Displaying 20 results from an estimated 2000 matches similar to: "smbclient -k works, but not username + password"
2016 Dec 13
1
Doubt about Global Catalog on Samba 4
> > Initially, it appears to have worked. ...
> > It shows the same on one of the S4 DCs, but the
> > DomainDnsZonesMasterRole still shows as "no current owner" on the
> > third S4 DC [all Sernet 4.5.2]. Argh.
> You could try checking the database on the third DC, 'samba-tool
> dbcheck --help' for more info.
> You could also try forcing
2015 Apr 12
2
Removed old DC, now replication hopelessly broken [HELP]
I removed a DC using the DC removal tool mentioned in
http://gallery.technet.microsoft.com/scriptcenter/d31f091f-2642-4ede-9f97-0e1cc4d577f3
as https://bugzilla.samba.org/show_bug.cgi?id=10734 prevents normal DC
demotion.
The DC was still all over in DNS, so I had to pick it out.
Now replication between the remaining three DCs is broken
[root at larkin26 ~]# samba-tool drs showrepl
2016 Nov 16
4
Schema Change Breaks Replication
I believe a schema change on a Windows DC (2008rc) has broken
replication with our S4 DCs. Anyone have any tips or pointers to
resolve this?
I have three S4 DCs [CentOS6] and one Windows 2008R2 DC. The Windows
2008R2 DC has the schema master FSMO, and I believe the Exchange schema
was added.
I am willing to pay US dollars to get this issue resolved. I need the
replication restored, the
2016 Sep 19
0
Error "Failed extended allocation RID pool operation..."
On Mon, 2016-09-19 at 16:15 +0100, Rowland Penny via samba wrote:
> On Mon, 19 Sep 2016 10:42:34 -0400
> Adam Tauno Williams via samba <samba at lists.samba.org> wrote:
> > On Mon, 2016-09-19 at 15:15 +0100, Rowland Penny via samba wrote:
> > > No it shouldn't be replicated, the big hint is
> > > 'FLAG_ATTR_NOT_REPLICATED', it should only be on the
2016 Sep 19
4
Error "Failed extended allocation RID pool operation..."
Package: sernet-samba-4.2.14-23.el6.x86_64
These DCs were very recently upgraded from a prior version.
[2016/09/19 09:32:55.168161, 0]
../source4/libcli/smb2/signing.c:116(smb2_check_signature)
Bad SMB2 signature for message of size 202
[2016/09/19 09:32:55.168511, 0] ../lib/util/util.c:559(dump_data)
[0000] 77 B3 94 9B 70 78 8B 21 1E 56 D0 78 E1 80 BB 5C w...px.!
.V.x...\
[2016/09/19
2015 Apr 12
0
Removed old DC, now replication hopelessly broken [SOLVED]
On Sun, 2015-04-12 at 16:14 -0400, Adam Tauno Williams wrote:
> I removed a DC using the DC removal tool mentioned in
> http://gallery.technet.microsoft.com/scriptcenter/d31f091f-2642-4ede-9f97-0e1cc4d577f3
> as https://bugzilla.samba.org/show_bug.cgi?id=10734 prevents normal DC
> demotion.
> The DC was still all over in DNS, so I had to pick it out.
> Now replication between
2014 Aug 12
2
Four DCs, No Replication
I added three DCs to a single DC Samba4 AD domain.
They initially replicated and came up - but replication does not appear
to be ongoing. A change made to a user via MMC connected to one DC does
not appear on another DC.
It the logs I see bursts of the following message:
[2014/08/12 15:08:08.026270,
0] ../source4/librpc/rpc/dcerpc_util.c:660(dcerpc_pipe_auth_recv)
Failed to bind to uuid
2012 Dec 17
1
Samba4: Upload an Administrative Policy Template?
We'd like to add an adm (administrative template) to our Samba4 server.
I see where the .adm files are in the filesystem -
/opt/s4/var/locks/sysvol/micore.us/Policies/{ED429C7D-156A-4F75-B21D-92DB8E10ACAB}/Adm/conf.adm
- but how can I add a new ADM file?
The ADM file in question allows the controlling of IE Favorites and a
few other items on XP (not available in the default templates for
2016 Sep 19
4
Error "Failed extended allocation RID pool operation..."
On Mon, 19 Sep 2016 11:57:38 -0400
Adam Tauno Williams via samba <samba at lists.samba.org> wrote:
> On Mon, 2016-09-19 at 16:15 +0100, Rowland Penny via samba wrote:
> > On Mon, 19 Sep 2016 10:42:34 -0400
> > Adam Tauno Williams via samba <samba at lists.samba.org> wrote:
>
> > > On Mon, 2016-09-19 at 15:15 +0100, Rowland Penny via samba wrote:
> >
2016 Apr 21
0
samba 4.4.2 client can't join 3.x NT4 domain
With the ubuntu security updates on Monday that broke everything, I
downgraded my 12.04 3.6x samba packages on my NT4 DC - now my windows 7
domain members can join and function OK and am looking into a 14.04 client
that was a member and cannot now join, and the downgrade also failed. So
I got 4.4.2 source and built on the system and have tried to join, but it
fails. Below is some debug
2019 May 30
1
domain won't go online
Hi. I'm hoping for some advise/help.
I have a domain that won't seem to go online:
$ wbinfo --online-status
BUILTIN : active connection
MY-HOST : active connection
FOO : no active connection
The log for the domain repeats over and over again:
[2019/05/30 09:34:10.259173, 3, pid=1606, effective(0, 0), real(0, 0), class=auth] ../../auth/ntlmssp/ntlmssp_sign.c:514(ntlmssp_sign_reset)
2017 Feb 14
2
ldapcmp finds differences of "DC" vs "dc"???
Attempting to debug issues with replication I ldapcmd finds
differences with the case of the "DC" attribute?
Is this normal?
LARKIN28 is Samba4 4.5.4, while WINDC1 is Windows 2008R2.
[root at larkin28 samba]# samba-tool ldapcmp ldap://larkin28.micore.us
ldap://windc1.micore.us -Uadministrator dnsdomain
Password for [BACKBONE\administrator]:
* Comparing [DNSDOMAIN] context...
*
2016 Nov 20
0
4.5.1 Upgrade Breaks Samba [Was: Schema Change Breaks Replication]
On Sat, 2016-11-19 at 09:57 +1300, Andrew Bartlett wrote:
> On Fri, 2016-11-18 at 09:41 -0500, Adam Tauno Williams wrote:
> > On Fri, 2016-11-18 at 21:32 +1300, Andrew Bartlett wrote:
> > > I believe a schema change on a Windows DC (2008rc) has
> > > > > > broken
> > > > sernet-samba-4.2.14-23.el6.x86_64 - the same package on all
> > > >
2016 Sep 19
2
Error "Failed extended allocation RID pool operation..."
Am 19.09.2016 um 19:08 schrieb Achim Gottinger via samba:
>
>
> Am 19.09.2016 um 18:21 schrieb Rowland Penny via samba:
>> On Mon, 19 Sep 2016 11:57:38 -0400
>> Adam Tauno Williams via samba <samba at lists.samba.org> wrote:
>>
>>> On Mon, 2016-09-19 at 16:15 +0100, Rowland Penny via samba wrote:
>>>> On Mon, 19 Sep 2016 10:42:34 -0400
2015 Apr 15
1
wbinfo -u/-g/-n works, but not 'wbinfo -i' or 'id'
Quoting Adam Tauno Williams <awilliam at whitemice.org>:
>>>> It should work, it sounds like a mis-configuration somewhere, can you
>>>> post the smb.conf, /etc/nsswitch.conf, /etc/resolv.conf and
>>>> /etc/krb5.conf from the member server.
>>> "wbinfo -u" lists 415 lines
>>> "getent passwd" returns 93 lines
2016 Dec 13
2
Doubt about Global Catalog on Samba 4
On Mon, 2016-12-12 at 19:45 +0000, Rowland Penny via samba wrote:
> You seem to be missing two FSMO roles:
> > > DomainDnsZonesMasterRole
> > > ForestDnsZonesMasterRole
> > > Just what version of Samba are you using ?
> > My Samba 4.5.2 domain also appears to be missing these roles.
> > Can I simply seize these roles?
> > [root at larkin27 ~]#
2012 Dec 17
1
S4 AD Domain Up; but lots of NTLMSSP NTLM2 errors
samba-4.0.0 x86_64, CentOS6.3
My Samba4 / AD is up and running after migrating this weekend. Testing
looked good and the domain *is working* but there are some issues.
My log.samba file is full of the following; I'm not certain of the
significance of these.
[2012/12/17 05:59:09,
0] ../auth/ntlmssp/ntlmssp_sign.c:236(ntlmssp_check_packet)
NTLMSSP NTLM2 packet check failed due to invalid
2017 Jan 27
3
LDAP_INSUFFICIENT_ACCESS_RIGHTS error stops FSMO transfer
Attempting to move FSMO roles from one SerNET Samba 4.5.4 DC to
another, all roles transfered except the DNS related ones - those fail
with an LDAP_INSUFFICIENT_ACCESS_RIGHTS
[root at larkin28 ~]# samba-tool fsmo show
SchemaMasterRole owner: CN=NTDS
Settings,CN=LARKIN28,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=micore,DC=us
InfrastructureMasterRole owner: CN=NTDS
2016 Jun 02
0
smbclient kerberos AD and = not found in Kerberos database
dear users
I've followed sssd wiki and I think I have my samba AD run
as a member - I can get to it's shares from a win10 box,
moreover I can get to win10's share from the samba server
itself(with passwords).
I can also get to DC's shares, but when on the samba server
itself I do:
smbclient -L //samba -U me at MY.PRIVATE.DOM.LOCAL -d4
Connecting to 10.5.6.32 at port 445
2018 Oct 17
0
Samba v3 works with LDAP, but not Samba v4
Hi Andrew!
I am not 100% sure that the password is correct. I was told that it was
changed to the one I am testing. But, when I try the old password, I get a
different error message (NT_STATUS_INVALID_SID). I will attached the
output.
I added the 'ntlm auth = yes' to the smb.conf. How would I change the
client?
The version of Samba that we are running is 4.7.1, which is the latest