search for: sam_account_ok

Displaying 20 results from an estimated 76 matches for "sam_account_ok".

2007 Nov 15
2
Strange NT_STATUS_PASSWORD errors after upgrade to 3.0.26a
Hi, I just upgraded one of our samba BDC's (with LDAP back end on solaris 10) from 3.0.23c to 3.0.26a and can no longer mount shares. The error message I'm seeing in the samba logs is [2007/11/15 14:15:26, 1] auth/auth_sam.c:sam_account_ok(172) sam_account_ok: Account for user 'dbb' password must change!. [2007/11/15 14:15:26, 3] auth/auth_winbind.c:check_winbind_security(80) check_winbind_security: Not using winbind, requested domain [CLASSROOM] was for this SAM. [2007/11/15 14:15:26, 2] auth/auth.c:check_ntlm_password(...
2008 Mar 15
0
sam_account_ok: Account for user 'user' password must change!
Hi all, After trying to migrate an LDAP based domain controller from an old RHEL4 machine to RHEL5.1 (running samba-3.0.26b), none of my users are still able to log in. The logfiles reveal this: [2008/03/15 21:12:50, 1] auth/auth_sam.c:sam_account_ok(172) sam_account_ok: Account for user 'minfrin' password must change!. [2008/03/15 21:12:50, 1] auth/auth_sam.c:sam_account_ok(172) sam_account_ok: Account for user 'minfrin' password must change!. [2008/03/15 21:12:50, 1] auth/auth_sam.c:sam_account_ok(172) sam_account_ok:...
2011 Feb 24
2
NT_STATUS_NOLOGON_WORKSTATION_TRUST_ACCOUNT
...eresting attributes ] But whenever we try to authenticate it fails and we have the following log: Primary group is 0 and contains 0 supplementary groups [2011/02/24 13:52:31, 3] smbd/sec_ctx.c:pop_sec_ctx(356) pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0 [2011/02/24 13:52:31, 2] auth/auth_sam.c:sam_account_ok(235) sam_account_ok: Wksta trust account liferay$ denied by server [2011/02/24 13:52:31, 5] auth/auth.c:check_ntlm_password(273) check_ntlm_password: sam authentication for user [liferay$] FAILED with error NT_STATUS_NOLOGON_WORKSTATION_TRUST_ACCOUNT [2011/02/24 13:52:31, 3] auth/auth_winbind.c...
2005 Jun 09
1
PDC with LDAP backend login issue
...[2005/06/06 05:36:24, 3] auth/auth.c:check_ntlm_password(222) check_ntlm_password: mapped user is: [NDSDOM]\[testuser3]@[SCLXPWD4104] [2005/06/06 05:36:24, 2] passdb/pdb_ldap.c:init_sam_from_ldap(499) init_sam_from_ldap: Entry found for user: testuser3 [2005/06/06 05:36:24, 4] auth/auth_sam.c:sam_account_ok(119) sam_account_ok: Checking SMB password for user testuser3 [2005/06/06 05:36:24, 1] auth/auth_util.c:make_server_info_sam(840) User testuser3 in passdb, but getpwnam() fails! [2005/06/06 05:36:24, 0] auth/auth_sam.c:check_sam_security(324) check_sam_security: make_server_info_sam() failed...
2024 Mar 09
3
Cannot Get Samba to Work Without Encrypted Password with Legacy Client
...at https://github.com/samba-team/samba/blob/master/source3/auth/auth.c#L214 (and below) but I still can't understand why one Samba client can connect, but the other can't. I can't understand why, with one client, the code would go into "check_samsec.c:183" (and return "sam_account_ok") while, with the other client, the code would go immediately into "auth.c:251" (and fail to login). Could you help me understand, which could maybe give me an idea on configuring Samba for both client to work? Thanks in advance, Yann PS. I'm running *** CAN CONNECT: [202...
2014 Oct 24
1
Changing user account passwords using smbpasswd after password expiration
...10/24 14:34:08.679942, 11] passdb/pdb_ldap.c:4040(ldapsam_get_account_policy) ldapsam_get_account_policy: got valid value from cache [2014/10/24 14:34:08.679982, 4] smbd/sec_ctx.c:422(pop_sec_ctx) pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0 [2014/10/24 14:34:08.680020, 1] auth/check_samsec.c:224(sam_account_ok) sam_account_ok: Account for user 'USERNAME' password expired! [2014/10/24 14:34:08.680062, 1] auth/check_samsec.c:225(sam_account_ok) sam_account_ok: Password expired at 'Fri, 24 Oct 2014 13:05:40 JST' (1414123540) unix time. [2014/10/24 14:34:08.680108, 5] auth/auth.c:271(chec...
2006 Dec 14
0
Machine account keep expiring
...orks was made on january) and every 10/12 days the workstations go out from the domain. The user can't log, and when i try logging with administrator It ask me to change him password. So I must unjoin the workstation from the domain and join again. on log files i found that: auth/auth_sam.c:sam_account_ok(159) sam_account_ok: Account for user 'administrator' password expired!. [2006/10/12 18:00:18, 1] auth/auth_sam.c:sam_account_ok(160) sam_account_ok: Password expired at 'Thu, 27 Apr 2006 13:55:38 GMT' (1146138938) unix time. account expires! Pdbedit writes down: Unix userna...
2006 Dec 15
0
Machine accounts keep expiring
...orks was made on january) and every 10/12 days the workstations go out from the domain. The user can't log, and when i try logging with administrator It ask me to change him password. So I must unjoin the workstation from the domain and join again. on log files i found that: auth/auth_sam.c:sam_account_ok(159) sam_account_ok: Account for user 'administrator' password expired!. [2006/10/12 18:00:18, 1] auth/auth_sam.c:sam_account_ok(160) sam_account_ok: Password expired at 'Thu, 27 Apr 2006 13:55:38 GMT' (1146138938) unix time. account expires! Pdbedit writes down: Unix username...
2007 Jan 31
1
Cannot change expired password
I have a samba PDC set up and configured. I have been doing tests and everything was working fine. I was able to set "User must change password" to today's date and it would prompt the user that their password has expired when logging into windows xp. I could then enter a new password and be on my way. Now when I set the password to "User must change password", when I
2008 Mar 05
1
Strange NT_STATUS_PASSWORD errors after upgrade to 3.0.26a
> I just upgraded one of our samba BDC's (with LDAP back end on > solaris 10) from 3.0.23c to > 3.0.26a and can no longer mount shares. > > The error message I'm seeing in the samba logs is > > [2007/11/15 14:15:26, 1] auth/auth_sam.c:sam_account_ok(172) > sam_account_ok: Account for user 'dbb' password must change!. > [2007/11/15 14:15:26, 3] auth/auth_winbind.c:check_winbind_security(80) > check_winbind_security: Not using winbind, requested domain > [CLASSROOM] was for this SAM. > [2007/11/15 14:15:26, 2] auth/au...
2008 Aug 04
1
Problem establishing interdomain trust
...p: Entry found for group: 513 [2008/08/04 02:31:25, 5] passdb/pdb_interface.c:pdb_default_lookup_rids(1621) lookup_rids: Domain Users:2 [2008/08/04 02:31:25, 4] libsmb/ntlm_check.c:ntlm_password_check(328) ntlm_password_check: Checking NT MD4 password [2008/08/04 02:31:25, 4] auth/auth_sam.c:sam_account_ok(137) sam_account_ok: Checking SMB password for user fundus$ [2008/08/04 02:31:25, 5] auth/auth_sam.c:logon_hours_ok(119) logon_hours_ok: user fundus$ allowed to logon at this time (Mon Aug 4 00:31:25 2008 ) [2008/08/04 02:31:25, 2] auth/auth_sam.c:sam_account_ok(223) sam_account_ok: Doma...
2011 Jul 14
1
Problem adding new users after upgrade to 3.4.0
...026]: pam_smbpass(passwd:chauthtok): password for (smbuser/1001) changed by (root/0) ...And authentication over smb works (auth.log): Jul 13 21:42:53 server smbd[3684]: pam_unix(samba:session): session opened for user ben by (uid=0) ...In samba.log: [2011/07/13 21:42:53, 4] auth/auth_sam.c:137(sam_account_ok) sam_account_ok: Checking SMB password for user smbuser [2011/07/13 21:42:53, 5] auth/auth.c:297(check_ntlm_password) check_ntlm_password: PAM Account for user [ben] succeeded However, if I do: smbpasswd -x user Failed to find entry for user smbuser. If I add a new user using: useradd new...
2004 Feb 06
0
Restrict logon to groups of workstations II
...urn NT_STATUS_NO_MEMORY; if (*workstation_list) { BOOL invalid_ws = True; const char *s = workstation_list; ! fstring tok; ! ! while (next_token(&s, tok, ",", sizeof(tok))) { ! DEBUG(10,("sam_account_ok: checking for workstation match %s and %s (len=%d)\n", ! tok, user_info->wksta_name.str, user_info->wksta_name.len)); ! if(strequal(tok, user_info->wksta_name.str)) { invalid_ws = False; -...
