similar to: setup problems w/ winbind/krb5

Displaying 20 results from an estimated 1000 matches similar to: "setup problems w/ winbind/krb5"

2003 Oct 06
0
Samba 3.0 & Windows 2003 server ADS
Hi there I'm having trouble getting winbindd working properly (I think). My understanding is that winbindd uses a kerberos 5 session (with 2003 server) to authenticate the machine to ADS, before any users have logged in. Then it uses that session ticket to authenticate all users of the smb server. Is that correct ? I can run kinit ok, and klist shows me a krb5 ticket (using a Domain
2004 Jul 20
1
Log shows NT4 for an ADS domain
I'm trying to learn about the interactions between SAMBA and win2k DCs. The eventual goal is to have a Win2k server with ADS working with a freeBSD SAMBA server. I've used the setup from http://oslabs.mikro-net.com/fbsd_samba.html as the basis for what I've done so far. Winbind seems to work and I can show users and groups using wbinfo although I see some things in the logs that I
2003 Dec 17
0
krb5_get_credentials failed
Using Samba 3.0.1 packages from samba.org on RH 8.0 kernel 2.4.20. I'm trying to get winbindd configured so that we can do single-sign on across Win2k file servers and Samba file servers with ADS. I've configured Samba to do shares but it prompts for username/password unless the user/pass exists in smbpassword. 'net ads join' was successful and secrets.tdb was modified. The
2004 Jan 08
0
FW: Samba requesting nonexistent keytab type?
Hi all, I've downloaded and installed the 3.0.2pre1 package. However, I've not managed to get winbindd working. I've run into a credentials cache problem (so I haven't been able to even get to the point I was at before). My krb5.conf and pam settings haven't changed and I'm using the same smb.conf as before. I'm using MIT Kerberos 1.3.1 (in /usr/kerberos/). Here
2005 Jan 14
1
NT_STATUS_ACCESS_DENIED with ADS + Kerberos
I'm trying to setup Samba in ADS security mode so I can run winbind for NSS and Kerberos for user authentication, chiefly for shell accounts for developers. These hosts will not provide any file or printer services, at least in the near-term. My hosts are CentOS 3 (a free RHEL3 clone) and my ADS servers are Windows 2000 (not 2003), in hybid mode. I am using stock RPMs for both Kerberos and
2009 May 06
1
Kerberos and 2008 AD troubles
I've been trying to get Kerberos to work for the last couple of days so that we can use SSO. I can't seem to get past a roadblock and Google doesn't seem to provide any answers. I've got Samba connected to the AD and running. I can wbinfo everything and can login to the machine using PAM with the pam_winbind modules just fine. I can get user tickets just fine. When I try to get ssh
2005 May 31
0
windbind stopped working
I recently upgraded my PDC's and BDC's to 3.0.14a but my member servers are still running 3.0.10. Today users complained that the couldn't logon to the member server. When I try to run a wbinfo -u I get: Error looking up domain users Here's the log.windbindd: 2005/05/31 11:06:26, 4] param/loadparm.c:lp_load(3933) pm_process() returned Yes [2005/05/31 11:06:26, 3]
2007 Jan 31
0
Samba winbindd crash
Hello dear list! I'm about to setup a winbind to authenticate my proxy users through Active Directory. Unfortunately the daemon winbindd crash while requesting some wbinfo, Here is a transcript of the problem: IDCSRV922:~ # cat /etc/krb5.conf [libdefaults] default_realm = MY.DOMAIN.COM [realms] [logging] kdc = FILE:/var/log/krb5/krb5kdc.log
2005 Apr 18
1
\PIPE\NETLOGON (NT_STATUS_DOMAIN_CONTROLLER_NOT_FOUND)
Help, wbinfo -t fails with the error in subject, and getting sids of groups that aren't BUILTIN fail. Everything else seems to work. Note: I am not converting my kerberos tickets to krb4, is this necessary? (It used to work without it..but now it seems not to work.) I get no errors from kinit. all other wbinfo requests succeed with the exception of looking up the SIDS of groups that
2005 Feb 17
0
cannot login as with domain userid's on AIX
Hi I am trying to configure Samba with ADS integration on AIX 5.2. I am unable to login to the Aix server using credentials of Domain user. I am able to join to windows Domain and able to fetch list of windows domain users with the command /usr/local/samba/bin/wbinfo -u and also the groups with usr/local/samba/bin/wbinfo -g . I have added the below line methods.cfg WINBIND
2004 Aug 06
0
samba & winbind with AD 2K auth problem
Hi I cannot make winbind work correctly. My problem is that my AD users & groupes are not authenticated on my samba box. I made it work correctly on my samba 2.2x, an dfrom my understanding, each time a AD user is connected, a Unix account is created, nad winbind synhronize both accounts. It looks like the user script "/usr/sbin/useradd -s /bin/false %u" doesn't work, and my
2004 May 21
0
winbind issues with AD domain trust
I'm setting up Samba in an environment with 2 Active Directory domains setup with a one way trust (DOMAINA -> DOMAINB). Samba is in DOMAINA. From looking at the logs (see below) it appears that winbind is having troubles getting the credentials for the domain controller in DOMAINB. I can get tickets, using kinit, for accounts in both domains. I can join DOMAINA just fine. Running
2004 Sep 17
0
Winbindd crash after upgrade to 3.0.7
Hey all. I've just upgraded my samba to the latest binaries from the Samba site. After the upgrade, without touching my smb.conf winbindd crashes just after startup. I'm running Version 3.0.7-1.1-SUSE , from the samba.org rpms. PDC is a Windows 2003 Server box. Running 3.0.6 I was experiencing a problem where user authentication to the w2k3 was lost a few minutes after starting smb,
2004 Aug 15
1
Winbindd startup kerberos fail
I'm trying to learn about the interactions between SAMBA and Win2k DCs.??The eventual goal is to have a Win2k server with ADS working with a FreeBSD SAMBA server.??I've?used?the?setup?from http://oslabs.mikro-net.com/fbsd_samba.html and many other articles as the basis for what I've done so far. Winbind seems to work and I can show users and gropus using wbinfo although I see some
2008 Nov 05
1
Samba, Solaris, Windows 2008 - Kerberos Guess Realm Wrong?
I've just built Samba 3.2.4 on Solaris 10, with ADS support. Domain join to a Windows 2008 domain works perfectly, having pre-created the servername in the appropriate OU. In my winbind logs, I see the following (domain name obfuscated): [2008/11/05 11:28:06, 3] libsmb/cliconnect.c:cli_session_setup_spnego(839) got principal=not_defined_in_RFC4178@please_ignore [2008/11/05 11:28:06,
2007 Feb 13
0
winbindd panic 3.0.24
Hi Samba team! I tried with 3.0.22 and now with 2.0.24 and I got the same error. When I try to connect to my file server using a user from a trusted domain (DOMAIN2) my winbindd dies: [2007/02/12 15:14:26, 3] nsswitch/winbindd_user.c:winbindd_getpwnam(328) [ 0]: getpwnam domain2+asspw [2007/02/12 15:14:26, 3] libsmb/namequery.c:resolve_lmhosts(962) resolve_lmhosts: Attempting lmhosts
2008 Sep 03
0
Winbind + Win2003 ADS + Trusted Domain Issue
Hello all, I am having an issue that I need help with and have been searching the web high and low for a solution. It involvs using winbind to authenticate Linux systems against a 2003 Active Directiry domain with a one-way trust. Here is the lay out. Domain "ABC" is the resource domain where the servers are located. Domain "XYZ" is the domain that the primary user accounts
2005 Jan 11
2
need some assistance - Samba 3.09 on FreeBSD 4.5
Hello, I've been able to get Samba up and running, it joins the ADS domain fine. It appears in the network browser on our Windows machines but when anyone attempts to access a restricted share it fails to authenticate them. I say restricted because if anyone accesses an open to everyone share it works. I'm trying to get the entire thing setup so that the Samba server is just a
2004 Mar 26
2
kerberos problem
# smbclient -k -L //radius/music$ krb5_get_credentials failed for radius$@SBRC.LOCAL (Unknown error -1765328352) spnego_gen_negTokenTarg failed: Unknown error -1765328352 session setup failed: NT_STATUS_OK # wbinfo -u Error looking up domain users log: [2004/03/26 10:48:30, 1] libsmb/clikrb5.c:ads_krb5_mk_req(276) krb5_get_credentials failed for shadow$@SBRC.LOCAL (Unknown error -1765328343)
2005 Apr 25
1
wbinfo -t fails but other wbinfo and getent items work.
Problem: wbinfo -t fails. As long as it fails, I am unable to map sids to Group Names. I need this functionality for my application. I can use just about everyother function of wbinfo at least partially... Distro: Debian woody. Packages: ii samba 3.0.11-0woody1 a LanManager-like file and printer server fo ii samba-common 3.0.11-0woody1 Samba common files used by both the server a