Displaying 20 results from an estimated 1000 matches similar to: "Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)"
2017 Jan 16
4
SOLVED(I hope): Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
Samba - General mailing list wrote
>> [2017/01/11 16:42:34.522067, 1]
>> ../source3/librpc/crypto/gse.c:496(gse_get_server_auth_token)
>> gss_accept_sec_context failed with [ Miscellaneous failure (see text):
>> Failed to find cifs/hg004.humgen.0zone at HUMGEN.0ZONE(kvno 1) in keytab
>> MEMORY:cifs_srv_keytab (arcfour-hmac-md5)]
>> [2017/01/11
2017 Jan 17
2
SOLVED(aproximative?): Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
Samba - General mailing list wrote
> On Mon, 16 Jan 2017 09:07:35 -0800 (PST)
> rawi via samba <
> samba at .samba
> > wrote:
>
>> Samba - General mailing list wrote
>> >> [2017/01/11 16:42:34.522067, 1]
>> >> ../source3/librpc/crypto/gse.c:496(gse_get_server_auth_token)
>> >> gss_accept_sec_context failed with [
2016 Aug 12
2
WINBIND: UID and GID false mappings on domain member
Hi @ALL
Trying to migrate to Samba AD after 12 lucky years with samba NT-domain +
server profiles and homes in a small research institute.
I decided to provision a new domain and create the users and groups using
samba-tool with most of its parameters.
I decided against classicupgrade, because I didn't get all posix attributes
automatically set and I cannot do LDAP kung-fu.
Intention is to
2017 Jan 16
0
SOLVED(I hope): Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
On Mon, 16 Jan 2017 09:07:35 -0800 (PST)
rawi via samba <samba at lists.samba.org> wrote:
> Samba - General mailing list wrote
> >> [2017/01/11 16:42:34.522067, 1]
> >> ../source3/librpc/crypto/gse.c:496(gse_get_server_auth_token)
> >> gss_accept_sec_context failed with [ Miscellaneous failure (see
> >> text): Failed to find cifs/hg004.humgen.0zone
2017 Jan 17
2
SOLVED(aproximative?): Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
Samba - General mailing list wrote
> On Tue, 17 Jan 2017 03:03:28 -0800 (PST)
> rawi via samba <
> samba at .samba
> > wrote:
>
>> Samba - General mailing list wrote
>>
>> Rowland, thank you
>>
>> Please note the comments starting with two '#'. They give info about
>> erroneous behavior I encontered.
>>
>>
2016 Aug 17
3
SOLVED: WINBIND: UID and GID false mappings on domain member
I bump this only to say SOLVED and many thanks to Rowland.
Lessons learned:
1.
Indeed, my problems where related to not having a gidNumber for "Domain
Users".
After adding it I got real wbinfo --user-info on the domain member (file
server).
My test user could log in in his old home from the NT domain preserving the
old UID and GID.
2. (question = why?)
And login.bat was called at
2017 Jan 17
0
SOLVED(aproximative?): Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
On Tue, 17 Jan 2017 03:32:46 -0800 (PST)
rawi via samba <samba at lists.samba.org> wrote:
> Samba - General mailing list wrote
> > On Tue, 17 Jan 2017 03:03:28 -0800 (PST)
> > rawi via samba <
>
> > samba at .samba
>
> > > wrote:
> >
> >> Samba - General mailing list wrote
> >>
> >> Rowland, thank you
>
2017 Jan 17
0
SOLVED(aproximative?): Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
On Tue, 17 Jan 2017 03:03:28 -0800 (PST)
rawi via samba <samba at lists.samba.org> wrote:
> Samba - General mailing list wrote
>
> Rowland, thank you
>
> Please note the comments starting with two '#'. They give info about
> erroneous behavior I encontered.
>
> The manual says that "domain master = auto" means "NO", if "domain
>
2016 Aug 12
0
WINBIND: UID and GID false mappings on domain member
On Fri, 12 Aug 2016 07:33:27 -0700 (PDT)
rawi via samba <samba at lists.samba.org> wrote:
> Hi @ALL
>
> Trying to migrate to Samba AD after 12 lucky years with samba
> NT-domain + server profiles and homes in a small research institute.
>
> I decided to provision a new domain and create the users and groups
> using samba-tool with most of its parameters.
> I
2016 Aug 12
2
WINBIND: UID and GID false mappings on domain member
> Just provisioning with --rfc2307 isn't enough, you personally need to
> add any required RFC2307 attributes.
But you see my test user has his attributes. From samba-tool. Do you mean
the basic objects, the templates for the user and group? If yes, how to do
it?
> Can I suggest you put dnsupdate back and then setup bind9 on the DC
> correctly.
I will...
> You must be
2017 Jan 17
2
UNSOLVED: Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
On Tue, 17 Jan 2017 05:54:41 -0800 (PST)
rawi via samba <samba at lists.samba.org> wrote:
>
> No, I have dhcp and a full bind9 serving master zones forward and
> reverse, with exception of the _msdcs... SOA, which I let only
> forward and it seems enough...
I have been using BIND_DLZ and DHCP updating the Samba AD database for
the last 4 years without problem.
>
>
2017 Jan 17
2
UNSOLVED: Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
On Tue, 17 Jan 2017 04:30:31 -0800 (PST)
rawi via samba <samba at lists.samba.org> wrote:
> Samba - General mailing list wrote
> > And there is your problem, AD lives (or dies) on DNS, unlike NT. You
> > have this line 'dns-nameservers 127.0.0.1' in your smb.conf. It is
> > useless, it is pointing to itself and you are not running a dns
> > server, even if
2017 Jan 17
2
SOLVED(aproximative?): Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
Samba - General mailing list wrote
> And there is your problem, AD lives (or dies) on DNS, unlike NT. You
> have this line 'dns-nameservers 127.0.0.1' in your smb.conf. It is
> useless, it is pointing to itself and you are not running a dns
> server, even if you were running a dns server, it shouldn't point to
> itself.
>
> There are those that say you can run a
2016 Aug 17
0
SOLVED: WINBIND: UID and GID false mappings on domain member
On Wed, 17 Aug 2016 04:54:41 -0700 (PDT)
rawi via samba <samba at lists.samba.org> wrote:
> I bump this only to say SOLVED and many thanks to Rowland.
>
> Lessons learned:
>
> 1.
> Indeed, my problems where related to not having a gidNumber for
> "Domain Users".
> After adding it I got real wbinfo --user-info on the domain member
> (file server).
>
2017 Jan 17
0
UNSOLVED: Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
Samba - General mailing list wrote
> On Tue, 17 Jan 2017 04:30:31 -0800 (PST)
> rawi via samba <
> samba at .samba
> > wrote:
>
>> Oh and I forgot, I am running a DNS server on the DC, on the right
>> port and with all my clients are needing.
>> They are only not served trough samba but directlly by bind. If they
>> (clients) would see any
2017 Jan 16
0
SOLVED(I hope): Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
Hello,
Am 16.01.2017 um 18:07 schrieb rawi via samba:
> I discovered, that the generated smb.conf was not enough for an AD-DC.
>
> Despite having:
>
> server role = active directory domain controller
>
> ... the default settings for:
>
> domain logons = no (?)
> domain master = auto (aka equally NO)
> local master = yes
>
> (not specifically mentioned
2016 Aug 12
2
WINBIND: UID and GID false mappings on domain member
Thank you Rowland for looking into this!
>> WHAT I DO NOT GET CORRECTLY are the UID and GID of users and groups
>> on the domain member (PARTIALLY DEPENDING if I have the lines with
>> "idmap config *:..." or not ??? - see below)
> « [hide part of quote]
>
> Have you added uidNumber & gidNumber attributes to the user &
> groupobjects in AD ?
2016 Aug 12
0
WINBIND: UID and GID false mappings on domain member
On Fri, 12 Aug 2016 10:42:54 -0700 (PDT)
rawi via samba <samba at lists.samba.org> wrote:
>
> > Just provisioning with --rfc2307 isn't enough, you personally need
> > to add any required RFC2307 attributes.
>
> But you see my test user has his attributes. From samba-tool. Do you
> mean the basic objects, the templates for the user and group? If yes,
> how to
2016 Aug 12
0
WINBIND: UID and GID false mappings on domain member
On Fri, 12 Aug 2016 09:41:19 -0700 (PDT)
rawi via samba <samba at lists.samba.org> wrote:
> Thank you Rowland for looking into this!
>
>
> > Have you added uidNumber & gidNumber attributes to the user &
> > groupobjects in AD ?
>
> Not myself, I simply provisioned with --use-rfc2307
Just provisioning with --rfc2307 isn't enough, you personally
2019 Dec 16
2
Failed to find [principal](kvno 4) in keytab MEMORY:cifs_srv_keytab (arcfour-hmac-md5)]
Hello everyone,
I have a FreeNAS server (9.10 running samba 4.3.11-GIT-UNKNOWN) that's recently
started emitting this error:
gss_accept_sec_context failed with [ Miscellaneous failure (see text):
Failed to find cifs/nas01 at EXAMPLE.COM(kvno 4) in keytab
MEMORY:cifs_srv_keytab (arcfour-hmac-md5)]
I've looked at bug 12262 [1], which is why I've cc'd Stefan Metzmacher.
I don't