Displaying 20 results from an estimated 4000 matches similar to: "NTLM refuses to work on a DC"
2019 Nov 06
0
NTLM refuses to work on a DC
Hai,
Have you seen :
https://wiki.samba.org/index.php/Authenticating_Freeradius_against_Active_Directory
Test with :
ntlm_auth --allow-mschapv2 --request-nt-key --domain=COMPANY --username=domainuser --password=userpassword
Greetz,
Louis
> -----Oorspronkelijk bericht-----
> Van: samba [mailto:samba-bounces at lists.samba.org] Namens Oleg
> Blyahher via samba
> Verzonden:
2023 Apr 04
1
Fwd: ntlm_auth and freeradius
On Mon, 2023-04-03 at 15:08 +0000, Tim ODriscoll via samba wrote:
Unfortunately it's still erroring out:
(7) mschap: Creating challenge hash with username: host/SL-6S4BBS3.MYDOMAIN.co.uk
(7) mschap: Client is using MS-CHAPv2
> Is this set as a UPN (with the realm appended) on the user?
I don't see any UPN's in my AD record, only SPNs - unless I misunderstand you?
I've run
2023 Apr 03
2
[EXTERNAL] Fwd: ntlm_auth and freeradius
On Mon, 2023-04-03 at 15:08 +0000, Tim ODriscoll via samba wrote:
> Unfortunately it's still erroring out:
> (7) mschap: Creating challenge hash with username: host/SL-6S4BBS3.MYDOMAIN.co.uk
> (7) mschap: Client is using MS-CHAPv2
Is this set as a UPN (with the realm appended) on the user?
--
Andrew Bartlett (he/him) https://samba.org/~abartlet/
Samba Team Member (since 2001)
2020 Jun 16
2
Wrong password, Win10 not using SMB3_11?
I have Samba AD-domain with two fileservers and two Samba DS-servers. Most
people can authenticate OK, but one user always gets "wrong password".
I tried changing this user's password, and was able to connect by using
smbclient, and I was also able to map this drive using the user's username
and password on my own windows 10 workstation.
Also;
# wbinfo -a username
Enter
2018 May 29
3
Can't connect anymore a share in domain A from domain B since
Hi,
In the past (2 months ago) : I have two AD Domain under Samba 4.1 : A
and B. I war able to connect a share in A from B.
Now (after upgrade) : I have a W2016 domain (B) and a Samba 4.6 domain
(A) but I can't connect a share in A from B. The user from B which try
to connect the share in A has the same login in the two domains.
So since the upgrade I don't have the same behavior
2018 Dec 24
3
Using MS-DOS client
Hi, all.
I know this is ancient history, but I have a couple of DOS machines that
host older device programming hardware. I've been able to access an older
version of Samba for years without incident. Last weekend I upgraded my
server to Ubuntu 18.04, which provides Samba 4.7.6. Unfortunately, after
hours of frustration I find I'm unable to connect from any of the older
machines.
2014 Nov 17
1
Samba 4 Domain Provisioning
Hi,
I have been having issues with NTLMv2 on newly provisioned domains, using
Samba 4.1 from backports on Debian Wheezy.
Everything seems to be working fine, except for NTLMv2 authentication with
Squid and "ntlm_auth" on newer Windows versions.
If I set "Lmcompatibility" down on the Windows PCs, then authentication
works, but that is temporary workaround at best.
I have
2023 Apr 04
1
Fwd: ntlm_auth and freeradius
On Tue, 2023-04-04 at 07:55 +0000, Tim ODriscoll wrote:
> On Mon, 2023-04-03 at 15:08 +0000, Tim ODriscoll via samba wrote:
>
>
>
>
> > Unfortunately it's still erroring out:
> > (7) mschap: Creating challenge hash with username: host/SL-
> > 6S4BBS3.MYDOMAIN.co.uk
> > (7) mschap: Client is using MS-CHAPv2
>
>
>
> > Is this set as a
2018 Sep 24
4
DM: samba 4.5 -> 4.8, guest access and machine account access troubles.
On Mon, 24 Sep 2018 17:33:47 +0200
Marco Gaiarin via samba <samba at lists.samba.org> wrote:
> Mandi! L.P.H. van Belle via samba
> In chel di` si favelave...
>
> > I hope this helps you understanding your problem a bit more.
> > See also:
> > https://docs.microsoft.com/en-us/windows/security/identity-protection/access-control/local-accounts
>
> No,
2017 Nov 20
2
Samba4 server is not accessible for logon from Windows 2008R2 SP1.
I discovered the situation.
