[Samba] samba3 and kerberos authentication of users

2005-05-31 Thread Dominik J. Fischer
I am using this constellation, too, but users cannot log on to my (samba-pdc
controlled) domain while there is no problem accessing shares.

What is the difference in authentication between logging in to a share and
the domain log-on procedure (when I start my windows workstation and have to
give my username and password)?

Thanks!

Dominik

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] Windows client settings for logons to samba 3.0.10 pdc

2005-05-29 Thread Dominik J. Fischer
Dear List,

I can't logon from my Windows XP clients to my Samba 3.0.10 PDC on gentoo -
I have setup samba 3 pdc's on SuSE boxes earliers - I do not find a mistake
in my smb.conf.

The problem might be my win xp sp2 boxes.

Can you tell me which settings to implement on my windows xp pro sp2 systems
in order to be able to logon to a samba 3.0.10 pdc?

Thank you for you help!

Best,

Dominik



-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] win xp pro: can't login to samba domainNT_STATUS_WRONG_PASSWORD

2005-04-30 Thread Dominik J. Fischer

Dear List! 

I am having a problem when trying to login from win xp prof sp 2 to samba
3.0.10 pdc (with ldap) on my Gentoo box: 

samba log says: 

check_ntlm_password:  mapped user is: [EMAIL PROTECTED] 
ntlm_password_check: NT MD4 password check failed for user root 
init_ldap_from_sam: Setting entry for user: root 
check_ntlm_password:  Authentication for user [root] - [root] FAILED with
error NT_STATUS_WRONG_PASSWORD 

Can you tell me what I did wrong? Do I have to path my windows registry for
ntlm authentication? 

Thank you in advance!! 

my smb.conf 
# Global parameters 
[global] 
dos charset = 850 
unix charset = ISO8859-1 
workgroup = TUXNT 
netbios name = SRV 
server string = SAMBA-LDAP PDC Server %v 
interfaces = lo, eth0 
bind interfaces only = Yes 
update encrypted = Yes 
client schannel = Yes 
server schannel = Yes 
passdb backend = ldapsam:ldaps://127.0.0.1:636 
client NTLMv2 auth = Yes 
client lanman auth = No 
client plaintext auth = No 
log level = 3 
log file = /var/log/samba/log.%m 
max log size = 50 
time server = Yes 
socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192 
add user script = /usr/local/sbin/smbldap-useradd -m 
add group script = /usr/local/sbin/smbldap-groupadd -p 
add user to group script = /usr/local/sbin/smbldap-groupmod -m 
delete user from group script = /usr/local/sbin/smbldap-groupmod -x 
set primary group script = /usr/local/sbin/smbldap-usermod -g 
add machine script = /usr/local/sbin/smbldap-useradd -w 
domain logons = Yes 
os level = 255 
preferred master = Yes 
domain master = Yes 
wins proxy = Yes 
wins support = Yes 
ldap admin dn = cn=Manager,dc=TUXNT,dc=LOCAL 
ldap delete dn = Yes 
ldap group suffix = ou=Groups 
ldap machine suffix = ou=Computers 
ldap passwd sync = Yes 
ldap suffix = dc=TUXNT,dc=LOCAL 
ldap ssl = no 
ldap user suffix = ou=Users 
vscan-clamav:config-file = /etc/samba/vscan-clamav.conf 
valid users = root 
admin users = root 
guest ok = Yes 
vfs objects = vscan-clamav

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] win xp pro: can't login to samba domain NT_STATUS_WRONG_PASSWORD

2005-04-27 Thread Dominik J. Fischer
Dear List!
I am having a problem when trying to login from win xp prof sp 2 to samba 
3.0.10 pdc (with ldap) on my Gentoo box:

samba log says:
check_ntlm_password:  mapped user is: [EMAIL PROTECTED]
ntlm_password_check: NT MD4 password check failed for user root
init_ldap_from_sam: Setting entry for user: root
check_ntlm_password:  Authentication for user [root] - [root] FAILED with 
error NT_STATUS_WRONG_PASSWORD

Can you tell me what I did wrong? Do I have to path my windows registry for 
ntlm authentication?

Thank you in advance!!
my smb.conf
# Global parameters
[global]
dos charset = 850
unix charset = ISO8859-1
workgroup = TUXNT
netbios name = SRV
server string = SAMBA-LDAP PDC Server %v
interfaces = lo, eth0
bind interfaces only = Yes
update encrypted = Yes
client schannel = Yes
server schannel = Yes
passdb backend = ldapsam:ldaps://127.0.0.1:636
client NTLMv2 auth = Yes
client lanman auth = No
client plaintext auth = No
log level = 3
log file = /var/log/samba/log.%m
max log size = 50
time server = Yes
socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
add user script = /usr/local/sbin/smbldap-useradd -m
add group script = /usr/local/sbin/smbldap-groupadd -p
add user to group script = /usr/local/sbin/smbldap-groupmod -m
delete user from group script = /usr/local/sbin/smbldap-groupmod -x
set primary group script = /usr/local/sbin/smbldap-usermod -g
add machine script = /usr/local/sbin/smbldap-useradd -w
domain logons = Yes
os level = 255
preferred master = Yes
domain master = Yes
wins proxy = Yes
wins support = Yes
ldap admin dn = cn=Manager,dc=TUXNT,dc=LOCAL
ldap delete dn = Yes
ldap group suffix = ou=Groups
ldap machine suffix = ou=Computers
ldap passwd sync = Yes
ldap suffix = dc=TUXNT,dc=LOCAL
ldap ssl = no
ldap user suffix = ou=Users
vscan-clamav:config-file = /etc/samba/vscan-clamav.conf
valid users = root
admin users = root
guest ok = Yes
vfs objects = vscan-clamav
_
MSN Hotmail. Anmelden und gewinnen! http://www.msn.de/email/webbased/ Ihre 
Chance, eines von 10 T-Mobile MDA II zu gewinnen!

--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba