similar to: iptables on samba in AD native

Displaying 20 results from an estimated 3000 matches similar to: "iptables on samba in AD native"

2004 Dec 02
1
Can RH AS3 be a ADS member with winbind+nss+krb5?
Samba is trying to be a member server in an AD in native mode, using winbind, nss, and kerberose. There are 3 kdc's (2 are Win2003, 1 is Win2000), samba server is RH-AS3 + Samba version 3.0.9 (from samba.org) + krb5 1.3.1-6 (from Fedora Core). I thought I had things working (join succeeded, could access shares, modify files), and then it stopped working. After clearing out the host account
2005 May 21
1
ssh + pam_winbind error 'incorrect password or invaid membership'
Configuration: Samba 3.0.14a-1 (on debian 3.1) + winbind 3.0.14a-1 + krb5-user 1.3.6-2 I need help debugging pam_winbind.so in /etc/pam.d/ssh on debian. Samba is a member of an AD domain, authenticating access to shares via winbind+nsswitch.conf. Authentication to shares works great. Now I want winbind to authenticate ssh users as a pam module and it's failing. Below I show the output of
2004 Dec 06
0
errors from ads_krb5_mk_req errors and util_sock.c:send_smb
After 2 weeks of trying to configure samba as a member server in a native AD domain, with winbind+nss+kerberose following the Samba Collection and (Samba-3 By Exmaple) docuentation, with RedHat AS3, samba 3.0.9, krb5 1.3.1, where 2 KDC's are Windows 2003 and one is Windows 2000, and smb-signing has been turned off,... when a user tries to access a share, they are prompted for a password, and
2005 Apr 18
1
Auth errors with winbind on member server with Native AD
So many people have posted this problem! The steps to debug need to be in a FAQ. The short question is: Can there be a disconnect between the short and long REALM names, leading to winbind-to-AD authentication errors? and How do I fix it? I can access windows shares or join a AD Domain with: mount -t smbfs -o username=johns,workgroup=ms //library/Source_Safe tmp/ --or-- net ads
2004 Nov 30
1
AD member ticket verify errors
I installed samba-3.0.9-1 on RedHat-AS3, configured it as a member server, and joined the domain. wbinfo -u and -g work. When I brows to the samba share from Windows XP client, I see the shares, and my home directory is listed, but I am prompted for a password when I try to use the share. No password works. The samba log for the client session shows:
2010 Nov 19
1
winbind - wbinfo problem - SOLVED
Hi John, The same smb and winbind configuration ( same SUSE box ) works good other Windows AD servers. "#wbinfo -u" and "#wbinfo -g" returns the users and groups respectively. Thanks for your great help !!! what is the difference between "#net rpc" and "#net ads" ?..if you have time, give some explanation.. Regards, Vivek On Mon, Nov 15, 2010 at 6:56
2004 Sep 20
1
NT_STATUS_LOGON_FAILURE with pdc samba + openldap + SuSE9.1
I am trying to configure a samba with openldap as a PDC on SuSE9.1 with samba-3.0.4, openldap2-2.2.6, samba-winbind-3.0.4, following the book Samba-3 By Example, by John H. Terpstra. I am getting errors "NT_STATUS_LOGON_FAILURE" from smbclient commands and "The username or password was not correct." from 'net' commands. Anonymous smbclient access seems to work, and I
2004 Feb 10
0
ACK's overhead
Good day time! We've noticed the following issue with Samba 3.0.1 on Linux. When SMB client asks for the first time on FID for a locking or read request on an opened file, it causes an ACK to be sent from client side. Windows server also requests ACK BUT much more rarely. Sending ACK causes additional overhead when working in heavy locking and unlocking environment. Windows server
2004 Feb 20
0
FW: ACK's overhead (AGAIN)
Good day time! We've noticed the following issue with Samba 3.0.1 on Linux. When SMB client asks for the first time on FID for a locking or read request on an opened file, it causes an ACK to be sent from client side. Windows server also requests ACK BUT much more rarely. Sending ACK causes additional overhead when working in heavy locking and unlocking environment. Windows server
2001 Dec 23
0
Need Help Sambaserver is not accessible
Here is the packet trace - ICMP seems to be coming from my SAMBA Server - see frame 3 Does the netstat output look correct in my first request for help? Joel Morrow jiram@aol.com TRACE Frame 1 (92 on wire, 92 captured) Arrival Time: Dec 22, 2001 09:36:08.333676000 Time delta from previous packet: 1.999444000 seconds Time relative to first packet: 2.000088000 seconds Frame
2003 Oct 19
1
upgraded from Samba 2.2.8a to Samba 3.0.0 now mount smbf does not work? update
I have upgraded from a almost perfectly working Samba 2.2.8a to Samba 3.0.0, I wished to join my NAS servers to the domain and it seemed something to do with DNS authentication was stopping them from joining, so I upgraded to Samba 3 (not beta) I have searched the web for reasons for this stange behavior but could find no explaination or fix, there are however other people having the same
2004 Dec 01
1
pam ssh athentication using winbind
Samba setup as a Member Server in native AD domain with winbind authenticating AD users for access to shares. My understanding is that with pam and winbind, domain users can log into the samba server via ssh, even if they do not have a local user account? Logs shows access granted but user unknown, so I must be missing something and need some help. /var/log/messages during an ssh login: Nov
2009 Jul 29
3
winbind and getent
Hi, I have a samba share on centos5 that uses AD authentication. I can do wbinfo -u and it returns the AD users.. but getent only returns the local centos users. Any pointers on where i have gone wrong? I am trying to chown to an AD user/group, but it is now working.. is the format chown domain\user:domain\group path/to/file ? Thanks..
1998 May 20
1
Samba failing to answer request shortly after startup
Hello, I've been digging a lot before I send this request, but I don't seem to find what I need. I'm running Linux RedHat 5.0 with all current patches, and Samba 1.9.17p4. Here is the problem: As soon as the samba service starts, one can connect from any client, and it works perfectly (browsing, conecting, copying files back and forth, ...). But after ~10sec, samba refuses all new
2018 Aug 07
2
Failed to modify SPNs
Hello, I've got some log entries like these on our DCs: Failed to modify SPNs on CN=db1,CN=Computers,DC=mydom,DC=lan: acl: spn validation failed for spn[TERMSRV/DB1.MYDOM] uac[0x1000] account[db1$] hostname[(null)] nbname[mydom] ntds[(null)] forest[mydom.lan] domain[mydom.lan] At first I thought it was about missing SPN entries, but adding these did not resolve the problem: # samba-tool
2004 Apr 06
3
samba pam kerberos
Hi Everybody, We are working on samba 3.0.2a with sun kerberos SEAM and Netscape iDirectory Server support. We are able to integrate samba with ldap support. we tried integrater kerberos for authentication. We found a solution using pam via pam_krb5 module provided by the sun solaris 8. One important fact we found out using samba pam authentication, it directly calls for an account
2005 Apr 18
1
netbios name resolution
Hello everyone, I wrote an email a couple of days ago, but haven't received an answer yet. Perhaps it was a bit confusing, so I'll try again. How can I make sure that NetBIOS name lookups work in the config file? I mean the %m macro. What is the command I can test it with? Because I have a feeling that this macro works only sometimes. For example I have a setting of log file =
2020 Jul 22
4
Failed to modify SPNs
Hi all my samba version is 4.12.5 and when a sql server windows machine join the domain, It shows error in samba : Failed to modify SPNs on CN=SEC-CON03,CN=Computers,DC=domain,DC=com: acl: spn validation failed for spn[E3514235-4B06-11D1-AB04-00C04FC2DCD2-ADAM/SEC-CON03:389] uac[0x1000] account[SEC-CON03$] hostname[SEC-Con03.domain.com] nbname[DOMAIN] ntds[(null)] forest[domain.com]
2006 Jun 19
0
Hard Solaris 8 compile
We currently have a samba install on Solaris 8 providing a front-end to a Rational ClearCase system. Because of some recent changes, we are having Kerberose issues in validating files (too many open files). After some research, I found that the best way to resolve these is to re-compile samba as a 64bit application to increase the open file restrictions on a Solaris 32 bit app. The problem I am
2018 Aug 07
2
Failed to modify SPNs
Hi Rowland, On Tue, 7 Aug 2018 09:46:24 +0100 Rowland Penny via samba <samba at lists.samba.org> wrote: > > Failed to modify SPNs on CN=db1,CN=Computers,DC=mydom,DC=lan: acl: > > spn validation failed for spn[TERMSRV/DB1.MYDOM] uac[0x1000] > > account[db1$] hostname[(null)] nbname[mydom] ntds[(null)] > > forest[mydom.lan] domain[mydom.lan] > > > > At