Displaying 20 results from an estimated 1000 matches similar to: "Samba trusts, mapping issue, and pam crap domain"
2006 Apr 26
1
Bad Password
Everyone,
I am going nuts trying to figure this problem out. I have
successfully joined a SUSE 10 server to our domain and configured samba
for ADS authentication. This exact setup works on all my other servers.
On this one, I keep getting access denied when entering my domain
password despite the fact that I have tried it literally dozens of
times. I am 100% confident I am
2006 Oct 23
1
Getting users and groups through winbind on FreeBSD
Hi
We have a few Linux samba servers that authenticate against our
Active Directory domain (Small Business Server 2000). I've added a
couple of disks to a FreeBSD 6.1 server in our office and I'm trying
to achieve the same but not having much luck. I'm new to all
this... I'm not our network admin, but he is BSD-phobic so I thought
it was safer to do it myself.
2009 Oct 09
1
Domain trusts "forgetting" trusted users
I am running Samba ver 3.0.33 on Solaris 10 (sparc) as a PDC with LDAP
for the backend for both samba and unix accounts.
I have also set up a trust with an Windows domain- lets call it
WINDOMAIN- (the PDC for the Windows domain is Win 2003 but is in
mixed mode for backwards compat.) The SAMBA domain trusts the WINDOWS
domain, not not vice versa.
I had also tried setting up trusts with
2007 Oct 26
0
Pre-3.023d-Bug in ACL-handling reappears in 3.026a
# wbinfo -Y S-1-5-11
Could not convert sid S-1-5-11 to gid
# wbinfo -Y S-1-5-13
Could not convert sid S-1-5-13 to gid
(S-1-5-11 are the Authenticated Users, S-1-5-13 are the Terminal Server
Users.)
This bug was finally solved in release 3.023d.
Now it is back again.
How can I get this working?
I'm using idmap/tdb - would another idmap-module solve this issue?
The winbind log looks like
2007 May 18
1
3.0.25 Winbind high CPU usage
I just upgraded from 3.0.23d to 3.0.25 and I'm noticing that winbind is
chewing up a lot of CPU usage.
There are always 2 winbindd processes and one uses about 80% cpu and the
other use 15% cpu.
When I run a tcpdump and look at the traffic going to/from the domain
controller winbindd is connected to, there is a constant flow of
traffic.
Here is the winbind setup from my smb.conf file:
2003 Oct 20
3
SAMBA 3 and Windows2000 mixed mode trust
I have one server windows2000 mixed mode with active directory and samba
3.0 PDC.
This is my smb.conf
[global]
workgroup = TESTIPLANET
netbios name = TEST
server string = DOMINIO TEST
interfaces = 10.10.6.158
bind interfaces only = yes
preferred master = Yes
domain master = Yes
wins support = Yes
domain logons = yes
2010 Dec 06
1
winbind filling up log with "Possible deadlock: Trying to lookup SID xxx with passdb backend"
Hello,
I have samba 3.3.8 installed on CentOS 5.5 on a production server.
Winbind is filling up the logs with these messages:
[2010/12/06 10:43:28, 0] winbindd/winbindd_passdb.c:sid_to_name(159)
Possible deadlock: Trying to lookup SID
S-1-5-21-2106371596-187675891-3351287853 with passdb backend
[2010/12/06 10:43:29, 0] winbindd/winbindd_passdb.c:sid_to_name(159)
Possible deadlock:
2010 Nov 08
7
winbind sometimes does not resolve sid to a name
Sometimes a group sid does not get resolved to its name.
Is this a settings problem? Looks like winbind deamon
went dormant for a while and then woke up?
I am using interface wbcLookupSid provided by the
library libwbclient.so for resolving sids to names.
These are the winbind related parameters in
/etc/samba/smb.conf
[global]
# separate domain and username with '\', like
2008 Nov 19
0
File sharing is ok, but new ADS user validation is not ok
We have Samba 3.2.4 on two SLES 10 (one is SP1, the other SP2 64bit)
machines. Both are member servers in our ADS, which was over the past
month given some additional DCs, new IPs for all DCs, and upgraded to
Windows 2008 (from win2003). The krb5.conf and nsswitch.conf files on
the two machines are identical; the smb.conf files are *nearly*
identical in their common section; the filewall rules
2012 Jan 15
2
Samba 3.6 problems with idmap rid
Hi!
I am using mainly Samba 3.5 on CentOS, and I was very pleased with
idmap_rid backend for SID-to-RID mappings.
But on Solaris 10, I can only use 3.6 because OpenCSW ships only 3.6.
Problem is, things are changed and are not working as expected...
Here is my config on RHEL Samba 3.5:
[global]
workgroup = WINDOMAIN
realm = WINDOMAIN.LOCAL
server string = localserver
2003 Oct 17
0
Problems with Trust Relationship
Hey All,
I'm having problems with a Trust relationship between our Win 2002 PDC and our Samba PDC. Here are the details:
(names have been changed to protect the innocent...!)
Win 2002 PDC: WINPDC, IP 1.2.3.4
Client in Windows Domain: CLIENT
Samba PDC in Domain TEST: SMBPDC
I use Start -> Run -> \\SMBPDC on a machine in our Windows 2000 Domain and got an error saying "\\SMBPDC, A
2005 Dec 09
1
Limit user authentification into Winbind ?
Hi
i see on my log, two informations :
1- Into my log, i see a very big quantity of :
[19391]: lookupname ECTPP/root
[2005/12/09 14:28:46, 3]
nsswitch/winbindd_async.c:winbindd_dual_lookupname(695)
[19391]: lookupname ECTPP/root
[2005/12/09 14:28:46, 3]
nsswitch/winbindd_async.c:winbindd_dual_lookupname(695)
10x per s .... 600x/minutes .. it's very very big no ?
It's possible
2007 Jan 08
1
unable to find the Domain Master Browser name
Hello,
i've having this logs ever since ai started samba on a new server....
it's a sles 10 server wich is supposed to be a part of a w2k3 domain,
here's the conf file:
workgroup = windomain
map to guest = Bad User
printcap name = cups
logon path = \\%L\profiles\.msprofile
logon drive = P:
add machine script = /usr/sbin/useradd -c Machine -d /var/lib/nobody
-s /bin/false %m$
logon
2009 Apr 06
1
virtual domains with SQL auth + ntlm (winbind) auth for one of them...
Hello !
Is it possible to configure dovecot so it can use SQL authentication
for set of domains, and ntlm authentication for one domain? In other
words, I would like to authenticate all users (with user at domain.com as
login) in SQL server, and if not found, then strip @windomain.com from
login and fallback to pam->winbind authentication. So far i have in my
dovecot.conf:
auth_default_realm
2007 May 18
2
force group to Unix group in 3.0.25
Hi,
I'm currently using v3.0.24 in production and all works well.
I'm testing 3.0.25 to see if I'm going to have any problems with it if I have to upgrade.
I have a problem with the "force group" setting if it is set to a local Unix group.
This same setting works fine in 3.0.24 but I'm denied access to the same share
in 3.0.25. If I comment off the "force
2005 Aug 17
1
overrun buffer
Hi all
I am getting this error, when running the command below from my workstation:
`--> sudo net rpc info -S SMBPDC
[2005/08/17 14:33:16, 0] rpc_parse/parse_prs.c:prs_mem_get(537)
prs_mem_get: reading data of size 14287078 would overrun buffer.
However, if I run the same command from the PDC itself, then it's ok:
.
ldapsmb-pdc:~# net rpc info
Domain Name: ILR
Domain SID:
2008 Dec 26
0
Samba PDC, LDAP, IDMAP backend not working
Please help. I've been searching for days, trying nearly everything I can find that seems relevant, but I can't get this working.
I am able to create users, login to Windows systems joined to the SAMBA domain as those users, but filesystem ACLs on Windows Domain Member Servers do not work which I suspect is due to my IDMAP OU is empty.
wbinfo -u returns "Error looking up domain
2003 Oct 30
1
AW: AW: Help for Samba 3 and Win ADS
Hi Denis,
Thanks for help!
After trying several things out I finally worked it out ;-)
No I can connect with the useres from my WinDomain to the samba server - that's fine
But: How do I create vald shares for the several groups? How can I set the rights for the different folders for different Windows-users & Windows-groups? Has this be done on windows or on linux?
I just tried to set
2005 Aug 11
1
problem joining the domain
Hey all
I have installed a new Debian 3.1, with samba 3.0.14a-3 from apt-get.
I have configured samba to use the LDAP backend. I used the
smbldap-populate to get my directory going. No problem until then.
I currently only have 1 machine, which is also configured to be the PDC.
But, I can't join that PDC to the domain, damn it.
Here is what it says, debug level 2:
pdc:~# net rpc join -U
2011 Jan 05
2
Domain trust between a Samba PDC domain and W2K ADdomain
SNIP
>
> Hi people.
>
> I'm working on a trust relation between Samba 3.3.X and Windows 2003
> AD mixed mode.
>
> I have read the doc about this but for some reason wont work, my
> PDC+LDAP is working but I still cannot make this 2 servers share
> users.
In my experience, it is fairly straightforward to get AD users trusted
by the Samba controlled Domain, although