Environment: Sun Solaris 9 sparc
Software: Samba 3.3.3, KRB5-1.6.3, OpenLDAP-2.4.11
Situation:
I've been able to verify that samba is compile corrected by issuing the
following commands:
Smbd -b|grep LDAP
Smbd -b|grep KRB
Smbd -b|grep ADS
Smbd -b|grep WINBIND
I've been able to success
hello,
i am wondering, when i try to follow the ADS 2003, samba can't join completly.
The join ends with: ads_machine_password:Message stream modified.
When i start 'net ads join' with debugging i got an error:
[2005/09/24 18:51:49, 1] libads/krb5_setpw.c:parse_setpw_reply(237)
Got error packe
Hi All,
For the past few months I've been running a SUSE 9.2 server here
(mostly as an app server) which was a member of an AD domain
(w2k3 domain controller.) I used winbind to enable domain members
to log into the box, all was well.
This week the w2k3 server had some MS security patches applied
Gerald (Jerry) Carter wrote:
Rex Dieter wrote:
| Now, I've found that the
| $ net ads join
| command(*) always says it succeeds joining the domain,
| but a subsequent
| $ wbinfo -t
| about 75% of the time yields an error:
| NT_STATUS_ACCESS_DENIED
|
| If I re-run those 2 commands repeatedly, I
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Rex Dieter wrote:
| I just wanted to share my frustrations with trying
| to use samba to join linux machines to our AD
| (so I could use pam_winbind primarily). I'm
| using Red Hat Enterprise 4 boxes, with samba-3.0.14a,
| krb5-libs-1.3.4-12, kerne
I just wanted to share my frustrations with trying to use samba to join
linux machines to our AD (so I could use pam_winbind primarily). I'm
using Red Hat Enterprise 4 boxes, with samba-3.0.14a,
krb5-libs-1.3.4-12, kernel-2.6.9-5.0.5.EL (I tried Fedora Core 3 too,
with similar results). I (pr
[mailto:[EMAIL PROTECTED]
Sent: 11 April 2005 16:57
To: Penny Willisson
Subject: RE: [Samba] net ads join fails
Try that, it is working for me
[logging]
default = FILE:/var/log/krb5/libs.log
kdc = FILE:/var/log/krb5/kdc.log
admin_server = FILE:/var/log/krb5/admin.log
[libdefaults]
ticket_l
On Mon, 2005-04-11 at 16:51 +0100, Penny Willisson wrote:
> Sorry the same problem is still happening.
---
it would probably help if you gave us more info...started over...
what is output?
cat /etc/resolv.conf
cat /etc/krb5.conf
terminal output of
kinit Administrator
and/or
kinit [EMAIL PROTE
Sorry the same problem is still happening.
Thanks
-Original Message-
From: Dimitri Yioulos [mailto:[EMAIL PROTECTED]
Sent: 11 April 2005 16:38
To: Penny Willisson
Subject: Re: FW: [Samba] net ads join fails
OK, this is closer.
Change [realms] kpasswd_server to admin_server.
I also
; -Original Message-
> From: Penny Willisson
> Sent: 11 April 2005 14:43
> To: 'Gordon Hopper'; '[EMAIL PROTECTED]'
> Cc: Dimitri Yioulos; samba@lists.samba.org
> Subject: RE: [Samba] net ads join fails
>
>
> I have recreated my dns pointers without success and
ginal Message-
From: Penny Willisson
Sent: 11 April 2005 14:43
To: 'Gordon Hopper'; '[EMAIL PROTECTED]'
Cc: Dimitri Yioulos; samba@lists.samba.org
Subject: RE: [Samba] net ads join fails
I have recreated my dns pointers without success and I think my krb5.conf file
is con
nit administrator' I get the following error
>
>
>
> kinit: krb5_get_init_creds: unable to reach any KDC in realm
> ellisonslegal.com
>
>
>
> any ideas???
>
>
>
> -Original Message-
>
> From: [EMAIL PROTECTED]
>
> [mailto: [EMAIL PROTECTED] B
Penny
-Original Message-
From: Gordon Hopper [mailto:[EMAIL PROTECTED]
Sent: 09 April 2005 00:23
To: Penny Willisson
Subject: RE: [Samba] net ads join fails
You might need to add some entries to your krb5.conf file. for example:
[realms]
ellisonslegal.com = {
kdc = domain.controller.ellisonslegal.c
m: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED]
> Behalf Of
> Dimitri Yioulos
> Sent: 08 April 2005 13:30
> To: samba@lists.samba.org
> Subject: Re: [Samba] net ads join fails
>
>
> On Friday 08 April 2005 07:46 am, Penny Willisson wrote:
> > Hi
> >
> >
> -Original Message-
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED] Behalf Of
> Dimitri Yioulos
> Sent: 08 April 2005 13:30
> To: samba@lists.samba.org
> Subject: Re: [Samba] net ads join fails
>
> On Friday 08 April 2005 07:46 am, Penny Willisson w
5 13:30
To: samba@lists.samba.org
Subject: Re: [Samba] net ads join fails
On Friday 08 April 2005 07:46 am, Penny Willisson wrote:
> Hi
>
> I have created the machine account on the AD server and did this logged in
> as Administrator so that should mean that the Administrator acc
gt;
> return code = -1
>
> Thanks
>
> Penny
>
> -Original Message-
> From: Gordon Hopper [mailto:[EMAIL PROTECTED]
> Sent: 06 April 2005 05:28
> To: Penny Willisson
> Subject: Re: [Samba] net ads join fails
>
>
>
> [2005/04/05 15:11:44, 3] libsmb/cli
] net ads join fails
[2005/04/05 15:11:44, 3] libsmb/clikrb5.c:ads_krb5_mk_req(381)
ads_krb5_mk_req: krb5_cc_get_principal failed (No such file or directory)
[2005/04/05 15:11:44, 0] libads/kerberos.c:ads_kinit_password(146)
kerberos_kinit_password [EMAIL PROTECTED] failed: Unknown code
Sorry attachment was removed - I have now pasted log file here.
[2005/04/05 15:11:44, 5] lib/debug.c:debug_dump_status(366)
INFO: Current debug levels:
all: True/10
tdb: False/0
printdrivers: False/0
lanman: False/0
smb: False/0
rpc_parse: False/0
rpc_srv: False/0
I am trying to connect to an ADS domain and it is failing all the time.
I am running SuSE Linux 9.0 with Samba 3.0.13 and have configured Samba with
ldap and heimdal kerberos
Attached is my debug level 10 error log created when the join is attempted.
I would appreciate any advice on solving
Resending, as I used wrong sender and it doesn't seem to have appeared
on the list.
The problem is sort of solved...
First, I tried stopping smb and winbind and cleaning out all cache files
(/var/cache/samba).
Then joining worked fine for a while. Then it didn't. Whenever it didn't
I got those we
Sort of solved...
First, I tried stopping smb and winbind and cleaning out all cache files
(/var/cache/samba).
Then joining worked fine for a while. Then it didn't. Whenever it didn't
I got those weird messages with [EMAIL PROTECTED]@KLIENT.UIB.NO
again.
Now that problem seems to be fixed, but
birger wrote:
net ads join -U [EMAIL PROTECTED] 'Klienter\IT\MatNat\IFT\Samba
Servers\IT-gruppen'
[EMAIL PROTECTED]'s password:
[2004/12/02 15:34:36, 0] libads/ldap.c:ads_add_machine_acct(1367)
ads_add_machine_acct: Host account for iftsmb100 already exists -
modifying old account
Using short
After a lot of different problems and variations of krb5.conf and
samba.conf files I am currently stuck with the following error trying to
join a domain
net ads join -U [EMAIL PROTECTED] 'Klienter\IT\MatNat\IFT\Samba
Servers\IT-gruppen'
[EMAIL PROTECTED]'s password:
[2004/12/02 15:34:36, 0] lib
On Tue, 02 Nov 2004 14:34:15 -0800, Tom Dickson <[EMAIL PROTECTED]> wrote:
> -BEGIN PGP SIGNED MESSAGE-
> Hash: SHA1
>
> ~ /usr/bin/net ads join -Udennisb
> dennisb password:
> [2004/11/02 17:31:56, 0] libads/ldap.c:ads_add_machine_acct(1006)
> ~ Host account for if-srv-hos1 already exist
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
~ /usr/bin/net ads join -Udennisb
dennisb password:
[2004/11/02 17:31:56, 0] libads/ldap.c:ads_add_machine_acct(1006)
~ Host account for if-srv-hos1 already exists - modifying old account
[2004/11/02 17:31:56, 0] libads/ldap.c:ads_join_realm(1342)
~ a
Hi all.
I'm having a problem joining an ADS domain with Samba 3.0.5.
The machine account has been set up on the server in a similar way to
another system which has joined successfully. The error I'm getting
is kinda vague, and I have no idea what it means:
---
[2004/07/28 16:32:36, 3] libads/sa
27 matches
Mail list logo