Displaying 20 results from an estimated 700 matches similar to: "[ADS]Trust relationship 'expires'"
2005 Oct 26
2
ADS + Samba
Hello Samba list!
I have installed samba, joined it to the AD domain (lets say EXAMPLE.COM)
and can auth against it with kinit.
There are also 2 domains that we have a trust established with. Lets say
trust1 and trust2.
When I do a wbinfo -u I get:
Trust1+username
Trust2+username
I get nothing from the local domain.
I have a share set up for testing, but I cannot access it at all, I get
2005 Jan 12
1
URGENT winbind - New DOMAIN but old DOMAIN not CHANGING - Resent
Hi,
We just imported (moved) all our staff from the old w2k domain to the
new w2k3 domain. Say their accounts and passwords
From STAFF domain to say NEW. Seems winbind is keeping the old domain
users. This server was serving the STAFF domain w/o problems before
users were migrated.
Domain is in 2000 native mode.
I'm using winbind for squid auth on Mandrake linux 10.0
2015 Feb 13
2
Question re kerberos . . .
I've used the Samba AD DC HOWTO
<https://wiki.samba.org/index.php/Samba_AD_DC_HOWTO> to install Samba 4
as an Active Directory/Domain Controller.
I've successfully configured the domain/realm and DNS (as far as I can
tell) and worked my way through Testing Your Samba Domain Controller
<https://wiki.samba.org/index.php/Samba_AD_DC_HOWTO#Testing_Your_Samba_Domain_Controller>
2003 Nov 19
1
Samba 3.0 client connection error
Hi
I successfully joined the AD as member server, smbclient
\\\\hostname\\homes -U username works,
but on a windows 2000 client connecting to the homes share using \\hostname
failes with
[2003/11/13 16:39:46, 1] smbd/sesssetup.c:reply_spnego_kerberos(172)
Failed to verify incoming ticket!
[2003/11/13 16:39:46, 1] smbd/sesssetup.c:reply_spnego_kerberos(172)
Failed to verify incoming ticket!
2005 Jan 12
0
winbind - New DOMAIN but old DOMAIN not CHANGING .URGENT
Hi,
We just imported (moved) all our staff from the old w2k domain to the
new w2k3 domain. Say their accounts and passwords
From STAFF domain to say NEW. Seems winbind is keeping the old domain
users.
I'm using winbind for squid auth on Mandrake linux 10.0
samba-client-3.0.10-0.1.100mdk
samba-winbind-3.0.10-0.1.100mdk
samba-doc-3.0.10-0.1.100mdk
samba-common-3.0.10-0.1.100mdk
2013 Sep 24
2
delete kerberos databases and start over
Hi.
Something happened with my Kerberos database*. I don't know what. I
don't care much (right now).
What I need to do now is to recover.
I am running a small home network: 3 win7 boxes, 2 xps, 2 Mint Linux
and one Puppy.
I tried deleting /usr/local/samba/private/* and
/usr/local/samba/etc/smb.conf as the how-to suggests, then doing a
samba-tool domain provision.
All my Windoze
2015 Feb 13
0
Question re kerberos . . .
On 13/02/15 22:48, Steve Ankeny wrote:
> Thanks for the quick response!
>
> Do I still need the following packages?
>
> adam at sogo:~$ sudo dpkg --get-selections | grep krb5
> krb5-config install
> krb5-user install
> libgssapi-krb5-2:amd64 install
>
2014 Aug 26
2
Failed to join domain: failed to join domain 'XXX.YYY' over rpc: Access denied
Hi all,
I get an error when I try to join domain from CentOS 6.5. Have you an
idea ?
/etc/samba/smb.conf :
---------------------
[global]
workgroup = XXX
server string = Samba Server Version %v
log file = /var/log/samba/log.%m
max log size = 50
realm = XXX.YYY
security = ads
idmap uid = 10000-20000
idmap gid = 10000-20000
2004 Jul 29
2
2003 KDC and Samba
We have serveral RHEL 3.0 Update 2 servers running Samba.
These have been working flawlessly for several months..
Recently, the base upgraded all the Windows 2000 servers
to Windows 2003..
NOTE: we don't have admin rights to the Domain Controllers.. (wish we did..)
Previous to the Domain (and kdc) controllers to 2003 we had
no issues joining a new Samba Sever to the ADS..
Using the same
2014 Aug 26
0
Fwd: Re: Failed to join domain: failed to join domain 'XXX.YYY' over rpc: Access denied
Thanks for the reply.
Le 2014-08-26 12:30, steve a ?crit?:
> On Tue, 2014-08-26 at 12:02 +0200, Cyril Feraudet wrote:
>> Hi all,
>>
>> I get an error when I try to join domain from CentOS 6.5. Have you an
>> idea ?
