jra at samba.org
Mon Aug 8 02:57:09 MDT 2011
On Sun, Aug 07, 2011 at 02:54:27PM -0700, Herb Lewis wrote:
> I noticed that all access checks seem to be going through
> se_access_check but access is being denied to users that
> are members of Domain Admins if there is no ACL on the object.
> I believe that Domain Admins are allowed access for read and
> write DACL and take ownership at the very least.
I'm on vacation right now, but I don't think Domain Admins
is a special group in the way that "BUILTIN\System" (a.k.a. "root"
> Another problem I'm seeing is that XP clients are getting
> login failures because of bad password, but smbclient and
> W2k8 clients can login fine. wbinfo -a gets the following:
> plaintext password authentication succeeded
> challenge/response password authentication failed
> error code was NT_STATUS_WRONG_PASSWORD (0xc000006a)
> error message was: Wrong Password
> Could not authenticate user native2k8\testuser1 with challenge/response
> Are these known problems?
Not that I know of. Can you log a bug on this,
but it isn't a showstopper for 3.6.0 (IMHO).
More information about the samba-technical