Displaying 20 results from an estimated 700 matches similar to: "Problems with password authentication on Samba as an AD-Member"
2009 Sep 03
1
How do I tell winbind to always send kerberos pre-auth to Active Directory DC
Hi List,
I have reported this issue before but I did not get an answer, ill try one more time before I register it as a bug incase I am doing something wrong.
I'm evaluating the use of samba/winbind to join our linuxhosts into active directory. My testsetup use win2k3 R2 with rfc2307 schema fields populated on the server side. For the most part the project is humming along nicely.
However,
2003 Sep 04
1
confused about domainname
hi !
i'm a little bit confused about the domain names,
in my smb.conf workgroup name is set to 'workgroup=samba'.
the name of the domaincontroller is 'netbios name=dc01'.
if i do a net rpc join the machine always joins the domain dc01
doesn't matter if i use the -w switch.
(do i have to join a domaincontroller to his own domain ?)
same with net setlocalsid, it's
2007 Jul 04
1
join samba to a 2003 rc2 domain
We have identified a problem joining samba to a windows 2003 rc2 domain.
Using mit kerberos 1.5, and the latest version of samba (3.0.25b), net join
ads would throw up the error:
cli_rpc_pipe_open: cli_nt_create failed on pipe \NETLOGON to machine
domaincontroller.mynet.mydomain.com. Error was NT_STATUS_ACCESS_DENIED
net_rpc_join_ok: failed to get schannel session key from server
2012 May 04
1
after joining the domain the server loose the domain controller
Hello,
I've a rhel6 server on a vmware structure.
samba rpm are;
samba-common-3.5.10-115.el6_2.x86_64
samba-3.5.10-115.el6_2.x86_64
samba-winbind-clients-3.5.10-115.el6_2.x86_64
smb.conf
[global]
workgroup = AAAA
server string = TSTArchive
security = DOMAIN
passdb backend = tdbsam
log level = 3
local master = No
ldap ssl = no
cups options = raw
short preserve case = No
dos filetimes = Yes
dos
2016 Jan 19
1
Change user Password with smbpasswd
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Am 19.01.16 um 19:38 schrieb Rowland penny:
> On 19/01/16 17:24, Stefan Kania wrote:
>> -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1
>>
>> "samba-tool user setpassword" works fine, but I don't want all
>> "normal" Users to connect to the Domaincontroller to change
>> their password.
>
2017 Oct 04
1
System load problem with samba 4.4.2 caused by many ntlm auth client requests
Am 02.10.2017 um 16:41 schrieb Rowland Penny via samba:
> On Mon, 2 Oct 2017 14:51:54 +0200
> Rainer Krienke via samba <samba at lists.samba.org> wrote:
>
>> Hello,
>> ....
>> [2017/10/02 11:07:47.046715, 2]
>> ../source3/auth/auth.c:315(auth_check_ntlm_password)
>> check_ntlm_password: Authentication for user [HOSTNAME$] ->
>> [HOSTNAME$]
2023 Jan 16
2
Debian11 Samba backport and bind9
Hi to all,
Is there a known problem when using Debian 11 together with the samba
packages from the backports (4.17.4) and the bind9 from the backports
(9.18). With me it comes on each further Domaincontroller to errors with
the "samba_dnsupdate --verbose --all-names".
If I install Bind9 in version 9.16 everything works.
I have the whole thing running in a Vagrant environment and can
2020 Nov 01
3
VPN
I have a samba server running as an active domaincontroller. I want people in an other office building to use the same samba server. What is the best way to do this? Use a second domain controller. Vpn to first domain controller. (Using an Mikrotik router). And how can you configure windows to use the vpn at startup?
Philip
2019 Apr 23
2
Win10 cant connect to DomainController
Hai basti,
Few tips here you can check/try.
A know problem, this might happen if your primary dns and/or search dns are not correct when connected to the VPN.
See if you can use \\host.dnsdomain.tld\share and not \\host\share
Then test \\dnsdomain.tld\sysvol and \\dc.dnsdomain.tld\sysvol
Last, if you trying to access through CNAME, you might have hit this bug.
2019 Apr 23
1
Win10 cant connect to DomainController
Hello,
I have a Win10 Client connected via openVPN to the company LAN.
openVPN seem to work fine. I get Routes, the AD DNS server, can ping
domain controller file Server etc.
Authendicaten on Fileserver fail (cant connect to domaincontroller)
gpupdate fail with the same error.
Firewall haas open all port list here:
https://wiki.samba.org/index.php/Samba_AD_DC_Port_Usage
I have try to debug with
2019 Apr 23
1
Win10 cant connect to DomainController
On 23.04.19 14:51, Rowland Penny via samba wrote:
> On Tue, 23 Apr 2019 14:35:16 +0200
> basti via samba <samba at lists.samba.org> wrote:
>
>> Hello,
>> I have a Win10 Client connected via openVPN to the company LAN.
>> openVPN seem to work fine. I get Routes, the AD DNS server, can ping
>> domain controller file Server etc.
>
> It looks like you
2004 Jun 24
3
Problem with winbind an samba Domain
Hello,
I get the following problem with winbind from samba 3.0.3 as well as 3.0.4:
[root@bagheera root]# wbinfo -u
Error looking up domain users
[root@bagheera root]#
From /var/log/messages:
Jun 24 16:02:23 bagheera winbind: winbindd startup succeeded
Jun 24 16:02:23 bagheera winbindd[28278]: [2004/06/24 16:02:23, 0]
rpc_client/cli_pipe.c:rpc_auth_pipe(256)
Jun 24 16:02:23 bagheera
2013 Nov 19
1
Backup of virtualized Samba4 AD
Hi there,
current situation: we have a Samba4 AD running on a VMware ESX-Cluster
(ha/failover, ha-nfs-stores).
I'm doing backups with ghetto VCB. Until now I only did
"Snapshot-backups". But I know, that this way of backups is not the best
way for domaincontrollers.
I'm now planning to do backups by shutting down the VM, then doing
backup and then starting machine again.
2003 Apr 10
7
Samba 2.2.7a and XP pro
I have read over the lists and search the web, I know this question has
been asked before, but I've not been able to fix my problem so I'll ask
here.
I have been successful in joining the XP machine to the domain however it
when I try to login to the domain windows instantly kicks up the message:
"Windows cannot connect to the domain, either because the domaincontroller
is down or
2016 Jul 29
2
Fwd: Good installation documentation on samba4?
The OS I'm using is Ubuntu 16.04. The previous OS I was working with was
Ubuntu 14.04. The krb issue I had was that the kdc server
" RuntimeError: kinit for DOMAINCONTROLLER$@SAMDOM.EXAMPLE.COM failed
(Cannot contact any KDC for requested realm)".
The modified krb5.conf file I distilled out of information on the internet
helped to create a working version.
When comparing the
2006 Aug 08
1
Samba AD member server and cached credentials?
Hi
we are using a recent samba server in an AD W2003 domain.
The AD DC's are located at the main location.
The samba member servers (file-servers) are located at the
outside locations.
A User is able to logon to his Workstation, even if the
Domaincontroller is not available, if he has already logged on to
this workstation earlier (the clients caches the credentials).
But the client is
2004 Aug 31
1
Login Problem after RESTORE with Powerquest Driveimage!!
Hello,
I have some Computers on which I have an Image (created
with Powerquest DriveImage) of Windows XP stored
on the second partition of the local harddrive.
If I restore my Windows XP Installation from the image and
reboot - the logon doesen`t work any more.
I get an error something like: Domaincontroller cannot be found....
After that I have to add this computer newly to the domain and
it
2016 May 02
1
Samba no longer honoring secondary groups!
Hi...
Out of sudden our samba file servers are no longer honoring secondary
group membership.
I appears that the fileservers are no longer seeing groups.
When I do a 'net -U <domUser> rpc group list' on the PDC everything is
fine. I can see all groups. When I do this on the fileservers I do not
receive anything.
We operate samba 4.3.9 both as classic PDC (for a couple of reason
2015 Mar 24
1
Samba server with NFSV4/kerberos
Hello Luc,
thanks for your answer. If I understand you correctly than you are using
samba4 as windows domaincontroller and you do not have another Windows
DC? So after all you have exactly one Kerberos Server that is part of
the samba4 server?
Thanks
Rainer
Am 24.03.2015 um 12:41 schrieb Luc Lalonde:
> Guten tag Rainer,
>
> We use our Samba4/Win2k8 AD domain to authenticate all our
2020 Nov 02
2
VPN
The best and the easiest way. Just use OpenVpn.
No need for a second DC if all remote pcs start the opnvpn client on startup.
On the DC side run the OpenVpn -Server or use "Zero-Shell".
Greetings
Daniel
EDV Daniel M?ller
Leitung EDV
Tropenklinik Paul-Lechler-Krankenhaus
Paul-Lechler-Str. 24
72076 T?bingen
Tel.: 07071/206-463, Fax: 07071/206-499
eMail: mueller at tropenklinik.de