similar to: Performance Problem / failed to verify PAC server signature

Displaying 20 results from an estimated 400 matches similar to: "Performance Problem / failed to verify PAC server signature"

2007 Aug 15
1
Performance Problem / failed to verify PAC server signature
Hello, We are experiencing ADS lower performance on Samba-3.0.22 for HPUX. I did Google search, and find out one message posted at http://lists.samba.org/archive/samba/2005-November/114231.html at the earlier time. >From my observation, it seems there was a spin on reply_spnego_negotiate()/ reply_spnego_kerberos() calls that invokes register_vuid() to register uvid with different vuid# for a
2010 Dec 20
4
problem connecting DFS-share with winXP - successful with Vista & 7
Hi, i have problems connecting to DFS-Share from Client WindowsXP. Same configuration works fine for Windows Vista and 7. On Windows 7 the LMCompatibility Level is 3. the striking point I see in logfile is following 2010/12/20 10:30:17, 1] smbd/service.c:make_connection_snum(1119) 10.184.144.171 (10.184.144.171) signed connect to service applbin initially as user useracc
2017 Oct 12
3
Samba 4.6.2 member server errors
Hi, I have 2 samba AD DC's running 4.7.0 and 2 member servers running 4.6.2. Everything seems to be working OK except that I see the following errors over and over again in the winbind log on one of the member servers: [2017/10/12 00:53:52.351095, 2] ../auth/kerberos/kerberos_pac.c:96(check_pac_checksum) check_pac_checksum: PAC Verification failed: Decrypt integrity check failed
2017 Oct 13
3
Samba 4.6.2 member server errors
Hai, I'll explain a bit. > -----Oorspronkelijk bericht----- > Van: me at tdiehl.org [mailto:me at tdiehl.org] > Verzonden: donderdag 12 oktober 2017 19:15 > Aan: L.P.H. van Belle > CC: samba at lists.samba.org > Onderwerp: Re: [Samba] Samba 4.6.2 member server errors > > Hi Louis, > > On Thu, 12 Oct 2017, L.P.H. van Belle via samba wrote: > > >
2014 Feb 14
1
Public Share on Samba with ADS security
Hello, list; This is my second try asking for help. One person responded and provided help, but I still can't seem to work this out. I've searched, but have failed. I'm not new to Samba, but I can and do make mistakes...so here I am. I have a fresh install of Ubuntu 13.10 with Samba 3.6.18. I have Kerberos properly configured and have successfully joined the domain, and can list
2009 Jul 07
0
Problems with shares after upgrading to 3.4.0
I'm running a lot of samba-servers (3.3.x) as AD members (security = ADS) here and they are working fine. For tests I updated one of my server to 3.4.0 and now have problems with lots of users accessing the shares.. Alltough there are still some users that always can access any share on the updated server, most of them cannot. Running samba with log level 3 gives the following logs (only
2012 Nov 30
2
User is invalid on this system
Hello all. We are running Samba 3.6.6 on a Debian 6.0.6 server. We made the upgrade from 3.6.5 to 3.6.5 about a week ago and ever since we have lost the ability to map Samba shares from our Windows XP SP3 and Windows 7 clients: Here's an example from my workstation (logging verbosity set at 10): [2012/11/29 15:23:58.120087, 3] smbd/process.c:1467(switch_message) switch message
2008 Feb 12
1
RE: Delegation of authentication (S4U) and SAMBA
Hello, Does samba support the use of S4U? What do we need to configure in SAMBA or krb5 to support getting a ticket obtained by S4U. We are using 3.0.25 and krb5-1.4.1 We are getting the following error: decode_pac_data: Name in PAC [username@something1.something2.realmname] does not match principal name in ticket The ticket could be different than the PAC name because the
2017 Oct 16
2
Samba 4.6.2 member server errors
Hi Rowland, On Sun, 15 Oct 2017, Rowland Penny via samba wrote: > On Sun, 15 Oct 2017 13:38:13 -0400 (EDT) > me at tdiehl.org wrote: > >> Yes I understand, however, there are 2 things I am concerned about. >> >> When the errors are spewing, winbind never goes to sleep and the load >> on the server runs somewhere between 6-8 constantly (as shown by >>
2017 Dec 04
2
GID range full!!
