Displaying 9 results from an estimated 9 matches for "otherdom".
2017 Aug 22
2
Winbind with krb5auth for trust users
...and
> so on. Then changed all configs as adviced. The id mapping is working
> correctly (wbinfo -i) for local and trusted domain. But I still
> cannot logon with wbinfo -K with a trusted domain account.
>
You will probably need a couple more lines in smb.conf:
idmap config OTHERDOM : backend = rid
idmap config OTHERDOM : range = 2000001-3000000
Rowland
2003 May 29
1
Accessing printer from outside the domain
We need to give a user in another domain access to our printer:
our domain: OURDOM (samba)
other domain: OTHERDOM (AD?)
user's workstation: \\OTHERDOM\WKSTN, in other domain
printer: in our domain
user: JOEBLOW - an account in each domain with the same login/password
We're getting this error in wkstn.log:
[2003/05/28 20:44:20, 1] smbd/password.c:server_validate(1101)
password server is not co...
2017 Aug 22
0
Winbind with krb5auth for trust users
...nged all configs as adviced. The id mapping is working
>> correctly (wbinfo -i) for local and trusted domain. But I still
>> cannot logon with wbinfo -K with a trusted domain account.
>>
> You will probably need a couple more lines in smb.conf:
>
> idmap config OTHERDOM : backend = rid
> idmap config OTHERDOM : range = 2000001-3000000
>
> Rowland
>
2017 Aug 22
2
Winbind with krb5auth for trust users
...ced. The id mapping is working
>>> correctly (wbinfo -i) for local and trusted domain. But I still
>>> cannot logon with wbinfo -K with a trusted domain account.
>>>
>> You will probably need a couple more lines in smb.conf:
>>
>> idmap config OTHERDOM : backend = rid
>> idmap config OTHERDOM : range = 2000001-3000000
>>
>> Rowland
>>
>
>
>
2017 Aug 22
2
Winbind with krb5auth for trust users
See inline comments:
On Tue, 22 Aug 2017 12:20:04 +0200
Andreas Hauffe via samba <samba at lists.samba.org> wrote:
> Hi,
>
> hier are the file. I replaced the real domain/realm name by
> "search&replace", so there should not be a typping error in my file
> concernig the realm or domain names.
>
> Regards,
> Andreas
>
> client:~ # more
2006 Dec 05
1
Cannot connect to Samba-3.0.23d (and earlier) from other trusted AD domains
...rust. And yet people in those domains cannot login.
ntlm_auth - which uses winbind - is able to authenticate such accounts -
but it looks like Samba "doesn't care" what winbind thinks - it must be
blocking for another reason. The logs show Samba starts as expected by
looking up "otherDom\username", but it always falls back to doing
Get_Pwnam_internals calls to winbind on the username by itself, and
obviously receives a "no such user" error from winbind.
winbind settings in smb.conf are:
auth methods = winbind
winbind separator = \
winbind ca...
2016 Jul 11
2
Testing a forest trusts in Samba 4.4.5 AD environment
Hi List,
I am currently testing inter-forest trusts between a pair of AD domains.
All DCs and member servers are using Sernet Samba 4.4.5.
I have set up conditional forwarding in by Bind setup (I'm using
BIND9_DLZ) and all machines can resolve each other. On the DCs, I can
see users from the other side of the trust using wbinfo -u
--domain=<other domain>. In addition if I set up ID
2016 Jul 11
0
Testing a forest trusts in Samba 4.4.5 AD environment
...rectories served up by DCs
without the "DCs not available" issue, whereas with --type=forest I got
it even on DCs.
2) I can log in to a domain client W7 VM with an account from the trust
domain
However, I still can't see any accounts on Samba member servers via
wbinfo -u --domain=<otherdom>, or with getent, and now after adding
permissions on a directory in domain "AAA" to a user in "BBB", when I
check the properties->Security from a windows machine in domain BBB, the
ACL entry shows "Unknown SID", even though it is clearly a SID in Domain
"BB...
2016 Jul 12
2
Testing a forest trusts in Samba 4.4.5 AD environment
...thout the "DCs not available" issue, whereas with --type=forest I got
> it even on DCs.
> 2) I can log in to a domain client W7 VM with an account from the trust
> domain
>
> However, I still can't see any accounts on Samba member servers via
> wbinfo -u --domain=<otherdom>, or with getent, and now after adding
> permissions on a directory in domain "AAA" to a user in "BBB", when I
> check the properties->Security from a windows machine in domain BBB, the
> ACL entry shows "Unknown SID", even though it is clearly a SID in...