Adding those two lines in smb.conf did the trick. Thank you. By the way,
it is your textbook I am following :-) Great book!

Am 28.07.2020 um 11:31 schrieb Stefan Kania:
> Did you configure LDAPS in LAM? The message comes from Samba and not
> from LAM. It has something to do with the bedlock Bug read this:
>
> https://www.kania-online.de/ldb-tools-nach-badlock/
>
> I wrote how you can disable the secure settings
>
> Am 28.07.20 um 09:26 schrieb Lothar Schilling:
>> Hi everybody,
>>
>> I am completely new to this group - and to LAM as well. Trying to get
>> rid of our Windows SBS domain controller I am building a new Samba 4
>> server dedicated only to domain controlling, Debian 10.4, Samba 4.9.5.
>> I'm doing this from scratch, following the textbooks. I've also setup
>> LAM as graphical interface for administration.
>>
>> But once I try logging into the server's profile via that LAM interface
>> as Administrator, I get this: "LDAP error, server says: (8) Strong(er)
>> authentication required".
>>
>> (1) "ldbsearch -H ldap://ldap.[my].[domain] "cn=Administrator" -k yes":
>> is working with the same password I would use in LAM
>>
>> (2) Server profile settings in LAM
>>
>> - TLS is deactivated
>> - Login: Fixed list, cn=Administrator,cn=users,dc=[my],dc=[domain]
>>
>> (3) ldap.conf
>>
>> #
>> # LDAP Defaults
>> #
>> # See ldap.conf(5) for details
>> # This file should be world readable but not world writable.
>> BASE    dc=[my],dc=[domain]
>> URI     ldap://ldap.[my].[domain] ldap://ldap-master.[my].[domain]:666
>> #SIZELIMIT      12
>> #TIMELIMIT      15
>> #DEREF          never
>> # TLS certificates (needed for GnuTLS)
>> #TLS_CACERT     /etc/ssl/certs/ca-certificates.crt
>>
>> What am I doing wrong?
>>
>> Help appreciated, thank you!
>>
>> Lothar Schilling
>>
>>
>>
>>
>> _______________________________________________
>> Lam-public mailing list
>> [email protected]
>> https://lists.sourceforge.net/lists/listinfo/lam-public
>
>
> _______________________________________________
> Lam-public mailing list
> [email protected]
> https://lists.sourceforge.net/lists/listinfo/lam-public
_______________________________________________
Lam-public mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/lam-public

Reply via email to