Displaying 20 results from an estimated 2000 matches similar to: "failed login, NT_STATUS_PASSWORD_MUST_CHANGE"
2004 Aug 13
0
Not creating home directory for domain member at KDE login
I've added the pam changes that use winbind to authenticate users against
the domain controller. I see all of the domain users in the graphical
login, but when a user logs in who hasn't logged in before, the new home
directory (/etc/DOMAIN/<userid>) isn't either being created or it's being
created with permissions that don't allow files to be written under the user
id.
2003 Jul 18
1
pam_winbind.so
Hi all,
I am having a problem with pam_winbind.so. Is there
any documentation that tells exactly what each module
with pam_winbind.so does? In other words, what does
the auth section do, what does the account section
do??? When I try to authenticate, the auth section in
login pam seems to pass successfully, but the account
section seems to fail. Here is my login module
auth required
2004 Dec 17
0
losing NT4 WAN trust domains with samba-3.0.8+
If I use any of the binary packages for SuSE SLES9 greater than 3.0.7
I can not see some of my NT4 trust domain via winbind.
We have 5 regular NT 4 domains that trust each other. Two of them our
within our LAN (local subnet), one of these domains the samba machine
is within ... security = domain.
There's another 5 domains that are setup for our AD enviroment for
exchange, mixed mode. Using
2004 Dec 21
1
Winbind problem revisited
Okay,
I started over from scratch with my samba server rebuild, but I am still
getting some weird issues. Here are my config files of importance:
--------------/etc/samba/smb.conf--------------------
# Samba Configuration File
[global]
workgroup = WAYNE
realm = WAYNE.LOCAL
server string = Samba Server
security = ADS
password server =
2003 Jun 24
0
smb.conf suse 8.2 samba 3 beta cvs pdc german umlauts working
hi @ll
this is working smb.conf samba beta 3 cvs version 22 jun from ftp.suse.com
suse 8.2 minimal inst with additional glib locale , client win2000 serv pack
3 german
umlauts work in windows ( after all for ? you see on linux etc)
the name of machine is linux.linux.org
a bind 9 is on the linux machine too to make dns resolving
login domain works
roaming profile works
netlogon script works
2005 Oct 26
2
ADS + Samba
Hello Samba list!
I have installed samba, joined it to the AD domain (lets say EXAMPLE.COM)
and can auth against it with kinit.
There are also 2 domains that we have a trust established with. Lets say
trust1 and trust2.
When I do a wbinfo -u I get:
Trust1+username
Trust2+username
I get nothing from the local domain.
I have a share set up for testing, but I cannot access it at all, I get
2009 Mar 13
1
[ADS]Trust relationship 'expires'
Hi folks,
I have an issue that has me shaking my head.
Once a workstation has made the initial connection to a host, things
seem to work well for a day or so. However, if the resource hasn't been
accessed in a while, and then a connection is retried, this following
message is returned:
"\\hostname is not accessible. You might not have permission to use this
network resource. Contact
2005 Jan 12
0
winbind - New DOMAIN but old DOMAIN not CHANGING .URGENT
Hi,
We just imported (moved) all our staff from the old w2k domain to the
new w2k3 domain. Say their accounts and passwords
From STAFF domain to say NEW. Seems winbind is keeping the old domain
users.
I'm using winbind for squid auth on Mandrake linux 10.0
samba-client-3.0.10-0.1.100mdk
samba-winbind-3.0.10-0.1.100mdk
samba-doc-3.0.10-0.1.100mdk
samba-common-3.0.10-0.1.100mdk
2003 Jan 28
1
ldap_modify_s Insufficient access
Hi, we are running Samba 2.2.5 using LDAP und pam_ldap (pam_unix2 with
auth+account+password=use_ldap) as PDC out of the SuSE 8.1 distribution. It
runs very well: Login f?r Unix&Samba ok, Passwort-Change for Samba via
smbpasswd Ok and we are able to manipulate the Linux Password in LDAP using
the GQ Client. The only thing that doesn't work is "passwd" itself:
venezuela:/home/tdm
2005 Jun 01
1
smbclient not using winbind to authenticate
Hi All
I am using the samba 3.0.14a RPMs installed on SuSE 9.2.
I have a PDC running on one machine, using tdbsam as a backend - this
has been running fine for months.
I am not trying to set up a standalone server in another office, which
should authenticate with the PDC using winbind, as per the "The 500-User
office" chapter of samba by example :
2004 Mar 12
0
pam_winbind failure -- what did I do wrong?
