NT PDC and Samba-TNG BDC? Anyone?

Dominik Kubla dominik.kubla at uni-mainz.de
Wed May 10 12:21:01 GMT 2000


Ok. Here's the story: i want to setup a Samba-TNG BDC to prove it can be
done, so that i can later on just switch roles with our NT4 PDC (should
make password synchronization between Mail/Unix/NT a lot easier if you
get the drift...)

In any case, i checked out the latest code from CVS and installed on my
(Linux) Admin system.  Then i read the TNG FAQ at www.kneschke.de and
configured a smb.conf according to the provided example.

Now here is where i fail:
===============================================================================
# rpcclient -S NT4PDC -U administrator -W MYGROUP -n ADMIN
added interface ip=10.0.0.2 bcast=10.0.0.127 nmask=255.255.255.128
Enter Password:
Server: \\NT4PDC:     User:   administrator   Domain: MYGROUP
Connection:     error connecting to 10.0.0.34:445 (Connection refused)
                                    ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
			            What is this?

session setup ok
Domain=[MYGROUP] OS=[Windows NT 4.0] Server=[NT LAN Manager 4.0]
OK
[MYGROUP\administrator at NT4PDC]$ lsaquery 
lsaquery 
LSA Query Info Policy
Domain Member     - Domain: MYGROUP SID: S-x-x-xx-xxxxxxxxx-xxxxxxxxx-xxxxxxxxx
Domain Controller - Domain: MYGROUP SID: S-x-x-xx-xxxxxxxxx-xxxxxxxxx-xxxxxxxxx
[MYGROUP\administrator at NT4PDC]$ createuser ADMIN$ -s -j MYGROUP
createuser ADMIN$ -s -j MYGROUP
SAM Create Domain User
error connecting to 10.0.0.2:445 (Connection refused)
Domain: MYGROUP Name: admin$ ACB: [S          ]
                      ^^^^^
                      Why is this in lower caps?

error connecting to 10.0.0.2:445 (Connection refused)
Create Domain User: OK
Join ADMIN to Domain MYGROUP
LSA_OPENSECRET: NT_STATUS_ACCESS_DENIED
LSA_OPENSECRET: NT_STATUS_ACCESS_DENIED
Set $MACHINE.ACC: FAILED
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
Why does this fail?

[MYGROUP\administrator at NT4PDC]$ 
===============================================================================

Any hints on how to proceed?

Dominik Kubla
-- 
  Networking Group,  Hospital of Johannes Gutenberg-University                  
  Obere Zahlbacher Straße 69, 55101 Mainz, Germany                              
  Tel: +49 (0)6131 17-2482   FAX: +49 (0)6131 17-5521                           


More information about the samba-ntdom mailing list