3.2.6 SeMachineAccountPrivilege regression?

William Jojo w.jojo at hvcc.edu
Wed Jan 14 01:46:23 GMT 2009


When trying to join XP-Sp2 to Samba 3.2.6 on AIX, I get an "access denied" response. The user has SeMachineAccountPrivilege. The root user can always join.

To my knowledge this worked ok in 3.2.4 (haven't tested this item in 3.2.5 yet).

Snip from log:

[2009/01/13 16:01:53,  3] smbd/ipc.c:api_fd_reply(345)
  Got API command 0x26 on pipe "samr" (pnum 7189)
[2009/01/13 16:01:53,  3] rpc_server/srv_pipe_hnd.c:free_pipe_context(519)
  free_pipe_context: destroying talloc pool of size 0
[2009/01/13 16:01:53,  3] rpc_server/srv_pipe.c:api_rpcTNP(2304)
  api_rpcTNP: rpc command: SAMR_QUERYUSERINFO
[2009/01/13 16:01:53,  2] rpc_server/srv_samr_nt.c:access_check_samr_function(246)
  _samr_QueryUserInfo: ACCESS DENIED (granted: 00000d04f4;  required: 0000000200)
[2009/01/13 16:01:53,  3] rpc_server/srv_pipe_hnd.c:free_pipe_context(519)
  free_pipe_context: destroying talloc pool of size 0


Is this related to the usermgr.exe bug that I saw Jeremy comment on in another thread? Sorry for the late report, I'm a bit behind in my testing. :-)


Cheers,
Bill



More information about the samba-technical mailing list