Displaying 20 results from an estimated 26 matches for "pam_auth_crap".
2015 Dec 16
2
Pam-logon failure for AD users
...and, I understand that there was a mess. and now i changed the
> smb.conf with the above as you instructed to be. But still i found same
> issue. I have two systems which connect to same AD. i found to different
> winbind logs. One uses pam_auth and other one which is not working uses
> pam_auth_crap while using pam logon. I browsed on this but unfortunately i
> am not able to find anything useful.
>
> May i know please, whats the difference between pam_auth and
> pam_auth_crap.
> may this would be the problem?
>
> could you please help me regarding this.
>
> Regar...
2015 Dec 16
1
Pam-logon failure for AD users
Thanks rowland, I understand that there was a mess. and now i changed the
smb.conf with the above as you instructed to be. But still i found same
issue. I have two systems which connect to same AD. i found to different
winbind logs. One uses pam_auth and other one which is not working uses
pam_auth_crap while using pam logon. I browsed on this but unfortunately i
am not able to find anything useful.
May i know please, whats the difference between pam_auth and pam_auth_crap.
may this would be the problem?
could you please help me regarding this.
Regards,
Vigneshdhanraj G
On Sat, Dec 12, 2015 a...
2015 Dec 17
0
Pam-logon failure for AD users
Hi,
I complied samba from source and i am using pam from debian. But, i
confused why pam uses pam_auth_crap instead of pam_auth.
may i know the basic difference between pam_auth and pam_auth_crap.
Regards,
Vigneshdhanraj G
On Wed, Dec 16, 2015 at 6:45 PM, L.P.H. van Belle <belle at bazuin.nl> wrote:
> I see 2 things here which are strange.
>
> Self compiled samba
> > >>...
2015 Dec 12
3
Pam-logon failure for AD users
...; Samba version : 4.1.17
>>>>
>>>> In winbindd.log i could see
>>>> [2015/11/03 11:59:46.377088, 10, pid=435, effective(0, 0), real(0, 0),
>>>> class=winbind] ../source3/winbindd/winbindd.c:755(wb_request_done)
>>>> wb_request_done[559:PAM_AUTH_CRAP]: NT_STATUS_ACCESS_DENIED
>>>>
>>>> My smb.conf is
>>>>
>>>> available= yes
>>>> restrict anonymous= 0
>>>> server string= LenovoEMC™ px6-300d
>>>> Workgroup= DOMAIN
>>>> netbios name= Debian
>>>...
2011 Sep 05
0
Problems with ntlm_auth and machines accounts
...se to client
process_request: request fn WINBINDD_PRIV_PIPE_DIR
[20000]: request location of privileged pipe
winbind_client_response_written[20000:WINBINDD_PRIV_PIPE_DIR]: delivered
response to client
accepted socket 27
closing socket 24, client exited
process_request: Handling async request 20000:PAM_AUTH_CRAP
[20000]: pam auth crap domain: [DOMAIN] user: machine$
child daemon request 14
child_process_request: request fn AUTH_CRAP
[19561]: pam auth crap domain: DOMAIN user: machine$
attempting to make a user_info for machine$ (machine$)
making strings for machine$'s user_info struct
making blobs for...
2015 Nov 03
2
Pam-logon failure for AD users
.... Ftp authentication using domain working fine. But,
Cifs showing ACCESS_DENIED error.
Samba version : 4.1.17
In winbindd.log i could see
[2015/11/03 11:59:46.377088, 10, pid=435, effective(0, 0), real(0, 0),
class=winbind] ../source3/winbindd/winbindd.c:755(wb_request_done)
wb_request_done[559:PAM_AUTH_CRAP]: NT_STATUS_ACCESS_DENIED
My smb.conf is
available= yes
restrict anonymous= 0
server string= LenovoEMC™ px6-300d
Workgroup= DOMAIN
netbios name= Debian
realm= DOMAIN.LOCAL
password server= 192.168.1.100, *
idmap backend= tdb
idmap uid= 5000-9999999
idmap gid= 5000-9999999
security= ADS
name resol...
2015 Dec 10
2
Pam-logon failure for AD users
...ing ACCESS_DENIED error.
>>
>> Samba version : 4.1.17
>>
>> In winbindd.log i could see
>> [2015/11/03 11:59:46.377088, 10, pid=435, effective(0, 0), real(0, 0),
>> class=winbind] ../source3/winbindd/winbindd.c:755(wb_request_done)
>> wb_request_done[559:PAM_AUTH_CRAP]: NT_STATUS_ACCESS_DENIED
>>
>> My smb.conf is
>>
>> available= yes
>> restrict anonymous= 0
>> server string= LenovoEMC™ px6-300d
>> Workgroup= DOMAIN
>> netbios name= Debian
>> realm= DOMAIN.LOCAL
>> password server= 192.168.1.100, *
>...
