Displaying 20 results from an estimated 48 matches for "winbindd_dual_pam_auth".
2008 Feb 13
1
Problem with winbind not seeing a user as part of a group
...? Has anyone else seen this?
Here is what is going on in the /var/log/samba/log.wb-NA (our domain) log at that time for that user.
[2008/02/12 18:54:52, 10] nsswitch/winbindd_dual.c:child_process_request(479)
process_request: request fn PAM_AUTH
[2008/02/12 18:54:52, 3] nsswitch/winbindd_pam.c:winbindd_dual_pam_auth(1341)
[10824]: dual pam auth NA\selltc
[2008/02/12 18:54:52, 10] nsswitch/winbindd_pam.c:winbindd_dual_pam_auth(1364)
winbindd_dual_pam_auth: domain: NA last was online
[2008/02/12 18:54:52, 10] nsswitch/winbindd_pam.c:winbindd_dual_pam_auth_samlogon(1127)
winbindd_dual_pam_auth_samlogon
[200...
2014 Sep 30
1
fillup_password_policy fails with NT_STATUS_ACCESS_DENIED, samba 3.4.3
...10]
winbindd/winbindd_cache.c:492(refresh_sequence_number)
refresh_sequence_number: NAMDEV time ok
[2014/09/30 03:15:26, 10]
winbindd/winbindd_cache.c:537(refresh_sequence_number)
refresh_sequence_number: NAMDEV seq number is now 100149701
[2014/09/30 03:15:26, 10]
winbindd/winbindd_pam.c:1713(winbindd_dual_pam_auth)
Failed to get password policies for domain NAMDEV: NT_STATUS_ACCESS_DENIED
[2014/09/30 03:15:26, 2]
winbindd/winbindd_pam.c:1733(winbindd_dual_pam_auth)
Plain-text authentication for user namdev\user74 returned
NT_STATUS_ACCESS_DENIED (PAM: 4)
Is there way to workaround to not fetch password...
2006 Apr 26
1
Bad Password
...ed 0 more for a full request.
[2006/04/26 11:09:17, 4] nsswitch/winbindd_dual.c:fork_domain_child(486)
child daemon request 12
[2006/04/26 11:09:17, 10]
nsswitch/winbindd_dual.c:child_process_request(359)
process_request: request fn PAM_AUTH
[2006/04/26 11:09:17, 3]
nsswitch/winbindd_pam.c:winbindd_dual_pam_auth(252)
[ 8465]: pam auth NA\trimblrd
[2006/04/26 11:09:17, 3]
nsswitch/winbindd_pam.c:winbindd_dual_pam_auth(400)
winbindd_pam_auth: sam_logon returned ACCESS_DENIED. Maybe the trust
account password was changed and we didn't know it. Killing connections
to domain NA
[2006/04/26 11:09:17...
2013 Sep 17
1
S4-Winbind dumping core on password
...938, 10, pid=10086, effective(0, 0), real(0, 0), class=winbind] ../source3/winbindd/winbindd_dual.c:440(child_process_request)
? child_process_request: request fn PAM_AUTH
[2013/09/17 17:52:27.866962,? 3, pid=10086, effective(0, 0), real(0, 0), class=winbind] ../source3/winbindd/winbindd_pam.c:1611(winbindd_dual_pam_auth)
? [10057]: dual pam auth MYDOMAIN\myusername
[2013/09/17 17:52:27.866990, 10, pid=10086, effective(0, 0), real(0, 0), class=winbind] ../source3/winbindd/winbindd_pam.c:1653(winbindd_dual_pam_auth)
? winbindd_dual_pam_auth: domain: MYDOMAIN last was online
[2013/09/17 17:52:27.867012, 10, pid=10086...
2015 May 12
1
[Solved] A working CUPS authentication now fails without change anything...
Greetings, Daniel Carrasco Mar?n!
>> > Cups calls pam authentication, and pam use winbind then I need to give
>> > permissions to winbind daemon but i don't know what account is using that
>> > daemon. How i can see it?, because ps aux shows the most as root.
>>
>> winbind normally have access to Kerberos keytab by default.
