Displaying 20 results from an estimated 10000 matches similar to: "ADS / Domain problems"
2005 May 25
0
Trouble with access permissions from W2K client to Samba 3.0.2 server
Greetings,
I'm using Samba (3.0.2) on debian sarge as a file server for W2K
clients. I'm having problems with one user in particular. The user can
connect to a share, but has no write access. On the Unix side of the
world, he has full write access.
Attached are the relevant portions of the log file and my smb.conf file.
Other details:
The domain controller is W2K ADS. I have several
2005 Oct 31
0
Session setup with machine account
Hi,
Our Samba Servers are getting slower and slower. Even opening the
context menu on some files take 5 seconds. My log file is filled up with
messages like:
nsaction 909 of length 1454
[2005/10/31 12:58:04, 3] smbd/process.c:switch_message(886)
switch message SMBsesssetupX (pid 24227) conn 0x0
[2005/10/31 12:58:04, 3] smbd/sec_ctx.c:set_sec_ctx(288)
setting sec ctx (0, 0) -
2005 Jun 02
0
Help: Failed to verify incoming ticket! revisited, problems with Samba/2003
I am struggling with a Samba/Server 2003 problem which doesn't make
sense.
I have compiled Samba 3.0.14a and MIT Kerberos 1.3.6 several times on
different machines. I have a set of RPMS which work fine on one of my
workstations, but do not work on the server. On the server I get the
dreaded:
reply_spnego_kerberos(173)
Failed to verify incoming ticket!
in the logs. I have compiled
2003 Sep 25
0
another one of those "cannot authenticate against AD" posts :(
Hello,
I had a perfectly good setup with samba being a domain member, and
domain users accessing their shares, since beta1. A month and several
updates from M$ later, clients were no longer able to log on to the
samba machine. I know this must be related to the updates, since there
have been absolutely no configuration / application modifications on the
linux box, and clients who forgot to
2006 Aug 01
0
ADS share browsing error - Decrypt integrity check failed
Hello everyone,
There is a FreeBSD box, which is a member of ADS domain. The domain has both
W2000
and W2003 domain controllers.
After upgrading to samba-3.0.23a I discovered that it is not possible to
browse a share on a FreeBSD computer, but pam_winbind seems to work.
Connecting from a WindowsXP box to the FreeBSD causes WinXP to ask for a
password a number of times, and
eventually say
2004 Aug 30
0
Debian Stable Samba 3.0.5 to 3.0.6 upgrade - broke my config?
I upgraded Samba from 3.0.5 to 3.0.6 using apt & the Debian Stable
binary packages on samba.org. Samba server was a member server for a
Windows 2000 AD domain. Since then, I have been having problems
connecting to it by name (\\TERABYTE) - ip address works fine, but by
name I'm prompted for a username/password and nothing works. I'm
guessing this is a Kerberos problem, and
2007 Jun 27
1
rfc2307 - 3.0.24
I'm running samba 3.0.24 (the latest package that seems to be available for
Ubuntu 7). I have a Windows 2003 AD with the R2/RFC2307 schema loaded. I
would prefer to use the 3.0.24 package if possible unless there is an ubuntu
package for 3.0.25. Any suggestions would be appreciated.
Wbinfo -u and -g appear to work great. Net ads testjoin comes back
successful.
In log.winbindd-idmap I get
2007 Feb 07
0
Samba can't find unix accounts for user mapping
Hi,
we're using samba 3.0.24 on Solaris 10. Not long ago we've migrated from NIS to LDAP with
the Solaris integrated LDAP Server/Client. Now the user mapping doesn't work any more.
If I map the WINDOWS\Administrator account to the unix account admin (this is a local account
on the samba server) all works fine.
[2007/02/06 16:27:25, 3, effective(0, 0), real(0, 0)]
2006 Feb 09
0
ads kerberos key problem
I tried to use the samba share that I was able to access this morning,
but now I cannot get to it. The error in the client's log is:
Doing spnego session setup
[2006/02/09 13:14:02, 3]
../smbd/sesssetup.c:reply_sesssetup_and_X_spnego(664)
NativeOS=[Windows 2002 Service Pack 1 2600] NativeLanMan=[Windows
2002 5.1] PrimaryDomain=[]
[2006/02/09 13:14:02, 10]
2003 Nov 07
0
W2K, W2K Server and samba 3.0.1
Hi, I've a Windows 2000 workstation trying to connect to a Samba 3.0.1
(Redhat 9.0) domain member of a Windows 2000 Domain (Served by a Windows
2000 Server). From the windows workstation end, I get "incorrect
password or unknown username" and from the samba end I get the log at
the bottom of this email. If I restart the samba server it will work
for a while (the time between
2004 Mar 18
0
3.0.2 works with kerberos 1.2.7 for a while, then stops
I installed RH9 and the RH9 binary rpm of samba-3.0.2a from the ftp
site. I added default_realm, kdc, and [domain_realm] sections to my
krb5.conf file because for some reason it can't get them from DNS
(haven't worked that out yet) and with a small edit of smb.conf was able
to join the new samba install to our 2k3 active directory. wbinfo -t
and kinit and stuff all worked as did getent
2004 Aug 10
2
Kerberos verfy ticket failed
Hello list.
