similar to: ADS / Domain problems

Displaying 20 results from an estimated 10000 matches similar to: "ADS / Domain problems"

2005 May 25
0
Trouble with access permissions from W2K client to Samba 3.0.2 server
Greetings, I'm using Samba (3.0.2) on debian sarge as a file server for W2K clients. I'm having problems with one user in particular. The user can connect to a share, but has no write access. On the Unix side of the world, he has full write access. Attached are the relevant portions of the log file and my smb.conf file. Other details: The domain controller is W2K ADS. I have several
2005 Oct 31
0
Session setup with machine account
Hi, Our Samba Servers are getting slower and slower. Even opening the context menu on some files take 5 seconds. My log file is filled up with messages like: nsaction 909 of length 1454 [2005/10/31 12:58:04, 3] smbd/process.c:switch_message(886) switch message SMBsesssetupX (pid 24227) conn 0x0 [2005/10/31 12:58:04, 3] smbd/sec_ctx.c:set_sec_ctx(288) setting sec ctx (0, 0) -
2005 Jun 02
0
Help: Failed to verify incoming ticket! revisited, problems with Samba/2003
I am struggling with a Samba/Server 2003 problem which doesn't make sense. I have compiled Samba 3.0.14a and MIT Kerberos 1.3.6 several times on different machines. I have a set of RPMS which work fine on one of my workstations, but do not work on the server. On the server I get the dreaded: reply_spnego_kerberos(173) Failed to verify incoming ticket! in the logs. I have compiled
2003 Sep 25
0
another one of those "cannot authenticate against AD" posts :(
Hello, I had a perfectly good setup with samba being a domain member, and domain users accessing their shares, since beta1. A month and several updates from M$ later, clients were no longer able to log on to the samba machine. I know this must be related to the updates, since there have been absolutely no configuration / application modifications on the linux box, and clients who forgot to
2006 Aug 01
0
ADS share browsing error - Decrypt integrity check failed
Hello everyone, There is a FreeBSD box, which is a member of ADS domain. The domain has both W2000 and W2003 domain controllers. After upgrading to samba-3.0.23a I discovered that it is not possible to browse a share on a FreeBSD computer, but pam_winbind seems to work. Connecting from a WindowsXP box to the FreeBSD causes WinXP to ask for a password a number of times, and eventually say
2004 Aug 30
0
Debian Stable Samba 3.0.5 to 3.0.6 upgrade - broke my config?
I upgraded Samba from 3.0.5 to 3.0.6 using apt & the Debian Stable binary packages on samba.org. Samba server was a member server for a Windows 2000 AD domain. Since then, I have been having problems connecting to it by name (\\TERABYTE) - ip address works fine, but by name I'm prompted for a username/password and nothing works. I'm guessing this is a Kerberos problem, and
2007 Jun 27
1
rfc2307 - 3.0.24
I'm running samba 3.0.24 (the latest package that seems to be available for Ubuntu 7). I have a Windows 2003 AD with the R2/RFC2307 schema loaded. I would prefer to use the 3.0.24 package if possible unless there is an ubuntu package for 3.0.25. Any suggestions would be appreciated. Wbinfo -u and -g appear to work great. Net ads testjoin comes back successful. In log.winbindd-idmap I get
2007 Feb 07
0
Samba can't find unix accounts for user mapping
Hi, we're using samba 3.0.24 on Solaris 10. Not long ago we've migrated from NIS to LDAP with the Solaris integrated LDAP Server/Client. Now the user mapping doesn't work any more. If I map the WINDOWS\Administrator account to the unix account admin (this is a local account on the samba server) all works fine. [2007/02/06 16:27:25, 3, effective(0, 0), real(0, 0)]
2006 Feb 09
0
ads kerberos key problem
I tried to use the samba share that I was able to access this morning, but now I cannot get to it. The error in the client's log is: Doing spnego session setup [2006/02/09 13:14:02, 3] ../smbd/sesssetup.c:reply_sesssetup_and_X_spnego(664) NativeOS=[Windows 2002 Service Pack 1 2600] NativeLanMan=[Windows 2002 5.1] PrimaryDomain=[] [2006/02/09 13:14:02, 10]
2003 Nov 07
0
W2K, W2K Server and samba 3.0.1
Hi, I've a Windows 2000 workstation trying to connect to a Samba 3.0.1 (Redhat 9.0) domain member of a Windows 2000 Domain (Served by a Windows 2000 Server). From the windows workstation end, I get "incorrect password or unknown username" and from the samba end I get the log at the bottom of this email. If I restart the samba server it will work for a while (the time between
