[Samba] xfreerdp and SPNEGO failed

Jonathan Hunter jmhunter1 at gmail.com
Fri Feb 23 11:12:03 UTC 2018


Hi

On 22 February 2018 at 15:00, lejeczek via samba <samba at lists.samba.org>
wrote:

>
> I try xfreerdp to connect to a Win10 which is a member of NT-style domain
> and it fails this way:
>
> [14:55:33:905] [8048:8055] [ERROR][com.freerdp.core.nla] - SPNEGO failed
> with NTSTATUS: 0xC0000017
> [14:55:33:905] [8048:8055] [ERROR][com.freerdp.core] -
> freerdp_set_last_error ERRCONNECT_AUTHENTICATION_FAILED [0x00020009]
> [14:55:33:905] [8048:8055] [ERROR][com.freerdp.core.rdp] -
> rdp_recv_callback: CONNECTION_STATE_NLA - nla_recv_pdu() fail
> [14:55:33:905] [8048:8055] [ERROR][com.freerdp.core.transport] -
> transport_check_fds: transport->ReceiveCallback() - -1
>

Does it successfully connect to any other Win10 machines in the same
domain? i.e. is it just this one machine, or something more generic?

I wonder if it might be due to the NLA authentication mechanism (or I might
be clutching at straws here, just from the NLA strings above).

A thread here has some more discussion.. it's not the same problem you are
having, but contains some pointers to other resources on the subject, if
that is indeed where the problem lies:
https://social.technet.microsoft.com/Forums/azure/en-US/9f7881d5-1960-41c7-9528-c1a671ee88b7/rdp-issues-remote-computers-requires-network-level-authentication?forum=winserverTS

Or perhaps
https://www.parallels.com/blogs/ras/disabling-network-level-authentication-for-remote-desktop-services-connections-2/

Hope that helps, or at least gives some pointers..

J

-- 
"If we knew what it was we were doing, it would not be called research,
would it?"
      - Albert Einstein


More information about the samba mailing list