[Samba] Samba 3.0.10 joining Windows 20003 ADS

Thomas M. Skeren III tms3 at fskklaw.com
Thu Dec 30 13:40:22 GMT 2004


Pau Capdevila wrote:

>Authentication does work but it does not permission resolution 
>
Huh?  Do you mean that there's file access permission issues?  If so 
have you set up acl's?  Remeber posix permissions are User, Group, 
Other.  All clients authenticating via W2K3 are Other. 

>(we use
>winbind). Neither smbclient -U domain user.
>  
>
I don't use smbclient.

>I don't know the solution yet.
>
>We also use Debian but I'm afraid it is not Debian related because
>I've tried to compile Samba and MIT kerberos from source and it keeps
>failing.
>
>What can we do??
>
>Thanks
>
>
>
>On Tue, 28 Dec 2004 18:12:40 -0800, Thomas M. Skeren III
><tms3 at fskklaw.com> wrote:
>  
>
>>Andrew Zbikowski wrote:
>>
>>    
>>
>>>Commented out passdb backend
>>>
>>>abrams:/etc/samba# net ads testjoin
>>>Join is OK
>>>
>>>
>>>abrams:/etc/samba# net ads join
>>>[2004/12/28 20:00:31, 0] libads/ldap.c:ads_add_machine_acct(1368)
>>> ads_add_machine_acct: Host account for ttlnx01 already exists -
>>>modifying old account
>>>Using short domain name -- CORP
>>>[2004/12/28 20:00:34, 0] libads/kerberos.c:get_service_ticket(335)
>>> get_service_ticket: kerberos_kinit_password
>>>TTLNX01$@CORP.TCC.INET at CORP.TCC.INET failed: Preauthentication failed
>>>Segmentation fault
>>>
>>>
>>>
>>>      
>>>
>>Yep I get the same damned thing.  Check to see if user authentication to
>>the share works.  If so it will work.  I'm not sure about that error
>>during the re-join.  I  have  150 computers to manage by myself, so if
>>it works I ain't worrying about it.  As long as the testjoin works, then
>>users should authenticate.
>>
>>--
>>To unsubscribe from this list go to the following URL and read the
>>instructions:  https://lists.samba.org/mailman/listinfo/samba
>>
>>    
>>
>
>  
>



More information about the samba mailing list