interdomain trust rpc error (error in winbindd?)

Jeremy Drake jeremyd at apptechsys.com
Thu Jul 31 21:54:47 GMT 2003


On Thu, 31 Jul 2003, Gerald (Jerry) Carter wrote:

> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> On Thu, 31 Jul 2003, Jeremy Drake wrote:
> 
> > On Thu, 31 Jul 2003, Gerald (Jerry) Carter wrote:
> > 
> > > Again, this sounds like an old bug (a week old).  Can you check what 
> > > domain is being sent in the rpc bind that fails?  It should be the 
> > > destination domain.  I've tested your exact scenario and everything 
> > > works.  
> > > 
> > running the cvs code fixes that particular problem.  Now I am getting a 
> > new error.  When I browse from a machine in a trusted win2k domain to a 
> > win2k member of a trusting samba domain, I get the following error:
> > 
> > The system detected a possible attempt to compromise security. Please 
> > ensure that you can contact the server that authenticated you.
> 
> Can you retest the latest CVS ?  I fixed one problem in the spnego 
> negotiate code.  I'm reproducing your problem but am getting a message 
> about the account being disabled.

I think the secutity compromise message is winxp's attempt at saying
"account disabled"

I did a cvs update and a make; make install and restarted smbd,nmbd,and 
winbindd.  I am getting the same message.  Do I need to restart the win2k 
box I'm trying to connect to?  Or do a make clean?  It looked like only 
one file was affected, and make re-compiled that file and re-linked smbd.  




More information about the samba-technical mailing list