Re: [Samba] freeRADIUS with winbindd, ntlm_auth on Samba 3.0.24

2007-04-30 Thread Andreas Grupp
Andreas Grupp schrieb:

Hello all

> Afterwards the command 'wbinfo -t' gives the winbindd-ouput:
>
> [0]: request interface version
> [0]: request location of privileged pipe
> [0]: check machine account
> [ 4230]: check machine account
> could not open handle to NETLOGON pipe
> Checking the trust account password returned NT_STATUS_INVALID_HANDLE
>
> With 3.0.22 this worked fine! What's going wrong here with 3.0.24? Can
> anyone give me a hint how to proceed to get this up and running?

I have made further tests and can now say that the problemd depends on
the distribution. On openSUSE 10.1 (with Samba 3.0.22) everything works
fine. On openSUSE 10.2 (with Samba 3.0.23 as default and 3.0.24 from the
projects directory from ftp.suse.com) the above problem exists. With
Debian 4.0 also no problem.

Does anyone know what the problem is with winbind on openSUSE 10.2?
Perhaps I have to do some other things there!? Any help is welcome.

Andreas

-- 
_________
Dipl.-Ing. Andreas Grupp   Elektronikschule Tettnang
Fachberater am Regierungspräsidium Tübingen / Schule und Bildung
Oberhofer Str. 25  Fon: +49 (0)7542 9372-0 bzw. -7608
88069 Tettnang Fax: +49 (0)7542 9372-40
http://www.elektronikschule.de/~grupp
GPG-Keys 2048R/9CB268A1, 1024D/7BA77A21 available
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] freeRADIUS with winbindd, ntlm_auth on Samba 3.0.24

2007-04-28 Thread Andreas Grupp

Hello

I want to use ntlm_auth together with winbindd for RADIUS-authentication
of users against the users of a Samba-server. The freeRADIUS-daemon and
the Samba-, winbindd- and ntlm_auth binaries are all on the same
machine. Samba works fine and the whole setup worked fine with Samba
3.0.22. Actually I have to set up this scenario on a machine with Samba
3.0.24 and it does not work at all :-(.

What have I done? I configured Samba and it works fine as file and print
server. On the server machine I joined the domain GRUPPNET (Samba-server
on the same machine) with the command 'net rpc join -S localhost -U
root'. For testing reasons I then started winbind with the command
'winbindd -iS -d3'. This gives the output:

added interface ip=172.16.0.134 bcast=172.16.0.255 nmask=255.255.255.0
Registered MSG_REQ_POOL_USAGE
Registered MSG_REQ_DMALLOC_MARK and LOG_CHANGED
Added domain GRUPPNET  S-1-5-21-2129464236-1235435130-779908843
Added domain BUILTIN  S-1-5-32
[ 4089]: list trusted domains

Afterwards the command 'wbinfo -t' gives the winbindd-ouput:

[0]: request interface version
[0]: request location of privileged pipe
[0]: check machine account
[ 4230]: check machine account
could not open handle to NETLOGON pipe
Checking the trust account password returned NT_STATUS_INVALID_HANDLE

With 3.0.22 this worked fine! What's going wrong here with 3.0.24? Can
anyone give me a hint how to proceed to get this up and running?

Andreas

-- 
_________
Dipl.-Ing. Andreas Grupp   Elektronikschule Tettnang
Fachberater am Regierungspräsidium Tübingen / Schule und Bildung
Oberhofer Str. 25  Fon: +49 (0)7542 9372-0 bzw. -7608
88069 Tettnang Fax: +49 (0)7542 9372-40
http://www.elektronikschule.de/~grupp
GPG-Keys 2048R/9CB268A1, 1024D/7BA77A21 available
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] Problems with winbindd installation

2007-04-26 Thread Andreas Grupp

Hello

On a server I have installed Samba (3.0.23) - this works fine. Now I
have to be able to use ntlm_auth on the same machine against the own
users - this means the users of the Samba-server on localhost, not a
Samba-server in the network! I can't find any hints how to do this and
assume this is pretty simple :-(.

- smbd, nmbd and winbindd are running
- 'wbinfo -t' -> NT_STATUS_CANT_ACCESS_DOMAIN_INFO,
 Could not check secret
- 'wbinfo -u' -> Error looking up domain users

Is anyone also using this setup? Is there a solution? What am I doing wrong?

Andreas

-- 
_________
Dipl.-Ing. Andreas Grupp   Elektronikschule Tettnang
Fachberater am Regierungspräsidium Tübingen / Schule und Bildung
Oberhofer Str. 25  Fon: +49 (0)7542 9372-0 bzw. -7608
88069 Tettnang Fax: +49 (0)7542 9372-40
http://www.elektronikschule.de/~grupp
GPG-Keys 2048R/9CB268A1, 1024D/7BA77A21 available
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba