Displaying 20 results from an estimated 5000 matches similar to: "winbind only for ntlm_auth"
2010 Nov 11
1
ntlm_auth = NT_STATUS_NO_LOGON_SERVERS: No logon servers (0xc000005e)
I had to downgrade samba on a rh5.5 instance due to ntlm_auth not working properly: https://bugzilla.redhat.com/show_bug.cgi?format=multiple&id=561325
Now, when I add the computer to the domain ('net ads join ?U Administrator') it seems to work, is visible on the AD interface, but the logs show an error:
Nov 11 16:03:22 rhclient winbindd[4483]: [2010/11/11 16:03:22, 0]
2016 May 31
0
Using ntlm_auth with a non-Squid application
Hi Gaetano,
Good plan, I'd be very interested in your work as I am starting to look at
symfony here, also!
I do have ntlm_auth working perfectly using Samba 4 (and with badlock
patches). I use it with freeradius, not squid. An extract from my
/etc/raddb/modules/mschap, if it helps:
ntlm_auth = "/usr/local/samba/bin/ntlm_auth --request-nt-key
2018 Sep 27
0
[OT?] passing group name with spaces to ntlm_auth...
Hai marco,
More info on squid config might help here and no smb.conf..
Ahead of things...
And you better use something like this, change to negotiate auth. ( and use SSO ).
auth_param negotiate program /usr/lib/squid/negotiate_wrapper_auth \
--kerberos /usr/lib/squid/negotiate_kerberos_auth -s HTTP/proxy1.internal.domain.tld at REALM \
#Or if you dont have the SPN set. --kerberos
2016 May 31
3
Using ntlm_auth with a non-Squid application
Hello
my goal is to write an authentication module for the Symfony php framework, which would provide SSO capabilities to browsers that are logged in an MS AD domain
and support the NTLMv2 protocol. Ideally this module would run on linux servers, and be portable, i.e. require as few non-php tools and network/firewall
settings as possible (that's why I eschewed the existing Apache modules
2018 Sep 27
1
[OT?] passing group name with spaces to ntlm_auth...
On Thu, 2018-09-27 at 12:27 +0200, L.P.H. van Belle via samba wrote:
> Hai marco,
>
> More info on squid config might help here and no smb.conf..
> Ahead of things...
>
> And you better use something like this, change to negotiate auth. (
> and use SSO ).
>
> auth_param negotiate program /usr/lib/squid/negotiate_wrapper_auth \
> --kerberos
2010 Apr 30
0
Why do Interdomain trusts try to use kerberos
I have setup a test PDC with samba 3.4.7 on a fedora core 12 linux
machine. I have setup two way interdomain trusts with a Windows 2008
domain. The domain and forest functional levels are Windows 2003.
Since the samba machine is not emulating an Active Domain Controller,
the Windows 2008 machine should think it is talking to an NT4 server.
And since NT4-based domains don't use
2010 May 02
0
Why do Interdomain trusts try to use kerberos - updated
On my test Samba PDC, I updated the krb5.conf file to add realm info for the
Windows 2008. This seems to have resolved my "wbinfo" issue. "getent
passwd" is still not working (I did update nsswitch.conf) but I suspect this
is because of an idmap allocation issue. The syntax for idmap allocation
in smb.conf seems to change between 3.0, 3.2, 3.3 and 3.4.
I have also tried
2018 Sep 27
2
[OT?] passing group name with spaces to ntlm_auth...
I've not clear if is a squid or a samba/ntlm_auth trouble... indeed...
In Squid i've added:
auth_param ntlm program /usr/bin/ntlm_auth --helper-protocol=squid-2.5-ntlmssp --domain=LNFFVG --require-membership-of='LNFFVG\Domain Users'
auth_param ntlm children 5
but in 'cache.log' i got:
Winbindd lookupname failed to resolve 'LNFFVG\Domain into a SID!
Winbindd
2010 May 04
1
interdomain trusts / wbinfo and listent_recv: returned no users
As per earlier post, I was having problems getting trusts setup between
my Samba domain (3.0.x PDC, 3.4.x BDC on Solaris 10) and two Active
Directory domains (each in a separate forest.) One domain is a test
Win 2003 PDC in native Win 2003 mode, the other is a Win 2008 system
also in native Win 2003 mode.
To summarize some of the progess- things work better if the Samba 3.4
is the PDC,
2016 Jun 30
2
samba/winbind/apache/sso question
I have been trying to get SSO to work correctly with the following packages, and I appear I am missing something and I was wondering if anyone can help me or point me in the right direction?
I am currently using the "auth_ntlm_winbind_module" for apache to try and authenticate and was hoping to get SSO to work.
I have gone through all the steps on SEVERAL sites trying to figure out how
2016 Jun 30
0
samba/winbind/apache/sso question
On 30/06/16 18:30, Turner,Jonas wrote:
> I have been trying to get SSO to work correctly with the following packages, and I appear I am missing something and I was wondering if anyone can help me or point me in the right direction?
>
> I am currently using the "auth_ntlm_winbind_module" for apache to try and authenticate and was hoping to get SSO to work.
>
> I have gone
2013 Apr 30
1
NTLM authentication with Outlook 2010
All, I have a Ubuntu 12.04.2 box running Dovecot 2.0.19. I have it
configured for our active directory. WBinfo and ntlm_auth work great. I
am trying to get sso to work with ntlm. Gssapi with thunderbird works like
it should. I just cant get ntlm with outlook 2010 to work for sso. I get
prompted for my password each time I open outlook. I have attached my
config for dovecot. Any help would
2019 Aug 05
0
problems with authentication
Hai,
I think this is an old bug.. ( pretty sure about it )
And i suggest to dont change anything except smb.conf.
Your trying to use kerbereros usersname.
wbinfo -a marcio at EMPRESA.COM.BR
Enter marcio at EMPRESA.COM.BR's password:
And you using:
winbind use default domain = yes
This is and old bug somewhere in 4.5/4/6 i believe.
Only change these, yes only slows down you
2008 Oct 03
0
squid ntlm_auth not working on versions above 3.0.26
Hello. I am using squid with ntlm authentication against a samba PDC. It has worked for me perfectly in debian etch with samba version 3.0.24, and ubuntu Gutsy with samba 3.0.26a.
But when I have upgraded those servers to hardy (samba 3.0.28a) and lenny (3.2.3), thn sqwuid auth has stopped working, without any other config change.
Squid version I am using is 2.6-STABLE17, and . I am using the
2016 Apr 26
0
evolution libsoup and samba bug 765106
Hello everyone,
while i was play around with winhq install
winbind-clients.
After this I never can open evolution with exchange ews connector.
https://bugzilla.gnome.org/show_bug.cgi?id=765106
I patches libsoup by my self
diff -up ./libsoup/soup-auth-ntlm.c.prev ./libsoup/soup-auth-ntlm.c
--- ./libsoup/soup-auth-ntlm.c.prev 2016-04-15 14:18:02.680276592 +0200
+++ ./libsoup/soup-auth-ntlm.c
2009 Jan 14
0
problem with ntlm_auth and apache2
I'm trying to get mod_auth_ntlm with apache2 to work but it refuses to do
so.
ntlm_auth does work if I use the commandline argument.
The error I got is:
[2009/01/13 13:07:09, 5] lib/debug.c:debug_dump_status(391)
INFO: Current debug levels:
all: True/10
tdb: False/0
printdrivers: False/0
lanman: False/0
smb: False/0
rpc_parse: False/0
rpc_srv: False/0
rpc_cli: False/0
passdb: False/0
sam:
2009 Oct 09
0
ntlm_auth, universal principal name, multi-domain active directory - can samba authenticate?
I posted a similar message on the freeradius list a few months ago and it
was suggested I come here. Now that this effort is once again underway I am
looking for some assistance.
We are trying to replace our existing AAA solution with FreeRadius. The
user base is contained in an Active Directory single forest-multi domain
model.
The only feature of samba that we need to leverage is the
2015 Oct 28
0
NTLM_AUTH failing?
On 28/10/15 18:10, Ryan Ashley wrote:
> That is client setup. We have that under control. Our Linux users use
> Network Manager to connect and our Windows users use the stuff built
> into Windows. My problem is server-side. The server is a PPTP VPN
> (running via pptpd) and I have to add the lines below to make it work.
>
> plugin winbind.so
> ntlm_auth-helper
2006 Nov 28
2
PPP + ntlm_auth
Hello,
I'm trying to authenticate PPP (in fact l2tp...) users with Active
Directory (windows server 2003 DCs, mixed-mode domain) using winbind /
ntlm_auth. I'm using Samba 3.0.22, PPP 2.4.3, Kerberos 1.3.6, with
Trustix 2.2
What works :
- krb5kinit (and krb5klist -e)
- net ads join
- wbinfo -u, wbinfo -g, wbinfo -a user%pwd, wbinfo -p, wbinfo -t and
wbinfo -m
- getent passwd and
2004 Sep 07
1
Problems with 'ntlm_auth --require-membership-of' using Samba 3.0.6
Hi there,
I'm trying to configure Squid to use a windows domain for
authentication, and all goes well until I add the
"--require-membership-of" option on ntlm_auth. I need to restrict
access based on group membership, however ntlm_auth does not seem to be
behaving correctly. I'm using Samba 3.0.6 on Debian and I'm using a
Windows 2000 (SP4) Domain Controller. I