Displaying 20 results from an estimated 500 matches similar to: "Samba as member of DC - NT_STATUS_LOGON_FAILURE"
2019 Feb 28
2
winbind causing huge timeouts/delays since 4.8
Am 26.02.19 um 12:26 schrieb Ralph Böhme:
> On Tue, Feb 26, 2019 at 11:19:45AM +0100, Alexander Spannagel via samba
> wrote:
>> The huge delays are seen, when user isn't known to sssd and winbind
>> tries to look that user without explicitly a domain given and the
>> option "winbind use default domain" is on it's default of "No" in
>>
2018 Feb 21
0
Could not convert sid: NT_STATUS_NO_SUCH_USER
Hai,
Thank you for having trust in my packages.. :-)
Now if you use my package, i suggest, do read the howto's also...
All you need for a good setup on debian stretch is there.
if anyone find/see's improvements, please tell me... Or change it on github, thats why its there.
First is this an upgraded domain? Or a new domain?
What does `getent passwd username` tell you.
Same for `id
2018 Feb 21
2
Could not convert sid: NT_STATUS_NO_SUCH_USER
hi all,
I can't figure out why winbind can't find ad users with wbinfo calls.
It happens on a member server, Debian GNU/Linux stretch, samba is 4.7.5
from Louis repository:
[global]
security = ADS
workgroup = EXAMPLEAD
realm = EXAMPLE.ORG
idmap config * : backend = tdb
idmap config * : range = 1000000-3000000
idmap config EXAMPLEAD:backend = ad
idmap config
2017 Oct 16
0
Samba 4.6.2 member server errors
On Mon, 16 Oct 2017 10:40:44 -0400 (EDT)
me at tdiehl.org wrote:
> Hi Rowland,
>
>
> On Sun, 15 Oct 2017, Rowland Penny via samba wrote:
>
> > On Sun, 15 Oct 2017 13:38:13 -0400 (EDT)
> > me at tdiehl.org wrote:
> >
> >> Yes I understand, however, there are 2 things I am concerned about.
> >>
> >> When the errors are spewing, winbind
2015 Apr 15
1
wbinfo -u/-g/-n works, but not 'wbinfo -i' or 'id'
Quoting Adam Tauno Williams <awilliam at whitemice.org>:
>>>> It should work, it sounds like a mis-configuration somewhere, can you
>>>> post the smb.conf, /etc/nsswitch.conf, /etc/resolv.conf and
>>>> /etc/krb5.conf from the member server.
>>> "wbinfo -u" lists 415 lines
>>> "getent passwd" returns 93 lines
2016 Jul 11
0
Successes an failures with Samba 4.3.9 and FreeBSD-10.3
See inline comments
On 11/07/16 06:32, Zaphod Beeblebrox wrote:
> So... I've been running Samba 3.6 for too long and I upgraded. I did save
> my packages for 3.6, but I don't _think_ I'm going back.
>
> Points for the group:
>
> - Samba 4.4.x is broken on FreeBSD. I forget exactly, but it seems to
> be a known problem (tm), so I'll move on.
What is
2017 Oct 20
2
Samba 4.6.2 member server errors
On Mon, 16 Oct 2017, Rowland Penny via samba wrote:
> On Mon, 16 Oct 2017 10:40:44 -0400 (EDT)
> me at tdiehl.org wrote:
>
>> Hi Rowland,
>>
>>
>> On Sun, 15 Oct 2017, Rowland Penny via samba wrote:
>>
>>> On Sun, 15 Oct 2017 13:38:13 -0400 (EDT)
>>> me at tdiehl.org wrote:
>>>
>>>> Yes I understand, however, there are
2020 Sep 11
1
Samba as member of DC - NT_STATUS_LOGON_FAILURE
El vie., 11 sept. 2020 a las 4:17, Rowland penny via samba
(<samba at lists.samba.org>) escribi?:
>
> On 10/09/2020 21:28, Epsilon Minus via samba wrote:
> > Hello !
> >
> >
> >
> > And i have problem with user validation. wbinfo work well, but i cant
> > use de AD users.
> >
> Have you added uidNumber & gidNumber attributes to AD ?
>
2017 Oct 16
1
Samba 4.6.2 member server errors
Hi Tom,
Small update.
I'am also still looking into this but im not getting much futher..
I am just reading :
https://blogs.msdn.microsoft.com/openspecification/2009/12/31/verifying-the-server-signature-in-kerberos-privilege-account-certificate/
Bit older but, im trying to understand more what happens here.
And the only "guess" i can make here is .
A kerberos ticket, with
2019 Feb 26
3
winbind causing huge timeouts/delays since 4.8
Am 23.02.19 um 22:23 schrieb Rowland Penny via samba:
> On Sat, 23 Feb 2019 21:54:31 +0100
> Alexander Spannagel via samba <samba at lists.samba.org> wrote:
>
>> Am 23.02.19 um 15:48 schrieb Rowland Penny via samba:
>>>>>>>>> If you have, as you have, 'files sss winbind' in the the
>>>>>>>>> passwd & group line
2017 Oct 16
2
Samba 4.6.2 member server errors
Hi Rowland,
On Sun, 15 Oct 2017, Rowland Penny via samba wrote:
> On Sun, 15 Oct 2017 13:38:13 -0400 (EDT)
> me at tdiehl.org wrote:
>
>> Yes I understand, however, there are 2 things I am concerned about.
