search for: sid_to_uid

Displaying 20 results from an estimated 29 matches for "sid_to_uid".

Did you mean: sid_to_gid
2003 Jun 27
0
Problems with Ad and Winbind
...sync = Yes extract from winbindd.log when trying getent passwd - User Sascha is shown but mapping of Hugo fails. Hugo is a valid User in the AD! [2003/06/26 14:04:39, 1] nsswitch/winbindd_user.c:winbindd_getpwent(511) could not lookup domain user hugo [2003/06/26 14:04:39, 10] sam/idmap_util.c:sid_to_uid(219) sid_to_uid: sid = [S-1-5-21-484763869-1563985344-1343024091-1313] [2003/06/26 14:04:39, 10] sam/idmap_util.c:sid_to_uid(245) sid_to_uid: Fall back to algorithmic mapping [2003/06/26 14:04:39, 3] sam/idmap_util.c:sid_to_uid(248) sid_to_uid: SID S-1-5-21-484763869-1563985344-1343024091-131...
2003 Jun 27
2
Mapping User from ADS
...sers = yes unix password sync = Yes extract from winbindd.log when trying getent passwd - User Sascha is shown but mapping ofHugo fails! [2003/06/26 14:04:39, 1] nsswitch/winbindd_user.c:winbindd_getpwent(511) could not lookup domain user hugo [2003/06/26 14:04:39, 10] sam/idmap_util.c:sid_to_uid(219) sid_to_uid: sid = [S-1-5-21-484763869-1563985344-1343024091-1313] [2003/06/26 14:04:39, 10] sam/idmap_util.c:sid_to_uid(245) sid_to_uid: Fall back to algorithmic mapping [2003/06/26 14:04:39, 3] sam/idmap_util.c:sid_to_uid(248) sid_to_uid: SID S-1-5-21-484763869-1563985344-1343024091-131...
2012 Dec 06
0
SID_TO_UID not working
Hello everyone, I use winbind against a Samba DC for nsswich, and on one client it works perfectly (Samba 3.5.15 on all systems). On another client, everything works except SID_TO_UID (i.e. wbinfo -i, -S ... which breaks directory listings, too). I've now tried to narrow down the problem in a level 10 log, but I need some help interpreting. In log.winbindd, I see the following when running wbinfo -S S-1-5-21-555555555-5555555555-5555555555-3032 (SID changed): ===========...
2002 Sep 13
2
sid_to_uid: Domain controller lookup missing
Hi, trying to investigate my xfs-acl problem I think I have found the missing part: In smbd/uid.c the function "sid_to_uid" resolves SIDs to unix user names. This is done as follows: - First the domain part of the SID is compared to the local domain (if the SID belongs to the samba server it can be resolved locally) - In any other cases winbindd is asked This works well if the samba server is the domain contro...
2005 Jan 31
0
winbind: SID_TO_UID not working for trusted domains?
Hi all, I have a problem with the mapping sid -> uid. Setup: * Samba 3.0.10, security = ads, role is ads member server. * Several trusted domains * ADS is in sync with an Openldap server (posixAccount) * winbind must not use idmap (Because every Winuser already has an uid which is in ADs and on the Ldap server) Lets say we have one global domain GLOBAL and several subdomains A,B,C
2008 Jun 09
1
sid_to_uid/public share problem
...any user is supposed to be able to access. But no matter who I try to connect as, I get the dreaded: "NT_STATUS_NO_SUCH_USER". Important info: Samba version: 3.0.28a, OS: Kubuntu 8.04 Looking at the logs, I think the problem is here: auth/auth_util.c:create_token_from_username(1116) sid_to_uid for pcguest (S-1-5-21-1683542063-625151989-839735972-501) failed My smb guest account line is: guest account = pcguest The user does exist in the samba database (pdbedit -Lv pcguest): Unix username: pcguest NT username: Account Flags: [U ] User SID: S-1-5-21-16...
2004 Sep 21
1
SFU Samba Permission Denied
...nt log after turning the debug level to 10: [2004/09/21 15:06:46, 10] smbd/posix_acls.c:set_nt_acl(2990) set_nt_acl: called for file test1.txt [2004/09/21 15:06:46, 5] smbd/posix_acls.c:unpack_nt_owners(909) unpack_nt_owners: validating owner_sids. [2004/09/21 15:06:46, 10] passdb/lookup_sid.c:sid_to_uid(401) sid_to_uid: winbind lookup for non-local sid S-1-5-21-1951701912-1418144344-1147873810-2551 failed [2004/09/21 15:06:46, 3] smbd/posix_acls.c:unpack_nt_owners(927) unpack_nt_owners: unable to validate owner sid for S-1-5-21-1951701912-1418144344-1147873810-2551 unpack_nt_owners returns Fa...
2003 Sep 23
1
Need for UID 501 ???
....c:pdb_set_init_flags(477) element 25 -> now SET [2003/09/26 21:39:03, 10] passdb/pdb_get_set.c:pdb_set_init_flags(477) element 26 -> now SET [2003/09/26 21:39:03, 3] smbd/sec_ctx.c:pop_sec_ctx(386) pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0 [2003/09/26 21:39:03, 10] sam/idmap_util.c:sid_to_uid(219) sid_to_uid: sid = [S-1-5-21-1042031166-387543594-2118856591-501] [2003/09/26 21:39:03, 10] sam/idmap_util.c:sid_to_uid(231) sid_to_uid: uid = [65534] [2003/09/26 21:39:03, 10] sam/idmap_util.c:sid_to_gid(277) sid_to_gid: sid = [S-1-5-21-1042031166-387543594-2118856591-2001] [2003/09/2...
2007 May 21
1
3.0.25 breaks "username map"?
...t generates the following error: [2007/05/21 13:18:11, 10] passdb/lookup_sid.c:lookup_name(64) lookup_name: Unix User\jhaar => Unix User (domain), jhaar (name) [2007/05/21 13:18:11, 10] lib/util_pw.c:getpwnam_alloc(76) Got jhaar from pwnam_cache [2007/05/21 13:18:11, 5] passdb/lookup_sid.c:sid_to_uid(1401) winbind failed to find a uid for sid S-1-22-1-500 [2007/05/21 13:18:11, 1] auth/auth_util.c:create_token_from_username(1110) sid_to_uid for jhaar (S-1-22-1-500) failed [2007/05/21 13:18:11, 10] auth/auth_ntlmssp.c:auth_ntlmssp_check_password(131) create_local_token failed [2007/05/21 13...
2003 Jan 09
0
Taking ownership of files on NT/2k
...mbd/posix_acls.c:unpack_nt_owners(433) unpack_nt_owners: validating owner_sids. [2003/01/09 12:24:52, 10] nsswitch/wb_client.c:winbind_lookup_sid(111) winbind_lookup_sid: SUCCESS: SID S-1-5-21-1881940921-547036892-925700815-500 -> BEDROCK Administrator [2003/01/09 12:24:52, 10] smbd/uid.c:sid_to_uid(657) sid_to_uid: winbindd S-1-5-21-1881940921-547036892-925700815-500 -> 10012 [2003/01/09 12:24:52, 5] smbd/posix_acls.c:unpack_nt_owners(474) unpack_nt_owners: owner_sids validated. [2003/01/09 12:24:52, 3] smbd/posix_acls.c:set_nt_acl(2215) set_nt_acl: chown Corp Services/mytestdir....
2007 May 08
0
Two Permissions Issues: null session shares and group membership
.../access.c:(312) check_access: no hostnames in host allow/deny list. [2007/05/08 13:16:16, 2] lib/access.c:(323) Allowed connection from (10.3.10.3) .... [2007/05/08 13:16:16, 3] smbd/sec_ctx.c:(356) pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0 [2007/05/08 13:16:16, 1] auth/auth_util.c:(1110) sid_to_uid for nobody (S-1-22-1-60001) failed [2007/05/08 13:16:16, 3] smbd/error.c:(106) error packet at smbd/reply.c(514) cmd=117 (SMBtconX) NT_STATUS_NO_SUCH_USER [2007/05/08 13:16:16, 3] smbd/process.c:(1068) Transaction 4 of length 43 [2007/05/08 13:16:16, 3] smbd/process.c:(926) switch message SMB...
2007 Jun 18
0
(no subject)
...this example - user1, old 38916 -> new 38901) I get the access denied error with the following in logs (level 10, some private data masked): [2007/06/18 16:22:33, 5] smbd/posix_acls.c:unpack_nt_owners(919) unpack_nt_owners: validating owner_sids. [2007/06/18 16:22:33, 10] passdb/lookup_sid.c:sid_to_uid(407) sid_to_uid: winbind lookup for non-local sid S-1-5-21-XXXXXXXXXX-XXXXXXXXX-XXXXXXXXXX-XXXXX failed [2007/06/18 16:22:33, 3] passdb/lookup_sid.c:fetch_gid_from_cache(253) fetch gid from cache 38916 -> S-1-5-21-273419216-XXXXXXXXX-XXXXXXXXXX-XXXXX [2007/06/18 16:22:33, 5] smbd/posix_acls....
2004 Feb 28
1
Possible bug with ACL handling after NT user migration
...has lost write permission and some group has got full access instead. The GID of this (possible not even existing) group is exactly the result of the RID algorithm calculation. My brief investigations indicate that the function create_canon_ace_lists() from posix_acls.c calls both sid_to_gid() and sid_to_uid() in turn with the same SID just to try if it matches in one case or the other. Unfortunately, sid_to_gid() falls back to algorithmic mapping and in the case shown above it succeeds to calculate a gid out of the migrated users RID. Turning off algorithmic rid caluculation in general would solve th...
