Displaying 20 results from an estimated 1000 matches similar to: "Chasing the "ads_add_machine_acct: Insufficient access" problem"
2004 Jul 30
4
Trouble authenticating clients from ADS domain on Samba 3.0.5 file server
I'm so close I can feel it :-)
I'm having a problem connecting users to their home directories. Under "My
Network Places" on XP clients I can see my Samba file server ("Hobbes")
just fine. When I double click on it to open it, I get a login/password
prompt that I can't bypass even though I try logins/passwords that exist
on the ADS server and/or the UNIX accounts.
2005 Nov 01
1
Join ADS domain - Insufficient Access
SLES 9 SP2
samba-3.0.14a-0.4
heimdal-lib-0.6.1rc3-55.15
samba-winbind-3.0.14a-0.4
pam-modules-9-18.10
pam_krb5-1.3-201.7
I've been searching for days for a concrete answer to this question:
Is it possible to join an ADS domain from a Linux Samba server without
having Administrator privileges? Yes or No.
If so exactly what are the minimal requirements for joining the Linux
box to the
2004 May 21
0
Insufficient access error
I've been working on getting Samba 3.0.4-2 to join our test W2k3 Active
Directory for most of the day. When I try to join with this command :
net ads join -U w702a-palmadesso "w702\NonCatComputers"
According to my official Samba HowTo Book this should join the domain
specified in my smb.conf. Instead I get the following output :
[root@w72l-tux samba]# net ads join -U
2005 Nov 08
1
ADS Join and Insufficient Access
My agency is moving all users and computers to a new domain. Our current domain uses AD and the new domain will use AD. My current samba servers are running 3.0.20a with ADS security with winbind on Debian Stable (Sarge) with no problems.
I set up a test samba server using 3.0.20b, the new krb5.conf and smb.conf.
kinit works fine. ("Authenticated to Kerberos v5")
I prestage the server
2003 Oct 15
1
FW: Re: domain groups accessing samba share
-----Original Message-----
From: VR-Bug Support
Sent: 15 October 2003 13:42
To: 'Gavin Davenport'
Subject: RE: [Samba] Re: domain groups accessing samba share
Hi Gavin,
This is what I have for my /etc/pam.d/login
#%PAM-1.0
auth required pam_securetty.so
auth sufficient /lib/security/pam_winbind.so
auth sufficient /lib/security/pam_unix.so nodelay
2007 Feb 25
1
Marks SNMP HowTo
I followed Marks SNMP howto on Voip Magazine and ran into a small
problem... (http://www.voip-magazine.com/content/view/2877/0/1/3/)
When asterisk is running as a non-root user (asterisk) SNMP request
for for the Asterisk MIB tree return nothing. If I quit asterisk and
run it as root, all is fine. Does anyone have a idea what is going
on? I have never used agentX, so I am unsure of what it is
2009 Feb 26
1
smbd could not access share directory on drbd (8.3 on Centos 5 i386)
Dear, all. I am pulling my hair because I could not find any error
messsages that could point me to a fix to my problem.
The directory I want to share was mounted on /home with drbd and
heartbeat but then my users could not access any shares / their home
directories. However, if I set up shares else where on my box like
share under /opt or /usr/local, then the same users would be able to
access
2007 Nov 23
7
Modules design patterns ?
Hi,
I''m writing puppet modules since a couple of weeks now, so I''m still
considering myself as a new comer in this field.
It seems that modules I can find on the web or the recipe page on the
wiki almost all use a design pattern where the module is shipped in one
or several class(es) whose configuration are determined by "global" or
nodes variables ala:
module:
class
2013 Jan 27
1
GPOs don't work after update from Samba4.0 alpha 17 to 4.0.1
Hi!
I have updated our server from Samba 4 alpha 17 to Samba 4.0.1.
Everything seems to work fine after some reconfiguration, but our
GPOs are not working anymore.
Samba 4 alpha 17 was using ntvfs and the root partition with the sysvol share was mounted with "user_xattr" only in /etc/fstab.
Samba 4.0.1 is now set to use s3fs and the root partition is mouted with
2007 Jun 20
0
wbinfo & net ads different results
Hi,
Could this a bug or misconfiguration?
