Re: [Samba] Problem adding user to Administrator list - part 2
I am kind of convinced that it is not the client machines that are causing the problem. None of the other users have this problem; they can log on to any machine in the network. It is just this one user that has the problem. Bert Tomasz Chmielewski <[EMAIL PROTECTED]> Sent by: [EMAIL PROTECTED] 18-01-2005 17:13 To samba@lists.samba.org cc Subject Re: [Samba] Problem adding user to Administrator list - part 2 [EMAIL PROTECTED] wrote: > Ok, I disabled the win firewall on the machine,and indeed I got another > :-( error message > > 'A device attached to this system is not functioning' > > Trying another user on the same machine without changing anything (on the > same login window) : no problem Did you try rebooting the windows machine? :) Perhaps this is something else, but specifying WINS servers on windows is also a good idea (try ipconfig /all on windows to see if they are configured). Tomek -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba
Re: [Samba] Problem adding user to Administrator list - part 2
This is the output from net groupmap list : root (S-1-5-21-2146849782-3868185098-1958755654-512) -> Domain Admins Domain Users (S-1-5-21-2146849782-3868185098-1958755654-513) -> Domain Users Backup Operators (S-1-5-21-2146849782-3868185098-1958755654-551) -> Backup Operators Replicator (S-1-5-21-2146849782-3868185098-1958755654-552) -> Replicator Domain Computers (S-1-5-21-2146849782-3868185098-1958755654-553) -> Domain Computers users (S-1-5-21-2146849782-3868185098-1958755654-3001) -> users management (S-1-5-21-2146849782-3868185098-1958755654-1205) -> management projectgroup (S-1-5-21-2146849782-3868185098-1958755654-1207) -> projectgroup accounting (S-1-5-21-2146849782-3868185098-1958755654-1209) -> accounting lan (S-1-5-21-2146849782-3868185098-1958755654-1211) -> lan PPTP_USERS (S-1-5-21-2146849782-3868185098-1958755654-1205) -> PPTP_USERS Bert "Thomas Bork" <[EMAIL PROTECTED]> 18-01-2005 17:20 To [EMAIL PROTECTED] cc Subject Re: [Samba] Problem adding user to Administrator list - part 2 Hi Bert, > Ok, I disabled the win firewall on the machine,and indeed I got another > :-( error message > > 'A device attached to this system is not functioning' double mapping of "Domain Admin Group"? Show "net groupmap list". der tom -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba
Re: [Samba] Problem adding user to Administrator list - part 2
[EMAIL PROTECTED] wrote: Ok, I disabled the win firewall on the machine,and indeed I got another :-( error message 'A device attached to this system is not functioning' Trying another user on the same machine without changing anything (on the same login window) : no problem Did you try rebooting the windows machine? :) Perhaps this is something else, but specifying WINS servers on windows is also a good idea (try ipconfig /all on windows to see if they are configured). Tomek -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba
Re: [Samba] Problem adding user to Administrator list - part 2
Ok, I disabled the win firewall on the machine,and indeed I got another :-( error message 'A device attached to this system is not functioning' Trying another user on the same machine without changing anything (on the same login window) : no problem Regards, Bert De Ridder PeopleWare NV - Head Office Cdt.Weynsstraat 85 B-2660 Hoboken Tel: +32 3 448.33.38 Fax: +32 3 448.32.66 PeopleWare NV - Branch Office Geel Kleinhoefstraat 5 B-2440 Geel Tel: +32 14 57.00.90 Fax: +32 14 58.13.25 http://www.peopleware.be http://www.mobileware.be Tomasz Chmielewski <[EMAIL PROTECTED]> Sent by: [EMAIL PROTECTED] 18/01/2005 16:35 To samba@lists.samba.org cc Subject Re: [Samba] Problem adding user to Administrator list - part 2 [EMAIL PROTECTED] wrote: > It gets even weirder than that : it seems that this particular user has > not been authentication against the PDC for some time now; (so, using > cached data from his pc) > If he tries to log on to another machine in the domain, the machine > complaints that the domain is not available. > ("The system cannot log you on now because the domain PEOPLEWARE is not > available") > > NO entries are being made in the samba logs. I had similar symptoms when there were problems with name resolution and too restrictive firewall ("The system cannot log you on now because the domain PEOPLEWARE is not available", NO entries are being made in the samba logs). Tomek -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba
Re: [Samba] Problem adding user to Administrator list - part 2
[EMAIL PROTECTED] wrote: It gets even weirder than that : it seems that this particular user has not been authentication against the PDC for some time now; (so, using cached data from his pc) If he tries to log on to another machine in the domain, the machine complaints that the domain is not available. ("The system cannot log you on now because the domain PEOPLEWARE is not available") NO entries are being made in the samba logs. I had similar symptoms when there were problems with name resolution and too restrictive firewall ("The system cannot log you on now because the domain PEOPLEWARE is not available", NO entries are being made in the samba logs). Tomek -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba
[Samba] Problem adding user to Administrator list - part 2
It gets even weirder than that : it seems that this particular user has not been authentication against the PDC for some time now; (so, using cached data from his pc) If he tries to log on to another machine in the domain, the machine complaints that the domain is not available. ("The system cannot log you on now because the domain PEOPLEWARE is not available") NO entries are being made in the samba logs. Regards, Bert De Ridder PeopleWare NV - Head Office Cdt.Weynsstraat 85 B-2660 Hoboken Tel: +32 3 448.33.38 Fax: +32 3 448.32.66 PeopleWare NV - Branch Office Geel Kleinhoefstraat 5 B-2440 Geel Tel: +32 14 57.00.90 Fax: +32 14 58.13.25 http://www.peopleware.be http://www.mobileware.be [EMAIL PROTECTED] Sent by: [EMAIL PROTECTED] 18/01/2005 16:09 To samba@lists.samba.org cc Subject [Samba] Problem adding user to Administrator list Hi, all, We are using Samba 3.0.10 with an LDAP backend. It's been working fine for a long time. One strange thing that has come up today : I cannot add 1 specific domain user to the local Administrator group of Windows servers that are also in the domain. Adding the user to the admin group on a workstation works just fine. Adding other users to the admin group on the Windows servers works fine as well. It is just this one user that is being refused. This is the logging from Samba : (for the failing user edockx) [2005/01/18 15:37:00, 2] rpc_server/srv_samr_nt.c:_samr_lookup_domain(2482) Returning domain sid for domain PEOPLEWARE -> S-1-5-21-2146849782-3868185098-1 958755654 [2005/01/18 15:37:00, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: edockx [2005/01/18 15:37:00, 2] rpc_server/srv_samr_nt.c:_samr_lookup_domain(2482) Returning domain sid for domain PEOPLEWARE -> S-1-5-21-2146849782-3868185098-1 958755654 [2005/01/18 15:37:00, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: edockx [2005/01/18 15:37:00, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: edockx [2005/01/18 15:37:00, 2] rpc_server/srv_samr_nt.c:_samr_lookup_domain(2482) Returning domain sid for domain PEOPLEWARE -> S-1-5-21-2146849782-3868185098-1 958755654 [2005/01/18 15:37:00, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: edockx This is the logging for another user : [2005/01/18 15:37:16, 2] rpc_server/srv_samr_nt.c:_samr_lookup_domain(2482) Returning domain sid for domain PEOPLEWARE -> S-1-5-21-2146849782-3868185098-1 958755654 [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: bpottiez [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: bpottiez [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: bpottiez [2005/01/18 15:37:16, 2] rpc_server/srv_samr_nt.c:_samr_lookup_domain(2482) Returning domain sid for domain PEOPLEWARE -> S-1-5-21-2146849782-3868185098-1 958755654 [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: bpottiez [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: bpottiez [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: bpottiez [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: bpottiez [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_group_from_ldap(2011) init_group_from_ldap: Entry found for group: 100 [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: bpottiez [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_group_from_ldap(2011) init_group_from_ldap: Entry found for group: 100 [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_group_from_ldap(2011) init_group_from_ldap: Entry found for group: 100 [2005/01/18 15:37:16, 2] rpc_server/srv_samr_nt.c:_samr_lookup_domain(2482) Returning domain sid for domain PEOPLEWARE -> S-1-5-21-2146849782-3868185098-1 958755654 [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: bpottiez [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: bpottiez [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: bpottiez [2005/01/18 15:37:16, 2] passdb/pdb_ldap.c:init_sam_from_ldap(511) init_sam_from_ldap: Entry found for user: bpottiez Any thoughts ? (Sorry about the lengthy message) Regards, Bert De Ridder PeopleWare NV - Head Office Cdt.Weynsstraat 85 B-2660 Hoboken Tel: +32 3 448.33.38 Fax: +32 3 448.32.66 PeopleWare NV - Branch Office Geel Kleinhoefstraat 5 B-2440 Geel Tel: