similar to: Kerberos issue after upgrade

Displaying 20 results from an estimated 6000 matches similar to: "Kerberos issue after upgrade"

2010 Apr 30
0
Why do Interdomain trusts try to use kerberos
I have setup a test PDC with samba 3.4.7 on a fedora core 12 linux machine. I have setup two way interdomain trusts with a Windows 2008 domain. The domain and forest functional levels are Windows 2003. Since the samba machine is not emulating an Active Domain Controller, the Windows 2008 machine should think it is talking to an NT4 server. And since NT4-based domains don't use
2010 May 02
0
Why do Interdomain trusts try to use kerberos - updated
On my test Samba PDC, I updated the krb5.conf file to add realm info for the Windows 2008. This seems to have resolved my "wbinfo" issue. "getent passwd" is still not working (I did update nsswitch.conf) but I suspect this is because of an idmap allocation issue. The syntax for idmap allocation in smb.conf seems to change between 3.0, 3.2, 3.3 and 3.4. I have also tried
2016 Oct 05
0
Winbind Preauthentication failed
Hi guys! I started to have the problem above last October, 2th. I don´t know why and how, because it was saturday. So, my file server stoped to authenticate against the Samba4 AD. Today, all shares was stopped and then i restarted my Samba4 AD and the file server. All became to work again. But it im afraid because the problem started by itself. Thanks! # MY CRONTAB 17 * * * * root cd /
2016 Oct 04
0
Fwd: Winbind Preauthentication failed
Hi guys! I started to have the problem above last October, 2th. I don´t know why and how, because it was saturday. So, my file server stoped to authenticate against the Samba4 AD. Today, all shares was stopped and then i restarted my Samba4 AD and the file server. All became to work again. But it im afraid because the problem started by itself. Thanks! # MY CRONTAB 17 * * * * root cd /
2007 Jul 04
1
net ads join without kerberos
Hello, I'm trying to join a samba server to a w2k domain. Now I have removed all samba and kerberos software from the machine to reset configuration. Then I have executed "net ads testjoin" to see what happened (I have already joined the machine to the domain). It returned the following messages: [2007/07/04 09:14:44, 0] libads/kerberos.c:ads_kinit_password(208)
2010 May 04
1
interdomain trusts / wbinfo and listent_recv: returned no users
As per earlier post, I was having problems getting trusts setup between my Samba domain (3.0.x PDC, 3.4.x BDC on Solaris 10) and two Active Directory domains (each in a separate forest.) One domain is a test Win 2003 PDC in native Win 2003 mode, the other is a Win 2008 system also in native Win 2003 mode. To summarize some of the progess- things work better if the Samba 3.4 is the PDC,
2009 May 15
1
3.3.4 2008 Domain Join Error
Hi, Just trying to get a SLES10 machine running 3.3.4 to join a 2008 domain and getting this .... any ideas?? Running: net -d 3 -U admuser@DOM.REALM.CO.COM ads join createcomputer="REG/CN/OU/Services/" Error: [2009/05/15 13:42:13, 3] libads/sasl.c:ads_sasl_spnego_bind(780) ads_sasl_spnego_bind: got OID=1 3 6 1 4 1 311 2 2 10 [2009/05/15 13:42:13, 3]
2008 Dec 04
1
Join multiple CTDB managed Samba servers into Active Directory
Hi , I have set up a 2-node CTDB cluster serving NFS and CIFS authenticating Windows and Linux users via Active Directory. The setup works fine, except only one server in the CTDB-cluster is able to join the AD domain at a given instance. If you manually add the other server into AD, the already connected server gets disconnected. There is no specific error message logged in /var/log/message or
2005 May 19
0
ADS & Kerberos Woes
I've been successfully running Samba 3.0 under FreeBSD 5 attached to a 2003 Domain for awhile now. As of about a week ago, I could no longer get most users to authenticate to the Samba server. It happened at roughly the same time I upgraded to FreeBSD 5.4. I'm using heimdal 0.6.3, samba 3.0.14 and FreeBSD 5.4. I had the error running samba 3.0.11 and 3.0.12 from the FreeBSD ports
2018 Aug 11
0
samba AD member does not renew kerberos ticket [kerberos_kinit_password BONN$@DOMAIN.DE failed: Preauthentication failed]
On Sat, 11 Aug 2018 14:56:46 +0200 Noël Köthe via samba <samba at lists.samba.org> wrote: > Hello, > > my fileserver (Debian and samba packages 4.2.14+dfsg-0+deb8u9) > connected to an AD with one Windows DC and one Samba DC does not renew > the Kerberos ticket after 10 hours and I need to rejoin the domain.:( > Another server (runs as print server with the same version)
2009 Jan 07
1
[Solaris 9][ads] net ads testjoin error
Hello folks, I have been able to successfully compile (MIT) kerberos (1.5.4) and samba (3.0.28a) on a Solaris 9 (Kernel version: SunOS 5.9 Generic 122300-31 Aug 2008) host. I was able to successfully join this host to a DEVDOMAIN This is the smb.conf file that I used: [global] # If there are no settings here, Samba uses the default values for all global settings security = ads
2005 Sep 01
2
Kerberos problem with net ads join under AIX
Hello! If i try a net ads join i get a kerberos error , but my kerberos works fine, i can do a kinit,klist and so on. the error i get is the following. [2005/09/01 08:02:16, 0] libads/kerberos.c:ads_kinit_password(146) kerberos_kinit_password root@MY.DOMAIN.COM failed: Cannot resolve network address for KDC in requested realm [2005/09/01 08:02:16, 0] utils/net_ads.c:ads_startup(191)
2003 Jun 25
1
KDC has no support for encryption type
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 I'm using samba 3.0.0beta1. When I try join ADS I got error: # net ADS JOIN -U Administrator [2003/06/25 13:03:34, 1] param/loadparm.c:lp_do_parameter(3103) ~ WARNING: The "winbind uid" option is deprecated [2003/06/25 13:03:34, 1] param/loadparm.c:lp_do_parameter(3103) ~ WARNING: The "winbind gid" option is deprecated
2018 Aug 11
2
samba AD member does not renew kerberos ticket [kerberos_kinit_password BONN$@DOMAIN.DE failed: Preauthentication failed]
Hello, my fileserver (Debian and samba packages 4.2.14+dfsg-0+deb8u9) connected to an AD with one Windows DC and one Samba DC does not renew the Kerberos ticket after 10 hours and I need to rejoin the domain.:( Another server (runs as print server with the same version) does not have this problem. Aug 10 20:03:37 bonn winbindd[14698]: kerberos_kinit_password BONN$@DOMAIN.DE failed:
2007 May 31
0
Can not join via ADS using administrator account, succeeded using another account
Hello, Yesterday I have used Samba to help me authenticate Windows uses within the Squid Proxy server. ( FreeBSD-6.1 + Samba 3.0.25 ) The Kerberos setup went fine. However I got the NT_STATUS_PROTOCOL_UNREACHABLE error code when trying to "net join" the domain. It seems this is Kerberos related. On the net some emails suggest using "kdc = tcp/server.name" syntax to deal
2005 Jan 27
0
Unknown code krb5 156
Hi, I am having trouble joining an AD Domain with samba3.0.10: All checks mentioned in the Samba-Guides (regarding LDAP & Kerberos) passed, but when I use >netra:~/samba-3.0.10/source/bin# ./net ads join -Utestuser >testuser's password: >[2005/01/27 10:41:11, 0] libads/kerberos.c:ads_kinit_password(146) > kerberos_kinit_password testuser@INTRA.DOMAIN.DE failed: Unknown
2005 Nov 04
0
authenticating to AD with winbind
Yohoo! We want to authenticate our Cisco admins to freeradius. This should authenticate to our running AD (W2003Srv). Googling for freeradius and AD tells me to use ntlm_auth. For ntlm_auth I need a running winbindd. And kerberos. And there's my problem. Status: I configured the /etc/krb5.conf "kinit admin@MY.DOMAIN" asks for the password and gives me a ticket for one week.
2010 Apr 24
0
wbinfo -t fails
This used to work ... root at workhorse:/var/log/samba# wbinfo -t checking the trust secret via RPC calls failed error code was NT_STATUS_ACCESS_DENIED (0xc0000022) Could not check secret root at workhorse:/var/log/samba# net ads info LDAP server: 10.0.0.60 LDAP server name: dim-win2300.DaCrib.local Realm: DACRIB.LOCAL Bind Path: dc=DACRIB,dc=LOCAL LDAP port: 389 Server time: Sat, 24 Apr 2010
2009 Oct 12
2
Interdomain Trust between Samba3 and 2000 AD
I am having some trouble creating a two-way domain trust account between Samba3 and Windows 2000 Server. The Windows 2000 server is an AD domain controller, and my Samba 3 server has an LDAP backend and is running on Ubuntu 9.04 64bit. Samba 3 is acting as the WINS server, and the Windows server has been pointed to the samba server for WINS in the TCP/IP settings on the network adapter.
2014 Aug 16
1
Winbind File Server Domain Member Errors: "Client not found in Kerberos database" / "Could not receive trustdoms".
Guys, I'm seeing the following error at my Samba4 Domain Member File Server: --- ==> /var/log/samba/log.wb-DOMAIN <== [2014/08/16 05:39:26.616878, 0] ../source3/libads/kerberos_util.c:74(ads_kinit_password) kerberos_kinit_password FILE-SERVER$@REALM.DOMAIN.COM failed: Client not found in Kerberos database [2014/08/16 05:39:26.616962, 1]