'wbinfo -g' only return partial result compare to 'net ads group', thus
unable to authenticate
# wbinfo -g | wc -l
4998
# net ads group | wc -l
9114
# getent group | wc -l
5047 [+ local groups]
Take a group dl.samplegroup, which is in the DC, but missing from wbinfo
# net ads group | grep dl.samplegroup
2016 Nov 04
1
tinc doesn't find tap device / windows 10 x64
Hello Community,
I'm using tinc a while, but now it's the first time i have to install it on my first windows 10 client... bah, i hate windows 10, but anyway...
so i just got the latest stable version of tinc and installed it the usual way - so far no problem... tap virtual adapter is present and configured, tinc config is the same as usual, so i just started the daemon... and it
2016 Jul 04
0
PCI Passthrough not working
I am having trouble getting PCI Passthrough to work from Dom0 running CentOS 7 to DomU runnning Debian 8
I am using Xen 4.6 with CentOS kernel 3.18.34-20.el7.x86_64 on a Dell Poweredge T430.
I think I have set it all up correctly, but I see no message when putting a USB device into any of the USB slots on the DomU
There are three other DomUs running, but I have no need of PCI Passthrough set up
2006 Jul 04
4
ROaR: A Ruby on Rails Podcast
I''m starting a new podcast to cover some of the hot topics going on in
Rails. Half news, half interactive, all community. As always, the
first episode kinda sucks but I''m looking forward to feedback from all
of you on how to make it better.
http://www.simiancodex.com/roar/
or for iTunes people
http://phobos.apple.com/WebObjects/MZStore.woa/wa/viewPodcast?id=163609703
Michael
2007 Aug 06
2
used the described Class in a shared behavior
Is it possible to access the described class in a shared behavior? I''m
trying to do something like this:
describe "Siberian feline", :shared => true do
described_class_instance_as :feline, :name => "fluffy", :breed =>
"Siberian"
# or maybe
before(:all) do
@feline = described_class.new(:name => "fluffy", :breed =>
2003 Oct 06
0
Samba 3.0 & Windows 2003 server ADS
Hi there
I'm having trouble getting winbindd working properly (I think).
My understanding is that winbindd uses a kerberos 5 session (with 2003
server) to authenticate the machine to ADS, before any users have logged in.
Then it uses that session ticket to authenticate all users of the smb
server.
Is that correct ?
I can run kinit ok, and klist shows me a krb5 ticket (using a Domain
2005 Dec 21
0
CONNTRACK problem
Hi All
Take a look and please tell what is wrong:
root@prensa:~# $IPT -t mangle -F PREROUTING
root@prensa:~# $IPT -t mangle -A PREROUTING -j CONNMARK --restore-mark
iptables: No chain/target/match by that name
root@prensa:~# $IPT -t mangle -A PREROUTING -j CONNMARK
iptables v1.3.4: CONNMARK target: No operation specified
Try `iptables -h'' or
2004 Jun 14
2
Member Server in Active Directory
I'm trying to join a Samba 3.0.4 (compiled from source on Debian) to an
Active Directory as a member server. I believe Kerberos is configured
correctly as kinit creates a ticket for the realm. Executables appear to have
support for Kerberos and LDAP (smbd -b | grep KRB and grep LDAP) return OK.
When I try to join the AD with
net ads join -U myadminusername
I'm prompted for my
2005 Jun 11
1
Problem joining a domain using ads
server: ms 2003 with ads
client: debian 3.1/samba 3.0.14
smb.conf:
..
[global]
workgroup = SP-GRUPPE
password server = 10.85.117.150
realm = SP-GRUPPE.DE
encrypt passwords = no
server string = %h server (Samba %v)
obey pam restrictions = yes
passdb backend = tdbsam, guest
passwd program = /usr/bin/passwd %u
passwd chat = *Enter\snew\sUNIX\spassword:* %n\n
*Retype\snew\sUNIX\spassword:* %n\n .
2004 Nov 02
1
net ads join fails
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
~ /usr/bin/net ads join -Udennisb
dennisb password:
[2004/11/02 17:31:56, 0] libads/ldap.c:ads_add_machine_acct(1006)
~ Host account for if-srv-hos1 already exists - modifying old account
[2004/11/02 17:31:56, 0] libads/ldap.c:ads_join_realm(1342)
~ ads_add_machine_acct: No such object
ads_join_realm: No such object
Also:
net user | wc -l
reports
2004 May 21
3
Suse 9.1 Samba
I have been trying for two weeks to get onto a Win2k domain which has
active directory with no success. The Suse YAST samba client will not do
ADS, only domain, server, or user, so I went to the command line stuff I
found the the Samba documentation.
I can do kinit and get back the following:
sha-linux:/etc/samba # kinit art_fore@3MTS.COM
art_fore@3MTS.COM's Password:
kinit: NOTICE: