WG: lsa_open_secret: cannot open secret_db?

Moeller Daniel (QI/AST10) * Daniel.Moeller at de.bosch.com
Fri Aug 18 07:38:10 GMT 2000


Hello,

I think this is the same problem addressed in another message: try to use
the domain name together with the usernamen, eg. DOMAIN\username

Regards,
Danny

-----Ursprüngliche Nachricht-----
Von: Steve Langasek [mailto:vorlon at netexpress.net]
Gesendet: Freitag, 18. August 2000 00:46
An: Multiple recipients of list SAMBA-NTDOM
Betreff: lsa_open_secret: cannot open secret_db?


Hello again,

My particular efforts at deploying SAMBA_TNG have gone well for the most
part,
but I find that Win9x machines can only connect to the PDC as a fileserver
if
their workgroup is set to the name of the NT domain.  Otherwise, the PDC
rejects the login/password, and sometimes I see the following errors in
log.lsarpc:

WARNING: _lsa_open_secret: couldn't open secret_db. Possible attack?
uid=0, gid=0, euid=421, egid=100
_lsa_open_secret failed with 0xc0000022

Also, I always get these errors in the per-host logfile:

LSA_OPENSECRET: NT_STATUS_OBJECT_NAME_NOT_FOUND
SMB LM/NT Password did not match!
Rejecting user 'vorlon': bad password

euid 421, egid 100 listed above are the uid,gid of the guest user.


Is there an easy way to get SAMBA_TNG to accept connections from Win9x boxes
in other workgroups?  I'm probably missing something obvious here, but I
can't
figure out what it is for the life of me...

TIA,
Steve Langasek
postmodern programmer


More information about the samba-ntdom mailing list