>> I see no reason why
2010 Apr 13
1
unexplaind log entry
...mb_krb5_get_ntstatus_from_krb5_error_init_creds_opt)
no krb5_error
[2010/04/13 15:40:17, 1] libads/authdata.c:401(kerberos_return_pac)
kinit failed for 'admin at domain.COM' with: Client not found in Kerberos database (-1765328378)
[2010/04/13 15:40:17, 2] winbindd/winbindd_pam.c:1730(winbindd_dual_pam_auth)
Plain-text authentication for user admin returned NT_STATUS_NO_SUCH_USER (PAM: 10)
Taken from /var/log/samba/log.wb-domainname
This seems to be a recurring event as it shows an entry 15 odd times a second!!
Any ideas guys?
Thanking you all for your time :)
________________________________...
2006 Dec 14
1
winbindd_raw_kerberos_login: kinit failed
...rity = ads and rfc2307.
At every login there is a log message in log.wb-MYDOMAIN :
[2006/12/14 17:46:51, 1]
nsswitch/winbindd_pam.c:winbindd_raw_kerberos_login(510)
winbindd_raw_kerberos_login: kinit failed for 'myuser@MYDOMAIN.COM'
with: Invalid argument (22)
with debug level 10:
winbindd_dual_pam_auth: domain: MYDOMAIN last was online
winbindd_dual_pam_auth_kerberos
is_myname("MYDOMAIN") returns 0
using ccache: FILE:/tmp/krb5cc_55555
winbindd_raw_kerberos_login: uid is 55555
kerberos_kinit_password: using FILE:/tmp/krb5cc_55555 as ccache
winbindd_raw_kerberos_login: kinit failed for ...
2020 Oct 12
2
samba AD problem after re-join domain
...DC. ? Winbind is unhappy about something, but I just can't figure
out what that is.? On the DC, I can still query all the users, groups, etc.
?? I enabled log level 3 and get:
[2020/10/11 21:33:45.426469,? 3, pid=3637, effective(0, 0), real(0, 0)]
../../source3/winbindd/winbindd_pam.c:2089(winbindd_dual_pam_auth)
? [ 3635]: dual pam auth EECSYORKUCA\jas
[2020/10/11 21:33:45.498701,? 1, pid=3637, effective(1004, 0),
real(1004, 0)] ../../source3/libads/authdata.c:177(kerberos_return_pac)
? kinit failed for 'jas at AD.EECS.YORKU.CA' with: Preauthentication
failed (-1765328360)
[2020/10/11 21:33:45...
2015 May 04
3
A working CUPS authentication now fails without change anything...
...17:38:41 print winbindd[1702]: #11
/usr/lib/x86_64-linux-gnu/libgensec.so.0(gensec_start_mech_by_oid+0x2e)
[0x7fe24523fb3e]
May 4 17:38:41 print winbindd[1702]: #12
/usr/sbin/winbindd(kerberos_return_pac+0x491) [0x7fe248dcbd61]
May 4 17:38:41 print winbindd[1702]: #13
/usr/sbin/winbindd(winbindd_dual_pam_auth+0xab8) [0x7fe248df3558]
May 4 17:38:41 print winbindd[1702]: #14 /usr/sbin/winbindd(+0x663bc)
[0x7fe248e093bc]
May 4 17:38:41 print winbindd[1702]: #15
/usr/lib/x86_64-linux-gnu/libtevent.so.0(+0x986b) [0x7fe24227386b]
May 4 17:38:41 print winbindd[1702]: #16
/usr/lib/x86_64-linux-gnu/l...
2014 Apr 26
1
SIGSEGV with pam_winbind kerberos authentication
...[0x7f4b0e226a82]
#11 /usr/lib/x86_64-linux-gnu/samba/libgensec.so.0(gensec_start_mech+0x11e)
[0x7f4b0f27b3f8]
#12 /usr/lib/x86_64-linux-gnu/samba/libgensec.so.0(gensec_start_mech_by_oid+0xe1)
[0x7f4b0f27b79e]
#13 /usr/sbin/winbindd(kerberos_return_pac+0x62d) [0x7f4b12efb98d]
#14 /usr/sbin/winbindd(winbindd_dual_pam_auth+0x70b) [0x7f4b12f0f7e7]
#15 /usr/sbin/winbindd(+0x5b370) [0x7f4b12f28370]
#16 /usr/sbin/winbindd(+0x5b60d) [0x7f4b12f2860d]
#17 /usr/lib/x86_64-linux-gnu/samba/libtevent.so.0(+0x4f3b) [0x7f4b11e07f3b]
#18 /usr/lib/x86_64-linux-gnu/samba/libtevent.so.0(tevent_common_loop_immediate+0x133)
[0x7f4b11e0...