I've got a problem using samba-3.0.4 (RedHat AS 3.0)
the server is member of a Win2003 Active directory domain
All stuff about krb5 seems to work correctly
kinit user@REALM
klist
etc...
net ads join -U administrator has worked well too
But when any Windows client member of the domain try to connect to the
server it asks me for a user/pass.
here is the log.
[2004/08/10
2004 Jan 12
0
"Ticket not yet valid" message - further info
Hi,
Thanks to all who responded to my initial post to the list regarding
"Ticket not yet valid" messages in my samba logs.
I neglected to include this in my initial post - we had already
suspected clock synchronisation problems, and all of our servers (AIX
Samba server and windows clients) are all synchronised to the AD DC,
which is sychronised to an internet atomic clock in Melbourne.
2003 Oct 06
0
Samba 3.0 & Windows 2003 server ADS
Hi there
I'm having trouble getting winbindd working properly (I think).
My understanding is that winbindd uses a kerberos 5 session (with 2003
server) to authenticate the machine to ADS, before any users have logged in.
Then it uses that session ticket to authenticate all users of the smb
server.
Is that correct ?
I can run kinit ok, and klist shows me a krb5 ticket (using a Domain
2004 Jan 09
1
"Ticket not yet valid" message in log
Hi,
I'm having a problem with Samba 3 in AD mode. For some reason, the first
time (usually first thing in the morning) a user tries to map a drive to
my samba 3 server, the log shows a message "Ticket not yet valid". The
user is prompted for username/password (they've already logged on to the
windows domain, so they shouldn't be prompted.
The user then waits for a minute or
2003 Nov 13
0
Client accessing Samba doesn't authenticate against A ctive Directory
| When a Windows client attempts to browse shares on a Samba 3.0 server
| authenticating against a Windows 2003 Active Directory domain, it
| requests credentials. Typing in user name and password fails
I am having this exact same issue. Attached is a sample copy of my smb.conf
and krb5.conf along with some errors I got from the smbd logs (max debug
level).
smb.conf
----
[global]
server
2004 May 27
3
Any ideas ?
Hints or check lists for that type or error ?
[2004/05/27 14:11:06.627563, 10, pid=23616]
libads/kerberos_verify.c:ads_verify_ticket(185)
ads_verify_ticket: enc type [1] failed to decrypt with error Bad
encryption type
[2004/05/27 14:11:06.627589, 10, pid=23616]
passdb/secrets.c:secrets_named_mutex_release(716)
secrets_named_mutex: released mutex for replay cache mutex
[2004/05/27
2012 May 04
1
s3 connect to s4 ads woes, need guidance..
I'm beating my head up against the wall here.. Need some extra eyes!!!
Setup -- Samba4 Domain Controller and samba3 print server.. DNS
FlatFile,, All dns works..
Issue, When I browse to the print Server vi \\IP-Address I am able to
connect just fine.. When I browse using \\netbios-name I connect to the
server but it opens up a username/pass dialog box and no name or
passwords will work..
2009 Sep 06
0
No subject
=20
\\128.252.123.123\sharename <file:///\\128.252.123.123\sharename>=20
=20
And it works as expected - my clients are in the same domain, no
password is asked for, etc.
=20
Using any form of the hostname in the URI, either \\hostname\sharename
<file:///\\hostname\sharename> or \\hostname.domain.name\sharename
<file:///\\hostname.domain.name\sharename> in the URI will
2004 Aug 09
0
Samba 3.0.4 ad member, XP Pro Members cant access shares
Hi,
My XP client cant access the samba share: any help would be great!!!!
My environment:
RH ES 3.1 + "up2date"
Samba 3.0.4-6.3E
Kerberos 1.2.7
I have followed the "samba3 by example book" & the "Samba3 How To
Guide"
It joined to ad & I can View Kerberos tickets and do the Winbind stuff:
-bash-2.05b# wbinfo -t
checking the trust secret via RPC calls