similar to: Samba ADS ticket problem

Displaying 20 results from an estimated 2000 matches similar to: "Samba ADS ticket problem"

2003 Jul 24
0
3.0.0-beta3-rc1 ADS ticket problems
I've got samba-3.0.0-beta3-rc1 running, and am trying to connect to a Windows 2000 domain using security = ADS After following the instructions in the Samba-HOWTO-Collection, I've got kinit working, and am able to browse the Windows 2000 machines shares with smbclient //win2kmixed/c\$ -k without a password. However, if I try to connect to the machine, either through network neighborhood
2005 Jun 02
0
Help: Failed to verify incoming ticket! revisited, problems with Samba/2003
I am struggling with a Samba/Server 2003 problem which doesn't make sense. I have compiled Samba 3.0.14a and MIT Kerberos 1.3.6 several times on different machines. I have a set of RPMS which work fine on one of my workstations, but do not work on the server. On the server I get the dreaded: reply_spnego_kerberos(173) Failed to verify incoming ticket! in the logs. I have compiled
2004 Aug 10
2
Kerberos verfy ticket failed
Hello list. I've got a problem using samba-3.0.4 (RedHat AS 3.0) the server is member of a Win2003 Active directory domain All stuff about krb5 seems to work correctly kinit user@REALM klist etc... net ads join -U administrator has worked well too But when any Windows client member of the domain try to connect to the server it asks me for a user/pass. here is the log. [2004/08/10
2004 Jan 12
0
"Ticket not yet valid" message - further info
Hi, Thanks to all who responded to my initial post to the list regarding "Ticket not yet valid" messages in my samba logs. I neglected to include this in my initial post - we had already suspected clock synchronisation problems, and all of our servers (AIX Samba server and windows clients) are all synchronised to the AD DC, which is sychronised to an internet atomic clock in Melbourne.
2004 Jan 09
1
"Ticket not yet valid" message in log
Hi, I'm having a problem with Samba 3 in AD mode. For some reason, the first time (usually first thing in the morning) a user tries to map a drive to my samba 3 server, the log shows a message "Ticket not yet valid". The user is prompted for username/password (they've already logged on to the windows domain, so they shouldn't be prompted. The user then waits for a minute or
2008 Jun 12
1
Help with sudden wierd ticket error.
[2008/06/11 12:07:03, 3] smbd/sesssetup.c:reply_spnego_negotiate(525) Got OID 1 2 840 113554 1 2 2 [2008/06/11 12:07:03, 3] smbd/sesssetup.c:reply_spnego_negotiate(525) Got OID 1 3 6 1 4 1 311 2 2 10 [2008/06/11 12:07:03, 3] smbd/sesssetup.c:reply_spnego_negotiate(528) Got secblob of size 1205 [2008/06/11 12:07:03, 3] libads/kerberos_verify.c:ads_secrets_verify_ticket(249)
2003 Jul 22
0
Everyone group difference between ACL/no ACLs.
Hello! I'm running Samba 2.2.8a on top of a ext3 filesystem with ACLs enabled. (kernel 2.4.20-gentoo-r2) With ACLs disabled (i.e., mount /dev/hdd1 /mnt/floppy (no -o ACL)), the Security box under windows 2000 works like I want it to with respect to the Everyone group; If I want the Linux permissions to be, say, 770 (rwxrwx---), I can select everyone and hit "Remove." The everyone
2005 Mar 11
0
krb5_cc_get_principal failed (No credentials cache found)
Hi i am using Samba 3.0.0-14.3E.i am not getting tickets from the ADS server which is running on Win2K.i am seeing the logs in /var/log/samba/winbind.log i got these messages [2005/03/11 10:36:36, 1] libsmb/clikrb5.c:ads_krb5_mk_req(269) krb5_cc_get_principal failed (No credentials cache found) [2005/03/11 11:01:00, 1] libads/ads_ldap.c:ads_name_to_sid(64) name_to_sid: root not found
2007 May 06
0
"Failed to verify incoming ticket!" with Windows 2003 Server
Hi, all! I have the following environment here: - A Windows 2000 domain, with one server running Windows 2003 Server - A kerberos realm, using MIT Kerberos - A samba server, with security=ads The Windows 2003 server have a trust relationship with the MIT kerberos realm. Users logs on that kerberos realm on their Windows workstations, and are supposed to have access to the shares at samba
2003 Dec 11
4
Windows 2000 and krb5 tickets.