>>
>> When the errors are spewing, winbind never goes to sleep and the load
>> on the server runs somewhere between 6-8 constantly (as shown by
>>
2016 Jul 11
3
Successes an failures with Samba 4.3.9 and FreeBSD-10.3
So... I've been running Samba 3.6 for too long and I upgraded. I did save
my packages for 3.6, but I don't _think_ I'm going back.
Points for the group:
- Samba 4.4.x is broken on FreeBSD. I forget exactly, but it seems to
be a known problem (tm), so I'll move on.
- Whether I use BIND9_DLZ or I use SAMBA_INTERNAL, samba_dnsupdate
complains. Strange thing, tho: all
2014 Apr 03
1
Bug with winbindd
Hi,
I have a Windows 2012R2 Domain controller and a FreeBSD 10.0 domain member.
I can join the domain.
All this command are ok and have no error :
Wbinfo -u
Wbinfo -g
Wbinfo -t
Wbinfo -S
Wbinfo -n
Wbinfo -Y
But one fails :
wbinfo -i administrator
failed to call wbcGetpwnam: WBC_ERR_DOMAIN_NOT_FOUND
Could not get info for user administrator
I try to connect with ssh to the server with an domain
2017 Aug 22
1
Setup of Samba with Solaris 11.3 to provide Unix File Shares to Windows Users
Does mdecker exist in AD ?
=> Yes
root at solaris1:~# getent passwd "MYDOM.ADS\\mdecker"
mdecker:*:13767:613::/home/mdecker:/bin/bash
winbind log:
getpwnam MYDOM.ADS\mdecker
wb_request_done[24254:GETPWNAM]: NT_STATUS_OK
Does 'getent passwd mdecker' work ?
=> No
getent passwd mdecker
getpwnam mdecker
winbindd_getpwnam: My domain -- rejecting getpwnam() for
2015 May 18
0
Getent Group dont'work
On 18/05/15 11:57, Tomasz B?asiak wrote:
> /Hi
> /
> /sometimes 'getent group <domain group> is OK, but///sometimes is wrong.
>
> //
> //Then I restart windind and for 5-10 minut is OK and//the situation is repeated
>
> Sorry for my English
> /// //
> /
> /
>
>
>
>
> />>Know problem, does 'getent group <a domain
2017 Aug 18
2
Setup of Samba with Solaris 11.3 to provide Unix File Shares to Windows Users
Dear List,
I am trying to set up Samba 3.6.25 (solaris 11.3 packaged) to provide
unix file shares to windows users.
I can successfully list groups and users with wbinfo -u / wbinfo -g,
but I do not get any data with "getent group" or "getent passwd". In AD, we
have set "gidNumber" Attribute for Group "Domain Users" to a value in the
specified range
2015 May 18
1
Getent group don't work
Hi
Oracle Linux Server client with Samba 3.6.23 (file server) joined to the
Samba4 AD domain.
----------------
smb.conf
[global]
#--authconfig--start-line--
netbios name = FS
server string = "GSDAD Fileserver"
workgroup = GSDAD
realm = AD.GSD.LAN
security = ads
winbind use default domain = yes
idmap config * : backend = rid
idmap config * : range =
2012 May 14
2
idmap_ad partially stopped working after upgrading Samba from 3.4.3 to 3.6.3
Dear list,
upgrading from SLES11 SP1 to SLES11 SP2, I upgraded Samba from 3.4.3
to 3.6.3. I was successfully using idmap_ad to authenticate users but
after the upgrade it stopped working and users are not seen by the OS.
Obviously the users I want to see on the Linux server have all RFC2307
attributes populated and are seen by all other SLES11 SP1 servers.
I checked everything (I know) from the
2019 Apr 26
3
Samba with AD : SID rejected
Hello,
I'm building a samba share with Active Directory authentication, based
on samba wiki documentation.
I'm using Samba Version 4.7.6-Ubuntu (Ubuntu 18.04) and Windows Server 2019.
I added manually Unix fields in my AD users attributes (based on
https://wiki.samba.org/index.php/Installing_RSAT#Missing_Unix_Attributes_tab_in_ADUC_on_Windows_10_and_Windows_Server_2016)
I joined correctly
2011 Nov 30
1
Failing identification of users in trusted domains?
Hi all.
I'm getting mad at this.
I use winbind to authenticate users in multiple domains from AD. The
config worked well, before upgrading from 3.5.3 to 3.5.10 in Mandriva.
Now, if I 'winbind -i user.name' (so using the joined domain PERSONALE)
I get the correct info, but if I do a 'winbind -i
STUDENTI\\another.name' the answer is a 'Could not get info for user