[Samba] 3.0.20 -> 3.0.23 SID/group error?? Won't connect.

david rankin drankin at cox-internet.com
Thu Aug 10 21:00:54 GMT 2006


Gerry, all:

    HELP! On mandriva, I compiled samba from source and got it running, but 
I cannot connect from windows. (see my post from earlier "[Samba] Compiling 
and Configuring Samba for Mandrival")

    I think this relates to the group/SID changes discussed in the release 
notes. However, I'm not smart enough to figure it out. The tarball compiled 
and installed fine. It appears to run fine, it just wont take the 
lookup_name: Unix Group\ochiltree => Unix Group (domain), ochiltree (name) 
handshake for some reason. The samba tests work fine until:

querying __SAMBA__ on 192.168.7.15
192.168.7.15 __SAMBA__<00>
david at rankin-xp:~> nmblookup -B rankin-p35 '*'
querying * on 192.168.7.98
name_query failed to find name *

david at rankin-xp:~> nmblookup -d 2 '*'
added interface ip=192.168.7.90 bcast=192.168.7.255 nmask=255.255.255.0
querying * on 192.168.7.255
Got a positive name query response from 192.168.7.15 ( 192.168.7.15 )
192.168.7.15 *<00>

david at rankin-xp:~> smbclient //bonza/office
Password:
Domain=[RB_LAW] OS=[Unix] Server=[Samba 3.0.23b]
tree connect failed: NT_STATUS_ACCESS_DENIED

    I have attached a level 10 debug if that will help. This is a standalone 
server.

    Right now I am running on 3.0.20 after saving myself with a "make 
revert" Gotta love it...

    What should I do/check/read to find out how to get 3.0.23 to allow my 
clients to connect??? Any help is appreciated..

I think the problems come in at this point:

[2006/08/10 10:11:26, 5] auth/auth.c:check_ntlm_password(296)
  check_ntlm_password:  PAM Account for user [david] succeeded
[2006/08/10 10:11:26, 2] auth/auth.c:check_ntlm_password(309)
  check_ntlm_password:  authentication for user [david] -> [david] -> 
[david] succeeded
[2006/08/10 10:11:26, 5] auth/auth_util.c:free_user_info(1816)
  attempting to free (and zero) a user_info structure
[2006/08/10 10:11:26, 10] auth/auth_util.c:free_user_info(1820)
  structure was created for david
[2006/08/10 10:11:26, 3] lib/privileges.c:get_privileges(261)
  get_privileges: No privileges assigned to SID 
[S-1-5-21-3406342033-1696486390-100470924-2002]
[2006/08/10 10:11:26, 3] lib/privileges.c:get_privileges(261)
  get_privileges: No privileges assigned to SID 
[S-1-5-21-3406342033-1696486390-100470924-2003]
[2006/08/10 10:11:26, 5] lib/privileges.c:get_privileges_for_sids(459)
  get_privileges_for_sids: sid = S-1-1-0
  Privilege set:
  SE_PRIV  0x0 0x0 0x0 0x0


(snip)



[2006/08/10 10:11:26, 10] passdb/lookup_sid.c:lookup_name(65)
  lookup_name: Unix Group\ochiltree => Unix Group (domain), ochiltree (name)
[2006/08/10 10:11:26, 10] smbd/share_access.c:user_ok_token(208)
  User david not in 'valid users'
[2006/08/10 10:11:26, 2] smbd/service.c:make_connection_snum(571)
  user 'david' (from session setup) not permitted to access this share 
(office)
[2006/08/10 10:11:26, 3] smbd/error.c:error_packet(146)
  error packet at smbd/reply.c(676) cmd=117 (SMBtconX) 
NT_STATUS_ACCESS_DENIED


I am certainly a member of group 'ochiltree', so I'm not sure where to go 
from here. Help?

--
David C. Rankin, J.D., P.E.
RANKIN LAW FIRM, PLLC
510 Ochiltree Street
Nacogdoches, Texas 75961
(936) 715-9333
(936) 715-9339 fax
www.rankinlawfirm.com
-- 


More information about the samba mailing list