lsa_open_secret: cannot open secret_db?

Steve Langasek vorlon at netexpress.net
Thu Aug 17 22:49:06 GMT 2000


Hello again,

My particular efforts at deploying SAMBA_TNG have gone well for the most part,
but I find that Win9x machines can only connect to the PDC as a fileserver if
their workgroup is set to the name of the NT domain.  Otherwise, the PDC
rejects the login/password, and sometimes I see the following errors in
log.lsarpc:

WARNING: _lsa_open_secret: couldn't open secret_db. Possible attack?
uid=0, gid=0, euid=421, egid=100
_lsa_open_secret failed with 0xc0000022

Also, I always get these errors in the per-host logfile:

LSA_OPENSECRET: NT_STATUS_OBJECT_NAME_NOT_FOUND
SMB LM/NT Password did not match!
Rejecting user 'vorlon': bad password

euid 421, egid 100 listed above are the uid,gid of the guest user.


Is there an easy way to get SAMBA_TNG to accept connections from Win9x boxes
in other workgroups?  I'm probably missing something obvious here, but I can't
figure out what it is for the life of me...

TIA,
Steve Langasek
postmodern programmer



More information about the samba-ntdom mailing list