2010 Oct 20
1
Samba 3.5.6 pam problems
...nam.c:55(winbindd_getpwnam_send)
getpwnam testuser
[2010/10/20 12:41:59.717221, 3]
winbindd/winbindd_getpwnam.c:55(winbindd_getpwnam_send)
getpwnam testuser
log.wb-SAMBATEST (the name of the windows dc) logs the following errors:
[2010/10/20 12:43:15.749729, 3]
winbindd/winbindd_pam.c:1466(winbindd_dual_pam_auth)
[ 2769]: dual pam auth SAMBATEST+testuser
[2010/10/20 12:43:15.750852, 2]
winbindd/winbindd_pam.c:1722(winbindd_dual_pam_auth)
Plain-text authentication for user SAMBATEST\testuser returned
NT_STATUS_NO_SUCH_USER (PAM: 10)
I've tried using ssh -l testuser and ssh -l SAMBATEST+testuser,...
2008 Aug 01
1
Samba 3.0.31 stills fails to read and write to socket.
...response for pid 25745, len 3240
[2008/07/31 10:03:35, 4] nsswitch/winbindd_dual.c:fork_domain_child(1080)
child daemon request 12
[2008/07/31 10:03:35, 10]
nsswitch/winbindd_dual.c:child_process_request(479)
process_request: request fn PAM_AUTH
[2008/07/31 10:03:35, 3]
nsswitch/winbindd_pam.c:winbindd_dual_pam_auth(1341)
[ 4429]: dual pam auth OTHERDOMAIN\accountxyz
[2008/07/31 10:03:35, 10]
nsswitch/winbindd_pam.c:winbindd_dual_pam_auth(1364)
winbindd_dual_pam_auth: domain: OTHERDOMAIN last was online
[2008/07/31 10:03:35, 10]
nsswitch/winbindd_pam.c:winbindd_dual_pam_auth_kerberos(1048)
winbindd_dual_...
2015 May 04
0
A working CUPS authentication now fails without change anything...
...: #11
> /usr/lib/x86_64-linux-gnu/libgensec.so.0(gensec_start_mech_by_oid+0x2e)
> [0x7fe24523fb3e]
> May 4 17:38:41 print winbindd[1702]: #12
> /usr/sbin/winbindd(kerberos_return_pac+0x491) [0x7fe248dcbd61]
> May 4 17:38:41 print winbindd[1702]: #13
> /usr/sbin/winbindd(winbindd_dual_pam_auth+0xab8) [0x7fe248df3558]
> May 4 17:38:41 print winbindd[1702]: #14 /usr/sbin/winbindd(+0x663bc)
> [0x7fe248e093bc]
> May 4 17:38:41 print winbindd[1702]: #15
> /usr/lib/x86_64-linux-gnu/libtevent.so.0(+0x986b) [0x7fe24227386b]
> May 4 17:38:41 print winbindd[1702]: #16
&g...
2010 Apr 21
3
net ads testjoin failed but net rpc testjoin work
Hello,
I have a very strange trouble with samba 3.0.33 when I integrate a Linux
server in my Windows 2003 AD.
I do :
- kinit administartor, it's work.
- klist, it's work too.
- net join ads -U administrator, it's work. I hev the message that my
computer has join the domain and I see the Linux in my Domain.
- wbinfo -t give me "checking the trust secret via RPC calls
2015 May 04
3
A working CUPS authentication now fails without change anything...
...ib/x86_64-linux-gnu/libgensec.so.0(gensec_start_mech_by_oid+0x2e)
>> [0x7fe24523fb3e]
>> May 4 17:38:41 print winbindd[1702]: #12
>> /usr/sbin/winbindd(kerberos_return_pac+0x491) [0x7fe248dcbd61]
>> May 4 17:38:41 print winbindd[1702]: #13
>> /usr/sbin/winbindd(winbindd_dual_pam_auth+0xab8) [0x7fe248df3558]
>> May 4 17:38:41 print winbindd[1702]: #14 /usr/sbin/winbindd(+0x663bc)
>> [0x7fe248e093bc]
>> May 4 17:38:41 print winbindd[1702]: #15
>> /usr/lib/x86_64-linux-gnu/libtevent.so.0(+0x986b) [0x7fe24227386b]
>> May 4 17:38:41 print winbi...
2010 Aug 17
1
NT_STATUS_INVALID_HANDLE with wbinfo -a
...prompted, etc.) If I use WRONGDOMAIN+user the error does change to
NT_STATUS_NO_SUCH_USER, but DOMAIN+wronguser still gives INVALID_HANDLE.
