Displaying 20 results from an estimated 1000 matches similar to: "Samba + Win2k works, Win2003 fails"
2006 Nov 22
1
Confused about Active Directory, Winbind, and Kerberos
I'm trying to learn how to integrate Linux workstations and servers into
a Windows 2000 Active Directory network. I've read and followed the
Samba HOWTO, especially the parts about Winbind, and I got my Linux
workstation authenticating using pam_krb5 and pam_winbind.
klist would show I got a TGT after logging in. Domain users could login
and pam_mkhomedir would properly setup a new home
2006 Nov 27
1
Samba 3.0.23d & /etc/krb5.keytab
I'm new to Kerberos. I don't understand how Samba uses the system
keytab (/etc/krb5.keytab) when "use kerberos keytab = true".
Does Samba use service specific tickets?
What tickets does Samba add?
Do I need a cron job to keep them fresh or does Winbind take care of it?
Sorry if these are elementary questions, but the Samba HOWTO didn't help
me understand Samba's
2006 Sep 06
1
Problems with ADS join after Samba update on FC4
Hi,
I used to have a working Samba + Winbind configuration in ADS mode under FC4;
Samba version was 3.0.14a-2. I joined a W2k domain, and winbind correctly
returned the user information. krb5.conf and smb.cong have been modified
according to Howtos and tutorials found on the net.
One day Samba has been updated to 3.0.23a-1.fc4.1 and it stopped working.
No modification has been done to the
2006 Oct 25
1
net ads join problem
Hi all,
I'am trying to join ADS an W2K server. This server was already joined,
but after chrash i was obliged to reinstall it.
When I try net ads join -Uusername the following output appears:
[2006/10/25 14:08:46, 6] libads/ldap.c:ads_find_dc(224)
ads_find_dc: looking for realm 'SLZOVA.CZ'
[2006/10/25 14:08:46, 8] libsmb/namequery.c:get_sorted_dc_list(1551)
get_sorted_dc_list:
2014 Feb 26
0
samba4 as domain ad member
Hello,
I didn't make a step forward with my problem or misunderstanding in samba3 in that case "AW: [Samba] CentOS Samba as Domain Member", so I decided to try it with samba4.
Here I ran into another problem with winbind and it's called: NT_STATUS_INVALID_PARAMETER_MIX.
This is my configuration and relevant logs.
Load smb config files from /etc/samba/smb.conf
rlimit_max:
2009 Mar 19
0
ADS Authentication - CLDAP request failed
I have a RHEL 5 system, with Samba 3.0.33 installed, that _used_ to
authenticate against the corporate Active Directory system without any
problems. However, about a month ago the connection broke, but the users
didn't complain until some time went buy. I've spent quite a few hours
trying to reconnect this system, but nothing works. I do not believe it is
a simple configuration problem,
2008 Oct 23
1
Join AD: no logon server
Hello,
I am trying to join my server to a Win2k AD domain.
I have configured kerberos and can get a ticket but when I try to join the
AD I get the error "Failed to join domain: No logon servers" as detailed
below.
I have searched the archives and google and followed some suggestions to get
my files into the correct format but still have a problem.
I am using Samba version 3.0.32-0.fc8
2006 Nov 14
2
IP-to-Username lookups
Hi,
I'm trying to figure out how to find users by IP. I'm parsing a
firewall log and would like to map internal IPs to users.
I noticed "nmblookup -A <ip>" returns interesting results:
COMPUTER <00> - M <ACTIVE>
DOMAIN <00> - <GROUP> M <ACTIVE>
COMPUTER <03> - M <ACTIVE>
2004 Mar 18
2
samba,ldap and kerberos
Hi Everybody,
We are integrating samba,kerberos and ldap
samba-3.0.2a
sun kerberos
sun ldap
all the three servers are on three different solaris machines.
we were able to successfully integrate samba and ldap and works fine. When trying to bring in kerberos support , we changed the samba configuration file as follows
interfaces = 131.183.20.96
bind interfaces only
2003 Aug 12
2
Error on joining a Windows 2003 ADS domain with Samba 3.0 Beta 3
Hi guys,
everytime I try to join my Samba 3.0 Beta 3 server to my Windows 2003 ADS
domain, net puts out following error:
***** SNIP *****
[2003/08/12 14:33:48, 1] libsmb/clikrb5.c:cli_krb5_get_ticket(343)
krb5_set_default_tgs_ktypes failed (Program lacks support for encryption
type)net: relocation error: net: undefined symbol: krb5_cc_initialize
***** SNAP *****
This is the full level 10
2007 Sep 18
0
net join, client tls bug?
QUESTION: Does samba have client side TLS capabilities?
BACKGROUND
Samba ADS compliant distributions tried:
RHEL samba 3.0.10
Blastware samba 3.0.22 (for Solaris 8 and above)
Solaris 9 compilations 3.0.24, 25b, 25c, 26a
My ADS is running in native 2003 mode. The only access I have
to it is to set up Machine accounts.
SMB.CONF
For all versions I used the same smb.conf (see end of document)
NET
2010 Jul 27
1
DNS update failed!
I have two networks: 192.168.1.0 with netmask 255.255.255.0 and
172.16.0.0 with netmask 255.255.254.0, when I join in domain in first
network hostname registered successfully, but in second network:
sudo net ads join -U admin
Enter admin's password:
Using short domain name -- BUTB
Joined 'TH-2-011' to realm 'butb.by'
DNS update failed!
dpkg -l | grep samba
ii samba
2008 Jun 27
0
Windows 2008 + FreeBSD 7.0 & Samba
Hello good people,
I'm in a need of your help, authenticating samba users through AD. I'm
running samba 3.0.28 on FreeBSD 7.0 i386. Also Windows 2008 Enterprise
server.
When I try to join the domain I get an error message "Failed to join domain:
Improperly formed account name"
here is my smb.conf file:
[global]
workgroup = LAB
realm = setup.net
server string = SambaServer
2005 Feb 24
0
Getting ads_connect: Strong authentication required when doing ne t ads join
In my lab I successfully got everything working running our secured Active
Directory and Fedora Core 3. In our AD we have secured settings like
refusing NTLMv2, require LDAP signing, SMB signing and more. In the lab we
have the following rpm's:
krb5-workstation-1.3.4.7
samba-3.0.8.0.pre1.3
openldap-2.2.13-2
But now we're implementing this in production and there we're running Red
Hat
2006 Oct 30
0
net ads join segfault (samba 3.0.23c)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Hi,
I just tried to join my SLES9 (Suese Linux Enterprise Server 9) to my
ads. I follow a mixture of the howtos [1], [2], [3]. Everything works
fine (kinit gives me a valid kerberos ticket), but the
`net ads join -U $DOMAIN\\$USER` command segfaults.
Software I have intalled:
- - samba 3.0.23c (from ftp.samba.org)
- - heimdal 0.6.1rc2
Here a debug 5
2005 Feb 24
0
Getting ads_connect: Strong authentication required whendoing ne t ads join
Yes, this is in fact caused by LDAP server signing requirements set to
"Require Siging". I put a bug in previously here:
https://bugzilla.samba.org/show_bug.cgi?id=765
And Jeremy Naylor created a patch to add TLS support in libads. The TLS
method is potentially more secure, but it requires a certificate be
installed on the KDC.
You could try applying the patch and setting up the
2009 Jan 05
0
HELP: Samba + Windows Server 2003 SP2 AD/DC
Hey, I don't know if this is the right list to ask this question in, but I have tried on the IRC (irc.freenode.net #samba) and people on there advised me to try here instead.
I have:
Debian 4.0r4
Samba version 3.0.24 - mail.birke-gym.dk - 10.3.16.1
krb5 Version 1.4.4-7etch6
Kernel Version 2.6.18-6-amd64
A Windows Server 2003 SP2 with AD/DC - bgdc.birke-gym.dk - 10.3.17.1
2005 Feb 24
0
SV: Getting ads_connect: Strong authentication required w hendoing ne t ads join
Thanks for that interesting information. But how come it works in my lab
(where I'm running Fedora Core 3)? Could it be because I'm running a newer
version of LDAP? You think this will be fixed in future releases without the
need to put certificated on the DC?
Are there any detailinformation where to put the certificate on our DC:s?
Unfourtunately we're not running any CA in our
2004 Mar 10
0
Followup to previous request
As a followup to my previous question, here is the debug log of the issue:
[root@bonair samba]# net join -U dchait -d 10
[2004/03/10 13:49:23, 5] lib/debug.c:debug_dump_status(360)
INFO: Current debug levels:
all: True/10
tdb: False/0
printdrivers: False/0
lanman: False/0
smb: False/0
rpc_parse: False/0
rpc_srv: False/0
rpc_cli: False/0
passdb: False/0
2004 Aug 12
0
Unable to see Samba server in network neighbourhood
Hi,
I am using samba-3.0.4. I am trying to connect to AD server which is a
2k-server machine and is also the KDC server.
My krb5.ini on the 2k server and /etc/krb5.conf on samba server look
like this
-------------------------------------------------
krb5.conf
-------------------------------------------------
[logging]
default = FILE:/var/log/krb5libs.log
kdc = FILE:/var/log/krb5kdc.log