Displaying 20 results from an estimated 3000 matches similar to: "Unable to ssh to dc"
2019 May 16
1
krb5_auth: NT_STATUS_NO_LOGON_SERVERS for users from trusted AD domains in samba winbind > 4.2
Hi,
in our setup, we have a number of AD domains with an exisiting one-way trust between the local domain of the system (which I will call LOCALDOM in the following) and the domain containing the user accounts (which I will call TRUSTEDDOM in the following). The domain controllers run Windows Server 2012.
Beginning with samba 4.4 we have an issue with authentication through pam_winbind on the
2017 Aug 22
2
Winbind with krb5auth for trust users
Hai,
> -----Oorspronkelijk bericht-----
> Van: samba [mailto:samba-bounces at lists.samba.org] Namens
> Andreas Hauffe via samba
> Verzonden: dinsdag 22 augustus 2017 11:26
> Aan: samba at lists.samba.org
> Onderwerp: Re: [Samba] Winbind with krb5auth for trust users
>
> Hi,
>
> thanks for the fast answer.
>
> All DCs (local and trusted domain) running on
2017 Aug 22
0
Winbind with krb5auth for trust users
Hi,
hier are the file. I replaced the real domain/realm name by
"search&replace", so there should not be a typping error in my file
concernig the realm or domain names.
Regards,
Andreas
client:~ # more /etc/hostname
client.loc.example.de
client:~ # more /etc/hosts
#
# hosts This file describes a number of hostname-to-address
# mappings for the TCP/IP
2019 Apr 19
0
winbind offline login - NT_STATUS_NO_SUCH_USER (0xc0000064)
Hi All,
I tried multiple topics and did some further analyzing regarding this.
I found that described error below only appears if I restart the device
when connecting from "online" to "offline".
If I keep my device running winbind caches the users correctly.
Based this I found the following bug report:
https://bugs.launchpad.net/ubuntu/+source/samba/+bug/1165461
There the
2019 Apr 15
2
winbind offline login - NT_STATUS_NO_SUCH_USER (0xc0000064)
Hello All,
I am at the switch from sssd to winbind based samba domain members (Debian
9 stretch).
I am using Samba 4.10.2 packages from Louis ( http://apt.van-belle.nl/ )
and rid backend for idmap.
*My problem:*
I am able to logon to my domain members using winbind_pam as long as my
client is connected to a network where a domain controller is reachable.
As soon as I shutdown and connect a
2017 Feb 01
1
winbind question. (challenge/response password authentication)
Hai,
Im setting up a new proxy and im testing a bit around.
Goal is, get everyting working with minimal changes to the system.
Setup: Debian 8 with NFS nfsv3 and v4 (krb) automounts, winbind 4.5.3 , squid 3.5.24 (with ssl support)
Which is basicly a copy of my other proxy but a new install with more systemd and less packages used.
Working:
- ssh logins with AD users.
2016 Apr 20
2
Samba 4.4.2 as AD server: clients OK but server fails "wbinfo -K"
I have set up a samba 4.4.2 AD server, and it works fine for its Windows
and Linux clients. Only the server itself behaves peculiar:
Linux accounts show up as DOMAIN\username (in prompt and with whoami),
on all Linux clients the user accounts are normal (just their username),
and only on the server "wbinfo -K username" fails. On the clients it
works. The server complains about that:
2016 Apr 21
0
Samba 4.4.2 as AD server: clients OK but server fails "wbinfo -K"
On 20/04/16 22:24, Gerben Roest wrote:
> I have set up a samba 4.4.2 AD server, and it works fine for its Windows
> and Linux clients. Only the server itself behaves peculiar:
>
> Linux accounts show up as DOMAIN\username (in prompt and with whoami),
> on all Linux clients the user accounts are normal (just their username),
>
> and only on the server "wbinfo -K
2014 Mar 24
1
REPOST: Winbind logins failing after upgrade from Samba3 to Samba4
Hello,
(I'm reposting this after my first attempt about 25 minutes ago has not come through to me. I am leaving out the looooooong debug log dump, in case the listserv didn't like the massive content, but it will be provided upon request.)
I have a RHEL 6.5 server that was configured to use Samba 3.6.9-167 to authenticate against a Windows 2008 R2 Active Directory domain. The
2014 Oct 10
0
ntlm_auth and offline operations
Hello,
We currently have a NAC server set up to authenticate against a Samba4 AD using the ntlm_auth utility and would like to make it more tolerant to network outages.
Currently, when the NAC loses connectivity to the Samba4 AD, every login attempt fails. This situation used to be acceptable but has become more problematic now that our network topology has changed.
I have added "winbind
2023 Jun 10
1
Unable to ssh to dc
I can ssh to the dc but only using local accounts. I can ssh to the domain
members using domain or local accounts.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
In all things, Be Intentional.
On Sat, Jun 10, 2023 at 6:14?PM Rob Campbell <robcampbell08105 at gmail.com>
wrote:
> On 10/06/2023 16:39, Rob Campbell via samba wrote:
>> > First question is, should I be
2020 Apr 27
1
Offline login doesn't work with smbclient (NT_STATUS_NO_LOGON_SERVERS)
Hi,
I have a samba4 AD setup with 2 DCs and one samba4 server with fileshares.
If both my DCs are offline i can't login to any of the shares on the
samba4 fileshare server with smbclient, but wbinfo -K works fine and
ntlm_auth also works fine with offline cached credentials.
??san???root???~???smbcontrol winbind offline
???san???root???~???smbcontrol winbind onlinestatus
PID 292952:
2017 Aug 22
3
Winbind with krb5auth for trust users
Hi,
I'm having trouble realizing a krb5auth with pam_winbind with trusted
domain users (external trust) on our clients. The client is joined to a
local domain, which has a "external trust" to a global domain.
The following things are working for all users (local and trusted domain):
"wbinfo -i"
"wbinfo --pam-logon"
"wbinfo -a"
"kinit"
2003 Jun 18
0
Cannot Authenticate against AD ...
Hey all,
I have a Windows 2000 AD PDC that hosts a domain. He also trusts our
existing Windows NT domain (2-way trust, they both trust each other). I
also have a Gentoo Linux machine that I have compiled Samba 3.0 on. I
can get almost everything to work with regards to talking to the Windows
2k PDC, like this:
mccoy samba # wbinfo -u
LIGHTSPEED+Administrator
LIGHTSPEED+Guest
2003 Jun 11
1
win bind authentication
You guys got the encryption on?
-----Original Message-----
From: Tod B. Schmidt [mailto:tschmidt@tnc.org]
Sent: Wednesday, June 11, 2003 12:38 PM
To: samba@lists.samba.org
Subject: Re: [Samba] winbind authentication
I am getting this same error when trying to authenticate. Very frustrating
because everything else works, wbinfo, getent. I can login to Win2K server
wth kerberos, but I always
2003 Sep 16
4
AD authentication problem
I'm having a problem authenticating to Active Directory. I can join
the machine to the domain, wbinfo -g/-u will list the groups and users
and I can map a drive using: smbclient -k //s-lorentz.s-res.uva.nl/c\$
However when I try to get the linux machine to authenticate a user
it doesn't work giving the error NT_STATUS_NO_LOGON_SERVERS
(0xc000005e). Looking further in the logs it fails
2006 Jan 31
2
ntlm_auth: (pipe \PIPE\NETLOGON) has died or was never started (fd == -1)
I'm exeperiencing a strange ntlm_auth problem:
I'm running two domain with a trust; the trusting one,
(EUFEMIA with the PDC Beatrice) uses the WINS facility of
the trusted one (LETTERE, PDC Alice).
Users of EUFEMIA and LETTERE alike have a successful logon to
Beatrice.
LETTERE users do authenticate in Beatrice with ntlm_auth.
EUFEMIA users do not:
beatrice:/home# ntlm_auth --username
2006 Nov 15
0
NT_STATUS_NO_LOGON_SERVERS if Domain Controller is absent
I have my Samba 3.0.21c Linux Server as Domain member (security=ADS) so
that domain users can use the Samba Server as shared file server.
Everything works nice if the domain controller is present, e.g.
wbinfo -a DOMAIN\\donald%donald
plaintext password authentication succeeded
challenge/response password authentication succeeded
(this just simulates a Windows 2000 Client using the share which
2018 Feb 17
0
Winbind authentication from different domain not working
I’ve removed the following line from smb.conf:
>
>> winbind use default domain = Yes
> Although we are using it on a different server (who has direct access to all DC’s from both domains).
> And we are able to logon with credentials from a different domain.
> by using "ssh -l DOMAINA+username SERVER02"
>
>> We now come to the domain ranges, they must not
2020 Jul 21
0
Authentication with trusted credentials
On 20/07/2020 12:09, Yakov Revyakin wrote:
> OK, trying to define the environment more clearly.
>
OK, I 'think' I know what is going on here, haven't got a fix though :-(
Can you run this command on the Linux DC's and a Linux client:
wbinfo --online-status
On DC's, I get this:
BUILTIN : active connection
EXAMPLE : active connection
SAMDOM : active connection
But on