[Samba] Re: Problems with GID Samba 3.0.0 Beta2 Debian Testing
entwicklung at heubach-edv.de
entwicklung at heubach-edv.de
Fri Aug 29 17:32:59 GMT 2003
Hello again,
I don't know if this is an error of samba or a misconfiguration:
I had mapped the groups "Users" and "Power Users" to the group domainusers.
After deleting these two mappings, samba is working fine again.
Manfred
entwicklung at heubach-edv.de writes:
> Hello,
>
> I've got a somehow weird problem with the primary GID of samba users.
> passdb backend is tdbsam.
>
> when I connect to the samba server my gid is set to 2147483404 instead of
> 1002 (domainusers). The GID 1002 ist configured as my primary group in
> /etc/passwd. This also happens with other usernames.
>
> After deleting group_mapping.tdb this worked for some hours but the error
> came back.
>
> Can someone help me with this?
>
> Regards
> Manfred
>
> here's the samba groupmapping and log.heu3:
>
>
> System Operators (S-1-5-32-549) -> -1
> ma (S-1-5-21-2855476704-3843309178-487093961-21006) -> ma
> Replicators (S-1-5-32-552) -> -1
> Guests (S-1-5-32-546) -> -1
> fma (S-1-5-21-2855476704-3843309178-487093961-21007) -> fma
> Power Users (S-1-5-32-547) -> domainusers
> prakt (S-1-5-21-2855476704-3843309178-487093961-21008) -> prakt
> Domain Users (S-1-5-21-2855476704-3843309178-487093961-513) -> domainusers
> Print Operators (S-1-5-32-550) -> -1
> Administrators (S-1-5-32-544) -> domainadmins
> Domain Admins (S-1-5-21-2855476704-3843309178-487093961-512) ->
> domainadmins
> Domain Guests (S-1-5-21-2855476704-3843309178-487093961-514) -> -1
> ent (S-1-5-21-2855476704-3843309178-487093961-21009) -> ent
> Account Operators (S-1-5-32-548) -> -1
> gl (S-1-5-21-2855476704-3843309178-487093961-21003) -> gl
> tech (S-1-5-21-2855476704-3843309178-487093961-21010) -> tech
> bh (S-1-5-21-2855476704-3843309178-487093961-21004) -> bh
> Backup Operators (S-1-5-32-551) -> -1
> Users (S-1-5-32-545) -> domainusers
> sec (S-1-5-21-2855476704-3843309178-487093961-21011) -> sec
> ver (S-1-5-21-2855476704-3843309178-487093961-21005) -> ver
>
>
>
>
> [2003/08/29 18:23:01, 3] smbd/process.c:process_smb(882)
> Transaction 1 of length 137
> [2003/08/29 18:23:01, 3] smbd/process.c:switch_message(676)
> switch message SMBnegprot (pid 18741)
> [2003/08/29 18:23:01, 3] smbd/sec_ctx.c:set_sec_ctx(288)
> setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
> [2003/08/29 18:23:01, 3] smbd/negprot.c:reply_negprot(439)
> Requested protocol [PC NETWORK PROGRAM 1.0]
> [2003/08/29 18:23:01, 3] smbd/negprot.c:reply_negprot(439)
> Requested protocol [LANMAN1.0]
> [2003/08/29 18:23:01, 3] smbd/negprot.c:reply_negprot(439)
> Requested protocol [Windows for Workgroups 3.1a]
> [2003/08/29 18:23:01, 3] smbd/negprot.c:reply_negprot(439)
> Requested protocol [LM1.2X002]
> [2003/08/29 18:23:01, 3] smbd/negprot.c:reply_negprot(439)
> Requested protocol [LANMAN2.1]
> [2003/08/29 18:23:01, 3] smbd/negprot.c:reply_negprot(439)
> Requested protocol [NT LM 0.12]
> [2003/08/29 18:23:01, 3] smbd/negprot.c:reply_nt1(313)
> using SPNEGO
> [2003/08/29 18:23:01, 3] smbd/negprot.c:reply_negprot(516)
> Selected protocol NT LM 0.12
> [2003/08/29 18:23:01, 3] smbd/process.c:process_smb(882)
> Transaction 2 of length 212
> [2003/08/29 18:23:01, 3] smbd/process.c:switch_message(676)
> switch message SMBsesssetupX (pid 18741)
> [2003/08/29 18:23:01, 3] smbd/sec_ctx.c:set_sec_ctx(288)
> setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
> [2003/08/29 18:23:01, 3] smbd/sesssetup.c:reply_sesssetup_and_X(547)
> wct=12 flg2=0xc807
> [2003/08/29 18:23:01, 2] smbd/sesssetup.c:setup_new_vc_session(504)
> setup_new_vc_session: New VC == 0, if NT4.x compatible we would close all
> old
> resources.