2015 Nov 03
0
Pam-logon failure for AD users
...ng fine. But,
> Cifs showing ACCESS_DENIED error.
>
> Samba version : 4.1.17
>
> In winbindd.log i could see
> [2015/11/03 11:59:46.377088, 10, pid=435, effective(0, 0), real(0, 0),
> class=winbind] ../source3/winbindd/winbindd.c:755(wb_request_done)
> wb_request_done[559:PAM_AUTH_CRAP]: NT_STATUS_ACCESS_DENIED
>
> My smb.conf is
>
> available= yes
> restrict anonymous= 0
> server string= LenovoEMC™ px6-300d
> Workgroup= DOMAIN
> netbios name= Debian
> realm= DOMAIN.LOCAL
> password server= 192.168.1.100, *
> idmap backend= tdb
> idmap uid= 500...
2012 Mar 15
0
winbindd requests failing with NT_STATUS_PIPE_BROKEN
...th a bigger winbindd
installation which causes all following winbindd requests to fail until
winbindd is restarted. We use a slightly patched version of winbindd
based on Samba 3.5.8. In the used setup the winbindd is joined to an AD
domain and is quite busy with answering winbindd requests of type
PAM_AUTH_CRAP, LOOKUPNAME, GETUSERSIDS, and LOOKUPSID. Several AD users
are member of more than 128 groups. In this production environment the
issue happens a few times a day, however in our development environment
the issue is unreproducible.
All observed occurrences have in common that we see following messag...
2020 Sep 10
2
Samba as member of DC - NT_STATUS_LOGON_FAILURE
...m_auth_pac_verify: PAC for user GALERNA\gcarballo SID
S-1-5-21-2104135160-127914087-578546287-1107 primed cache
[2020/09/10 17:15:13.116127, 10, pid=162, effective(0, 0), real(0, 0),
class=winbind] ../../source3/winbindd/winbindd.c:806(process_request_done)
process_request_done: [nss_winbind(450):PAM_AUTH_CRAP]: NT_STATUS_OK
[2020/09/10 17:15:13.116222, 10, pid=162, effective(0, 0), real(0, 0),
class=winbind] ../../source3/winbindd/winbindd.c:851(process_request_written)
process_request_written: [nss_winbind(450):PAM_AUTH_CRAP]: delivered
response to client
[2020/09/10 17:15:13.120611, 10, pid=162, eff...
2015 Dec 10
0
Pam-logon failure for AD users
...>>
>>> Samba version : 4.1.17
>>>
>>> In winbindd.log i could see
>>> [2015/11/03 11:59:46.377088, 10, pid=435, effective(0, 0), real(0, 0),
>>> class=winbind] ../source3/winbindd/winbindd.c:755(wb_request_done)
>>> wb_request_done[559:PAM_AUTH_CRAP]: NT_STATUS_ACCESS_DENIED
>>>
>>> My smb.conf is
>>>
>>> available= yes
>>> restrict anonymous= 0
>>> server string= LenovoEMC™ px6-300d
>>> Workgroup= DOMAIN
>>> netbios name= Debian
>>> realm= DOMAIN.LOCAL
>>&g...
2017 Oct 16
2
Samba 4.6.2 member server errors
...../source3/winbindd/winbindd.c:796(wb_request_done)
wb_request_done[58214:GETPWNAM]: NT_STATUS_NO_SUCH_USER
[2017/10/16 10:11:21.392982, 10, pid=1440, effective(0, 0), real(0, 0), class=winbind] ../source3/winbindd/winbindd.c:734(process_request)
process_request: Handling async request 58217:PAM_AUTH_CRAP
[2017/10/16 10:11:21.912764, 5, pid=1440, effective(0, 0), real(0, 0)] ../auth/kerberos/kerberos_pac.c:347(kerberos_decode_pac)
PAC Decode: Failed to verify the service signature: Invalid argument
[2017/10/16 10:11:21.912829, 5, pid=1440, effective(0, 0), real(0, 0)] ../auth/kerberos/kerberos_...
2015 Dec 12
0
Pam-logon failure for AD users
...In winbindd.log i could see
> [2015/11/03 11:59:46.377088, 10, pid=435, effective(0,
> 0), real(0, 0),
> class=winbind]
> ../source3/winbindd/winbindd.c:755(wb_request_done)
> wb_request_done[559:PAM_AUTH_CRAP]:
> NT_STATUS_ACCESS_DENIED
>
> My smb.conf is
>
> available= yes
> restrict anonymous= 0
> server string= LenovoEMC™ px6-300d
> Workgroup= DOMAIN
> netbios nam...
2016 Dec 20
2
samba 4.5.0 on hpux ia64: smbd not able to use domain users for file sharing
...3207-894445730-3307837412-513
result : NT_STATUS_OK
[ 6958]: pam auth crap domain: [CIFSDOM] user: gold
[2016/12/20 21:50:11.811213, 10, pid=6857, effective(0, 3), real(0, 3),
class=winbind] ../source3/winbindd/winbindd.c:800(wb_request_done)
wb_request_done[6958:PAM_AUTH_CRAP]: NT_STATUS_OK
[ 6959]: pam auth crap domain: [CIFSDOM] user: gold
[2016/12/20 21:50:14.166504, 10, pid=6857, effective(0, 3), real(0, 3),
class=winbind] ../source3/winbindd/winbindd.c:800(wb_request_done)
wb_request_done[6959:PAM_AUTH_CRAP]: NT_STATUS_OK
*logs for client machine:-*
DomainName...
2017 Oct 16
1
Samba 4.6.2 member server errors
...dd.c:796(wb_request_done)
> wb_request_done[58214:GETPWNAM]: NT_STATUS_NO_SUCH_USER
> [2017/10/16 10:11:21.392982, 10, pid=1440, effective(0, 0),
> real(0, 0), class=winbind]
> ../source3/winbindd/winbindd.c:734(process_request)
> process_request: Handling async request 58217:PAM_AUTH_CRAP
> [2017/10/16 10:11:21.912764, 5, pid=1440, effective(0, 0),
> real(0, 0)] ../auth/kerberos/kerberos_pac.c:347(kerberos_decode_pac)
> PAC Decode: Failed to verify the service signature:
> Invalid argument
> [2017/10/16 10:11:21.912829, 5, pid=1440, effective(0, 0),
> real(...
2025 Jan 24
1
Authenticating a user on domain member
...annelType": 0, "netlogonTrustAccountSid": null,
"passwordType": "NTLMv1", "clientPolicyAccessCheck": null,
"serverPolicyAccessCheck": null, "duration": 842}}
Finished processing child request 54
process_request_done: [ntlm_auth(78791):PAM_AUTH_CRAP]:
NT_STATUS_LOGON_FAILURE
2016 Dec 20
0
samba 4.5.0 on hpux ia64: smbd not able to use domain users for file sharing
...> result : NT_STATUS_OK
>
> [ 6958]: pam auth crap domain: [CIFSDOM] user: gold
> [2016/12/20 21:50:11.811213, 10, pid=6857, effective(0, 3), real(0,
> 3), class=winbind] ../source3/winbindd/winbindd.c:800(wb_request_done)
> wb_request_done[6958:PAM_AUTH_CRAP]: NT_STATUS_OK
> [ 6959]: pam auth crap domain: [CIFSDOM] user: gold
> [2016/12/20 21:50:14.166504, 10, pid=6857, effective(0, 3), real(0,
> 3), class=winbind] ../source3/winbindd/winbindd.c:800(wb_request_done)
> wb_request_done[6959:PAM_AUTH_CRAP]: NT_STATUS_OK
>
> *logs for...
2017 Oct 16
0
Samba 4.6.2 member server errors
...nbindd/winbindd.c:796(wb_request_done)
> wb_request_done[58214:GETPWNAM]: NT_STATUS_NO_SUCH_USER [2017/10/16
> 10:11:21.392982, 10, pid=1440, effective(0, 0), real(0, 0),
> class=winbind] ../source3/winbindd/winbindd.c:734(process_request)
> process_request: Handling async request 58217:PAM_AUTH_CRAP
> [2017/10/16 10:11:21.912764, 5, pid=1440, effective(0, 0), real(0,
> 0)] ../auth/kerberos/kerberos_pac.c:347(kerberos_decode_pac) PAC
> Decode: Failed to verify the service signature: Invalid argument
> [2017/10/16 10:11:21.912829, 5, pid=1440, effective(0, 0), real(0,
> 0)] ../a...
2016 Dec 20
2
samba 4.5.0 on hpux ia64: smbd not able to use domain users for file sharing
Hi ,
Below is the content of smb.conf file for ADS member.
[global]
password server = WIN2008.CIFSDOM.COM
client ldap sasl wrapping = plain
security = ADS
workgroup = CIFSDOM
realm = CIFSDOM.COM
guest account = smbnull
log file = /var/log/samba/%m.log
log level = 10
# Default idmap config used for BUILTIN and local accounts/groups
2017 Oct 15
4
Samba 4.6.2 member server errors
On Sat, 14 Oct 2017, Rowland Penny via samba wrote:
> On Sat, 14 Oct 2017 05:33:31 -0400 (EDT)
> me at tdiehl.org wrote:
>
>> On Fri, 13 Oct 2017, Rowland Penny via samba wrote:
>>
>>> On Fri, 13 Oct 2017 11:45:43 +0200
>>> "L.P.H. van Belle via samba" <samba at lists.samba.org> wrote:
>>>
>>>> Hai,
>>>>