[Samba] NTLM Authentification

2012-07-04 Thread Cédric Carlen
Hello,

I'm trying to change my passwod when an user in log on his session XP. But
at the closure of the session I see this in the log :

  ntlm_password_check: Checking NTLMv2 password with domain [TEST]
  ntlm_password_check: Checking NTLMv2 password with uppercased version of
domain [TEST]
  ntlm_password_check: Checking NTLMv2 password without a domain
  ntlm_password_check: NTLMv2 password check failed
  ntlm_password_check: Lanman passwords NOT PERMITTED for user pop
  ntlm_password_check: Checking LMv2 password with domain TEST
  ntlm_password_check: Checking LMv2 password with upper-cased version of
domain TEST
  ntlm_password_check: Checking LMv2 password without a domain
  ntlm_password_check: Checking NT MD4 password in LM field
  ntlm_password_check: LM password and LMv2 failed for user pop, and NT MD4
password in LM field not permitted
  check_winbind_security: Not using winbind, requested domain [TEST] was
for this SAM.
  check_ntlm_password:  Authentication for user [pop] - [pop] FAILED with
error NT_STATUS_WRONG_PASSWORD

When in smb.conf it's write security = share it's working but with
security = user or domain I see this logs

Thanks for your help,

Flake
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


[Samba] NTLM Authentification

2012-07-04 Thread Cédric Carlen
Hello,

I'm trying to change my passwod when an user in log on his session XP. But
at the closure of the session I see this in the log :

  ntlm_password_check: Checking NTLMv2 password with domain [TEST]
  ntlm_password_check: Checking NTLMv2 password with uppercased version of
domain [TEST]
  ntlm_password_check: Checking NTLMv2 password without a domain
  ntlm_password_check: NTLMv2 password check failed
  ntlm_password_check: Lanman passwords NOT PERMITTED for user pop
  ntlm_password_check: Checking LMv2 password with domain TEST
  ntlm_password_check: Checking LMv2 password with upper-cased version of
domain TEST
  ntlm_password_check: Checking LMv2 password without a domain
  ntlm_password_check: Checking NT MD4 password in LM field
  ntlm_password_check: LM password and LMv2 failed for user pop, and NT MD4
password in LM field not permitted
  check_winbind_security: Not using winbind, requested domain [TEST] was
for this SAM.
  check_ntlm_password:  Authentication for user [pop] - [pop] FAILED with
error NT_STATUS_WRONG_PASSWORD

When in smb.conf it's write security = share it's working but with
security = user or domain I see this logs

Thanks for your help,

Flake

-- 
Cédric CARLEN
Élève-ingénieur à TELECOM Lille 1
Promotion FI15
☎ 06.59.42.81.55
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba

[Samba] [SaMBa/LDAP] Password Policy

2012-06-20 Thread Cédric Carlen
Hello everyone,

I rewrite a topic because I need your help,

Does someone has installed an password policy between LDAP and SaMBa ? Mine
does'nt work :/, samba don't find the policy. But in the log i found :

  ldapsam_get_account_policy_from_ldap


I've already put the overlay in slapd.conf.

Thanks for your answers,

Flake

-- 
Cédric CARLEN
Élève-ingénieur à TELECOM Lille 1
Promotion FI15
☎ 06.59.42.81.55
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba

[Samba] Self-Service-Password check_ntlm_password

2012-06-13 Thread Cédric Carlen
Hello all,

I've got a problem to change my password with self-service-password (
http://ltb-project.org/wiki/documentation/self-service-password/latest/start )
who is an web interface. In fact, I can change my password but when I close
the session windows return me an error who said that windows cannot change
my profile blabla and talk about security rights. However, the password is
well changed :/

In the log i've got this :

  check_ntlm_password:  Authentication for user [troll] - [troll] FAILED
with error NT_STATUS_WRONG_PASSWORD

I googled this, but no solution for my problem :/

Has anyone use self-service-password  and anyone can help me ?

-- 
Cédric CARLEN
Élève-ingénieur à TELECOM Lille 1
Promotion FI15
☎ 06.59.42.81.55
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba

[Samba] ldapsam_getgroup

2012-06-07 Thread Cédric Carlen
Hello, hello

I'm writing you this email because when i want to set up a password policy
with LDAP, this one isn't recognize by samba.

