Displaying 20 results from an estimated 5000 matches similar to: "Samba and cross forest domain trust"
2009 May 28
0
wbinfo -K not working
Dear List!
I have the problem described at
http://lists.samba.org/archive/samba/2008-February/138451.html
It is materialized after an upgrade of samba/winbind. Everything was working
before.
I could not find the solution neither on the net, nor from people originally
having the problem, so here I am.
This problem is a showstopper for me. (I can login by changing pam_winbind
to pam_krb5, but this
2009 May 29
0
solution: wbinfo -K not working
Hi!
The problem lies in the "winbind separator" settings. If I use
winbind separator = \\
everything goes well.
I believe this is due to a bug. As I don't want to register to yet another
bugzilla, please someone issue the report there.
Explanation:
winbindd_raw_kerberos_login uses parse_domain_user to
generate the kerberos principal from state->request.data.auth.user
at this
2009 Sep 23
2
winbind and smb tries to auth as pdc$ rather than local name when using ADS
Hi all,
I've been working on getting Samba to authenticate via ADS for the
past few weeks with some lack of success. I had somewhat of a
breakthrough the other day realizing that the problem was related to
the kerberos authentication between Samba and the Win 2008 R2 AD
server. Trying to fix this I generated a keytab with ktpass which I
uploaded to the server.
I've been successful to
2004 Apr 28
0
RE: winbind/wbinfo not pulling info from W2K AD PDC
HI,
I am sorry I forgot to post the problem that I am having. It is the same
issue who posted this e-mail originally. Please let me know what should I do
to fix the problem that I am having.
Edit /etc/samba/smb.conf
[global]
realm = KERBEROS.REALM
security = ADS
encrypt passwords = yes
password server = kerberos.server
Edit /etc/krb5.conf
[libdefaults]
default_realm = KERBEROS.REALM
2010 Jun 29
0
New user need help - AD/Krb/Smb
I'm trying to put my Samba Server in AD Win2008, as I did in the past with
Win2003.
I'm using smbd Version 3.2.5, winbindd Version 3.2.5, MIT Kerberos 1.6.1-1
and ntpdate synchronized with AD, I follow this howto
http://wiki.samba.org/index.php/Samba_%26_Active_Directory and this
https://help.ubuntu.com/community/ActiveDirectoryWinbindHowto
All my tests demonstrate the successful when I
2004 Mar 26
2
kerberos problem
# smbclient -k -L //radius/music$
krb5_get_credentials failed for radius$@SBRC.LOCAL (Unknown
error -1765328352)
spnego_gen_negTokenTarg failed: Unknown error -1765328352
session setup failed: NT_STATUS_OK
# wbinfo -u
Error looking up domain users
log:
[2004/03/26 10:48:30, 1] libsmb/clikrb5.c:ads_krb5_mk_req(276)
krb5_get_credentials failed for shadow$@SBRC.LOCAL (Unknown
error -1765328343)
2006 Feb 16
1
kerberos error when users in trusted win2k domain try to browse samba server
I have users from Domain A trying to browse a domain member samba server in
Domain B. Domain A and Domain B are both Windows 2k domains. Domain B has
a one way trust to A. A users can browse Domain B Windows server with no
problem so I no the trust is fine. Samba version is 3.0.21b on RH Linux ES
3.
The winbindd log is giving me the following error:
[2006/02/16 08:28:50, 0]
2005 Aug 12
0
Trusted domain issues
All,
I have a Samba 3.0.4 server running on AIX 5.2. Samba is configured
with PAM, LDAP and Kerberos. The server has been joined to an existing
Windows 2003 domain, and wbinfo -u and wbinfo -g works fine. Users from
the domain that Samba is a member of can authenticate just fine. The
domain is in a one-way trust relationship with another ADS domain (i.e.
Samba is a member of domain A,
2006 Oct 14
0
ADS authentication in disjointed, multiple forest
All,
I have recently come across a problem I have been unable to resolve. I
have been running Samba with Winbind ADS authentication for the last
couple of years with good success until recently. About 2 weeks ago, I
restarted the Samba and Winbind services on a Fedora Core 3 machine
runing Samba 3.0.10-1 (installed from FC3 RPMs) and the active directory
authentication has started failing.
The
2008 Nov 05
1
Samba, Solaris, Windows 2008 - Kerberos Guess Realm Wrong?
I've just built Samba 3.2.4 on Solaris 10, with ADS support. Domain join
to a Windows 2008 domain works perfectly, having pre-created the
servername in the appropriate OU.
