Displaying 20 results from an estimated 700 matches similar to: "Problem joining into ads"
2006 Jun 06
0
AW: Problem joining into ads
Hallo Herr Deschner,
ich habe mich sehr gefreut, als Sie so schnell auf meinen Eintrag in der Mailingliste geantwortet haben.
Haben Sie mit den Debug Meldungen anfgefangen?
Ich bin um jede Hilfe Dankbar.
Sie d?rfen mir auch gerne private Antworten (franz@pfoertsch.de).
Gru?
Franz Pf?rtsch
-----Urspr?ngliche Nachricht-----
Von: Guenther Deschner [mailto:gd@samba.org]
Gesendet: Mittwoch, 31.
2004 Dec 29
1
Samba 3.0.10 joining Windows 20003 ADS
abrams:~# kinit admin@CORP.TCC.INET
This seems to work just fine.
abrams:~# net ads join "TwinCities\TTAGS\SERVERS"
[2004/12/28 18:52:20, 0] libads/ldap.c:ads_add_machine_acct(1475)
Warning: ads_set_machine_sd: Unexpected information received
Using short domain name -- CORP
[2004/12/28 18:52:23, 0] libads/kerberos.c:get_service_ticket(335)
get_service_ticket: kerberos_kinit_password
2007 Mar 27
1
re: Samba + Winbind + SuSE Linux AD auth not working
ok here's the situation; i've done this on 7 servers
same either SLES 9 or 10, and all those work. i have a
problem server though which is SLES v9 (same versions
of all daemons/services that would be used) and this
one just wont allow AD auth to work
i can restart all smb, nmb, winbind, and ssh servers
with no errors
*Note: all the needed configuratoin file snippets are
at the end of
2004 Jul 20
1
Chasing the "ads_add_machine_acct: Insufficient access" problem
Okay, the jist of this whole thing, I get this infamous (?) problem, I
have been trying to search though the archives of samba-general on gmane
and also in my archive of this list. I have only seen requests for the
magical answer.
Environment: W2K/W2K3 mixed ADS going Native ADS only soon. Samba 3.0.4
compiled from source on a RHEL AS30 machine. MIT Kerberos v1.3.4 also
compiled from source.
2003 Oct 21
2
Joining AD domain success with an error.
Hello all,
When joining an Active Directory domain as role member, i always have this
error displayed, thought the machine account is created :
Warning: ads_set_machine_sd: NT_STATUS_INVALID_PARAMETER
I tried to look at the code, but i didn't understand this function.
What about such an error, which is display whith an error level == 0?
Since some problems appears when running samba, i
2005 Jun 17
0
net ads join fails on W2K3 server with latest MS patches
Hi All,
For the past few months I've been running a SUSE 9.2 server here
(mostly as an app server) which was a member of an AD domain
(w2k3 domain controller.) I used winbind to enable domain members
to log into the box, all was well.
This week the w2k3 server had some MS security patches applied
and suddenly logins became impossible, because winbind was unable
to retrieve user info from the
2004 Feb 24
1
Permissions on ou for net join to ADS
Hi
I have noticed the following behaviour:
If I get a kerberos ticket as a domain admin user using kinit and then do a
net join to an ADS domain, then this works fine and net ads testjoin and net
ads leave work too.
However if I do it as a user with full control on a particular ou within the
AD tree, net join gives the following:
net join "/Global Administration/Samba Servers"
2003 Aug 13
2
samba v3b3, SuSE 8.0 enterprise, heimdal 0.6, openssl ADS issues
Hi again all,
I'm trying to get samba 3b3 working with ADS on Suse 8.0 enterprise.
I've installed heimdal kerberos 0.6 with openldap support.
Now when I did that, I used the configure options of:
./configure --with-openldap=/usr/local/bin
--with-openldap-include=/usr/local/include
--with-openldap-lib=/usr/local/lib --enable-shared=yes
there's another config option of
2004 Apr 23
1
Issues with Samba 3.0.2 on OSX using ADS.
We have a Win2K network at work and I've been trying to integrate my Mac
10.3 machine into the network. It seems that once one thing is working,
something else is not. I have read through various Mac tutorials found
on the web but none seem to solve my problem.
Right now I have Active Directory Domain Logons working successfully but
Samba will not allow anyone (from Mac/Unix/Windows) to
2004 Apr 08
0
Can not leave active directory domain (Red Hat Enterprise Linux ES 3.0 server)
I can use kinit to get kerberos ticket. I used my AD domain user
account(NOT domain administrator, but can join Win2K server to AD realm)
and I could do "net ads join /company/ad/level/Computers -U my_username
-S Win2K_AD_DC1", the following is the output:
[2004/04/07 18:54:41, 0] libads/ldap.c:ads_add_machine_acct(1086)
Warning: ads_set_machine_sd: Unexpected information received
2002 Nov 12
0
Re: net ads join blows
hi,
you cannot use the root-principal unless it has administrative privileges,
this works for me:
kdestroy
kinit administrator@YOURREALM
net ads join
bye,
guenther
On Thu, Nov 07, 2002 at 08:48:44PM +0200, Jaakko Niemi wrote:
>
> Starting program: /usr/bin/net ads join
> root password:
> net: /home/liiwi/cvs-foo/openldap-2.1.8/libraries/libldap/getvalues.c:97:
2005 Sep 24
0
net ads join fails on ADS 2003
hello,
i am wondering, when i try to follow the ADS 2003, samba can't join completly.
The join ends with: ads_machine_password:Message stream modified.
When i start 'net ads join' with debugging i got an error:
[2005/09/24 18:51:49, 1] libads/krb5_setpw.c:parse_setpw_reply(237)
Got error packet 0x7e from kpasswd server
[2005/09/24 18:51:49, 1]
2004 Dec 02
0
Problem authenticating against Active Directory (samba 3.0.9 / fedora core 3)
I've spent all day on this, and I can't, for the life of me, get Samba
3.0.9 (updated RPM for Fedora Core 3) to authenticate properly against
Active Directory.
(I've edited out the actual domain name, username, etc)
I've synced up time (to within a half-second) with the domain controller.
Kerberos works:
[root@printshop samba]# kinit username@AD.DOMAIN.COM
Password for
2004 Jun 14
2
Member Server in Active Directory
I'm trying to join a Samba 3.0.4 (compiled from source on Debian) to an
Active Directory as a member server. I believe Kerberos is configured
correctly as kinit creates a ticket for the realm. Executables appear to have
support for Kerberos and LDAP (smbd -b | grep KRB and grep LDAP) return OK.
When I try to join the AD with
net ads join -U myadminusername
I'm prompted for my
2006 May 03
2
printer admin deprecated: please explain
I am Running a printserver using SLES9 SP3 with Samba 3.0.20b and
cups 1.1.20
Since the update to Samba 3.0.20 every start of a client program tells me
WARNING: The "printer admin" option is deprecated
Ok, I understood I should use
net rpc rights grant "<User or Group>" SePrintOperatorPrivilege -U ..
But I haven't any adminuser to grant this rights.
In my
2005 Jun 11
1
Problem joining a domain using ads
server: ms 2003 with ads
client: debian 3.1/samba 3.0.14
smb.conf:
..
[global]
workgroup = SP-GRUPPE
password server = 10.85.117.150
realm = SP-GRUPPE.DE
encrypt passwords = no
server string = %h server (Samba %v)
obey pam restrictions = yes
passdb backend = tdbsam, guest
passwd program = /usr/bin/passwd %u
passwd chat = *Enter\snew\sUNIX\spassword:* %n\n
*Retype\snew\sUNIX\spassword:* %n\n .
2004 May 21
3
Suse 9.1 Samba
I have been trying for two weeks to get onto a Win2k domain which has
active directory with no success. The Suse YAST samba client will not do
ADS, only domain, server, or user, so I went to the command line stuff I
found the the Samba documentation.
I can do kinit and get back the following:
sha-linux:/etc/samba # kinit art_fore@3MTS.COM
art_fore@3MTS.COM's Password:
kinit: NOTICE:
2004 Dec 02
3
net ads join fails - "Preauthetication failed"
After a lot of different problems and variations of krb5.conf and
samba.conf files I am currently stuck with the following error trying to
join a domain
net ads join -U nfybw@UIB.NO 'Klienter\IT\MatNat\IFT\Samba
Servers\IT-gruppen'
nfybw@UIB.NO's password:
[2004/12/02 15:34:36, 0] libads/ldap.c:ads_add_machine_acct(1367)
ads_add_machine_acct: Host account for iftsmb100 already
2005 Nov 01
1
Join ADS domain - Insufficient Access
SLES 9 SP2
samba-3.0.14a-0.4
heimdal-lib-0.6.1rc3-55.15
samba-winbind-3.0.14a-0.4
pam-modules-9-18.10
pam_krb5-1.3-201.7
I've been searching for days for a concrete answer to this question:
Is it possible to join an ADS domain from a Linux Samba server without
having Administrator privileges? Yes or No.
If so exactly what are the minimal requirements for joining the Linux
box to the
2007 May 22
2
kerberos_kinit_password -- Preauthentication falied ??
Hi,
I'm fairly new to samba so apologies if this is an old problem....
When I try 'net ads join -U administrator' I get the following:
[2007/05/22 12:15:15, 0] libads/ldap.c:ads_add_machine_acct(1368)
ads_add_machine_acct: Host account for storage4 already exists -
modifying old account
Using short domain name -- ABSOLUTESTUDIOS
[2007/05/22 12:15:15, 0]