>>
>>
>> /etc/samba/smb.conf :
>> ---------------------
>> [global]
>> workgroup = XXX
>>
2006 Jun 20
0
Unable to join AD
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Hello everybody,
I'm getting crazy trying to get my Linux box work with Active
Directory.
It's a Fedora Core 4, and these are the installed rpm's
[root@desarrollo ~]# cat /etc/redhat-release
Fedora Core release 4 (Stentz)
[root@desarrollo ~]# rpm -qa|grep samba
samba-3.0.14a-2
samba-common-3.0.14a-2
[root@desarrollo ~]# rpm -qa|grep
2009 Mar 11
1
Samba PDC - Kerberised CIFS access
Hi All,
I have machine M1 hosting Samba PDC. It stores only user information.
I have machine M2 acting as KDC server.
I have machine M3 hosting CIFS shares and it joins into the domain hosted
by PDC M1.
I have machine M4 used as CIFS client.
On M2, I have added users and cifs/host service principals for M3. Also
added service principal in keytab file.
I have added all the user and service
2004 Jun 17
0
failed login, NT_STATUS_PASSWORD_MUST_CHANGE
Hi,
I am unable to login to a samba system that uses
kerberos to authenticate to ADS if the users password
has expired on the ADS system or if "User must change
password at next login" is checked on the ADS.. I get
a "login incorrect" message on the linux system and
the log file gives the following error:
pam_winbind[3647]: request failed: Must change
password, PAM error
2007 May 25
0
Sometimes PC can not find network path
Dear all,
I have a linux server that uses redhat AS4.I want to make a samba file
server.Because we have a windows 2003 domain,I must use "security =
ADS".The samba version is samba-3.0.10-1.4E.9.
The samba server joined windows 2003 domain successful.I can find samba
server in the "network neighborhood".Client PC access samba server must
confirms with PDC.The domain member
2003 Feb 12
2
Samba 3.0 AD usage problems
Dear all,
I downloaded samba3.0-alpha21 and followed each step in "ADS-HOWTO.txt".
But mapping a network directory from a Windows client failed (step 4:
Test your server setup).
(Succeeded in other steps.... Including step 5)
Only local users in the samba server can access the share folder.
(Please refer to the smb.conf listed below...)
And "#kadmin -p administrator" fails
2012 May 18
1
[PATCH] sysprep: remove kerberos data in the guest
Remove the generated kerberos data in the guest.
Signed-off-by: Wanlong Gao <gaowanlong at cn.fujitsu.com>
---
sysprep/Makefile.am | 2 ++
sysprep/sysprep_operation_kerberos_data.ml | 52 ++++++++++++++++++++++++++++
2 files changed, 54 insertions(+)
create mode 100644 sysprep/sysprep_operation_kerberos_data.ml
diff --git a/sysprep/Makefile.am
2008 Jan 22
0
SELinux contexts for krb5
I have just migrated my Kerberos setup to a new machine (running inside
Xen) and it is complaining at startup about the file contexts not being
correct, even after running /sbin/fixfiles. On the previous machine I'm
sure I had set SELinux to permissive and that's why it never complained.
Here are the contexts *after* running /sbin/fixfiles -R krb5-server
restore
# ls -AlZ
2024 Dec 05
1
samba log level: ldap log file remains empty
Hi Kees,
this is not an LDAP issue. I have a Samba Fileserver joined to the Samba Domain controller and all 15 Minutes I get this on the Domain controller log:
? | Auth: [Kerberos KDC,ENC-TS Pre-authentication] user [(null)]\[SAMBA-SRV$@XXX.XFAE] at [Wed, 04 Dec 2024 15:58:47.044307 CET]
I tried this on the AD side:
[kdcdefaults]
max_life = 10h # Default ticket lifetime
2018 Jan 22
3
SAMBA 4.7.4 with MIT Keberos
Hello,
i installed a SAMBA 4.7.4 AD Server on Ubuntu 18.04 (BETA). SAMBA4 was
compiled from source. For MIT Keberos i also installed libkrb5-dev and
krb5-kdc and compiled with the "--with-system-mitkrb5" option.
The installation runs pretty good (some dependencies problem, solved
manually). But now im not able to test kerberos:
# kinit administrator
--> kinit: Cannot find KDC
2018 Jan 22
0
SAMBA 4.7.4 with MIT Keberos
There is a script in /etc/init.d/krb5-kdc". Do i need remove this? Because this is trying to start automatic krb5kdc at reboot.
Output from pstree and ps:
# pstree | grep samba
|-3*[samba]
|-samba-+-samba---samba---smbd-+-cleanupd
| |-10*[samba]
| |-samba---samba---krb5kdc
| `-samba---samba---winbindd---winbindd
# ps axf
2129 ? Ss 0:00 samba
2130 ? S 0:00 \_ samba
2132 ? S 0:00 | \_ samba