In the log i've got this :

  ldapsam_getgroup: Did not find group, filter was
((objectClass=sambaGroupMapping)(sambaSID=S-1-5-11))
  ldapsam_getgroup: Did not find group, filter was
((objectClass=sambaGroupMapping)(sambaSID=S-1-5-2))
  ldapsam_getgroup: Did not find group, filter was
((objectClass=sambaGroupMapping)(sambaSID=S-1-1-0))

When i look with LdapAdmin, i don't have SID like this. Why ldap check this
SID if they don't exist ?

Thanks for you help

Flake

P.S.: I don't past files, because I don't know which one could help

-- 
Cédric CARLEN
Élève-ingénieur à TELECOM Lille 1
Promotion FI15
☎ 06.59.42.81.55
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba

Re: [Samba] Bad configuration file

2012-06-05 Thread Cédric Carlen
Hello,

I reup my topic, because i don't find something interessant on the Net.

I've try to delete ppolicy.schema but nothing changes :(

Cédric

2012/6/1 Cédric Carlen carlen.ced...@gmail.com

 Hello everyone,

 I'm writing you a topic because i have a problem with smaba and LDAP.

 This is my problem, when I type in the shell slapcat, i've got this
 message :

 str2entry: invalid value for attributeType objectClass #1 (syntax
 1.3.6.1.4.1.1466.115.121.1.38)
 slapcat: bad configuration file!

 There is my slapd.conf :

 include /etc/ldap/schema/core.schema
 include /etc/ldap/schema/cosine.schema
 include /etc/ldap/schema/nis.schema
 include /etc/ldap/schema/inetorgperson.schema
 include /etc/ldap/schema/samba.schema
 include /etc/ldap/schema/ppolicy.schema

 modulepath  /usr/lib/ldap
 moduleload  back_bdbn
 moduleload  ppolicy.la
 moduleload  smbk5pwd.la

 overlay smbk5pwd
 smbk5pwd-enable samba

 overlay ppolicy
 ppolicy_default ou=default,ou=policies,dc=my,dc=test
 ppolicy_use_lockout
 ppolicy_hash_cleartext

 Please help :(

 Flake

 --
 Cédric CARLEN
 Élève-ingénieur à TELECOM Lille 1
 Promotion FI15
 ☎ 06.59.42.81.55




-- 
Cédric CARLEN
Élève-ingénieur à TELECOM Lille 1
Promotion FI15
☎ 06.59.42.81.55
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba

[Samba] Bad configuration file

2012-06-01 Thread Cédric Carlen
Hello everyone,

I'm writing you a topic because i have a problem with smaba and LDAP.

This is my problem, when I type in the shell slapcat, i've got this message
:

str2entry: invalid value for attributeType objectClass #1 (syntax
1.3.6.1.4.1.1466.115.121.1.38)
slapcat: bad configuration file!

There is my slapd.conf :

include /etc/ldap/schema/core.schema
include /etc/ldap/schema/cosine.schema
include /etc/ldap/schema/nis.schema
include /etc/ldap/schema/inetorgperson.schema
include /etc/ldap/schema/samba.schema
include /etc/ldap/schema/ppolicy.schema

modulepath  /usr/lib/ldap
moduleload  back_bdbn
moduleload  ppolicy.la
moduleload  smbk5pwd.la

overlay smbk5pwd
smbk5pwd-enable samba

overlay ppolicy
ppolicy_default ou=default,ou=policies,dc=my,dc=test
ppolicy_use_lockout
ppolicy_hash_cleartext

Please help :(

Flake

-- 
Cédric CARLEN
Élève-ingénieur à TELECOM Lille 1
Promotion FI15
☎ 06.59.42.81.55
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba

[Samba] Problem with policy between samba and LDAP

2012-05-31 Thread Cédric Carlen
Hello Everybody,

I've got a problem with samba and LDAP. In fact, i've put in LDAP a policy
who works. But when i try to change the password with smbpasswd the
policy doesn't be recognized :/.

I've put in slapd.conf the line :

overlay smbk5pwd
smbk5pwd-enable samba

overlay ppolicy
ppolicy_default ou=default,ou=policies,dc=my,dc=db
ppolicy_use_lockout
ppolicy_hash_cleartext

It's changing nothing.

Can somebody help me ?

Thanks, Flake


-- 
Cédric CARLEN
Élève-ingénieur à TELECOM Lille 1
Promotion FI15
☎ 06.59.42.81.55
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba