Displaying 20 results from an estimated 8000 matches similar to: "Problem with Samba as Member of AD, Kerberos"
2005 Jul 15
3
Samba File Server with 2 NICs, only one is used
Hello all,
We have a Mandrake 10.1 server with Samba 3.0.13. The box has 2 NICs,
2 IPs and our DNS servers have both entries (same name for 2 IPs).
Since kerberos is not working around here (tried to fix it for about 3
weeks, then gave up) I found my workaround: I use NetBIOS alias for my
server, all clients use this alias for samba access and they
authenticate thgrough SSPI.
My problem is that
2009 Apr 01
0
try to join win2k3 r2 pdc
Hi
I am trying to join a out-of-the box win2k3 AD domain controller
it's been + forest prep for r2 domain
samba Version 3.3.2 on Freebsd 6.3-RELEASE
openldap-sasl-2.3
heimdal 0.6.3
adserver = AD DC server i installed (win2k3 box)
domain = my domain name
/etc/resolv.conf
search domain.net
nameserver adserver
contents of /usr/local/etc/smb.conf
[global]
2016 Feb 29
1
(Kerberos)problems during replication
Hi all:
I joined a samba4 DC to Win2k3. After run the samba-tool domain join command, all data migrate perfectly.
BUT then when I create an object into either samba4 or win2k3, these objects are not replicated to the another DC.
Then, I tried to obtain a kerberos ticket (kinit) and the output is: kinit: "Clock skew too great while getting initial credentials".
Then I sync both CDs
2004 Oct 14
0
Getting errors while running Samba 3.0.7 with ADS security mode under MIT Kerberos
Hi,
I compiled Samba 3.0.7, MIT Kerberos 1.3.5 and OpenLDAP 2.2.17. I did not
notice any errors during compilation. I searched and found the #define
HAVE_LDAP 1 and #define HAVE_KRB5 1 statements in the config.h file of Samba
3.0.7's include dir. So, ADS should be supported in the compiled Samba 3.0.7
version.
Here is what I did up to now. As described in the How-To Samba doc, I
created
2008 Dec 16
1
Kerberos for squid auth
When you use kinit to acquire a Kerberos ticket prior to
joining a Win2k3 domain with net ads join -U <upn> is that
ticket merely used for the join that follows? When it expires
does this mean anything?
Thanks,
jlc
2004 Oct 25
1
Kerberos vs NTLM 0.12 in Samba log files...
Hi,
I am trying to make Samba 3.0.7 work with ADS security mode. In the Win2K3
server's Event Viewer, I see the client's logon. In that log entry's
properties, I see that the "logon process" used is Kerberos. However, in the
Samba log files, the protocol selected is "NTLM 0.12" and I see a lot of
Samba log entries regarding NTLM authentication, nothing about
2006 Oct 27
2
Freebsd 6.1 and Kerberos in rc.conf
Hi people.
Im reading the samba manual to join my freebsd box with to an win2k3 AD
Domain, i install samba from ports with support for AD, already check that
my samba program has been build with support for kerberos, ldap and all the
stuff the manual recommended, now about kerberos, we have some stuff in
/etc/rc.conf
#
# kerberos. Do not run the admin daemons on slave servers
#
2002 Feb 02
1
Re: R install problem
On Fri, 1 Feb 2002, Tony Fagan wrote:
> I downloaded your RPM and tried installing it on Madrake 8.1.
> It failed and said it could not find:
>
> libblas.so.3
To install these, from console as root do:
urpmi liblapack3
> libgcc_s.so.1
> libgcc_s.so.1 (GLIBC_2.0)
urpmi libgcc3
--
Michele Alzetta
2001 Apr 08
1
help installing wine
Hi, everyone, i am trying to install wine from the source. after running the
configure script i procceed to do: make depend but i get the following message:
make:**** No rule to make target `depend'.Stop.
Does anyone have any suggestions about what to do? i am on linux madrake 6.5,
if that helps, thanks in advance.
2008 May 02
0
Wine release 0.9.61
This is release 0.9.61 of Wine, a free implementation of Windows on Unix.
This release marks the beginning of the code freeze for the 1.0 release.
What's new in this release (see below for details):
- Automatic updating of the WINEPREFIX directory.
- Winhelp now uses Richedit as display engine.
- Many RichEdit fixes.
- More improvements to IME support.
- More quartz fixes.
-
2006 Dec 21
0
weird kerberos enctype error on otherwise working 3.0.23d install
I have a Samba-3.0.23d installed on a CentOS4.4 server that cannot be
connected to from other machines in the same W2K3 ADS. The server was
added to the ADS successfully via "kinit admin@REALM" and "net ads
testjoin" works just fine. The clocks are NTP-synced and no clock slew
errors are to be seen.
If WinXP/Win2K3 clients connect using \\ip.address\ it works fine, but
if they
2005 Dec 01
0
Unresolved Questions for Active Directory Kerberos/LDAP/AD4Unix or SFU35 support?
I have been digging around for information on this in either online and
published books, but I haven't yet found the answer. I am interested in
AD connective through AD Kerberos/LDAP/SFU or AD Kerberos/LDAP/AD4Unix.
I have a pure win2k3 environment, so there is no backwards support via
PDC emulator. Published books document older NT-like environments.
*cries* If there are any documents,
2004 Sep 02
0
Upgrading Kerberos 5 to version 1.3.x for smb 3.0.6
Hi all,
Situation : New server RH9, Samba 3.0.6, Kerberos5 1.2.7 in active directory domain was working in 2000 but now (win2k3).
Problem is I need to either update kerberos to 1.3.x to get this working or install Fedora 2.
Unfortunately I have a controller card which isn't currently supported in fedora.
Other option is updating Kerberos in RH9 and all the problems this brings.
2004 Feb 12
1
mount.cifs and kerberos
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Sorry if this is a stupid question...:)
I have successfully mounted windows 2003 shares on linux using mount.cifs. I see
from packet traces that smb signing is enabled and working (signing is
set to mandatory on the win2k3 server). So I mount like this:
$ mount.cifs //server/share -o nosuid,user=admin
password:
I would like to eliminate the
2012 Apr 14
0
testjoin happy but kerberos broken
Hi there
I've got a problem CentOS-4.9 Samba server that we have never been able
to join to an existing Win2K3/Win2K8 AD domain correctly. We have before
and since installed Samba successfully on other sites btw. We actually
have 55+ CentOs-4.9 Samba servers world-wide with identical configs -
there's something about this one.
Anyway, "net ads join -Uadmininstrator...." works
2004 Aug 10
2
Kerberos verfy ticket failed
Hello list.
I've got a problem using samba-3.0.4 (RedHat AS 3.0)
the server is member of a Win2003 Active directory domain
All stuff about krb5 seems to work correctly
kinit user@REALM
klist
etc...
net ads join -U administrator has worked well too
But when any Windows client member of the domain try to connect to the
server it asks me for a user/pass.
here is the log.
[2004/08/10
2018 Oct 03
2
Any idea what causes "Oooh, got a frame with format of g729 on channel 'PJSIP/121-000001d2' when we're sending 'ulaw', switching to match"
The PJSIP endpoint is configured for ulaw only. Not sure how or why we are seeing the g729 on calls for this endpoint.
Would this be a case that asterisk detects the rtp stream is g729 even though it's negotiated as ulaw?
Why would asterisk change the format to g729 when disallow = all and allow = ulaw are the endpoint settings?
[121]
type = endpoint
context = IS
transport = transport1
aors
2006 Feb 01
1
Unable to Register to Asterisk through Proxy
Hi,
Has anybody come across a situation where they were unable to register with Asterisk through a SIP stateless proxy server?
I'm getting an error:
"403 Authentication user name does not match account name"
As far as I can tell the requests reaching Asterisk with and without the proxy are identical excepting the IP address the REGISTER request is coming from and the Via header
2017 Jan 24
2
Asterisk 14.2.1 PJSIP - is it possible to retrieve a PJSIP header To field for the SIP OK response to Trying?
I place a call into Asterisk (from SIP phone) and the To header does not have a tag. Asterisk then sends it's Trying response, still no tag in the To header. The phone then replies with OK, this time the To header includes a tag.
Is there any way to retrieve this response To header (including the tag field) from the dial plan?
I have tried the PJSIP-HEADER read of the To header, but it
2010 Oct 19
1
FFA SendFax rejects T.38 reINVITE (488 Not acceptable here)
Hello,
I'm trying to send a tif file, using Fax for Asterisk and the call is
executed, but when I get the reINVITE with T.38 data, the local server
doesn't recognize that we have this capability and sends a 488 message.
These are the logs:
<--- SIP read from UDP:xxx.xxx.xxx.xx8:5060 --->
INVITE sip:1234567 at 10.0.0.3:5060 SIP/2.0
Via: SIP/2.0/UDP