similar to: Kerberos and 2008 AD troubles

Displaying 20 results from an estimated 3000 matches similar to: "Kerberos and 2008 AD troubles"

2007 Dec 18
2
SAMBA ADS integration - windows user account rights
Hi all, first of all is it possible to join a Linux machine to AD using a windows user account that is not a member of the group Domain Admins? Cause when I do this I get the following error while executing `net ads join -d 3 -U syncuser`: #net ads join -d 3 -U syncuser [2007/12/11 13:47:12, 3] param/loadparm.c:lp_load(4953) lp_load: refreshing parameters [2007/12/11 13:47:12, 3]
2005 Apr 25
1
wbinfo -t fails but other wbinfo and getent items work.
Problem: wbinfo -t fails. As long as it fails, I am unable to map sids to Group Names. I need this functionality for my application. I can use just about everyother function of wbinfo at least partially... Distro: Debian woody. Packages: ii samba 3.0.11-0woody1 a LanManager-like file and printer server fo ii samba-common 3.0.11-0woody1 Samba common files used by both the server a
2008 Nov 05
1
Samba, Solaris, Windows 2008 - Kerberos Guess Realm Wrong?
I've just built Samba 3.2.4 on Solaris 10, with ADS support. Domain join to a Windows 2008 domain works perfectly, having pre-created the servername in the appropriate OU. In my winbind logs, I see the following (domain name obfuscated): [2008/11/05 11:28:06, 3] libsmb/cliconnect.c:cli_session_setup_spnego(839) got principal=not_defined_in_RFC4178@please_ignore [2008/11/05 11:28:06,
2007 Nov 09
4
Joining a win2k3 ads fails
Hello, I'm trying to join a win2k3 ADS domain using a working config on a debian 'Lenny' (arm processor) from another machine running gentoo (x86 processor) (only changed the netbios name). Samba versions are 3.0.26a on both the machines. I'm pretty sure this is not a kerberos or ldap problem, anyone has a clue what else it could be? # net -d 3 ads join -U administrator
2006 Jul 12
5
problem with winbind
Hi, Since 1 month, I tried without any success to configure Samba. My problem is that winbind crashes when I list users and groups. And I think that it is linked to my trusted domains (wbinfo -domain=myADdomain -u works well). The error is the following : [2006/07/11 14:30:29, 3] libsmb/cliconnect.c:cli_session_setup_spnego(757) got principal=machine$@TRUSTEDDOMAIN.COM [2006/07/11
2004 Jun 22
2
Unable to join Windows 2k AD NT_STATUS_ACCESS_DENIED
I am having horrendous issues with trying to get Samba 3.0.4 to join to a Windows 2000 AD (patched to current). As this one is hurting a bit and needs to be fixed soon, I was hoping I may find salvation in this list from someone here who may be able to shed some useful light on this issue. I am using the latest gentoo mit-krb5 build. Net join always results in NT_STATUS_ACCESS_DENIED - this
2005 Mar 02
1
Problems with Starting Winbind after upgrading!
Hi, first i?ve installed SuSE 9.1 with the default rpms (heimdal 0.9.1rc3, samba 3.0.2a with winbind). I?ve configured the system with winbind to the user accounts from my Win2003 Server. All this works always max. 1 day. After this day I can?t connect to my shares on the samba server. After this I upgraded to 3.0.11 with the RPMs from de.samba.org for SuSE. I installed this rpms but Winbind
2009 Sep 02
1
Problem to join Win20900 ADS realm
Dear samba team: I've some troubles to join a GNU/Linux Debian ?squeeze? machine to a Windows 2000 ADS realm. I've studied everything about samba, but this problem cause that I cant print in the Windows servers and I've other problems. I've joined machines in this domain before ( I made a recipe at http://wiki.debian.org/SAMBAclienteWindows) But in the last days, I've a
2005 Jan 14
1
NT_STATUS_ACCESS_DENIED with ADS + Kerberos
I'm trying to setup Samba in ADS security mode so I can run winbind for NSS and Kerberos for user authentication, chiefly for shell accounts for developers. These hosts will not provide any file or printer services, at least in the near-term. My hosts are CentOS 3 (a free RHEL3 clone) and my ADS servers are Windows 2000 (not 2003), in hybid mode. I am using stock RPMs for both Kerberos and
2009 Mar 19
1
Can join ADS domain, all accounts/auth work fine, but leaving domain fails
Hello all, As the subject says, as far as I can tell everything works on my ads integrated samba server. Domain accounts can be used for ssh, and accessing shares, I just can't leave the domain. Here is a successful join command followed by an unsuccessful leave command at debug level 4. Any ideas? TIA, Mark user@dordal:~$ sudo net ads join -U administrator@MYDOMAIN.COM -d 4 [2009/03/19
2008 Jun 04
3
Can't join AD anymore after migration to 3.0.30
After migrating from 3.0.26a to 3.0.30 I cannot join my AD member server to the domain anymore: I get a DCERPC_FAULT_INVALID_TAG. As I didn't change my Windows 2000 SBS Server, this looks like a new feature in Samba 3.0.30. Do I have to also migrate my Heimdal - if so, which version is required? Kind regards, Jens P.S: Is there a way to find out the code changes in Samba 3.0.30? I
2006 Feb 22
5
Can't join my domain
Guys and dolls, Greetings, I hope you all are in good health, great spirits and your glasses never empty. I have a samba, openldap question. I am trying to setup a FC-4 box to be a PDC for a small network of about 150 users. I was following the HOWTO on the SAMBA site. Everything seems to be fine however I cannot join the domain. I get the error "User name could not be found." The
2006 May 22
1
Join ADS problem
Problem with join to Active Directory [root@clust-master samba]# net ads join -S 10.0.0.1 -U Administrator Administrator's password: [2006/05/22 10:24:05, 0] libads/ldap.c:ads_join_realm(1640) ads_add_machine_acct (clust): Type or value exists ads_join_realm: Type or value exists [root@clust-master samba]# kinit Administrator@COROD.LOCAL Password for Administrator@COROD.LOCAL: As you can
2004 Jun 09
2
Need help configuring Samba3/LDAP PDC
Hello all, I'm following along in chapter 6 of John Terpstra's "Samba 3 By Example" and I've got everything working great up until the point where I join the machine to the new domain (step 17 on page 155). The command *net rpc join -U Administrator* fails with the errors below. palpatine:/var/lib/samba/sbin # net -d 4 rpc join -U Administrator [2004/06/09 15:13:35, 3]
2010 Mar 26
3
Failed to join domain: failed to precreate account in ou (null): Out of memory
with samba 3.5.1 if I were to join a server to the domain and specify an OU to create the computer object in, i get Failed to join domain: failed to precreate account in ou (null): Out of memory However, if I run the same command with samba 3.4.5 it works. Did the syntax change? I cannot see anything about it net ads join createcomputer="Linux_Servers" -U <user>%<pass>
2006 Dec 28
1
Unable to join PDC to domain
Hi all I have installed Samba 3.0.23d and Fedora Directory Server version ( fedora-ds-1.0.4-1) and created a primary domain controller with LDAP backed. on a 64bit AMD System . My kernel Version is 2.6.9-34.EL The problem i am facing is i am able to join windows clients to the domain, the computer names are automatically getting added in to OU=Computers in Fedora Directory server. but i am
2005 Aug 16
2
kerberos_kinit_password: Decrypt integrity check failed
Please, somebody can help me? When I start samba I get this error en log.smbd: ---------------------------------------------------- [2005/08/16 16:30:01, 0] smbd/server.c:main(802) smbd version 3.0.20rc1 started. Copyright Andrew Tridgell and the Samba Team 1992-2004 [2005/08/16 16:30:01, 0] libads/kerberos.c:ads_kinit_password(146) kerberos_kinit_password host/HOST@DOMAIN.COM.MX failed:
2006 Mar 18
2
Problem with 'net rpc group delmem' command
Hello everyone, I've been setting up Samba as a PDC with good success so far. I've run into one problem though, and that's removing users from groups using the 'net' utility. I seem to be able to add users to groups just fine using something similar to the following: net rpc group addmem "Domain Admins" bob If I then type: net rpc group members "Domain
2015 Mar 10
2
net ads join fails
Hi, i've got a problem joining a domain with samba 4.1.17 on freebsd. Everytime I try it, the join fails with a core dump. Debugging it, it seems that it is stuck on authentication. Kerberos works, I get credentials, but if I try to join the domain, it fails. The problem seems to be somwhere in this debug-output: 1. net ads join: Doing spnego session setup (blob length=96) got
2009 Sep 23
2
winbind and smb tries to auth as pdc$ rather than local name when using ADS
Hi all, I've been working on getting Samba to authenticate via ADS for the past few weeks with some lack of success. I had somewhat of a breakthrough the other day realizing that the problem was related to the kerberos authentication between Samba and the Win 2008 R2 AD server. Trying to fix this I generated a keytab with ktpass which I uploaded to the server. I've been successful to