2003 Jun 09
0
Samba 3.0.0beta1, NT4 Joining a Domain Problems
...) setting sec ctx (0, 0) - sec_ctx_stack_ndx = 1 [2003/06/08 20:49:35, 3] smbd/sec_ctx.c:pop_sec_ctx(386) pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0 [2003/06/08 20:49:35, 4] auth/auth_sam.c:sam_password_ok(217) sam_password_ok: Checking NT MD4 password [2003/06/08 20:49:35, 4] auth/auth_sam.c:sam_account_ok(323) sam_account_ok: Checking SMB password for user root [2003/06/08 20:49:35, 0] auth/auth_sam.c:check_sam_security(458) check_sam_security: make_server_info_sam() failed with 'NT_STATUS_UNSUCCESSFUL' [2003/06/08 20:49:35, 2] auth/auth.c:check_ntlm_password(295) check_ntlm_password:...
2003 Dec 06
1
Samba3.0.1pre3 LDAP Login problem
...))" ber_flush: 14 bytes to sd 16 conn=1 op=1 SEARCH RESULT tag=101 err=0 text= conn=-1 fd=9 closed conn=-1 fd=16 closed Now goes the SAMBA log : [2003/12/06 00:37:23, 4] auth/auth_sam.c:sam_password_ok(224) sam_password_ok: Checking NT MD4 password [2003/12/06 00:37:23, 4] auth/auth_sam.c:sam_account_ok(325) sam_account_ok: Checking SMB password for user ADMINAM [2003/12/06 00:37:23, 1] auth/auth_util.c:make_server_info_sam(821) User ADMINAM in passdb, but getpwnam() fails! [2003/12/06 00:37:23, 5] auth/auth_util.c:free_server_info(1251) attempting to free (and zero) a server_info structu...
2009 Dec 07
2
Windows 7 + Samba domain issues
Hi all, Earlier I emailed the list on some issues I was having with Windows 7, and one of those issues was the trust relationship breaking down after one month. I think I have some more light to shed on this topic. First, some environmental facts I am running Ubuntu Karmic 9.10 with Samba 3.4.0-3ubuntu5.1 I have installed the latest LDAP schema into OpenLDAP 2.4.18-0ubuntu1 I have a working
2011 Jul 01
2
Win7 - Samba 3.5.4 trust relationship
...lenge created by NTLMSSP callback (NTLM2) [2011/06/30 14:31:25.322693, 10] auth/auth.c:230(check_ntlm_password) challenge is: [2011/06/30 14:31:25.322717, 10] auth/auth.c:256(check_ntlm_password) check_ntlm_password: guest had nothing to say [2011/06/30 14:31:25.327291, 4] auth/auth_sam.c:180(sam_account_ok) sam_account_ok: Checking SMB password for user TESTMACHINE$ [2011/06/30 14:31:25.327439, 5] auth/auth_sam.c:162(logon_hours_ok) logon_hours_ok: user TESTMACHINE$ allowed to logon at this time (Thu Jun 30 11:31:25 2011 ) [2011/06/30 14:31:25.382399, 5] auth/auth_util.c:649(make_server_inf...
2016 May 10
1
homes in Samba 3.5
...autolock_flag) pdb_update_autolock_flag: Account testuser not autolocked, no check needed [2016/05/10 08:37:30.878292, 3] auth/auth_sam.c:55(sam_password_ok) Account for user 'testuser' has no password and null passwords are allowed. [2016/05/10 08:37:30.878300, 4] auth/auth_sam.c:180(sam_account_ok) sam_account_ok: Checking SMB password for user testuser [2016/05/10 08:37:30.878311, 5] auth/auth_sam.c:162(logon_hours_ok) logon_hours_ok: user testuser allowed to logon at this time (Tue May 10 06:37:30 2016 ) ... [2016/05/10 08:37:30.878496, 3] auth/auth.c:265(check_ntlm_password) che...
2003 Aug 08
2
Can a user belong to two groups in Samba ???
Hi, I'm using samba 3b3 (+ldapsam) and have created a user belonging to two groups : - his primary group is mapped to the "Domain Users" Windows group, - his secondary one is mapped to the "Domain Admins" Windows group. Unfortunately, only the first group seems to be known by Samba, since the user doesn't become a "Domain Admin" at all (but he is a
2005 Aug 31
0
Samba+ldap : can't join to domain
...66) ldap_connect_system: succesful connection to the LDAP server ldap_connect_system: LDAP server does support paged results [2005/08/31 14:49:16, 2] passdb/pdb_ldap.c:init_sam_from_ldap(499) init_sam_from_ldap: Entry found for user: root (...cut...) [2005/08/31 14:49:16, 4] auth/auth_sam.c:sam_account_ok(119) sam_account_ok: Checking SMB password for user root [2005/08/31 14:49:16, 5] auth/auth_sam.c:logon_hours_ok(101) logon_hours_ok: user root allowed to logon at this time (Wed Aug 31 14:49:16 2005 ) (...cut...) [2005/08/31 14:49:16, 4] passdb/pdb_ldap.c:ldapsam_getgroup(2106) ldapsam_g...