Displaying 20 results from an estimated 7000 matches similar to: "Samba ADS -- works with XP Pro, but not 2000 Pro"
2004 Apr 20
1
RES: Samba 3.0.2a with ADS w2k3 Active Directory, enctype s
Hi Jim,
I did what the doc says but the problem is the same.
Does anybody saw this work ? I mean, is the Samba 3.0.2a+Kerberos MIT 1.3.3
able to be accessed by a WXP, W2K or W2K3 machine, using Kerberos tickets
generated in a Windows 2003 KDC (W2K3 AD) ?
Thanks
-----Mensagem original-----
De: Jim McDonough [mailto:jmcd@us.ibm.com]
Enviada em: segunda-feira, 19 de abril de 2004 17:07
Para:
2004 Apr 19
1
Samba 3.0.2a with ADS w2k3 Active Directory, enctypes
Hi people,
I have a Linux box running Samba 3.0.2a in ADS mode MIT Kerberos 1.3.3. My
W2K e WXP users can't access the linux box by netbios name, the only access
that works is by IP address, I know that's caused because access thought IP
address don't make use of Kerberos. The most strange for me it's that the
same environment works fine with a W2K Active Directory, I read in same
2004 May 12
2
Failed to verify ticket ?
Hi !
My problem is that :
[2004/05/12 16:07:30, 1] smbd/sesssetup.c:reply_spnego_kerberos(173)
Failed to verify incoming ticket!
[2004/05/12 16:07:30, 1] smbd/sesssetup.c:reply_spnego_kerberos(173)
Failed to verify incoming ticket!
[2004/05/12 16:07:39, 1] smbd/sesssetup.c:reply_spnego_kerberos(173)
Failed to verify incoming ticket!
[2004/05/12 16:07:59, 0]
2014 May 09
1
samba4 : [kerberos part kinit work but no kpasswd
hi,
?
i have recently installed a samba 4 in a DC role.
The distribution is a debian jessie/sid, the version of samba is 4.1.7.
The server is globally working but there is some litle trouble.
on the server itself, i can do a kinit without probleme but if i try a kpasswsd, i obtain the following
?
root at station:/var/log/samba# kinit
Password for administrator at TOTO.FR:
root at
2006 Dec 01
2
Removing display of domain
Greetings. I am running Samba 3.0.23d on Gentoo and am in the process of
joining it to the AD domain as I have done with numerous other servers.
The last item that I am working on that is bugging the crud out of me is
that I have "winbind use default domain = yes", but when using wbinfo
-[u|g] or getent [passwd|group] I still see the domain portion of the
user/group account listed.
2005 Oct 26
2
ADS + Samba
Hello Samba list!
I have installed samba, joined it to the AD domain (lets say EXAMPLE.COM)
and can auth against it with kinit.
There are also 2 domains that we have a trust established with. Lets say
trust1 and trust2.
When I do a wbinfo -u I get:
Trust1+username
Trust2+username
I get nothing from the local domain.
I have a share set up for testing, but I cannot access it at all, I get
2004 Dec 07
1
Kerberos Error
Hi,
I'm using samba-*-3.0.6-4.3.100mdk and libkrb51-1.3-6.3.100mdk on
LM10.0. A similar summary to what I'm seeing could be found here.
http://lists.samba.org/archive/samba/2004-July/090210.html
My relevant config info could be found below. May I ask how could I
solve this in LM10.0? What packages do I need to update? The problem
does not arise with NT. It happens to only W2K, XP,
2017 Nov 10
2
Slow Kerberos Authentication
No, no idee, but really, upgrade to samba, best option, in my opinion.
If thats not possible, it happens..
A timeout option can be set in krb5.conf
for example : kdc_timeout = 5000
You have these for krb5.conf to try out also.
the complete list.
des-hmac-sha1
DES with HMAC/sha1 (weak)
aes256-cts-hmac-sha1-96 aes256-cts AES-256
CTS mode with 96-bit SHA-1 HMAC
2017 Nov 09
3
Slow Kerberos Authentication
Hai,
You may need to add the the following in krb5.conf
[libdefaults]
allow_weak_crypto = true
; for Windows 2003
; default_tgs_enctypes = rc4-hmac des-cbc-crc des-cbc-md5
; default_tkt_enctypes = rc4-hmac des-cbc-crc des-cbc-md5
; permitted_enctypes = rc4-hmac des-cbc-crc des-cbc-md5
; for Windows 2008 with AES
default_tgs_enctypes = aes128-cts-hmac-sha1-96
2004 Jun 08
1
Authentification in windows ads 2003
Hello,
I installed Samba 3 + kerberos + winbind to make the debian server joining
the Active directory service.