In my winbind logs, I see the following (domain name obfuscated):
[2008/11/05 11:28:06, 3]
libsmb/cliconnect.c:cli_session_setup_spnego(839)
got principal=not_defined_in_RFC4178@please_ignore
[2008/11/05 11:28:06,
2004 Feb 13
2
winbind/wbinfo not pulling info from W2K AD PDC
Hi list,
I have samba-3.0.2-2 rpm installed on Redhat Enterprise Linux 3 AS kernel version.
I've been using the Samba 3 How-To and messages on various mailing lists to join Samba to an AD domain and authenticate using winbind/pam.
So far Samba has successfully become a member of the AD domain and can browse file servers using smbclient but I haven't been able to get winbind working -
2009 Jun 09
0
No KDC in requested realm (workgroup name)
Hello all,
this is with Samba 3.3.4 on FreeBSD, built locally from ports. The
server is joined to a Windows 2008 AD domain. I'm only using winbind,
because all I need are users and groups; this isn't a file server.
As far as I can tell, it is actually working fine; winbindd can get
all the required information from the DC.
The NetBIOS name of the domain is MYDOMAIN, the DNS name is
2005 Oct 12
0
net ads user works, but winbindd doesn't
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
The net commands work: net ads testjoin, net ads user (after a ticket is created).
However, winbindd refuses to run correctly. It has an --set-auth-user configured,
but the following commands don't work:
[root@nassc01 samba]# wbinfo -p
Ping to winbindd failed on fd -1
could not ping winbindd!
[root@nassc01 samba]# wbinfo -t
checking the trust
2009 May 06
1
Kerberos and 2008 AD troubles
I've been trying to get Kerberos to work for the last couple of days so
that we can use SSO. I can't seem to get past a roadblock and Google
doesn't seem to provide any answers. I've got Samba connected to the AD
and running. I can wbinfo everything and can login to the machine using
PAM with the pam_winbind modules just fine. I can get user tickets just
fine. When I try to get ssh
2006 May 22
1
Join ADS problem
Problem with join to Active Directory
[root@clust-master samba]# net ads join -S 10.0.0.1 -U Administrator
Administrator's password:
[2006/05/22 10:24:05, 0] libads/ldap.c:ads_join_realm(1640)
ads_add_machine_acct (clust): Type or value exists
ads_join_realm: Type or value exists
[root@clust-master samba]# kinit Administrator@COROD.LOCAL
Password for Administrator@COROD.LOCAL:
As you can
2004 May 21
0
winbind issues with AD domain trust
I'm setting up Samba in an environment with 2 Active Directory domains setup
with a one way trust (DOMAINA -> DOMAINB). Samba is in DOMAINA. From
looking at the logs (see below) it appears that winbind is having troubles
getting the credentials for the domain controller in DOMAINB.
I can get tickets, using kinit, for accounts in both domains. I can join
DOMAINA just fine. Running
2010 Jun 07
1
resolve KDC network address error
Hello Samba-List-Users
I have a problem with KDC network name resolution. I tried to google it
and sought help on IRC#samba, to no avail. So I'll post my problem here.
In the spirit of privacy and normalization all server names in this post
are replaced. CAPTIAL server names are actually capitalized in the
configuration files.
Setup:
1x Debian5 x64 server running samba 3.2.5
2x Windows
2009 Nov 26
0
Kinit problems with WS2008r2
Hello world,
I have serious problems with samba and WS2008r2 DC using native mode ??.
I can join the domain and winbind is working well. I have no domain
administrator rights and machine account was pre-created with modified
rights documented
<http://docs.hp.com/en/7212/ADSJoinMinimumPerms.pdf#search=%22samba%20join%20ads%20user%20propert%22>
Now I am trying to get ticket with kinit -k
2008 Nov 27
3
SMBD not authenticating against Active Directory
Hi,
Iam trying to setup Samba version 3.2.3 on Redhat (RHEL5) server to use
Active Directory for authentication. I followed the instructions from
article in following website:
http://technet.microsoft.com/en-au/magazine/dd228986.aspx
Setup Winbind + Samba + Kerberos and it seems to work fine. I can see the
users in Active Directory through winbind as well as authenticate users
using NTLM
2005 May 11
1
samba3.0.14a, Windows2003, ADS
Please forgive the long post but I am at my wits end here! Below are
the files that I have configured, the results of several commands, and
some output from log files.... ANY HELP AT ALL??!!
wbinfo -p
Ping to winbindd failed on fd -1
could not ping winbindd!
wbinfo -t
checking the trust secret via RPC calls failed
error code was (0x0)
Could not check secret
kinit and klist seem to work