[Samba] RE: Samba 3.0.28a under Solaris 8 + libnss_winbind.so problem?

Oliver Weinmann oliver.weinmann at vega.de
Tue Apr 8 10:40:56 GMT 2008


Hi,

yes it does. some users groups are shown using the group command and some others don't. the command just hangs and has no output.

Thank you very much for your reply.

Regards,
Oli 

-----Original Message-----
From: Dietrich Streifert [mailto:dietrich.streifert at visionet.de] 
Sent: 08 April 2008 12:27
To: Oliver Weinmann
Cc: samba at lists.samba.org
Subject: Re: [Samba] RE: Samba 3.0.28a under Solaris 8 + libnss_winbind.so problem?

Hi,

does your /etc/nsswitch.conf contain the winbind name service modules? 
This should look like this:

passwd:     files winbind
group:      files winbind




Oliver Weinmann schrieb:
> Hi,
>
> I'm really lost with this problem. Here is my /etc/pam.conf, maybe 
> someone can help me, the system still keeps kicking me out of telnet 
> and local console. id and group commands are now working, group is not 
> working on every user.
>
> #
> #ident "@(#)pam.conf 1.14 99/09/16 SMI"
> #
> # Copyright (c) 1996-1999, Sun Microsystems, Inc.
> # All Rights Reserved.
> #
> # PAM configuration
> #
> # Authentication management
> #
> login   auth required   /usr/lib/security/pam_winbind.so
> login auth required  /usr/lib/security/$ISA/pam_unix.so.1 
> try_first_pass login auth required  
> /usr/lib/security/$ISA/pam_dial_auth.so.1
> try_first_pass
> #
> rlogin  auth sufficient /usr/lib/security/pam_winbind.so rlogin  auth 
> sufficient /usr/lib/security/$ISA/pam_rhosts_auth.so.1
> rlogin auth required  /usr/lib/security/$ISA/pam_unix.so.1
> try_first_pass
> #
> dtlogin auth sufficient /usr/lib/security/pam_winbind.so dtlogin auth 
> required  /usr/lib/security/$ISA/pam_unix.so.1
> try_first_pass
> #
> rsh auth required /usr/lib/security/$ISA/pam_rhosts_auth.so.1
> other   auth sufficient /usr/lib/security/pam_winbind.so
> other auth required /usr/lib/security/$ISA/pam_unix.so.1 
> try_first_pass # # Account management #
> login   account sufficient      /usr/lib/security/pam_winbind.so
> login account requisite /usr/lib/security/$ISA/pam_roles.so.1
> login account required /usr/lib/security/$ISA/pam_unix.so.1
> #
> dtlogin account sufficient      /usr/lib/security/pam_winbind.so
> dtlogin account requisite /usr/lib/security/$ISA/pam_roles.so.1
> dtlogin account required /usr/lib/security/$ISA/pam_unix.so.1
> #
> other   account sufficient      /usr/lib/security/pam_winbind.so
> other account requisite /usr/lib/security/$ISA/pam_roles.so.1
> other account required /usr/lib/security/$ISA/pam_unix.so.1
> #
> # Session management
> #
> other session required /usr/lib/security/$ISA/pam_unix.so.1
> #
> # Password management
> #
> #other   password sufficient     /usr/lib/security/pam_winbind.so
> other password required /usr/lib/security/$ISA/pam_unix.so.1
> dtsession auth required /usr/lib/security/$ISA/pam_unix.so.1
> #
> # Support for Kerberos V5 authentication (uncomment to use Kerberos) # 
> #rlogin auth optional /usr/lib/security/$ISA/pam_krb5.so.1
> try_first_pass
> #login auth optional /usr/lib/security/$ISA/pam_krb5.so.1 
> try_first_pass #dtlogin auth optional 
> /usr/lib/security/$ISA/pam_krb5.so.1
> try_first_pass
> #other auth optional /usr/lib/security/$ISA/pam_krb5.so.1 
> try_first_pass #dtlogin account optional 
> /usr/lib/security/$ISA/pam_krb5.so.1
> #other account optional /usr/lib/security/$ISA/pam_krb5.so.1
> #other session optional /usr/lib/security/$ISA/pam_krb5.so.1
> #other password optional /usr/lib/security/$ISA/pam_krb5.so.1
> try_first_pass
>
> -----Original Message-----
> From: Oliver Weinmann
> Sent: 04 April 2008 19:34
> To: samba at lists.samba.org
> Subject: Samba 3.0.28a under Solaris 8 + libnss_winbind.so problem?
>
> Hi i compiled Samba 3.0.28a under Solaris 8 (sparc). Everything seems 
> to be fine except the libnss_winbind.so.
>  
> i copied it to /usr/lib and linked it to:
>  
> libnss_winbind.so.1
> libnss_winbind.so.2
> nss_winbind.so.1
> nss_winbind.so.1
>  
> now when i type: "id user" nothing happens. The same goes for "group 
> user".
>  
> wbinfo -t / -g / -u all work fine. So it must be something with the 
> nss I guess?
>
> But it's getting even more strange. After a reboot i can now use "id", 
> "group" still doesn't work and my telnet and login session get 
> disconnected after a few minutes. If I change the /etc/pam.conf back 
> to normal I don't get disconnected. Any ideas where I could look for 
> debugging information?
>
> Oliver Weinmann
> Unix/Linux Administrator
>
> VEGA IT GmbH
> Europaplatz 5
> D-64293 Darmstadt
> Germany
> Tel	: +49 (0) 6151 8257 744
> Fax	: +49 (0)6151 8257-799
> Email	: oliver.weinmann at vega.de
> Web	: www.vega-group.com
>   

--
Mit freundlichen Grüßen
Dietrich Streifert
--
Visionet GmbH
Firmensitz: Am Weichselgarten 7, 91058 Erlangen
Registergericht: Handelsregister Fürth, HRB 6573
Geschäftsführer: Stefan Lindner




______________________________________________________________________
This email has been scanned by the MessageLabs Email Security System.
For more information please visit http://www.messagelabs.com/email 
______________________________________________________________________


More information about the samba mailing list