.conf is sane: passwd: files winbind group: files winbind hosts: files dns ipnodes: file When I do try to getent group, I see: [2013/01/14 20:03:36.835081, 1, pid=788] libads/ldap_utils.c:134(ads_do_search_retry_internal) ads reopen failed after error Timelimit exceeded [2013/01/14 20:03:36.835209, 1, pid=788] libads/ldap_utils.c:315(ads_ranged_search_internal) ads_search: Timelimit exceeded [2013/01/14 20:03:36.835261, 0, pid=788] winbindd/winbindd_ads.c:1084(lookup_groupme...
2004 Jan 07
0
Samba3.0.1pre1 winbind failing against domain groups(ADS)
...tch/winbindd_misc.c:winbindd_domain_info(219) [23792]: domain_info [LABOR.AK] [2004/01/07 13:20:43, 3] nsswitch/winbindd_user.c:winbindd_getpwnam(113) [23792]: getpwnam labor\tim [2004/01/07 13:20:43, 3] nsswitch/winbindd_ads.c:name_to_sid(313) ads: name_to_sid [2004/01/07 13:20:43, 5] libads/ldap_utils.c:ads_do_search_retry(56) Search for (|(sAMAccountName=tim)(userPrincipalName=tim@LABOR.AK)) gave 1 replies [2004/01/07 13:20:43, 3] libads/ads_ldap.c:ads_name_to_sid(82) ads name_to_sid mapped tim [2004/01/07 13:20:43, 3] nsswitch/winbindd_group.c:winbindd_getgroups(932) [23792]: getgroups L...
2008 Nov 19
0
File sharing is ok, but new ADS user validation is not ok
...008/11/19 13:12:41, 3] winbindd/winbindd_ads.c:query_user(426) ads: query_user [2008/11/19 13:12:41, 3] libads/ldap.c:ads_do_paged_search_args(779) ads_do_paged_search_args: ldap_search_with_timeout((objectSid=\01\05\00...)) -> Can't contact LDAP server [2008/11/19 13:12:41, 3] libads/ldap_utils.c:ads_do_search_retry_internal(76) Reopening ads connection to realm 'ADS.IU.EDU' after error Can't contact LDAP server [2008/11/19 13:12:41, 3] libsmb/namequery.c:get_dc_list(1909) get_dc_list: preferred server list: "iu-mssg-adsdc06.ads.iu.edu, ads.iu.edu" [2008/11/19 1...