Hi Igor,
Thanks so much for troubleshooting all this while and we found out none of our
configuration is the problem but the source code. Hope that the samba team will
modify to a working code so that I can deploy it.
Actually my dateline to deploy is coming soon and I do not know what to do n
Adrian Chow wrote:
Hi Igor (and samba team),
I have done the following:-
-I have upgraded the samba versions of the both servers to be the same.
-The ldap servers are in the same version.
-DomainAPDC and DomainBPDC has winbind in nsswitch
-wbinfo all works.
-"getent group" and "getent passwd" shows
Hi Igor (and samba team),
I have done the following:-
-I have upgraded the samba versions of the both servers to be the same.
-The ldap servers are in the same version.
-DomainAPDC and DomainBPDC has winbind in nsswitch
-wbinfo all works.
-"getent group" and "getent passwd" shows ldap entries of lo
You are right... I need winbind... this log is when it does not have...
trying to emulate what you are doing..
adrian
Igor Belyi wrote:
Adrian Chow wrote:
Hi Igor,
Got some logs from the Domain_A_PDC on the domain_A_XP when domain_B
user (grade2) logs into domain_B on domain_A_XP.
[2004/11/05
Adrian Chow wrote:
Hi Igor,
Got some logs from the Domain_A_PDC on the domain_A_XP when domain_B
user (grade2) logs into domain_B on domain_A_XP.
[2004/11/05 11:18:45, 3] auth/auth.c:check_ntlm_password(219)
check_ntlm_password: Checking password for unmapped user
[EMAIL PROTECTED] with the
Adrian Chow wrote:
Hi Igor,
Regarding the home mapping problem:- I changed my log to level 3. And
I got the following log which I think is weird. (maybe the reason why
it cannot map). The problem is :- Logging user_A with domain_A at
Domain_A_computer gets home directory mapped but Logging us
Hi Igor,
Got some logs from the Domain_A_PDC on the domain_A_XP when domain_B
user (grade2) logs into domain_B on domain_A_XP.
[2004/11/05 11:18:45, 3] auth/auth.c:check_ntlm_password(219)
check_ntlm_password: Checking password for unmapped user
[EMAIL PROTECTED] with the new password interf
Hi Igor,
Regarding the home mapping problem:- I changed my log to level 3. And I
got the following log which I think is weird. (maybe the reason why it
cannot map). The problem is :- Logging user_A with domain_A at
Domain_A_computer gets home directory mapped but Logging user_B with
domain_B
Hi Igor,
I did not change any settings in the PDC and suddenly "getent group" in
domain_B_pdc does not show "Domain Users" of domain_A_pdc (397 users).
The log says this :
[2004/11/04 13:27:00, 1] nsswitch/winbindd_group.c:fill_grent_mem(133)
could not lookup membership for group rid
S-1-5-21
Hi Igor,
Just to let you now that the "smbclient //domain_b_pdc/shared -U
domain_a/domain_a_user" is working.
To make it work, I have to put winbind in the nsswitch.conf. The reason
why it did not work is 2 fold:-
1. The Domain Users in the domain_A is very large (397 users). When I
did "get
Hi Igor,
I left out something.
Regarding your question:-
>Does Samba allows Domain_A\domain_a_user to access this share if you
> list the user without domain specification: "valid users =
domain_a_user"?
The answer is yes ONLY if "valid users = Domain_A\domain_A_user".
"Valid users = domain_a_us
Hi Igor,
I did "smbclient //domain_B_PDC//shared -W domain_A -U domain_A_user"
and I got :-
Domain=[UWCSTU] OS=[Unix] Server=[Samba 3.0.7-Debian]
tree connect failed: NT_STATUS_ACCESS_DENIED
I think it has to do with the UNIX and NIS groups required for
@"Domain_A\Domain Users" to work.
On the Do
Adrian Chow wrote:
Hi Igor,
Do you have trustdomains in your "auth methods"?
Currently I removed the winbind from nsswitch.conf. And "smbclient
//domain_B_PDC//shared -U domain_A/domain_A_user" does not work.
Have you tried "smbclient //domain_B_PDC//shared -W domain_A -U
domain_A_user"?
If I p
Hi Igor,
Do you have trustdomains in your "auth methods"?
Currently I removed the winbind from nsswitch.conf. And "smbclient
//domain_B_PDC//shared -U domain_A/domain_A_user" does not work.
If I put winbind in the nsswitch.conf, then I will be able to
authenticated but cannot connect to shared
I would guess that it means that DomainA trust DomainB but DomainB does
not trust DomainA. Can you verify that trust is mutual between them?
Check 'net rpc trustom list' on both machines.
No, I do not use winbind for NSS (no winbind in /etc/nsswitch.conf).
Winbind is used only by Samba when it
Hi Igor,
I got stuck now. I did my best. I got stuck at the winbind which I suspected is the
reason why the domainA_computer cannot map the domain_B user's home directory.
1. What are the settings of your winbind?
2. Do you use only "winbind" in your libnss_ldap or use "ldap" as well?
3. My
Hi Igor,
Once again, thanks for keeping up with me. I have been migrating my
master ldap server to 2.1 version so to keep it the same with the PDCs
version of LDAP. Now they are the same.
I have rectified such that "wbinfo -u" on both sides worked now. I am
made "net rpc trustdom list" worke
17 matches
Mail list logo