Everything seems to be ok, except the authentification. If i try to go to
the share of the linux server, it asks me the password. And of course, no
way to log in. B
Here is the config:
*samba*
[global]
workgroup = TEST
realm = CARDS.BE.TEST.COM.LOCAL
server string = %h
2005 Jan 12
1
URGENT winbind - New DOMAIN but old DOMAIN not CHANGING - Resent
Hi,
We just imported (moved) all our staff from the old w2k domain to the
new w2k3 domain. Say their accounts and passwords
From STAFF domain to say NEW. Seems winbind is keeping the old domain
users. This server was serving the STAFF domain w/o problems before
users were migrated.
Domain is in 2000 native mode.
I'm using winbind for squid auth on Mandrake linux 10.0
2010 Mar 29
6
AD Auth Trusted Domain issues
I have been killing myself on this issue over the last 2 weeks. I have
setup pam AD authentication using winbind on our companies email
servers. That part is currently working. I have been trying to add an
existing "Trusted" child domain and allow authentication from that
domain as well. I am part of the way there, but not quite to the
functional point as of yet. Our primary domain
2009 Mar 13
1
[ADS]Trust relationship 'expires'
Hi folks,
I have an issue that has me shaking my head.
Once a workstation has made the initial connection to a host, things
seem to work well for a day or so. However, if the resource hasn't been
accessed in a while, and then a connection is retried, this following
message is returned:
"\\hostname is not accessible. You might not have permission to use this
network resource. Contact
2004 Jul 29
2
2003 KDC and Samba
We have serveral RHEL 3.0 Update 2 servers running Samba.
These have been working flawlessly for several months..
Recently, the base upgraded all the Windows 2000 servers
to Windows 2003..
NOTE: we don't have admin rights to the Domain Controllers.. (wish we did..)
Previous to the Domain (and kdc) controllers to 2003 we had
no issues joining a new Samba Sever to the ADS..
Using the same
2004 Jun 09
1
RES: authentification in ads2003
I also have made this configuration working with w2k, the problem is related
do enc-types used by w2k3.
I have seen a lot of people complaining about the same issue. Can the samba
gurus help the community ??? What are the right configuration to put a Samba
3.0.x working as a Active Directory 2003 member and be accessible through
\\<samba name>\<share name> ?!
Please Jerry Carter,
2004 Feb 11
6
Unable to join ADS domain
I've installed Samba 3.0.2 (from the source) on a SuSE
8.2 system with MIT Kerberos 1.3.1 (I uninstalled the
Heimdal code) and the OpenLDAP 2.1.27 development
libraries installed on it. I want to make this system
a domain member of a Win2K native-mode ADS domain but
can't get "net ads join" to work. I've run "kinit
myid@MYDOMAIN.COM" and I get at ticket, but when
2015 Mar 19
1
Kerberos: Failed to decrypt PA-DATA
Hi,
Some users can't logon to their workstation if the session is negotiating
with samba domain controller, the password is requested again and again.
Samba is joined as a Domain Controller in a windows domain controllers. The
users' s computers are joined also to the domain. But for some users the
kerberos ticket is failing.
Samba version 4.1.15 - Debian 7.8
Samba debug logs, level 3:
2011 Dec 23
2
Ad integration with centos 6
Can anyone point me to a tutorial on using Active Directory to authenticate
a centos 6 server? I just want to use it to authenticate, ssh and restrict
access to a particular ad group. I prefer to use the lightest method
possible. I know you can use ldap, or winbind, etc. I have been trying to
follow the ones I have been googling, but none of them seem "quit complete.
My issue is that I have
2004 Jun 09
1
authentification in ads2003
Hello,
*This msg was already sent yesterday on this ml, but some i found some
faults in the mail.*
**If anyone can help me... the only thing i'm thinking now is to throw away
the servers**
I installed Samba 3.0.4 + kerberos 5 + winbind to make the debian woody
server joining
the Active directory service.
Everything seems to be ok, except the authentification. If i try to go to
the share of
2005 May 06
1
issues with 3.0.14a domain member after 2003 dc upgrade
Hello list,
Recently I've rebuilt our Windows 2000 DCs to Windows 2003 SP1 DCs that
my 3.0.14a, mit-krb5-1.3.6, openldap-2.1.30 Gentoo box is a part of.
Since then, on the Samba box I can getent group, getent passwd, wbinfo
-t, wbinfo -g, wbinfo -u, etc. properly but anyone who accesses the
shares on the Samba member server gets prompted for a password.
The logs are as follows: