Displaying 20 results from an estimated 3000 matches similar to: "ads_kinit_password failed: Preauthentication failed"
2009 Sep 04
1
samba - preauthentication error
Can anyone suggest how to get around the following?
[2009/09/05 00:32:55, 3] libads/sasl.c:ads_sasl_spnego_bind(300)
ads_sasl_spnego_bind: got server principal name =
exdc1$@domain.example.com
[2009/09/05 00:32:55, 3] libsmb/clikrb5.c:ads_krb5_mk_req(593)
ads_krb5_mk_req: krb5_cc_get_principal failed (No credentials cache found)
[2009/09/05 00:32:56, 0]
2005 Apr 05
6
net ads join fails
I am trying to connect to an ADS domain and it is failing all the time.
I am running SuSE Linux 9.0 with Samba 3.0.13 and have configured Samba with ldap and heimdal kerberos
Attached is my debug level 10 error log created when the join is attempted.
I would appreciate any advice on solving this problem.
Thanks in advance
Penny Willisson
DISCLAIMER: The information contained within or
2009 Mar 19
1
Can join ADS domain, all accounts/auth work fine, but leaving domain fails
Hello all,
As the subject says, as far as I can tell everything works on my ads
integrated samba server. Domain accounts can be used for ssh, and
accessing shares, I just can't leave the domain. Here is a successful
join command followed by an unsuccessful leave command at debug level 4.
Any ideas?
TIA,
Mark
user@dordal:~$ sudo net ads join -U administrator@MYDOMAIN.COM -d 4
[2009/03/19
2006 Feb 03
5
trouble with winbind
Hi,
I'm running samba, V3.0.20b-3.4-SUSE, on suse el9. I've successfully
bound one machine to active directory, I can login to the local box
using domain credentials. However, I can't get a second machine to
the domain, using the exact same procedures. The machine claims to be
bound,
wbinfo -t returns "checking the trust secret via RPC calls succeeded"
But, when I
2016 Oct 03
3
Samba Member NT_STATUS_NETWORK_SESSION_EXPIRED
hey,
now after observe last changes on the weekend… i have also the issue.
After 10 hours i can’t connect to the shares on my member server.
On Log of DC i found this:
[2016/10/02 20:35:45.601265, 3] ../source4/auth/kerberos/krb5_init_context.c:80(smb_krb5_debug_wrapper)
Kerberos: AS-REQ PL0024$@HQ.KONTRAST from ipv4:<member-ip>:55578 for krbtgt/HQ.KONTRAST at HQ.KONTRAST
[2016/10/02
2016 Nov 14
2
Member server does not show users from trusted domain
I have a samba classic domain, called it "DomainA." All domain
controllers and servers are running 3.6.25 on Solaris 11.
The PDC and BDC use an LDAP backend for unix, samba and idmap
data. Member servers use LDAP backend for unix accounts, so the
underlying unix and group accounts are consistent.
There is a trust relationship with Windows 2008 AD domain
2008 Apr 01
1
Strong(er) authentication required when joining Active Directory (Samba 3.0.28)
Hello all,
I'm having problems getting Samba to join a Windows AD. I am delegated
OU admin, and have no direct access to the domain controller. We have 3
DCs in one domain where my OU exists. The users I wish to authenticate
are in a different domain.
I have set up Kerberos and can receive tickets correctly.
I run
net -d 4 ads join createcomputer=[Delegated OU] -U [account with join
2008 Jun 04
3
Can't join AD anymore after migration to 3.0.30
After migrating from 3.0.26a to 3.0.30 I cannot join my AD member server
to the domain anymore:
I get a DCERPC_FAULT_INVALID_TAG.
As I didn't change my Windows 2000 SBS Server, this looks like a new
feature in Samba 3.0.30.
Do I have to also migrate my Heimdal - if so, which version is required?
Kind regards,
Jens
P.S: Is there a way to find out the code changes in Samba 3.0.30?
I
2008 Nov 13
1
Domain Member Server problems
Hi all,
I'm not having any success adding samba (3.0.28 on Solaris 10) to a Windows
AD server (2003 R2) per the instructions here: (In addition to much
googling)
http://us3.samba.org/samba/docs/man/Samba-Guide/unixclients.html#adssdm
The error is:
bash-3.00# /usr/sfw/sbin/net ads join -U Administrator
Administrator's password:
Using short domain name -- BETA
Failed to set
2016 Sep 30
2
Samba Member NT_STATUS_NETWORK_SESSION_EXPIRED
On Fri, 30 Sep 2016 14:31:06 +0200
Oliver Werner <oliver.werner at kontrast.de> wrote:
> Hi rowland,
>
> is pam really need?
>
> Users should not login via terminal to this system. this is only as
> Samba File-Server
>
Lets put it this way, to connect to the domain member your users must
be known to the underlying OS.
The domain member I am typing this on, uses a
2007 Dec 18
2
SAMBA ADS integration - windows user account rights
Hi all,
first of all is it possible to join a Linux machine to AD using a
windows user account that is not a member of the group Domain Admins?
Cause when I do this I get the following error while executing `net ads
join -d 3 -U syncuser`:
#net ads join -d 3 -U syncuser
[2007/12/11 13:47:12, 3] param/loadparm.c:lp_load(4953) lp_load:
refreshing parameters
[2007/12/11 13:47:12, 3]
2007 Nov 09
4
Joining a win2k3 ads fails
Hello,
I'm trying to join a win2k3 ADS domain using a working config on a debian 'Lenny' (arm processor)
from another machine running gentoo (x86 processor) (only changed the netbios name).
Samba versions are 3.0.26a on both the machines.
I'm pretty sure this is not a kerberos or ldap problem, anyone has a clue what else it could be?
# net -d 3 ads join -U administrator
2016 Oct 04
1
Samba Member NT_STATUS_NETWORK_SESSION_EXPIRED
so i add the pam yesterday and now after 10 hours no connection to member is possible. :(
Same errors in logs i send yesterday
OLIVER WERNER
Systemadministrator
> Am 03.10.2016 um 18:54 schrieb Rowland Penny via samba <samba at lists.samba.org>:
>
> On Mon, 3 Oct 2016 17:56:07 +0200
> Oliver Werner <oliver.werner at kontrast.de <mailto:oliver.werner at
2016 Jun 07
2
Samba AD member lost domain join after reboot
On 6/7/2016 12:31 PM, Alexis RIES wrote:
> I was wrong, the problem persists, it is not because of the DNS.
> You have the same configuration as me, but with two domains controller ?
>
> On 07/06/2016 18:05, Alexis RIES wrote:
>> I think I found my problem, when configuring my second domain
>> controller, I have created by mistake a round robin DNS entry on
>>
2016 Nov 18
2
Wbinfo does show users from trusted domain / RPC error
I tried recreating the trusts.
I start by setting up trusts on Windows side, using Active Directory
Domains and Trusts on the DomainB AD server. . I specify the the
samba domain (DOMAINB) but before I can even specify trust type or
direction I get the following:
Cannot continue
Trust relationship can not be created…
The local security authority is unable to obtain an RPC
2016 Apr 16
7
After Update to 4.2, Samba is unusuable as member server / No user and goup resolution
Hello everybody,
I've bin running Samba as a AD member server for ages (Debian stable).
After the last update to 4.2, I just can't get it to work.
Symptoms: unable to map AD user / groups.
After two days of successlessly fiddling (and moving all data to another
server with still Samba 3.6, which I will definitely NOT update at the
moment), I decided to purge my Installation and start
2005 May 27
1
ADS Join problem samba3.0.14a kerberos 1.3.5
Hi List,
I'm getting an error join an ADS Domain, using samba 3.0.14a & kerberos
1.3.5.
When I look at the debug output from the join attempt, it almost seems
as though
The join is looking for an OU or something from the AD that doesn't
exist. I'm not an
Windows person and the AD admins are not around to help peep this out.
Can anyone take a look at the debug output below and
2006 Jan 23
2
net ads join segmentation fault
On FreeBSD 6.0-RELEASE-p2 using samba-3.0.21a,1 the net command seg
faults. Does anyone know what is going on?
Thanks
-rcollins
----- net ads join -Uadministrator -d 10 -----
[2006/01/23 12:36:59, 5] lib/debug.c:debug_dump_status(368)
INFO: Current debug levels:
all: True/10
tdb: False/0
printdrivers: False/0
lanman: False/0
smb: False/0
rpc_parse: False/0
2003 Oct 21
2
krb5_cc_get_principal failed (No such file or directory)
Hello,
I am using the brand new SuSE 9.0 with Samba 3.0.0.
I installed:
Heimdal kerberos development libraries 0.6-67,
Openldap development libraries 2.2.22-65,
which are shipped with the distribution.
If I running "kinit administrator@NWTRADERS.COM" I am getting a ticket.
But if I try to run "net ads join -U administrator@NWTRADERS.COM" I am
getting following messages:
2016 Jun 06
2
Samba AD member lost domain join after reboot
Hello,
After each reboot, my Samba AD member server lost domain join after
reboot, I have to re-enter the server in the domain with the "net ads
join -U administrator".
I use version 4.4.3 of samba.
The domain controller is a Samba AD server.
After reboot, when I exectute "net ads testjoin" I have:
kerberos_kinit_password SMB2$@AD.SAMDOM.LOCAL failed: failed