Problems with WinXP joining a Samba-head domain (and suggested
solutions)
Richard Sharpe
rsharpe at ns.aus.com
Wed Sep 11 18:42:00 GMT 2002
On Thu, 12 Sep 2002, Luke Howard wrote:
>
> >Well, the interesting thing to me is that WinXP managed to join with
> >Sign/Seal enabled, but failed on the first logon attempt.
>
> At least with Windows 2000 joining Active Directory (which is what we're
> testing right now) the domain join doesn't seem to mind if the
> NetrServerAuthenticate() / NetrLogonGetDomainInfo() fails. As long
> as the LSA and SAM RPCs that are made over SMB succeed, the client
> thinks that it has joined.
>
> >This failure seems to occur after Samba responds SUCCESS to
> >ServerAuthenticate2, but, I suspect, with the wrong bits. I noticed that
> >XP includes at least one new flag bit that Win2K does not send.
>
> Interesting, which one is this?
Win2K sends, as you say below, 0x6007bfff, while Win2K sends 0x600fbfff.
Hmmm, I notice you claim 0x6007ffff, but I see 0x600fbfff.
Regards
-----
Richard Sharpe, rsharpe at ns.aus.com, rsharpe at samba.org,
sharpe at ethereal.com
More information about the samba-technical
mailing list