Samba4 OpenLDAP backend

nitin bhadauria bhadauria.nitin at gmail.com
Thu Apr 29 02:29:13 MDT 2010


Hello Andrew,

By now i realised that this problem is because of SASL ..

slapd[868]: auxpropfunc error invalid parameter supplied
slapd[868]: rdnval: repaired=0

I have following package installed...

cyrus-sasl-plain-2.1.22-5.el5_4.3
cyrus-sasl-2.1.22-5.el5_4.3
cyrus-sasl-md5-2.1.22-5.el5_4.3
cyrus-sasl-ntlm-2.1.22-5.el5_4.3
cyrus-sasl-lib-2.1.22-5.el5_4.3
cyrus-sasl-ldap-2.1.22-5.el5_4.3
cyrus-sasl-gssapi-2.1.22-5.el5_4.3
cyrus-sasl-devel-2.1.22-5.el5_4.3



On Wed, Apr 28, 2010 at 5:43 PM, nitin bhadauria
<bhadauria.nitin at gmail.com>wrote:

> But what should i do to populate ldap database..
>
> # net newuser test
> New Password:
> pdc_fsmo_init: no domain object present: (skip loading of domain details)
>
> naming_fsmo_init: no partitions dn present: (skip loading of naming
> contexts details)
>
> schema_load_init: no schema head present: (skip schema loading)
>
>
> module schema_load initialization failed
> module kludge_acl initialization failed
> module operational initialization failed
> module acl initialization failed
> module descriptor initialization failed
> module objectclass initialization failed
> module asq initialization failed
>
> module server_sort initialization failed
> module paged_results initialization failed
> module lazy_commit initialization failed
> module rootdse initialization failed
>
> module samba_dsdb initialization failed
> Unable to load modules for /usr/local/samba/private/sam.ldb: (null)
> Failed to create user "test" : None
>
>
> # /usr/local/samba/bin/ldbsearch -H /usr/local/samba/private/sam.ldb
>
> pdc_fsmo_init: no domain object present: (skip loading of domain details)
>
> naming_fsmo_init: no partitions dn present: (skip loading of naming
> contexts details)
>
> schema_load_init: no schema head present: (skip schema loading)
>
>
> module schema_load initialization failed
> module kludge_acl initialization failed
> module operational initialization failed
> module acl initialization failed
> module descriptor initialization failed
> module objectclass initialization failed
> module asq initialization failed
>
> module server_sort initialization failed
> module paged_results initialization failed
> module lazy_commit initialization failed
> module rootdse initialization failed
>
> module samba_dsdb initialization failed
> Unable to load modules for /usr/local/samba/private/sam.ldb: (null)
> Failed to connect to /usr/local/samba/private/sam.ldb - (null)
>
>
>
>
>
> On Wed, Apr 28, 2010 at 5:27 PM, Andrew Bartlett <abartlet at samba.org>wrote:
>
>> On Wed, 2010-04-28 at 16:48 +0530, nitin bhadauria wrote:
>> > Hello Andrew,
>> >
>> > After install cyrus-sasl* from yum,  provision script worked with some
>> > errors.
>> >
>> > Failed to bind - LDAP client internal error:
>> > NT_STATUS_UNEXPECTED_NETWORK_ERROR
>> > Failed to connect to
>> > 'ldapi://%2Fusr%2Flocal%2Fsamba%2Fprivate%2Fldap%2Fldapi'
>> > Setting up share.ldb
>> > Setting up secrets.ldb
>> > Setting up the registry
>> > Setting up the privileges database
>> > Setting up idmap db
>> > Setting up SAM db
>> > Setting up sam.ldb partitions and settings
>> > Setting up sam.ldb rootDSE
>> > Pre-loading the Samba 4 and AD schema
>> > Adding DomainDN: DC=samba,DC=domain,DC=com
>> > pdc_fsmo_init: no domain object present: (skip loading of domain
>> details)
>> >
>> > Adding configuration container
>> > naming_fsmo_init: no partitions dn present: (skip loading of naming
>> contexts
>> > details)
>> >
>> > Setting up sam.ldb schema
>> > Reopening sam.ldb with new schema
>> > naming_fsmo_init: no partitions dn present: (skip loading of naming
>> contexts
>> > details)
>> > naming_fsmo_init: no partitions dn present: (skip loading of naming
>> contexts
>> > details)
>> >
>> >
>> > And it didn't populated any database in ldap....
>>
>> I think it did.
>>
>> > # samba -i -M single -d3
>> >
>> > /usr/local/samba/sbin/samba_spnupdate: Failed to bind - LDAP error 49
>> > LDAP_INVALID_CREDENTIALS -  <SASL(-13): user not found: no secret in
>> > database> <>
>>
>> This is (mostly) harmless.  I need to fix it, but it just means it won't
>> update it's DNS entries until I fix this.
>>
>> Andrew Bartlett
>>
>> --
>> Andrew Bartlett
>> http://samba.org/~abartlet/ <http://samba.org/%7Eabartlet/>
>> Authentication Developer, Samba Team           http://samba.org
>> Samba Developer, Cisco Inc.
>>
>
>


More information about the samba-technical mailing list