Able to join macbook to Samba4, but not Windows XP

Arthur Ramsey me at aramsey.no-ip.org
Sat Jul 10 13:29:17 MDT 2010


Hello,

I was able to join my macbook to Samba4 AD using the Directory Utility and
can successfully authenticate as an AD user, but I can¹t join my Windows XP
Pro box to the domain.  I have attached a wireshark pcap dump of the attempt
to join using filter ³not tcp port 3389 and not arp and not udp port 123 and
not broadcast and not multicast².  From what I could tell I see a successful
SRV lookup and a at least partially successful LDAP lookup.  Any assistance
would be much appreciated I will try to stay in the #samba-technical channel
with handle Œaramsey¹ for the rest of the day if you wish to contact me in
real-time.

Best regards,
Arthur

P.S.  Sorry for the duplicate accidently sent message early from wrong
e-mail address.  Also, this is purely education, but exciting!

root at aramsey-ubuntu:~# uname -a
Linux aramsey-ubuntu 2.6.32-22-generic #36-Ubuntu SMP Thu Jun 3 22:02:19 UTC
2010 i686 GNU/Linux

root at aramsey-ubuntu:~# samba -V
Version 4.0.0alpha12-GIT-343e932

root at aramsey-ubuntu:~# smbclient -L localhost -U%

    Sharename       Type       Comment
    ---------       ----       -------
    netlogon        Disk
    sysvol          Disk
    profiles        Disk
    IPC$            IPC        IPC Service (Samba 4.0.0alpha12-GIT-343e932)
    ADMIN$          Disk       DISK Service (Samba 4.0.0alpha12-GIT-343e932)
REWRITE: list servers not implemented

smbclient //localhost/netlogon -Uadministrator%**HIDDEN**
smb: \> 

root at aramsey-ubuntu:~# kinit administrator at AACONSULTING.LOC
Password for administrator at AACONSULTING.LOC:
Warning: Your password will expire in 41 days on Sat Aug 21 02:15:25 2010

root at aramsey-ubuntu:~# cat /usr/local/samba/etc/smb.conf
[globals]
    netbios name    = ARAMSEY-UBUNTU
    workgroup    = AACONSULTING
    realm        = AACONSULTING.LOC
    server role     = domain controller
    
[netlogon]
    path = /usr/local/samba/var/locks/sysvol/aaconsulting.loc/scripts
    read only = no

[sysvol]
    path = /usr/local/samba/var/locks/sysvol
    read only = no

[profiles]
       path = /usr/local/samba/var/profiles
       read only = no

root at aramsey-ubuntu:~# host -t SRV _ldap._tcp.aaconsulting.loc
_ldap._tcp.aaconsulting.loc has SRV record 0 100 389
aramsey-ubuntu.aaconsulting.loc.

root at aramsey-ubuntu:~# host -t SRV _kerberos._udp.aaconsulting.loc
_kerberos._udp.aaconsulting.loc has SRV record 0 100 88
aramsey-ubuntu.aaconsulting.loc.

root at aramsey-ubuntu:~# host -t A aramsey-ubuntu.aaconsulting.loc
aramsey-ubuntu.aaconsulting.loc has address 192.168.1.200

macbook:~ aramsey$ login
login: Administrator
Password:
No home directory /Users/administrator!
Logging in with home = "/".
Last login: Sat Jul 10 04:55:49 on ttys000
macbook:/ administrator$ 

-------------- next part --------------
A non-text attachment was scrubbed...
Name: ad.dump.pcap
Type: application/octet-stream
Size: 1808 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20100710/3f3169f1/attachment.obj>


More information about the samba-technical mailing list