> [2003/08/29 18:23:01, 3]
> smbd/sesssetup.c:reply_sesssetup_and_X_spnego(445)
> Doing spnego session setup
> [2003/08/29 18:23:01, 3]
> smbd/sesssetup.c:reply_sesssetup_and_X_spnego(469)
> NativeOS=[Windows 2000 2195] NativeLanMan=[Windows 2000 5.0]
> [2003/08/29 18:23:01, 3] smbd/sesssetup.c:reply_spnego_negotiate(350)
> Got OID 1 3 6 1 4 1 311 2 2 10
> [2003/08/29 18:23:01, 3] smbd/sesssetup.c:reply_spnego_negotiate(357)
> Got secblob of size 43
> [2003/08/29 18:23:01, 3] libsmb/ntlmssp.c:debug_ntlmssp_flags(33)
> Got NTLMSSP neg_flags=0xe000b297
> [2003/08/29 18:23:01, 3] smbd/process.c:process_smb(882)
> Transaction 3 of length 290
> [2003/08/29 18:23:01, 3] smbd/process.c:switch_message(676)
> switch message SMBsesssetupX (pid 18741)
> [2003/08/29 18:23:01, 3] smbd/sec_ctx.c:set_sec_ctx(288)
> setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
> [2003/08/29 18:23:01, 3] smbd/sesssetup.c:reply_sesssetup_and_X(547)
> wct=12 flg2=0xc807
> [2003/08/29 18:23:01, 2] smbd/sesssetup.c:setup_new_vc_session(504)
> setup_new_vc_session: New VC == 0, if NT4.x compatible we would close all
> old
> resources.
> [2003/08/29 18:23:01, 3]
> smbd/sesssetup.c:reply_sesssetup_and_X_spnego(445)
> Doing spnego session setup
> [2003/08/29 18:23:01, 3]
> smbd/sesssetup.c:reply_sesssetup_and_X_spnego(469)
> NativeOS=[Windows 2000 2195] NativeLanMan=[Windows 2000 5.0]
> [2003/08/29 18:23:01, 3] libsmb/ntlmssp.c:ntlmssp_server_auth(284)
> Got user=[heubach] domain=[HEU3] workstation=[HEU3] len1=24 len2=24
> [2003/08/29 18:23:01, 3] smbd/sec_ctx.c:push_sec_ctx(256)
> push_sec_ctx(0, 0) : sec_ctx_stack_ndx = 1
> [2003/08/29 18:23:01, 3] smbd/uid.c:push_conn_ctx(287)
> push_conn_ctx(0) : conn_ctx_stack_ndx = 0
> [2003/08/29 18:23:01, 3] smbd/sec_ctx.c:set_sec_ctx(288)
> setting sec ctx (0, 0) - sec_ctx_stack_ndx = 1
> [2003/08/29 18:23:01, 3] smbd/sec_ctx.c:pop_sec_ctx(386)
> pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0
> [2003/08/29 18:23:01, 3] auth/auth.c:check_ntlm_password(216)
> check_ntlm_password: Checking password for unmapped user
> [HEU3]\[heubach]@[HE
> U3] with the new password interface
> [2003/08/29 18:23:01, 3] auth/auth.c:check_ntlm_password(219)
> check_ntlm_password: mapped user is: [HEUBACH]\[heubach]@[HEU3]
> [2003/08/29 18:23:01, 3] smbd/sec_ctx.c:push_sec_ctx(256)
> push_sec_ctx(0, 0) : sec_ctx_stack_ndx = 1
> [2003/08/29 18:23:01, 3] smbd/uid.c:push_conn_ctx(287)
> push_conn_ctx(0) : conn_ctx_stack_ndx = 0
> [2003/08/29 18:23:01, 3] smbd/sec_ctx.c:set_sec_ctx(288)
> setting sec ctx (0, 0) - sec_ctx_stack_ndx = 1
> [2003/08/29 18:23:01, 3] smbd/sec_ctx.c:pop_sec_ctx(386)
> pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0
> [2003/08/29 18:23:01, 3] auth/auth.c:check_ntlm_password(265)
> check_ntlm_password: sam authentication for user [heubach] succeeded
> [2003/08/29 18:23:01, 3] smbd/sec_ctx.c:push_sec_ctx(256)
> push_sec_ctx(0, 0) : sec_ctx_stack_ndx = 1
> [2003/08/29 18:23:01, 3] smbd/uid.c:push_conn_ctx(287)
> push_conn_ctx(0) : conn_ctx_stack_ndx = 0
> [2003/08/29 18:23:01, 3] smbd/sec_ctx.c:set_sec_ctx(288)
