user authentication issues with samba4-beta5 as a member server

Michael Wood esiotrot at gmail.com
Fri Aug 31 00:02:49 MDT 2012


Adding samba-technical back in.

On 30 August 2012 18:30, Jean Raby <jraby at inverse.ca> wrote:
> On 12-08-30 11:56 AM, Michael Wood wrote:
>>
>> Hi
>>
>> On 30 August 2012 16:58, Jean Raby<jraby at inverse.ca>  wrote:
>>>
>>> Hi all,
>>>
>>> I'm trying to setup samba4 (beta5) as a member server in a 2003 domain
>>> and I'm struggling to get the user authentication to work.
>>>
>>> I ran the provision script with '--server-role=member' and then joined
>>> the domain using 'samba-tool domain join domainname MEMBER'.
>> [...]
>>
>> Someone will correct me if I'm wrong, but as the release notes say:
>>
>> - Domain member support in the 'samba' binary is in it's infancy, and
>>    is not comparable to the support found in winbindd.  As such, do not
>>    use the 'samba' binary (provided for the AD server) on a member
>>    server.
>>
>> i.e. rather do not provision anything and do not run the "samba"
>> binary or "samba-tool domain join"
>>
>> Just use the "net" command (and smbd, nmbd) as if it was Samba 3.
>> (i.e. net ads join ... or something like that.)  You'll likely also
>> need winbindd, although there's a discussion about potential issues
>> with that going on on this list at the moment.
>>
> I forgot to say, I think I need 'samba' (as opposed to smbd) since this is
> for an openchange setup and it requires dcerpc_mapiproxy, which is not
> available with smbd.

Well, in that case I can't help you :)

-- 
Michael Wood <esiotrot at gmail.com>


More information about the samba-technical mailing list