Hello List,
I have successfully integrated samba 3 to ADS Domain, and now i want to
allow domain-users to access services on my linux box. For testing i
chose /etc/pam.d/login and tried to allow ADS Users access to the
console. But i always get the following errors:
Mar 12 12:45:59 cuba90 pam_winbind[9011]: user 'r-ermer+mfeilner'
granted acces
Mar 12 12:45:59 cuba90 login[9011]: User
2003 Nov 26
0
changing password for w2k user logged in linux station (winbind)
This is in the winbind documentation
We divide the unified logon problem for UNIX machines into three smaller
problems:
1. Obtaining Windows NT user and group information
2. Authenticating Windows NT users
3. Password changing for Windows NT users
The winbind system provides a simple and elegant solution to all three
components of the unified logon problem.
First two things are explained,
2005 Jan 12
1
URGENT winbind - New DOMAIN but old DOMAIN not CHANGING - Resent
Hi,
We just imported (moved) all our staff from the old w2k domain to the
new w2k3 domain. Say their accounts and passwords
From STAFF domain to say NEW. Seems winbind is keeping the old domain
users. This server was serving the STAFF domain w/o problems before
users were migrated.
Domain is in 2000 native mode.
I'm using winbind for squid auth on Mandrake linux 10.0
2006 Mar 16
2
PAM authentification problem
Hi everybody,
we try to migrate our IMAP service from uw-imap to dovecot because of
horrible server slowdown when a lot of people poking in theirs huge imap
folders.
So, I try to run testing instance of dovecot on different imap port (12143)
I have trouble with authentication by PAM module of MIT Kerberos.
It successfuly works for authentificate users of wu-imap but not for
dovecot. I see in
2009 Nov 05
3
ADS, pam_winbind and vsftpd
Greets ... I am not getting it.
I have samba (old one, 3.0.22-11-SUSE-CODE10) in an ADS-context, winbind
works OK ...
I am trying to connect vsftpd to winbind via PAM, this works TOO GOOD ;-)
currently I am able to login to vsftpd with ANY password, that's bad.
I am not understanding that PAM-stuff and I have some pressure to get
that ftp-server up, so please would someone help me out?
My
2009 Dec 07
0
pam_winbind adding "BUILTIN+users" secondary group to non-AD account?
I'm working on a PAM setup that will ignore winbind/AD completely for
users listed in /etc/passwd, and do the samba thing for all other
users.
Mostly it seems to work, but there's one weird side-effect. For
non-AD users (only), an AD group "BUILTIN+users" is being added as a
secondary group. If I kill winbind, it still gets added, although
only the gid is available (no name).
2009 Feb 06
0
SLES 10 - Winbind-problem
Hi Gurus!
Hope you can help me - I'm trying to get my SLES 10 SP2-box to
authenticate users against Windows AD using Winbind, but I can't get it
to work as I want. I have configured smb, winbind and Kerberos, and
kinit, list, net ads join, wbinfo etc. works fine - but when I try to
login, user xx.xx.admin, it fails. This is what I got in my
/var/log/warn:
eb 6 12:15:09
2002 Nov 22
1
smbclient says NT_STATUS_PASSWORD_MUST_CHANGE - how to change password?
After a thorough google and marc search i'm shocked to find
this problem unmentioned...
How does one go about changing the windows password from a unix machine
with no physical access to the windows machine sharing things?
samba 2.2.3a (debian woody)
windows2000 server
thanks!
brad
note: here's my latest attempt. I tried this with and without a -c
parameter
smbclient //coco2/c$ -c
2008 Aug 15
1
FAILED with error NT_STATUS_PASSWORD_MUST_CHANGE
Hi there,
I'm working on a new print server to replace one that's pretty long in
the tooth.
I'm using standard packages from Ubuntu Hardy Heron which appears to be
Samba 3.0.28a. We use LDAP for the authentication backend. I seem to
have that configured properly as I get a ldap_connect_system: succesful
connection to the LDAP server in the log but every login fails with:
FAILED
2010 Dec 01
0
NT_STATUS_PASSWORD_MUST_CHANGE looping
Hi,
We have an Ubuntu 10.10 server running Samba 3.5.4 with OpenLDAP 2.4.23
and we have a small problem where every time a user logs onto a workstation
they are asked to change their password. Once they enter a new password
and confirm it, it asks them again and again and again.
The only way to fix this (which isn't a fix) is to use the smbldap-passwd
tool to reset their password. But then