2004 Mar 18
0
3.0.2 works with kerberos 1.2.7 for a while, then stops
I installed RH9 and the RH9 binary rpm of samba-3.0.2a from the ftp site. I added default_realm, kdc, and [domain_realm] sections to my krb5.conf file because for some reason it can't get them from DNS (haven't worked that out yet) and with a small edit of smb.conf was able to join the new samba install to our 2k3 active directory. wbinfo -t and kinit and stuff all worked as did getent
2004 Aug 10
2
Kerberos verfy ticket failed
Hello list. I've got a problem using samba-3.0.4 (RedHat AS 3.0) the server is member of a Win2003 Active directory domain All stuff about krb5 seems to work correctly kinit user@REALM klist etc... net ads join -U administrator has worked well too But when any Windows client member of the domain try to connect to the server it asks me for a user/pass. here is the log. [2004/08/10
2004 Jan 12
0
"Ticket not yet valid" message - further info
Hi, Thanks to all who responded to my initial post to the list regarding "Ticket not yet valid" messages in my samba logs. I neglected to include this in my initial post - we had already suspected clock synchronisation problems, and all of our servers (AIX Samba server and windows clients) are all synchronised to the AD DC, which is sychronised to an internet atomic clock in Melbourne.
2003 Oct 06
0
Samba 3.0 & Windows 2003 server ADS
Hi there I'm having trouble getting winbindd working properly (I think). My understanding is that winbindd uses a kerberos 5 session (with 2003 server) to authenticate the machine to ADS, before any users have logged in. Then it uses that session ticket to authenticate all users of the smb server. Is that correct ? I can run kinit ok, and klist shows me a krb5 ticket (using a Domain
2004 Jan 09
1
"Ticket not yet valid" message in log
Hi, I'm having a problem with Samba 3 in AD mode. For some reason, the first time (usually first thing in the morning) a user tries to map a drive to my samba 3 server, the log shows a message "Ticket not yet valid". The user is prompted for username/password (they've already logged on to the windows domain, so they shouldn't be prompted. The user then waits for a minute or
2003 Nov 13
0
Client accessing Samba doesn't authenticate against A ctive Directory
| When a Windows client attempts to browse shares on a Samba 3.0 server | authenticating against a Windows 2003 Active Directory domain, it | requests credentials. Typing in user name and password fails I am having this exact same issue. Attached is a sample copy of my smb.conf and krb5.conf along with some errors I got from the smbd logs (max debug level). smb.conf ---- [global] server
2004 May 27
3
Any ideas ?
Hints or check lists for that type or error ? [2004/05/27 14:11:06.627563, 10, pid=23616] libads/kerberos_verify.c:ads_verify_ticket(185) ads_verify_ticket: enc type [1] failed to decrypt with error Bad encryption type [2004/05/27 14:11:06.627589, 10, pid=23616] passdb/secrets.c:secrets_named_mutex_release(716) secrets_named_mutex: released mutex for replay cache mutex [2004/05/27
2012 May 04
1
s3 connect to s4 ads woes, need guidance..
I'm beating my head up against the wall here.. Need some extra eyes!!! Setup -- Samba4 Domain Controller and samba3 print server.. DNS FlatFile,, All dns works.. Issue, When I browse to the print Server vi \\IP-Address I am able to connect just fine.. When I browse using \\netbios-name I connect to the server but it opens up a username/pass dialog box and no name or passwords will work..
2009 Sep 06
0
No subject
=20 \\128.252.123.123\sharename <file:///\\128.252.123.123\sharename>=20 =20 And it works as expected - my clients are in the same domain, no password is asked for, etc. =20 Using any form of the hostname in the URI, either \\hostname\sharename <file:///\\hostname\sharename> or \\hostname.domain.name\sharename <file:///\\hostname.domain.name\sharename> in the URI will
2004 Aug 09
0
Samba 3.0.4 ad member, XP Pro Members cant access shares
Hi, My XP client cant access the samba share: any help would be great!!!! My environment: RH ES 3.1 + "up2date" Samba 3.0.4-6.3E Kerberos 1.2.7 I have followed the "samba3 by example book" & the "Samba3 How To Guide" It joined to ad & I can View Kerberos tickets and do the Winbind stuff: -bash-2.05b# wbinfo -t checking the trust secret via RPC calls