The only log entries that seem to correlate to these attempts are in
/var/log/log.wb-DOMAIN:
[2010/08/17 10:52:48.288391, 2]
winbindd/winbindd_pam.c:1724(winbindd_dual_pam_auth)
Plain-text authentication for user DOMAIN+user returned
NT_STATUS_INVALID_HANDLE (PAM: 4)
[2010/08/17 10:52:55.887613, 2]
winbindd/winbindd_pam.c:2003(winbindd_dual_pam_auth_crap)
NTLM CRAP authentication for user [DOMAIN]\[user] returned
NT_STATUS_INVALID_HANDLE (PAM: 4)
I'll incl...
2020 Sep 16
5
Adding user to group doesn't propagate?
...hing.28883/
> - https://www.ixsystems.com/community/threads/ad-group-memberships-wont-update.63404/
>
> Possibly related Samba source code:
> - wcache_invalidate_samlogon() [1] "Invalidate the getpwnam and
> getgroups entries for a winbindd domain": Called only from
> - winbindd_dual_pam_auth
> - winbind_dual_SamLogon
>
>
> [1]: https://gitlab.com/samba-team/samba/-/blob/03f79a3bd71bc7a0a401d5f19560e831251d32b7/source3/winbindd/winbindd_cache.c#L3056
Does anyone have any tips on how to circumvent this problem? I have
almost daily group membership-changes, and sometimes wa...
2014 Nov 13
1
coredump while loggin in on SSH with a user ( with UID )
...bindd[12690]:??? #11 /usr/lib/x86_64-linux-gnu/libgensec.so.0(gensec_start_mech_by_oid+0x26) [0x7f78eb033d96]
Nov 13 16:57:03 rtd-printsvr1 winbindd[12690]:??? #12 /usr/sbin/winbindd(kerberos_return_pac+0x42c) [0x7f78eebbac3c]
Nov 13 16:57:03 rtd-printsvr1 winbindd[12690]:??? #13 /usr/sbin/winbindd(winbindd_dual_pam_auth+0x1150) [0x7f78eebe0530]
Nov 13 16:57:03 rtd-printsvr1 winbindd[12690]:??? #14 /usr/sbin/winbindd(+0x5fcec) [0x7f78eebf4cec]
Nov 13 16:57:03 rtd-printsvr1 winbindd[12690]:??? #15 /usr/lib/x86_64-linux-gnu/libtevent.so.0(+0x92cb) [0x7f78e80652cb]
Nov 13 16:57:03 rtd-printsvr1 winbindd[12690]:??? #16...
2020 Sep 17
2
Adding user to group doesn't propagate?
...com/community/threads/ad-group-memberships-wont-update.63404/
>>>
>>> Possibly related Samba source code:
>>> - wcache_invalidate_samlogon() [1] "Invalidate the getpwnam and
>>> getgroups entries for a winbindd domain": Called only from
>>> ?- winbindd_dual_pam_auth
>>> ?- winbind_dual_SamLogon
>>>
>>>
>>> [1]:
>>> https://gitlab.com/samba-team/samba/-/blob/03f79a3bd71bc7a0a401d5f19560e831251d32b7/source3/winbindd/winbindd_cache.c#L3056
>>
>> Does anyone have any tips on how to circumvent this proble...
2015 Aug 18
1
winbindd and pam error
...eab2]
Aug 18 14:46:31 medea winbindd[707]: #11
/usr/lib/x86_64-linux-gnu/libgensec.so.0(gensec_start_mech_by_oid+0x26)
[0x7fcc564fed96]
Aug 18 14:46:31 medea winbindd[707]: #12
/usr/sbin/winbindd(kerberos_return_pac+0x42c) [0x7fcc5a288cac]
Aug 18 14:46:31 medea winbindd[707]: #13
/usr/sbin/winbindd(winbindd_dual_pam_auth+0x1150) [0x7fcc5a2ae5a0]
Aug 18 14:46:31 medea winbindd[707]: #14 /usr/sbin/winbindd(+0x5fd5c)
[0x7fcc5a2c2d5c]
Aug 18 14:46:31 medea winbindd[707]: #15
/usr/lib/x86_64-linux-gnu/libtevent.so.0(+0x92cb) [0x7fcc535312cb]
Aug 18 14:46:31 medea winbindd[707]: #16
/usr/lib/x86_64-linux-gnu/libtevent.so...