[Samba] winbind warnings filling up syslog

HASM samba at martins.cc
Mon Feb 1 21:08:15 UTC 2016


rpenny> One) Your smb.conf appears to be incorrectly set up, this
rpenny> will not help.

Maybe, but I don't think that's a problem in this case

rpenny> two) You are using a firewall, what it is called is neither
rpenny> here nor there, you are using a firewall and are *all* the
rpenny> required ports open ?

Again, don't think this is a problem.  I went ahead stopped
iptables and ip6tables, restarted winbind.  Problem
persists.

I think I know what is wrong.  After adding domains for
BUILTIN, HOSTNAME and COMPANY.COM domains, which seems to go
fine: 
  Added domain BUILTIN (null) S-ID-1
  Added domain HOSTNAME (null) S-ID-2
  Added domain COMPANY COMPANY.COM S-ID-3
  STATUS=daemon 'winbindd'finished starting up and
    ready to serve connections
winbind does:
  Added domain DOMAIN_01 ACQUIRED.COM S-ID-4
  ...
  ads_find_dc: name resolution for realm 'acquired.com'
   (domain 'DOMAIN_01') failed: NT_STATUS_NO_LOGON_SERVERS
where DOMAIN_O1 and ACQUIRED.COM are associated with the
company we purchased.

Turns out my DNS resolves ACQUIRED.COM to 192.168.xxx.yyy
where all other addresses of the main COMPANY.COM are of the
form 10.xxx.yyy.zzz, but I don't think there's a route for
192.168/16.

I'll try to handle this with IT (wish me luck:-)) but is
there a way to exclude that realm from winbindd searches?
Otherwise winbindd goes looking for it every few minutes,
using 100% of one of the cores, and fills up the log.

-- HASM



More information about the samba mailing list