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 OK. I've done some more research, and here's what I get. smbd --version Version 3.0.0 strings libkrb5.so.3.2 | grep BRAND KRB5_BRAND: krb5-1-3-1-final 1.3.1 20030730 Everything seems to work, but trying to access the Samba server results in: [2003/12/11 14:54:19, 3] libads/kerberos_verify.c:ads_verify_ticket(308) ~ ads_verify_ticket: enc
2004 Apr 19
1
Samba 3.0.2a with ADS w2k3 Active Directory, enctypes
Hi people, I have a Linux box running Samba 3.0.2a in ADS mode MIT Kerberos 1.3.3. My W2K e WXP users can't access the linux box by netbios name, the only access that works is by IP address, I know that's caused because access thought IP address don't make use of Kerberos. The most strange for me it's that the same environment works fine with a W2K Active Directory, I read in same
2004 Apr 20
1
RES: Samba 3.0.2a with ADS w2k3 Active Directory, enctype s
Hi Jim, I did what the doc says but the problem is the same. Does anybody saw this work ? I mean, is the Samba 3.0.2a+Kerberos MIT 1.3.3 able to be accessed by a WXP, W2K or W2K3 machine, using Kerberos tickets generated in a Windows 2003 KDC (W2K3 AD) ? Thanks -----Mensagem original----- De: Jim McDonough [mailto:jmcd@us.ibm.com] Enviada em: segunda-feira, 19 de abril de 2004 17:07 Para:
2003 Dec 13
0
Windows 2000 and krb5 tickets...SOLVED
Fantastic! On Monday I'll give it a try! -----Original Message----- From: Tim Jordan [mailto:timothy_jordan@labor.state.ak.us] Sent: Fri 12/12/2003 20:56 To: Tom Dickson; m.c.hudson@open.ac.uk; admina@labor.ak.us Cc: fernandor@sescam.jccm.es; jerry@samba.org; samba@samba.org Subject: Re: [Samba] Windows 2000 and krb5 tickets...SOLVED Browsing is working from my W2K and XP
2004 Apr 05
0
another "Failed to verify incoming ticket"
Hello everyone, I'm sorry for this long post, but I think there is a real understanding problem for many people on ADS domain membership. I'm not the first to post about this type of problem, however I didn't find an answer to it in the archives and I followed the HOWTO-collection. Well, this is what I'm doing : I am using samba-3.0.1 compiled from source, MIT kerberos 1.3.1
2005 Apr 08
3
Samba, ADS and "Failed to verify incoming ticket!"
Hello I have Samba that joined Windows 2003 based ADS. At least "net ads testjoin" and "net rpc testjoin" gives that "Join is OK". Alas clients can't connect to Samba server. In a log I see following messages : [2005/04/08 14:51:41, 0] tdb/tdbutil.c:(725) tdb(/web/opt/etc/smbprivate//secrets.tdb): tdb_lock failed on list 2 ltype=2 (Resource temporarily
2006 Sep 21
1
Unable to connect samba server using hostname [2]
Hi, I've got th same problem than in this tread (no solution found) : http://lists.samba.org/archive/samba/2005-November/113914.html except I've got the problem on all stations. I am unable to connect to samba server using it's hostname, whereas it's work with IP address. When I use the hostname, Samba always request for login/password. [2006/09/21 12:59:04, 3]
2003 Aug 22
3
more problems with rc1 + ADS: smbd sigsegv
here's the tail end of the -d 10 log.host. It seems to not like the encryption type. Which should I be using, and where should I change it? -dave [2003/08/22 09:45:29, 3] smbd/process.c:switch_message(685) switch message SMBsesssetupX (pid 6310) [2003/08/22 09:45:29, 3] smbd/sec_ctx.c:set_sec_ctx(288) setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0 [2003/08/22 09:45:29, 5]
2003 Nov 13
0
Client accessing Samba doesn't authenticate against A ctive Directory
| When a Windows client attempts to browse shares on a Samba 3.0 server | authenticating against a Windows 2003 Active Directory domain, it | requests credentials. Typing in user name and password fails I am having this exact same issue. Attached is a sample copy of my smb.conf and krb5.conf along with some errors I got from the smbd logs (max debug level). smb.conf ---- [global] server
2009 Sep 06
0
No subject
=20 \\128.252.123.123\sharename <file:///\\128.252.123.123\sharename>=20 =20 And it works as expected - my clients are in the same domain, no password is asked for, etc. =20 Using any form of the hostname in the URI, either \\hostname\sharename <file:///\\hostname\sharename> or \\hostname.domain.name\sharename <file:///\\hostname.domain.name\sharename> in the URI will
2003 Sep 29
0
Problem authenticate with a w2k3 ADS
Hello. I set up a samba 3.0.0 with ADS support. Everything is fine but authentication of incomming connections. I joined the ADS of a W2k3: linux:/ # /usr/local/samba/bin/net ads join "Computers" Using short domain name -- DOMAIN Joined 'LINUX' to realm 'DOMAIN.LOCAL' linux:/ # getent passwd root:x:0:0:root:/root:/bin/bash ...