Displaying 20 results from an estimated 200 matches similar to: "RPC Authentication Error"
2017 Apr 21
0
Fwd: Unable to change passwords from Win XP Pro clients
Sorry, I missed some relevant part of the logs after the suggested changes:
Kerberos: AS-REQ user2 at MYDOMAIN from ipv4:192.168.44.56:2080 for
krbtgt/MYDOMAIN at MYDOMAIN
[2017/04/21 12:47:37.526742, 3]
../source4/auth/kerberos/krb5_init_context.c:80(smb_krb5_debug_wrapper)
Kerberos: Client sent patypes: encrypted-timestamp, 128
[2017/04/21 12:47:37.526772, 3]
2017 Apr 21
2
Fwd: Unable to change passwords from Win XP Pro clients
Hello everyone,
First time with Samba 4.
I've got it running mostly (with Windows 7 clients, everything works like a
charm.), but I-m struggling with an issue that is driving me nuts (spent
countless hours trying out stuff and googleing without luck):
When users log in from Win XP Pro terminals, and are forced to change
initially assigned passwords, they get an error (1728: error in RCP
2017 Apr 21
2
Fwd: Unable to change passwords from Win XP Pro clients
Thank you Rowland!!
Sorry about my ignorance. I guess I tried many different things and
polluted the smb.conf file.
I've removed every single line you mentioned off my smb.conf. Still the
problem persists:
MYDOMAIN\Administrator (S-1-5-21-1965676298-842383976-2353361141-500) is
changing password of user2 at MYDOMAIN.org.ar
[2017/04/21 12:05:42.233899, 3]
2017 Dec 12
2
DNS replication only working one way
I'm hoping this is the last issue I run into with bringing this new DC
online.
DNS replication is currently only working in one direction, from my old DC
to my new DC. Items added or changed in the RSAT of my new DC don't ever
make it over to the old DC.
I have turned up samba logging on each side to 3, and you can see the logs
below from the time I created a record on the new DC
2017 Dec 27
0
AD replication problem "WERR_DS_DRA_ACCESS_DENIED" - need help debugging
There is additional info in the logs of the source DC (dcdo1, log level
2, manually triggered another replication):
====================
[2017/12/27 12:31:29.695121, 2]
../source4/rpc_server/drsuapi/getncchanges.c:1731(getncchanges_collect_objects)
../source4/rpc_server/drsuapi/getncchanges.c:1731: getncchanges on
DC=ad,DC=kdu,DC=com using filter (uSNChanged>=5415)
[2017/12/27
2017 Dec 27
0
AD replication problem "WERR_DS_DRA_ACCESS_DENIED" - need help debugging
Rowland,
- the DN "CN=DCNH1,..." exists on all 3 DCs (pointing the Sites and
Services console to each of them).
- I also checked that "samba-tool dbcheck" completes w/o showing errors.
- the objectGUID DNS aliases of all DCs are resolvable against all 3
DCs' builtin DNS
- I forced a full sync from the FSMO holder (dcge1) to the 2 other DCs
which finished w/o errors.
-
2010 Oct 14
0
AMD/Supermicro machine - AS-2022G-URF
Sorry for the long post but I know trying to decide on hardware often want to
see details about what people are using.
I have the following AS-2022G-URF machine running OpenGaryIndiana[1] that I am
starting to use.
I successfully transferred a deduped zpool with 1.x TB of files and 60 or so
zfs filesystems using mbuffer from an old 134 system with 6 drives - it ran at
about 50MB/s or
2018 Jan 16
0
AD replication problem "WERR_DS_DRA_ACCESS_DENIED" - need help debugging
Hi Heinz,
> i have the same problem on samba 4.7.3 and 4.7.4.
> I start with 2 DCs and the sync works fine. After the join of a third
> DC mostly i get the WERR_DS_DRA_ACCESS_DENIED. I tested it for 10
> times.
>
> in my case i have:
> DC1 (with any FSMO Roles)
> DC2
>
> new join as DC:
> DC3
>
> After the join, the sync from DC2 to DC3 fails.
>
>
2018 Jan 16
0
AD replication problem "WERR_DS_DRA_ACCESS_DENIED" - need help debugging
no, it seems to work!!!
i did a ldapmodify on DC2:
ldapmodify -x -h dc2 -D cn=administrator,cn=users,dc=test,dc=net -W -f
serverReference.ldif
serverReference.ldif:
dn: CN=SAMBA3,CN=Servers,CN=Default-First-
SiteName,CN=Sites,CN=Configuration,DC=test,DC=net
changetype: modify
add: serverReference
serverReference: CN=SAMBA3,OU=Domain Controllers,DC=test,DC=net
-
now the question:
Why the
2018 Jan 16
0
AD replication problem "WERR_DS_DRA_ACCESS_DENIED" - need help debugging
on DC2 in the log i found:
./source4/dsdb/common/util.c:4807: Failed to find account dn
(serverReference) for CN=SAMBA3,CN=Servers,CN=Default-First-Site-
Name,CN=Sites,CN=Configuration,DC=test,DC=net, parent of DSA with
objectGUID c01a335e-1794-4997-9c7e-553be77fba04, sid S-1-5-21-
1608159440-4144762864-1017073214-18962
../source4/rpc_server/drsuapi/updaterefs.c:374: Refusing
DsReplicaUpdateRefs
2018 Feb 12
0
AD replication problem "WERR_DS_DRA_ACCESS_DENIED" - need help debugging
Hi Heinz and Johannes,
> I had exactly the same problem, and used ldbedit to apply the fix.
> Thanks for digging into this!
>
> Now I'm interested in the root cause as well ...
I just had a client calling with a replication issue due to the exact
same error. The domain was initially build on 4.7.1, upgraded to 4.7.3,
and it was also missing the serverReference attribute on one
2018 Jul 03
1
Samba 4 AD DC on Fedora, problem with GPOs and denied security for machines
Hi,
i need help with strange problem.
I installed Fedora 28 to test Samba 4 AD DC with MIT Kerberos with
Windows 10 and Windows 7 clients and i can't run GPOs for machines.
GPOs for users works.
On Fedora 27 is the same problem.
After couple of hours changing settings I make a new installation of
Debian 9.4 and everything works "out of the box".
I set all like here:
2018 Apr 04
2
AD replication problem "WERR_DS_DRA_ACCESS_DENIED" - need help debugging
Same error here...
root at samba01:~# samba-tool ldapcmp ldap://samba01 ldap://samba02 -Uadministrator --filter=CN,DC,member CONFIGURATION
Password for [LAURENZ\administrator]:
* Comparing [CONFIGURATION] context...
* Objects to be compared: 1631
Comparing:
'CN=SAMBA03,CN=Servers,CN=Harz,CN=Sites,CN=Configuration,DC=local,DC=laurenz,DC=ws' [ldap://samba01]
2018 May 22
3
RSAT Hang
See Inline
LPHvBvs> Hi Gregory,
LPHvBvs> On the questions.
>> Is there a good reason to avoid Samba internal DNS?
LPHvBvs> No, imo not, but i only use bind9_dlz because i need bind in my lan for other setups also.
LPHvBvs> I just used my RSAT on my win7 64b, but at my point it works fine.
LPHvBvs> I do have questions to get a better impression of the setup.
LPHvBvs>
2017 Oct 12
0
samba getting stuck, highwatermark replication issue?
On 10/12/2017 3:17 AM, mj wrote:
> Hi all, James,
>
> After following James' suggestions fixing the several dbcheck errors,
> and having observed things for a few days, I'd like to update this
> issue, and hope for some new input again. :-)
>
> Summary: three DCs, all three running Version
> 4.5.10-SerNet-Debian-16.wheezy, samba-tool dbcheck --cross-ncs reports
2017 May 08
2
Second DC won't start LDAP daemon
Hello.
I've got a network of FreeBSD servers which traditionally hosted a
classic domain.
I upgraded some months ago, removing the old PDC and BDC and migrating
to an AD DC controller in a jail.
This is working fine with Samba 4.4.13.
Now I'm trying to add a second DC, so I created a new jail on another
physical server and went on with the setup, following:
>
2018 Apr 12
0
Fw:ldap access domain AD failed on 4.7.6 and 4.8.0
Hi,
I want to use samba as AD on SLES 11 SP3. And I can make samba 4.5.x into some rpms which works well.
Recently I try to build samba 4.8.0 using my spec file which works well on samba4.5.x. But when I test these rpms there is a problem. When I use ldap to access the domain to query some domain info, it remains me the directory service is not operational. This problem also appears in
2017 Dec 13
0
Replication issue (maybe due to 4.7.0 bug?)
Hi Andrew.
Any idea to solve this ?
Thanks
----- Mail original -----
De: "Gaetan SLONGO via samba" <samba at lists.samba.org>
À: "Andrew Bartlett" <abartlet at samba.org>
Cc: samba at lists.samba.org
Envoyé: Jeudi 7 Décembre 2017 12:16:27
Objet : Re: [Samba] Replication issue (maybe due to 4.7.0 bug?)
Hi Andrew,
Thank you for your answer.
2017 Apr 02
0
samba Digest, Vol 172, Issue 2
On Sun, 2 Apr 2017 20:37:00 +0200
Karl Heinz Wichmann <wichmann-karl at web.de> wrote:
> Hallo Rowland
>
> At the moment we use the internal samba dns.
>
> I have startet dcpromo and we get every second following message:
>
> [2017/04/02 20:26:29.712194, 2]
> ../source4/rpc_server/drsuapi/getncchanges.c:1483(getncchanges_collect_objects)
>
2015 Dec 21
2
double nat - common setup
hi everybody
my mind must have gone blank & eyes blind, I'm hoping it's
simple and somebody can shed the light on bit I cannot see.
a regular default net:
<network>
<name>default</name>
<uuid>4c0a0c44-7e8a-493b-a57c-87cd38eaa0f7</uuid>
<forward mode='nat'/>
<bridge name='virbr0' stp='on'