[Samba] ADS question

Marcus Franke marcus.franke at gmx.net
Wed Mar 9 14:56:34 GMT 2005


Hi,

> [public]
> comment = Backup Verzeichnis
> path = /mnt/backup
> admin users = DOMAIN+Administrator, root
> valid users = DOMAIN+Administrator, root
> 
> The administrator of my Windows domain now should be able
> to access the "public" share. But when I try to access the
> box I am asked for a username and a password.
> 
> I found, that getent passwd and group does not list the 
> domain users and groups, just my local users and groups
> >from /etc/passwd and /etc/groups.

After some more searching, I tuned the loglevel up to 10 and
found these entries in winbindd.log:

[2005/03/09 15:37:00, 0]
libsmb/cliconnect.c:cli_session_setup_spnego(764)
  Kinit failed: Preauthentication failed
[2005/03/09 15:38:12, 1]
nsswitch/winbindd_group.c:winbindd_getgroups(1032)
  user 'marcus' does not exist
[2005/03/09 15:38:28, 1]
nsswitch/winbindd_group.c:winbindd_getgroups(1032)
  user 'root' does not exist
[2005/03/09 15:40:00, 1]
nsswitch/winbindd_group.c:winbindd_getgroups(1032)
  user 'root' does not exist
[2005/03/09 15:42:00, 0]
libsmb/cliconnect.c:cli_session_setup_spnego(764)
  Kinit failed: Preauthentication failed

kinit failed? 

I can use wbinfo -[sgu] even from the local user "marcus"
and get positive info from it, why not when invoked from
the server?

I can mail the smbd log for the machine I am trying to connect
to the server. But the output is huge (41k) and I would not
like to post it directly to the list :)

Any suggestions? I would be happy for every hint.


Marcus



More information about the samba mailing list