Problems with WinXP joining a Samba-head domain (and suggested solutions)

Richard Sharpe rsharpe at ns.aus.com
Wed Sep 11 18:42:00 GMT 2002


On Thu, 12 Sep 2002, Luke Howard wrote:

> 
> >Well, the interesting thing to me is that WinXP managed to join with 
> >Sign/Seal enabled, but failed on the first logon attempt.
> 
> At least with Windows 2000 joining Active Directory (which is what we're
> testing right now) the domain join doesn't seem to mind if the
> NetrServerAuthenticate() / NetrLogonGetDomainInfo() fails. As long
> as the LSA and SAM RPCs that are made over SMB succeed, the client
> thinks that it has joined. 
> 
> >This failure seems to occur after Samba responds SUCCESS to 
> >ServerAuthenticate2, but, I suspect, with the wrong bits. I noticed that 
> >XP includes at least one new flag bit that Win2K does not send.
> 
> Interesting, which one is this?

Win2K sends, as you say below, 0x6007bfff, while Win2K sends 0x600fbfff.
 
Hmmm, I notice you claim 0x6007ffff, but I see 0x600fbfff.

Regards
-----
Richard Sharpe, rsharpe at ns.aus.com, rsharpe at samba.org, 
sharpe at ethereal.com




More information about the samba-technical mailing list