Displaying 20 results from an estimated 6000 matches similar to: "Kerberos issue after upgrade"
2010 Apr 30
0
Why do Interdomain trusts try to use kerberos
I have setup a test PDC with samba 3.4.7 on a fedora core 12 linux
machine. I have setup two way interdomain trusts with a Windows 2008
domain. The domain and forest functional levels are Windows 2003.
Since the samba machine is not emulating an Active Domain Controller,
the Windows 2008 machine should think it is talking to an NT4 server.
And since NT4-based domains don't use
2010 May 02
0
Why do Interdomain trusts try to use kerberos - updated
On my test Samba PDC, I updated the krb5.conf file to add realm info for the
Windows 2008. This seems to have resolved my "wbinfo" issue. "getent
passwd" is still not working (I did update nsswitch.conf) but I suspect this
is because of an idmap allocation issue. The syntax for idmap allocation
in smb.conf seems to change between 3.0, 3.2, 3.3 and 3.4.
I have also tried
2016 Oct 05
0
Winbind Preauthentication failed
Hi guys!
I started to have the problem above last October, 2th.
I don´t know why and how, because it was saturday. So, my file server
stoped to authenticate against the Samba4 AD.
Today, all shares was stopped and then i restarted my Samba4 AD and the
file server.
All became to work again.
But it im afraid because the problem started by itself.
Thanks!
# MY CRONTAB
17 * * * * root cd /
2016 Oct 04
0
Fwd: Winbind Preauthentication failed
Hi guys!
I started to have the problem above last October, 2th.
I don´t know why and how, because it was saturday. So, my file server
stoped to authenticate against the Samba4 AD.
Today, all shares was stopped and then i restarted my Samba4 AD and the
file server.
All became to work again.
But it im afraid because the problem started by itself.
Thanks!
# MY CRONTAB
17 * * * * root cd /
2010 May 04
1
interdomain trusts / wbinfo and listent_recv: returned no users
As per earlier post, I was having problems getting trusts setup between
my Samba domain (3.0.x PDC, 3.4.x BDC on Solaris 10) and two Active
Directory domains (each in a separate forest.) One domain is a test
Win 2003 PDC in native Win 2003 mode, the other is a Win 2008 system
also in native Win 2003 mode.
To summarize some of the progess- things work better if the Samba 3.4
is the PDC,
2009 May 15
1
3.3.4 2008 Domain Join Error
Hi,
Just trying to get a SLES10 machine running 3.3.4 to join a 2008 domain and getting this .... any ideas??
Running:
net -d 3 -U admuser@DOM.REALM.CO.COM ads join createcomputer="REG/CN/OU/Services/"
Error:
[2009/05/15 13:42:13, 3] libads/sasl.c:ads_sasl_spnego_bind(780)
ads_sasl_spnego_bind: got OID=1 3 6 1 4 1 311 2 2 10
[2009/05/15 13:42:13, 3]
2008 Dec 04
1
Join multiple CTDB managed Samba servers into Active Directory
Hi ,
I have set up a 2-node CTDB cluster serving NFS and CIFS authenticating
Windows and Linux users via Active Directory.
The setup works fine, except only one server in the CTDB-cluster is able to
join the AD domain at a given instance. If you manually add the other server
into AD, the already connected server gets disconnected. There is no
specific error message logged in /var/log/message or
2007 Jul 04
1
net ads join without kerberos
Hello,
I'm trying to join a samba server to a w2k domain.
Now I have removed all samba and kerberos software from the machine to reset
configuration.
Then I have executed "net ads testjoin" to see what happened (I have already
joined the machine to the domain).
It returned the following messages:
[2007/07/04 09:14:44, 0] libads/kerberos.c:ads_kinit_password(208)
2009 Jan 07
1
[Solaris 9][ads] net ads testjoin error
Hello folks,
I have been able to successfully compile (MIT) kerberos (1.5.4) and
samba (3.0.28a) on a Solaris 9 (Kernel version: SunOS 5.9 Generic
122300-31 Aug 2008) host.
I was able to successfully join this host to a DEVDOMAIN
This is the smb.conf file that I used:
[global]
# If there are no settings here, Samba uses the default values for all
global settings
security = ads
2003 Jun 25
1
KDC has no support for encryption type
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
I'm using samba 3.0.0beta1.
When I try join ADS I got error:
# net ADS JOIN -U Administrator
[2003/06/25 13:03:34, 1] param/loadparm.c:lp_do_parameter(3103)
~ WARNING: The "winbind uid" option is deprecated
[2003/06/25 13:03:34, 1] param/loadparm.c:lp_do_parameter(3103)
~ WARNING: The "winbind gid" option is deprecated
2007 May 31
0
Can not join via ADS using administrator account, succeeded using another account
Hello,
Yesterday I have used Samba to help me authenticate Windows uses
within the Squid Proxy server. ( FreeBSD-6.1 + Samba 3.0.25 )
The Kerberos setup went fine. However I got the
NT_STATUS_PROTOCOL_UNREACHABLE error code when trying to "net join"
the domain.
