Displaying 20 results from an estimated 4000 matches similar to: "Gentoo, Samba, Upgrade, Authentications now failing"
2008 May 22
4
winbind,ads, win2k3, trusted domains, user mapping
I have been ready everything I can regarding this setup but am having a
problem that I am unsure of.
I am unable to authenticate any user despite the following commands working:
%> getent passwd <username>
%> wbinfo -u
%> wbinfo -g
With the getent passwd I am able to see all of my UID/GID being mapped
via winbdind to the rid of the domain user account.
This command fails:
%>
2010 Dec 01
2
kerberos @ samba4 DC
Hello, when I try to put my SAMBA4 as DC from a domain controller in windows
2000
/usr/local/samba # bin/samba-tool join (WINDOWS 2000 DOMAIN). DC
-U(USER)@(WINDOWS 2000 DOMAIN)%(PASSWORD) --realm=(WINDOWS 2000 DOMAIN). -d5
throws me the following error:
Failed to get CCACHE for GSSAPI client: KDC has no support for encryption
type
Aquiring initiator credentials failed: kinit for ADMCONST at
2009 Jul 25
2
Gentoo overlay?
Does anyone know of a decent gentoo overlay that keeps dovecot+
reasonably up to date?
Thanks,
--
Best regards,
Charles
2010 Sep 09
4
xen upgrade problem, cant boot from 3.4.2 to 4.0.0
Hi Guys!
I have a very interesting problem.
I run gentoo and have been running xen-3.4.2 on 2 server computers
(Supermicro-based, IBM).
A little time ago, I have tried to upgrade xen-3.4.2 to xen-4.0.0 (with
emerge) on the Supermicro server, but the computer wasn''t able to boot with
the following breakdown:
[ 62.848947] 0800 1315427328 sda driver: sd
[ 62.849264] 0801 208813 sda1
[
2017 Aug 22
3
Winbind with krb5auth for trust users
Hi,
I'm having trouble realizing a krb5auth with pam_winbind with trusted
domain users (external trust) on our clients. The client is joined to a
local domain, which has a "external trust" to a global domain.
The following things are working for all users (local and trusted domain):
"wbinfo -i"
"wbinfo --pam-logon"
"wbinfo -a"
"kinit"
2017 Feb 01
1
winbind question. (challenge/response password authentication)
Hai,
Im setting up a new proxy and im testing a bit around.
Goal is, get everyting working with minimal changes to the system.
Setup: Debian 8 with NFS nfsv3 and v4 (krb) automounts, winbind 4.5.3 , squid 3.5.24 (with ssl support)
Which is basicly a copy of my other proxy but a new install with more systemd and less packages used.
Working:
- ssh logins with AD users.
2005 Sep 20
4
AD Authentication help please?
I am having a problem which with much help from this list I have gotten
90% complete. I am attempting to create a samba server which will
authenticate users as a Domain member server using active directory.
The question I have is how can I map a specific container which is not
an OU but a CN in the active directory?
Any help is appreciated.
--
Jason Gerfen
"My girlfriend threated to
2017 Feb 15
2
question about ntlm
Hai,
Since im still having problems reading the man smb.conf about the NTLM settings, im asking here.
How do i allow NTLM auth for my proxy.
I have been playing around with :
client NTLMv2 auth
raw NTLMv2 auth
ntlm auth
lanman auth
i’ve added the proxy user to the winbind_privileged group.
and did set the needed rights.
chgrp winbindd_priv
2005 Sep 08
5
PXE/TFTP Transfer time out problems
I am having a problem while trying to download anything from a recently
configured tftp boot server.
Here are the configuration for the dhcpd.conf
option domain-name="domain.com";
default-lease-time 900;
max-lease-time 1800;
ddns-update-style none;
authoritative;
allow bootp;
allow booting;
option space PXE;
option PXE.mtftp-ip code 1 = ip-address;
option PXE.mtftp-cport code 2
2017 Aug 22
2
Winbind with krb5auth for trust users
Hi,
the external trust, we have, is a one directional external trust. So
users of the trusted dom can logon on local dom clients, but not the
other way around. In case of "wbinfo -a" all communication is between
the client and the domain controller of the local domain, which is the
proxy for the auth process. In case of "wbinfo -K" all communication is
between the client
2005 Sep 13
13
Authentication against AD?
I am having a hard time getting Samba to authentication correctly
against a Windows Active Directory setup.
Here is a snap of the smb.conf
[global]
passdb backend = ldapsam
security = domain
password server = server1.com server2.com
prefered master = No
local master = no
hide unreadable = yes
wins support = no
winbind use default
2018 Aug 13
6
How to use kerberos as the default auth in AD config?
Hi Folks,
We have samba(4.8) deployed with following key parms
security = ADS
realm = TEST
client NTLMv2 auth = No
ntlm auth = disabled
We have a win2k user configured as a "Protected User"
(https://docs.microsoft.com/en-us/windows-server/identity/ad-ds/manage/how
-to-configure-protected-accounts)
When this user tries to connect to samba/winbind, we get
2016 Jan 28
4
Validate Ids Multiple DC
Hello!
I have 2 Samba 4 server (4.3.3) as VC and other Samba 4 (4.3) as
Fileserver, until now all ok, but I'm one doubts, how to validate that
in both servers the domain IDs of the users of this identical, a simple
way to do this validation?
I wanted to make sure it is a DC die fileserver has to go 100%.
thank you
2005 Sep 26
2
Samba/AD/Winbbind OU vs. CN?
I have encountered a problem so I am posting this question to both the
technical list as well as the normal user list for a solution.
When I initially joined the samba box to the Win2k domain as a member
server I followed the Samba 3 HOWTO and specified the OU in the Active
Directory. After speaking with our boss this is not the correct OU for
the users we need to authenticate.
My question
2006 Jan 18
3
Bootable Floppy w/ Networking & Shell?
I realize this is probably the wrong list but since some of the
principals this list deals with are similar in nature I figured it
could't hurt.
What I am looking to do:
Provide a solution to either boot from a floppy disk, establish a
network connection, give user the ability to run utilities such as fdisk
and dd. as well as provide the same solution as a PXE bootable image.
My
2005 Nov 04
2
domain vs. ads
I want a samba machine to be a member of the domain and authentication
the users, but I do not want to use kerberos as authentication and I
also want to limit or authentication users from a specific group.
Examples of this?
--
Jason Gerfen
"My girlfriend threated to
leave me if I went boarding...
I will miss her."
~ DIATRIBE aka FBITKK
2007 Jun 06
1
tftp, slackware and aliased eth0
Hello, I am writting this list in regards to a limitation of the tftpd
service. I am not sure if this is the correct list to address but here
is what I have found.
After setting up a slackware machine and adding the tftpd and dhcpd
services I needed the machine to listen for dhcpd client requests on
multiple subnets so the machine was multihomed using aliased interfaces
as such:
eth0.subnet001
2008 Jun 03
1
windows share vs. linux share access
Hello again, I am seeing something I never thought I would see.
I can open a dos prompt on a windows machine and map a drive to the
samba server using the ADS authentication and read/write from the share etc.
My problem is if I try to mount the samba share from a linux client I
receive errors.
Is there anything special about linux commands such as:
%> mount -t smbfs -o username=USERNAME
2008 Sep 26
3
Unable to emerge Wine 1.1.5 on Gentoo AMD64
Hello,
I am currently trying to emerge wine on my Gentoo AMD64 system, and it is currently failing on the last package. I haven't been able to make much sense out of the error message. If anyone knows what is going on or can otherwise point me to where I should look or anything to try, it would be greatly appreciated.
Here is the error I am getting:
make: *** [programs] Error 2
*
*
2017 Aug 22
2
Winbind with krb5auth for trust users
Hai,
> -----Oorspronkelijk bericht-----
> Van: samba [mailto:samba-bounces at lists.samba.org] Namens
> Andreas Hauffe via samba
> Verzonden: dinsdag 22 augustus 2017 11:26
> Aan: samba at lists.samba.org
> Onderwerp: Re: [Samba] Winbind with krb5auth for trust users
>
> Hi,
>
> thanks for the fast answer.
>
> All DCs (local and trusted domain) running on