On 12/04/2017 02:15 PM, Rowland Penny via samba wrote: > Possibly, if, by using the old config, Samba is ignoring the 'idmap > config DOMAIN' lines and putting everything into the '*' domain, then > you may (probably would) have more than your original set up allowed. > If this fixes it, you have found another bug ;-) > It should work with the old lines. I now
2017 Oct 12
0
Samba 4.6.2 member server errors
Hai, You googled with the wrong words i think. 1 search, 6 words. 4e link and 5e link, for explanation and solution. ;-) Based on your question, what i experianced and what i found with google. https://support.oneidentity.com/authentication-services/kb/92515 Dont look at the product here, but its an exact match on the error code. They say, source of the problem is AD out of sync. And
2017 Dec 06
0
GID range full!!
Am 2017-12-04 um 18:07 schrieb Stefan G. Weichinger via samba: > On 12/04/2017 02:15 PM, Rowland Penny via samba wrote: > >> Possibly, if, by using the old config, Samba is ignoring the 'idmap >> config DOMAIN' lines and putting everything into the '*' domain, then >> you may (probably would) have more than your original set up allowed. >> If this
2012 Dec 30
1
DFS not working on Win XP
Hello, a heave a share on a samba server 3.6.3 that is used as a DFS-Root. The DFS Links a working on Client with Windows 7 but not on Windows XP clients. Searching on the internet gives me a hint that it can be a problem with "security = ADS". The Samba server is member of a windows 2003 R2 Domain, and the Unix user info (uid, gid) are stored on the domain in der RFC 2302
2017 Oct 16
1
Samba 4.6.2 member server errors
Hi Tom, Small update. I'am also still looking into this but im not getting much futher.. I am just reading : https://blogs.msdn.microsoft.com/openspecification/2009/12/31/verifying-the-server-signature-in-kerberos-privilege-account-certificate/ Bit older but, im trying to understand more what happens here. And the only "guess" i can make here is . A kerberos ticket, with
2012 Oct 11
1
users map with ADS not working
Hi All I am running two instances of samba on same box. One instance of samba has joined AD domain ABC and the other 123. My workstation is on ABC domain and when I try to connect to samba server on ABC domain, it asks me for user name and password and then fails. If I put IP address instead it works. At the same time, when I try to connect to 123 domain, it asks me for user name and password and
2013 Aug 12
0
Samba 3.6 File server with W2k3 DC
Hi, I've been fighting against a file server with samba 3.6.9-151.el6 authenticating from a windows 2003 server. I've read a thousand posts and howtos with all kind of samba versions without success. It looks like windbind is not processing things right. I've set the unix permissions on the folder to CANAL4\graficos right and the parent folder is world readable so this should not be
2010 May 12
0
smbd/winbindd truncating user name: "Could not parse domain user"
Hello, we have built Samba 3.5.2 with ADS support on Solaris 10 and joined the server successfully into the domain. kinit, klist, wbinfo -g, wbinfo -u, net ads info are working correctly. Unfortunately whenever we want to access a share on the Solaris server from our Windows XP / Windows 7 clients we get a logon box to specify username and password. smbd log file shows that the logon attempt is
2024 Apr 04
1
Samba AD Authentication Issues After Update
Hello everyone, Samba stopped authenticating AD users after minor upgrade. Environment: - OS: CentOS 7 - Samba Version: Upgraded from samba-4.10.16-15 to samba-4.10.16-25 Problem: Clients are unable to authenticate with Active Directory credentials, receiving a "password incorrect" error. Verification: sudo net ads testjoin shows a successful join. wbinfo --ping-dc confirms
2011 Mar 03
1
samba 3.5.7 tries to authenticate on ADS by machine name, not username
Hi There's a lot of this all over the web but there doesn't seem to be much in the way of in-depth investigation. I have a RHEL5.3 server on which I've installed samba 3.5.7 from http://ftp.sernet.de/pub/samba/3.5/rhel/5/i386/ It's set up with identical kdc.conf and smb.conf files to a server I set up on the same network last week which is working flawlessly. I can log on to
2002 Nov 01
1
SLOW connections
Hi everyone, I have a small home network with a Samba 2.2.3 server on Linux serving up my files and printers. However, from windows machines (win 98) connecting to a share takes an annoyingly long time (in the order of 10s of seconds) Connecting from a linux box is very quick. I have configured Windows 98 to fully reconnect the share on logon. If I don't, Windows Explorer hangs all