It seems this is Kerberos related. On the net some emails suggest
using "kdc = tcp/server.name" syntax to deal
2005 Jan 27
0
Unknown code krb5 156
Hi,
I am having trouble joining an AD Domain with samba3.0.10:
All checks mentioned in the Samba-Guides (regarding LDAP & Kerberos) passed,
but when I use
>netra:~/samba-3.0.10/source/bin# ./net ads join -Utestuser
>testuser's password:
>[2005/01/27 10:41:11, 0] libads/kerberos.c:ads_kinit_password(146)
> kerberos_kinit_password testuser@INTRA.DOMAIN.DE failed: Unknown
2005 Nov 04
0
authenticating to AD with winbind
Yohoo!
We want to authenticate our Cisco admins to freeradius. This should authenticate to our running AD (W2003Srv).
Googling for freeradius and AD tells me to use ntlm_auth. For ntlm_auth I need a running winbindd. And kerberos.
And there's my problem.
Status:
I configured the /etc/krb5.conf
"kinit admin@MY.DOMAIN" asks for the password and gives me a ticket for one week.
2010 Apr 24
0
wbinfo -t fails
This used to work ...
root at workhorse:/var/log/samba# wbinfo -t
checking the trust secret via RPC calls failed
error code was NT_STATUS_ACCESS_DENIED (0xc0000022)
Could not check secret
root at workhorse:/var/log/samba# net ads info
LDAP server: 10.0.0.60
LDAP server name: dim-win2300.DaCrib.local
Realm: DACRIB.LOCAL
Bind Path: dc=DACRIB,dc=LOCAL
LDAP port: 389
Server time: Sat, 24 Apr 2010
2009 Oct 12
2
Interdomain Trust between Samba3 and 2000 AD
I am having some trouble creating a two-way domain trust account
between Samba3 and Windows 2000 Server.
The Windows 2000 server is an AD domain controller, and my Samba 3
server has an LDAP backend and is running on Ubuntu 9.04 64bit. Samba
3 is acting as the WINS server, and the Windows server has been
pointed to the samba server for WINS in the TCP/IP settings on the
network adapter.
2009 Jul 09
0
Quick question on joining a Win2k3 domain
All,
New to the list, but have used samba off and on over the years, though
not recently.
I just installed 3.3.3 on a FreeBSD 7.1 box, and joined it to our Win2k3 domain.
It seems to work just fine, though initially I got an error.
I did:
it-kbuff-fbsd# kinit _service@MYCOMANY.COM
Then
it-kbuff-fbsd# net ads join -U _service -S zad3.mycompany.com
2005 May 19
0
ADS & Kerberos Woes
I've been successfully running Samba 3.0 under FreeBSD 5 attached to a 2003
Domain for awhile now. As of about a week ago, I could no longer get most
users to authenticate to the Samba server. It happened at roughly the same
time I upgraded to FreeBSD 5.4.
I'm using heimdal 0.6.3, samba 3.0.14 and FreeBSD 5.4. I had the error
running samba 3.0.11 and 3.0.12 from the FreeBSD ports
2018 Aug 11
0
samba AD member does not renew kerberos ticket [kerberos_kinit_password BONN$@DOMAIN.DE failed: Preauthentication failed]
On Sat, 11 Aug 2018 14:56:46 +0200
Noël Köthe via samba <samba at lists.samba.org> wrote:
> Hello,
>
> my fileserver (Debian and samba packages 4.2.14+dfsg-0+deb8u9)
> connected to an AD with one Windows DC and one Samba DC does not renew
> the Kerberos ticket after 10 hours and I need to rejoin the domain.:(
> Another server (runs as print server with the same version)
2006 Sep 01
6
ads_kinit_password failed: Preauthentication failed
Hi,
I am have compiled samba 3.0.23b (MIT Kerberos 1.5.1) on Solaris 10.
I am unable to join the ads domain.
net ads testjoin returns the following output...
[2006/09/01 17:25:17, 0] libads/kerberos.c:ads_kinit_password(208)
kerberos_kinit_password ARTEMISIA$@UNIMELB.EDU.AU failed: Preauthentication failed
[2006/09/01 17:25:17, 0] libads/kerberos.c:ads_kinit_password(208)
2003 Feb 06
1
Net ADS JOIN error
Hi all,
After having spend 2 days to resolve my problem to configure Samba 3.0 (the
path to the libgcc_s was wrong) I've finally installed it and I'm trying to
join the W2K AD domain with the command:
1. kinit admin@OUR.DOMAIN.ORG (asking password and getting the ticket from
the W2K)
2. net ads join -Uadmin@OUR.DOMAIN.ORG (doesn't work)
error message :
[2003/02/06 15:09:02, 0]