> setting sec ctx (0, 0) - sec_ctx_stack_ndx = 1
> [2003/08/29 18:23:01, 3] smbd/sec_ctx.c:pop_sec_ctx(386)
> pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0
> [2003/08/29 18:23:01, 2] auth/auth.c:check_ntlm_password(306)
> check_ntlm_password: authentication for user [heubach] -> [heubach] ->
> [heuba
> ch] succeeded
> [2003/08/29 18:23:01, 3] smbd/password.c:register_vuid(201)
> User name: heubach Real name: Manfred Heubach,,,
> [2003/08/29 18:23:01, 3] smbd/password.c:register_vuid(219)
> UNIX uid 1000 is UNIX user heubach, and will be vuid 100
> [2003/08/29 18:23:01, 3] smbd/password.c:register_vuid(235)
> Adding/updating homes service for user 'heubach' using home directory:
> '/home/
> heubach'
> [2003/08/29 18:23:01, 3] smbd/service.c:make_connection_snum(536)
> Connect path is '/tmp' for service [IPC$]
> [2003/08/29 18:23:01, 3] lib/util_seaccess.c:se_access_check(267)
> [2003/08/29 18:23:01, 3] lib/util_seaccess.c:se_access_check(268)
> se_access_check: user sid is S-1-5-21-2855476704-3843309178-487093961-3000
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-513
> se_access_check: also S-1-1-0
> se_access_check: also S-1-5-2
> se_access_check: also S-1-5-11
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21003
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21004
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21005
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21006
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21007
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21008
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21009
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21010
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21011
> [2003/08/29 18:23:01, 3] smbd/vfs.c:vfs_init_default(201)
> Initialising default vfs hooks
> [2003/08/29 18:23:01, 3] lib/util_seaccess.c:se_access_check(267)
> [2003/08/29 18:23:01, 3] lib/util_seaccess.c:se_access_check(268)
> se_access_check: user sid is S-1-5-21-2855476704-3843309178-487093961-3000
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-513
> se_access_check: also S-1-1-0
> se_access_check: also S-1-5-2
> se_access_check: also S-1-5-11
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21003
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21004
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21005
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21006
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21007
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21008
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21009
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21010
> se_access_check: also S-1-5-21-2855476704-3843309178-487093961-21011
> [2003/08/29 18:23:01, 3] smbd/sec_ctx.c:set_sec_ctx(288)
> setting sec ctx (1000, 2147483404) - sec_ctx_stack_ndx = 0
>
> --
> To unsubscribe from this list go to the following URL and read the
> instructions: http://lists.samba.org/mailman/listinfo/samba
More information about the samba
mailing list