When attempting to logon from Windows 2008R2 to Samba4 is made we can see
in Samba smbd log the following important for understanding the situation
lines:
[2017/11/20 13:25:52.040094, 2, pid=7100, effective(0, 0), real(0, 0)]
../libcli/auth/ntlm_check.c:430(ntlm_password_check)
ntlm_password_check: NTLMv1 passwords NOT PERMITTED for user <username>
[2017/11/20
2012 Oct 05
2
Roaming Profiles under Linux clients
Hi,
As I configured the Roaming profiles under linux, it more or less generate
an abnormal operation (in less than 2 mins) if I add/copy some files to the
home directory. But for Windows XP and Windows 7 is running smoothly and it
generates folders at the Samba4 server location with corresponding users.
e.g. Administrator (for XP), and Administrator.V2 (for Win7/2008) based on
my observations.
I
2007 Apr 06
1
Vista, share level, UNC
Vista32
3.0.25pre2 (I understand vista patches for "share level" are already in)
security = share (with "valid users" on share definition)
host msdfs = no
user/pass in smbpasswd file.
If I use "connect network drive..." method with "connect as another user",
then it will always work.
If I use start, search , \\server\share and then type user/pass in
2018 Dec 25
1
Using MS-DOS client
On Mon, 24 Dec 2018, Luke Barone via samba wrote:
Thanks, Luke. Unfortunately that makes no difference. Still getting:
Error 5: Access has been denied
at the MS_DOS console.
> Try adding "server max protocol = nt1" in the [global] section?
>
> On Mon, Dec 24, 2018 at 1:59 PM Steven Hirsch via samba <
> samba at lists.samba.org> wrote:
>
>> Hi, all.
2004 Mar 16
1
smbclient with lanman auth=no unable to connect
Hi all,
In short, how do you force smbclient not to use Lanman passwords ?
I specify these in my smb.conf
lanman auth = no
min protocol = NT1
Trying smbclient from the same host,
root@localhost root]# smbclient //fileservertest/private -U somebody
Password:
Domain=[WORKGROUP] OS=[Unix] Server=[Samba 3.0.2a]
tree connect failed: NT_STATUS_WRONG_PASSWORD
Here are the logs,
[2004/03/17
2020 May 13
2
Multi-homed Samba 4 file server on Samba 4 AD domain - cross network authentication
Hi all,
I have a question about a multi-homed Samba file server and interoperability
with AD. It's a bit complicated, so please bear with me.
I've been running Samba 4.11.6 as an AD server (two DCs) for a while (in
RFC2307 mode) in a mixed Windows/Linux environment. I have a server running
Proxmox (Debian) with Samba 4.9.5 and it is sharing my huge ZFS volume via
Samba to Windows
2007 Dec 11
1
ntlm_auth only supports ntlmv1 and not ntlmv2 ?
Hello,
i set up a squid proxy that should authenticate users against a samba PDC using winbind.
It works fine as long i allow ntlmv1:
on the PDC:
ntlm auth = yes
lanman auth = no
client ntlmv2 auth = yes
If i restrict the domains authentication method to ntlmv2 - that's what i want - with these settings:
ntlm auth = no
lanman auth = no
client
2017 Nov 23
2
auth audit log question
Hi,
Since samba 4.7 I have setup auth logging, and while I can relate most
failed passwords to users mistyping a password, there is one kind that I
don't understand, happening across our samba-DCs.
Things work without issues, but I'm just being curious. :-)
> [2017/11/23 04:47:32.166753, 2] ../auth/auth_log.c:760(log_authentication_event_human_readable)
> Auth: [Kerberos
2012 Jul 02
1
NTLM Authentification
Hello,
I'm trying to change my passwod when an user in log on his session XP. But
at the closure of the session I see this in the log :
ntlm_password_check: Checking NTLMv2 password with domain [TEST]
ntlm_password_check: Checking NTLMv2 password with uppercased version of
domain [TEST]
ntlm_password_check: Checking NTLMv2 password without a domain
ntlm_password_check: NTLMv2
2015 Feb 17
3
Auth fail on Samba standalone server with LDAP backend
Hello,
My apologies for my bad english, this is not my birth langage and I'm still learning it.
I'm trying to configure a Samba server to simply use LDAP backend for authenticate users. Just that, I don't care of PDC/BDC, etc.The samba schema is present in the LDAP, and in the users profile.
The samba server have the same SID as the domain.
I can log to my samba server using LDAP
2020 Oct 05
3
FAILED with error NT_STATUS_WRONG_PASSWORD, authoritative=1
Hello I have a Problem with one windows 10 client.
[2020/10/05 09:21:47.356628, 2]
../source3/auth/auth.c:334(auth_check_ntlm_password)
check_ntlm_password: Authentication for user [ap31] -> [ap31] FAILED
with error NT_STATUS_WRONG_PASSWORD, authoritative=1
[2020/10/05 09:21:47.356724, 2]
../auth/auth_log.c:610(log_authentication_event_human_readable)
Auth: [SMB2,(null)] user [.]\[ap31]