2004 Sep 22
1
idmap_ad: sid to uid conversion fails
....c:winbind_client_read(465) read failed on sock 22, pid 8303: EOF [2004/09/22 12:10:32, 10] nsswitch/winbindd.c:winbind_client_read(458) client_read: read 1824 bytes. Need 0 more for a full request. [2004/09/22 12:10:32, 10] nsswitch/winbindd.c:process_request(308) process_request: request fn SID_TO_UID [2004/09/22 12:10:32, 3] nsswitch/winbindd_sid.c:winbindd_sid_to_uid(128) [ 8303]: sid to uid <sid of some_user> [2004/09/22 12:10:32, 1] nsswitch/winbindd_sid.c:winbindd_sid_to_uid(200) Could not get uid for sid <sid of some_user> [2004/09/22 12:10:32, 10] nsswitch/winbindd.c:clien...
2004 Oct 28
0
Permission denied creating Clearcase view on Samba share.
...04/10/27 17:36:41, 5] smbd/posix_acls.c:(903) unpack_nt_owners: validating owner_sids. [2004/10/27 17:36:41, 10] nsswitch/wb_client.c:(98) winbind_lookup_sid: SUCCESS: SID S-1-5-21-555165157-1185895069-398547282-1628 -> VICORP Nick.Button [2004/10/27 17:36:41, 10] passdb/lookup_sid.c:(418) sid_to_uid: winbind failed to allocate a new uid for sid S-1-5-21-555165157-11 85895069-398547282-1628 [2004/10/27 17:36:41, 3] smbd/posix_acls.c:(921) unpack_nt_owners: unable to validate owner sid for S-1-5-21-555165157-11858950 69-398547282-1628 [2004/10/27 17:36:41, 5] smbd/files.c:(385) freed files s...
2015 Apr 23
3
Samba 4 slow write
On Thu, Apr 23, 2015 at 06:05:42PM +0800, Jones Syue wrote: > Hello Ervin, > > The in-memory cache lookup could be added back into > samba-4.1.6 by applying the attached patch, > if it could be compiled with Louis how-to steps, Patch didn't make it to the list. Can you point to a URL or ftp site containing the patch ?
2015 May 29
3
Samba 4 slow write
...atures or something new. > Loop Michael too, > if could help review and comment that will be great help, > thank you. OK, this functionality got moved into idmap_cache_find_XXXX() functions which allow smbd to look directly into the winbindd idmap cache via the uid_to_sid(), gid_to_sid(), sid_to_uid(), sid_to_gid() and sids_to_unixids() functions. These functions explicitly look inside the gencache tdb used for all generic caching (with expiry time) inside Samba, so this should be pretty efficient. Does this extra layer of in-memory caching really make such a difference on top of the caching...
2003 Nov 20
0
Windows 2K Offline files
...0070 sub_auths : 00000020 00000221 [2003/11/20 22:57:34, 10] smbd/posix_acls.c:set_nt_acl(2177) set_nt_acl: called for file 800000B0 [2003/11/20 22:57:34, 5] smbd/posix_acls.c:unpack_nt_owners(433) unpack_nt_owners: validating owner_sids. [2003/11/20 22:57:34, 10] smbd/uid.c:sid_to_uid(628) sid_to_uid: winbind lookup for sid S-1-5-32-544 failed - trying local. [2003/11/20 22:57:34, 3] smbd/posix_acls.c:unpack_nt_owners(449) unpack_nt_owners: unable to validate owner sid for S-1-5-32-544. [2003/11/20 22:57:34, 10] locking/locking.c:del_share_entry(604) del_share_entry: num_s...
2020 May 14
4
Users loose supplementary groups after a time
...me.c:120(Get_Pwnam_internals) Trying _Get_Pwnam(), username as lowercase is domain\user [2020/05/12 13:13:29.395740, 5] ../../source3/lib/username.c:159(Get_Pwnam_internals) Get_Pwnam_internals did find user [DOMAIN\user]! [2020/05/12 13:13:29.399159, 5] ../../source3/passdb/lookup_sid.c:1400(sid_to_uid) winbind failed to find a uid for sid S-1-5-21-DOMIAN_SID though I think that is to be expected at this point as we are not using winbind idmapping to map AD users, but rather we have an IPA - AD trust and so have local unix users already. On a successful connection/session we will see: [2020...
2019 Jan 08
2
Users created in last few years cannot login after 4.7 -> 4.8 + winbind
...config PARTNERS:backend = ad idmap config PARTNERS:schema_mode = rfc2307 idmap config PARTNERS:range = 1000-9999999 idmap config PARTNERS:unix_primary_group = yes so all 3 accounts are covered in the 1000-9999999 range. Failure will have a message like: winbindd case, sid_to_uid for S-1-5-21-8915387-943144406-1916815836-949594 failed which is the SID of in the corporate AD of the user I was trying. [root:/var/log/samba]# wbinfo --sid-to-name=S-1-5-21-8915387-943144406-1916815836-949594 PARTNERS\nmr27 1 The above wbinfo always seems to work, so I don't know why it...