[Samba-it] create_builtin_users: Failed to create Users

Giuseppe Arvati giuseppe.arvati at poste.it
Mon May 18 02:13:38 MDT 2009


Aggiungo alcune informazioni

root at apamfs1:/var/log/samba# pdbedit -v garvati
Unix username:        garvati
NT username:
Account Flags:        [U          ]
User SID:             S-1-5-21-576720093-3400387741-2704278951-3002
Primary Group SID:    S-1-5-21-576720093-3400387741-2704278951-513
Full Name:
Home Directory:       \\apamfs1\garvati
HomeDir Drive:        Q:
Logon Script:         logon.bat
Profile Path:
Domain:               APAM
Account desc:
Workstations:
Munged dial:
Logon time:           0
Logoff time:          never
Kickoff time:         never
Password last set:    lun, 15 set 2008 10:45:20 CEST
Password can change:  lun, 15 set 2008 10:45:20 CEST
Password must change: never
Last bad password   : 0
Bad password count  : 0
Logon hours         : FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF


root at apamfs1:/var/log/samba# smbclient \\\\apamfs1\\passa -U garvati
Password:
Domain=[APAM] OS=[Unix] Server=[Samba 3.0.28a]
tree connect failed: NT_STATUS_NO_SUCH_USER


root at apamfs1:/var/log/samba# net usersidlist
[2009/05/18 10:08:45, 0] utils/net_rpc.c:net_usersidlist(4729)
  Could not get the user/sid list

root at apamfs1:/var/log/samba# net groupmap list
Domain Users (S-1-5-21-576720093-3400387741-2704278951-513) -> apam
Domain Admins (S-1-5-21-576720093-3400387741-2704278951-512) -> ced


root at apamfs1:/var/log/samba# testparm
Load smb config files from /etc/samba/smb.conf
Processing section "[homes]"
Processing section "[printers]"
Processing section "[print$]"
Processing section "[netlogon]"
Processing section "[passa]"
Processing section "[gruppi]"
Processing section "[apps]"
Processing section "[microbus]"
Processing section "[wildix]"
Loaded services file OK.
Server role: ROLE_DOMAIN_PDC
Press enter to see a dump of your service definitions

[global]
        workgroup = APAM
        server string =
        interfaces = 10.1.0.0/16, 10.3.0.0/16
        passdb backend = tdbsam
        guest account = apam
        passwd program = /usr/bin/passwd %u
        passwd chat = *Enter\snew\sUNIX\spassword:* %n\n 
*Retype\snew\sUNIX\spassword:* %n\n .
        lanman auth = Yes
        syslog = 3
        log file = /var/log/samba/log.%m
        max log size = 1000
        deadtime = 30
        add machine script = /usr/sbin/useradd -s /bin/false -g apampc 
-d /dev/null '%u'
        logon script = logon.bat
        logon path =
        logon drive = Q:
        domain logons = Yes
        os level = 35
        preferred master = Yes
        domain master = Yes
        dns proxy = No
        wins support = Yes
        ldap ssl = no
        panic action = /usr/share/samba/panic-action %d

[homes]
        comment = Home Directories
        path = /dati/utenti/%u
        read only = No
        create mask = 0700
        directory mask = 0700
        browseable = No
        vfs objects = recycle

[netlogon]
        path = /dati/netlogon
        write list = ntadmin
        browseable = No

[passa]
        comment = passa
        path = /dati/passa
        force user = apam
        force group = apam
        read only = No
        create mask = 0774
        directory mask = 0775

[gruppi]
        comment = Gruppi
        path = /dati/gruppi
        force group = apam
        read only = No
        create mask = 0770
        directory mask = 0770



Giuseppe Arvati ha scritto:
> ciao a tutti,
>
> ieri dopo quasi un anno di funzionamento ininterrotto un server ubuntu 
> 8.0.4 con samba 3.0.28a
> si e' piantato al punto che anche da console non riuscivo ad accedere.
> Ho dovuto spegnerlo di forza. Indaghero' sul perche' cio' e' successo 
> ma per
> ora il problema riguarda samba
> Al riavvio gli utenti quando accedono al dominio non riescono ad 
> andare negli share
> condivisi mentre accedon a quelli di proprieta' dello stesso utente ( 
> home )
>
> Sembra che non riconosca il gruppo di appartenenza dell'utente
>
> potrebbe essere che forzando lo spegnimento sia rimasto qualche .tdb 
> sporco ?
>
> Qualche idea su cosa posso controllare  ?
>
>
>
> Nel log vedo questo quando tento di accedere ad uno share condiviso
>
> [2009/05/18 09:00:06, 1] 
> auth/auth_util.c:create_token_from_username(1116)
>  sid_to_uid for apam (S-1-5-21-576720093-3400387741-2704278951-3000) 
> failed
> [2009/05/18 09:00:06, 1] 
> auth/auth_util.c:create_token_from_username(1116)
>  sid_to_uid for apam (S-1-5-21-576720093-3400387741-2704278951-3000) 
> failed
> [2009/05/18 09:00:06, 1] 
> auth/auth_util.c:create_token_from_username(1116)
>  sid_to_uid for apam (S-1-5-21-576720093-3400387741-2704278951-3000) 
> failed
> [2009/05/18 09:00:06, 1] 
> auth/auth_util.c:create_token_from_username(1116)
>  sid_to_uid for apam (S-1-5-21-576720093-3400387741-2704278951-3000) 
> failed
> [2009/05/18 09:00:06, 1] 
> auth/auth_util.c:create_token_from_username(1116)
>  sid_to_uid for apam (S-1-5-21-576720093-3400387741-2704278951-3000) 
> failed
> [2009/05/18 09:00:06, 1] 
> auth/auth_util.c:create_token_from_username(1116)
>  sid_to_uid for apam (S-1-5-21-576720093-3400387741-2704278951-3000) 
> failed
> [2009/05/18 09:00:06, 1] 
> auth/auth_util.c:create_token_from_username(1116)
>  sid_to_uid for garvati 
> (S-1-5-21-576720093-3400387741-2704278951-3002) failed
> [2009/05/18 09:00:06, 1] 
> auth/auth_util.c:create_token_from_username(1116)
>  sid_to_uid for garvati 
> (S-1-5-21-576720093-3400387741-2704278951-3002) failed
> [2009/05/18 09:00:08, 1] 
> auth/auth_util.c:create_token_from_username(1116)
>  sid_to_uid for apam (S-1-5-21-576720093-3400387741-2704278951-3000) 
> failed
> [2009/05/18 09:00:08, 1] 
> auth/auth_util.c:create_token_from_username(1116)
>  sid_to_uid for apam (S-1-5-21-576720093-3400387741-2704278951-3000) 
> failed
> [2009/05/18 09:00:24, 0] 
> auth/auth_util.c:create_builtin_administrators(792)
>  create_builtin_administrators: Failed to create Administrators
> [2009/05/18 09:00:24, 0] auth/auth_util.c:create_builtin_users(758)
>  create_builtin_users: Failed to create Users
>
>
>
> Grazie a tutta la lista
>
> Giuseppe Arvati
> _______________________________________________
> Samba-it mailing list
> Samba-it at xsec.it
> https://lists.xsec.it/mailman/listinfo/samba-it
>




More information about the samba-it mailing list