Robert,

Same problem here, and I have not seen anyone mention this on the Samba list. Systems are fully updated and testparm does not return any errors. idmap backend is rid notated in the new format. All deprecated parameters have been removed.

On my systems, I have found that full functionality returns after a reboot; however, if samba/winbind processes are restarted for any reason, AD authentication again no longer works. As with you, wbinfo -u/-g continues to work, as does getent passwd. getent group only returns linux groups. Another reboot will return winbind once again to full functionality.

Even at log level 10, error messages have been hard to find among the many winbind logs. At the time of failure, the one I consistently find is in syslog:
    winbindd[4186]:  ads_ranged_search failed with: Time limit exceeded.


Dale





--
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to