Re: [Samba] Problem with 3.0.5 rc1

2004-07-13 Thread Gerald (Jerry) Carter
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Jeremy Allison wrote:
|> admin users = '@Foo\Domain  Admins'
|> veto files = /*.eml/*.nws/riched20.dll/*.{*}/
|>
|> The bits of the log which seem relevant are below, but
|> I can send a whole log if necessary:
|
| Quick test - try changing ' character separators to " in
| the smb.conf.
Jeremy's probably write.  This was a change to revert to
behavior in one of the earlier 3.0.x releases.  The problem
with allowing 's as a delimiter is that is broke browse lists
when the machines description had an ' in it.
Sorry for the annoyance and possible confusion.  I'll mention
this in the final release notes.

cheers, jerry
- --
Hewlett-Packard- http://www.hp.com
SAMBA Team -- http://www.samba.org
GnuPG Key   http://www.plainjoe.org/gpg_public.asc
"...a hundred billion castaways looking for a home." --- Sting
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.2.4 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
iD8DBQFA9BF7IR7qMdg1EfYRAgtfAJ4zVarMULqnIyJ8PwWxe4sSF/U1xACgqOi/
8wKJClxhyzKtIqBs/h93B2A=
=ZkgK
-END PGP SIGNATURE-
--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Problem with 3.0.5 rc1

2004-07-13 Thread Jeremy Allison
On Tue, Jul 13, 2004 at 05:09:00PM +0100, olly wrote:
> Hi All,
> 
> I have been having problems with the known issue on 3.0.4 with NTBackup and
> a DFS related issue. Therefore I decided to give 3.0.5rc1 a go, as SuSE have
> released the rpms on their website. Once I installed the rpms, I found that
> all daemons started correctly, but all domain authentication failed (I am
> running a samba server as a member server against a Windows 2000 mixed mode
> domain). 'getent group' did return a correct list of all the groups, so
> there was at least some level of connectivity (nscd was stopped). I tried to
> rejoin the domain, but now joining the domain failed. When I reverted back
> to 3.0.4, I joined the domain with no troubles, but back to my old problem
> with NTbackup.
> 
> [global]
> workgroup = FOO
> server string = Samba Server
> security = DOMAIN
> map to guest = Bad User
> obey pam restrictions = Yes
> restrict anonymous = 2
> log level = 8
> time server = Yes
> socket options = SO_KEEPALIVE IPTOS_LOWDELAY TCP_NODELAY
> os level = 2
> local master = No
> domain master = No
> ldap ssl = no
> host msdfs = Yes
> idmap uid = 1-2
> idmap gid = 1-2
> template shell = /bin/bash
> winbind use default domain = No
> admin users = '@Foo\Domain  Admins'
> veto files = /*.eml/*.nws/riched20.dll/*.{*}/
> 
> The bits of the log which seem relevant are below, but I can send a whole
> log if necessary:

Quick test - try changing ' character separators to " in
the smb.conf.

Jeremy.
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] Problem with 3.0.5 rc1

2004-07-13 Thread olly
Hi All,

I have been having problems with the known issue on 3.0.4 with NTBackup and
a DFS related issue. Therefore I decided to give 3.0.5rc1 a go, as SuSE have
released the rpms on their website. Once I installed the rpms, I found that
all daemons started correctly, but all domain authentication failed (I am
running a samba server as a member server against a Windows 2000 mixed mode
domain). 'getent group' did return a correct list of all the groups, so
there was at least some level of connectivity (nscd was stopped). I tried to
rejoin the domain, but now joining the domain failed. When I reverted back
to 3.0.4, I joined the domain with no troubles, but back to my old problem
with NTbackup.

[global]
workgroup = FOO
server string = Samba Server
security = DOMAIN
map to guest = Bad User
obey pam restrictions = Yes
restrict anonymous = 2
log level = 8
time server = Yes
socket options = SO_KEEPALIVE IPTOS_LOWDELAY TCP_NODELAY
os level = 2
local master = No
domain master = No
ldap ssl = no
host msdfs = Yes
idmap uid = 1-2
idmap gid = 1-2
template shell = /bin/bash
winbind use default domain = No
admin users = '@Foo\Domain  Admins'
veto files = /*.eml/*.nws/riched20.dll/*.{*}/

The bits of the log which seem relevant are below, but I can send a whole
log if necessary:


[2004/07/13 12:37:41, 5] rpc_client/cli_pipe.c:rpc_auth_pipe(212)
rpc_auth_pipe: pkt_type: 2 len: 80 auth_len: 32 NTLMSSP No schannel Yes
sign Y
es seal No
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_debug(82)
00 smb_io_rpc_hdr_auth auth_hdr
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_uint8(577)
 auth_type : 44
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_uint8(577)
0001 auth_level : 05
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_uint8(577)
0002 padding : 00
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_uint8(577)
0003 reserved : 00
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_uint32(635)
0004 auth_context : 0001
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_debug(82)
08 smb_io_rpc_auth_netsec_chk schannel_auth_sign
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_uint8s(722)
0008 sig : 77 00 ff ff ff ff 00 00
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_uint8s(722)
0010 seq_num: 76 e0 83 6f 0c f0 2a 4d
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_uint8s(722)
0018 packet_digest: 1c 0f 31 ef 79 43 0d 03
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_uint8s(722)
0020 confounder: 00 00 00 00 00 00 00 00
[2004/07/13 12:37:41, 6] rpc_client/cli_pipe.c:rpc_api_pipe(525)
rpc_api_pipe: fragment first and last both set
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_debug(82)
18 lsa_io_r_enum_trust_dom
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_uint32(635)
0018 enum_context : 
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_uint32(635)
001c num_domains : 
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_uint32(635)
0020 ptr_enum_domains: 
[2004/07/13 12:37:41, 5] rpc_parse/parse_prs.c:prs_ntstatus(665)
linux:/home/susie # vi /var/log/samba/log.winbindd
[2004/07/13 12:18:57, 3] rpc_client/cli_netlogon.c:cli_nt_setup_creds(290)
cli_nt_setup_creds: auth2 challenge failed NT_STATUS_ACCESS_DENIED
[2004/07/13 12:18:57, 6] lib/util_sock.c:write_socket(449)
write_socket(22,45)
[2004/07/13 12:18:57, 6] lib/util_sock.c:write_socket(452)
write_socket(22,45) wrote 45
[2004/07/13 12:18:57, 5] lib/util.c:show_msg(443)
[2004/07/13 12:18:57, 5] lib/util.c:show_msg(453)
size=35
smb_com=0x4
smb_rcls=0
smb_reh=0
smb_err=0
smb_flg=136
smb_flg2=51201
smb_tid=18433
smb_pid=2395
smb_uid=28673
smb_mid=8
smt_wct=0
smb_bcc=0
[2004/07/13 12:18:57, 3] nsswitch/winbindd_cm.c:cm_open_connection(367)
schannel refused - continuing without schannel (NT_STATUS_ACCESS_DENIED)

Thanks in advance

Olly





-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba