Displaying 20 results from an estimated 400 matches similar to: "Limit user authentification into Winbind ?"
2007 Apr 18
1
winbindd/mod_auth_ntlm_winbind.so fail to use workstation credentials (NTLM+SPNEGO)
Hallo,
We protect linux/apache server with mod_auth_ntlm_winbind.so to
authenticate users with their domain accounts. The server is joined into
windows domain (Windows 2003 Server). Apache/mod_auth_ntlm_winbind.so is
configured for NTLM+SPNEGO authentication. So far users can login when
providing valid credentials.
Users login into their windows workstation (Windows XP SP2 IE/Firefox)
with
2006 Oct 23
1
Getting users and groups through winbind on FreeBSD
Hi
We have a few Linux samba servers that authenticate against our
Active Directory domain (Small Business Server 2000). I've added a
couple of disks to a FreeBSD 6.1 server in our office and I'm trying
to achieve the same but not having much luck. I'm new to all
this... I'm not our network admin, but he is BSD-phobic so I thought
it was safer to do it myself.
2006 Apr 26
1
Bad Password
Everyone,
I am going nuts trying to figure this problem out. I have
successfully joined a SUSE 10 server to our domain and configured samba
for ADS authentication. This exact setup works on all my other servers.
On this one, I keep getting access denied when entering my domain
password despite the fact that I have tried it literally dozens of
times. I am 100% confident I am
2008 Nov 19
0
File sharing is ok, but new ADS user validation is not ok
We have Samba 3.2.4 on two SLES 10 (one is SP1, the other SP2 64bit)
machines. Both are member servers in our ADS, which was over the past
month given some additional DCs, new IPs for all DCs, and upgraded to
Windows 2008 (from win2003). The krb5.conf and nsswitch.conf files on
the two machines are identical; the smb.conf files are *nearly*
identical in their common section; the filewall rules
2008 Sep 02
1
Winbind 3.2.3 error with trusted domains
With Samba on Debian Lenny joined to a Server 2003 Native domain that has two incoming non-transitive trusts (users in my domain can authenticate to the foreign domains, but their users cannot authenticate to us) winbind is taking a very long time to authenticate or list users the first time it is used after starting. Winbind blocks for four to five minutes, and anything that touches winbind will
2006 Oct 09
0
wbinfo -r returns only 16 groups (sometimes)
Something we noticed after upgrading from 3.0.14a to 3.0.20 and still a
problem with 3.0.23c on Solaris 9 Sparc. Windows 2003 server running
Active Directory. The examples below are all with 3.0.23c downloaded
last week and compiled from source using gcc 3.3.something. 3.0.14a
works perfectly using the same smb.conf.
We use Samba to do proxy authentication for squid using ntlm_auth and
group
2005 Dec 23
0
winbind problem?
Hello list,
I have recently updated SAMBA with samba 3.0.20a RPM on suse 9.1 because
I needed to add it to a windows 2003 domain. I was able to join the
machine to the domain and to setup smb.conf to where I can map files
with domain users and domain groups.
The problem I am having is connecting to the server. When I try to go to
\\server <file:///\\server> I get prompted for
2007 Jul 20
2
safe_strcpy errors from winbindd (Samba 3.0.25b)
Hi,
we've upgraded recently from samba 3.0.23 to 3.0.25b. Since then, we've getting these error
messages from winbindd:
Jul 17 12:00:23 cvk027 winbindd[20772]: [2007/07/17 12:00:23, 0] lib/util_str.c:safe_strcpy_fn(659)
The volume of these messages is very high, many times together with unreadable character garbage.
Is there any way to correct or suppress these messages?
Our
2005 Oct 19
0
Windows group file permission problem
CentOS 3.5
samba3-3.0.20a-24
Security ADS
I can't get windows group permissions on shares to work except for 'domain users'. The windows group I am trying to use is Unix.Samba. This group does not exist on the linux box. It resolves correctly using getent group and when I chgrp files to unix.samba, ls shows the group ownership as Unix.Samba. getent group shows this group with the
2009 Nov 17
1
Samba trusts, mapping issue, and pam crap domain
I am running Samba ver 3.0.37 on Solaris 10 (sparc) as a PDC with LDAP for
the backend for both samba and unix accounts. Assume the samba SMBPDC is
called "PDC."
I have also set up a trust with an Windows domain- lets call it
WINDOMAIN- (the PDC for the Windows domain is Win 2003 but is in mixed mode
for backwards compat.) The SAMBA domain trusts the WINDOWS domain, not not
vice
2009 Mar 21
1
Windows server 2003 SP2, SFU 3.5 and Samba 3.0.28
Hello list users,
I have been struggling with this combination in the subject field couple
of days now, so I decided to ask for some advice here. Hopefully someone
can point me to a right direction. The ultimate goal for me is to
authenticate users using AD, so that the UID/GID values configured for
users with SFU would also be in use in all our Linux machines. My
understanding is that using
2007 May 18
1
3.0.25 Winbind high CPU usage
I just upgraded from 3.0.23d to 3.0.25 and I'm noticing that winbind is
chewing up a lot of CPU usage.
There are always 2 winbindd processes and one uses about 80% cpu and the
other use 15% cpu.
When I run a tcpdump and look at the traffic going to/from the domain
controller winbindd is connected to, there is a constant flow of
traffic.
Here is the winbind setup from my smb.conf file:
2005 Jul 22
1
winbind lookup errors
Hello Samba folks,
I have recently begun seeing some disturbing behavior from winbind.
Winbind will fail to look up users and groups. Examples:
The machine is configured to use winbind as a nss module.
"getent passwd <username>" will yield no results.
"wbinfo -n <username>" will yield "Could not lookup name <username>"
"wbinfo -g"
2007 Nov 05
0
Samba 3.0.26a, windows 2k3 r2 SFU, problems with auth/nss
Dear samba list,
For some time we've had servers connecting to a w2k3 r2 server via
ADS setup. Wins was working fine and users were able to authenticate.
Recently we've added a GFS like system. This required getting the
UID/GID's unified. Suggestions were made on the samba IRC channel to
install SFU on the PDC. I'm receiving some very strange output.
Usernames/pwd have
2010 Jan 21
0
Samba/Winbind 3.4.4 on AIX 5.3 TL 10 does not retrieve ANY User's Secondary Groups
Hi folks !
Has someone any idea on this issue on AIX 5.3 TL 10 with winbind ?
I'm really stuck now ...
I think everything is working pretty well with WINBIND and AD 2k3 ,
but not my most important point : I absolutely need the Secondary groups of
each AD user which get connected to the AIX to use this filter with sudo...
I only get Primary Group (which is by default "Domain Users"
2007 Oct 26
0
Pre-3.023d-Bug in ACL-handling reappears in 3.026a
# wbinfo -Y S-1-5-11
Could not convert sid S-1-5-11 to gid
# wbinfo -Y S-1-5-13
Could not convert sid S-1-5-13 to gid
(S-1-5-11 are the Authenticated Users, S-1-5-13 are the Terminal Server
Users.)
This bug was finally solved in release 3.023d.
Now it is back again.
How can I get this working?
I'm using idmap/tdb - would another idmap-module solve this issue?
The winbind log looks like
2009 Jul 27
2
wbinfo returns no domain users
Hi,
I've spent two days trying to figure out how to solve this,
researching on the web, etc, and found no answer... :S
I've setup a Ubuntu 9.04 with Samba and Winbind, joined the domain
(using RPC) and when I try to list users and groups using wbinfo I got
nothing.
I already tryed deleting tdb files from /var/lib/samba and restarting
samba and winbind, joined the domain again,
2008 Mar 10
1
Problem with ADS idmap backend
I'm running Samba 3.0.28a on a CentOS 3.9 box as a member of an AD
domain whose PDC is a W2k3 server (Standard x64 R2 SP2).
Using wbinfo -u and wbinfo -g I can see domain users and groups from
the CentOS box, but getent (passwd|group) fails to display them. The
nsswitch is setup correctly, as far as I can tell. When I tail -f the
samba log file during a getent query, I see that winbindd is
2007 May 30
4
Samba 3.025 wbinfo checking the trust secret via RPC calls failed
I have compiled Samba 3.0.25a from source on a Solaris 10 machine. I
had previously been testing Samba 3.0.24 (from packages on
www.sunfreeware.com) and have reused the smb.conf file. Otherwise
this is a clean setup, not an upgrade.
The server is configured as a PDC for my domain "SAMBADOMAIN"
I created a samba password for the local root and administrator accounts.
I joined the
2006 Oct 20
2
could not read attribute 'msSFU30UidNumber'
Hi,
I'm using samba 3.0.23c, and having a bit of trouble getting it to play nice
with my active directory. I'm using Windows Small Business Server 2003 with
the SFU 3.5 NIS server/schema extensions installed. I have samba configured
to use ad as the idmap backend, and sfu for nss info.
When running getent passwd, only a few active directory users show up, and I
get lots of errors