[Samba] Active directory and trusted domains

Vincent.Badier at alcatel.fr Vincent.Badier at alcatel.fr
Tue Jul 20 15:46:56 GMT 2004


I setup Samba a while ago in an active directory environment.
There are many trusted domains (with a very lot lot of users and computer
account), but i (my users) used only one, and all worked just fine

Actually, some from others domains needs to connect to my shares. And even
if i do not setupe any users, they cannot.
So here are some few questions :


I've this in my winbindd log file :

[2004/07/20 16:29:48, 1]
nsswitch/winbindd_util.c:winbindd_lookup_name_by_sid(429)
  Can't find domain from sid
[2004/07/20 16:33:21, 1] nsswitch/winbindd_sid.c:winbindd_gid_to_sid(437)
  Could not convert gid 65534 to sid
[2004/07/20 16:40:55, 1]
nsswitch/winbindd_util.c:winbindd_lookup_name_by_sid(429)
  Can't find domain from sid
[2004/07/20 16:40:55, 1] libsmb/clikrb5.c:ads_krb5_mk_req(276)
  krb5_get_credentials failed for mydomctrl$@MYAD.GLOBALAD.MYCOMPANY.COM
(KDC can't fulfill requested option)

- Is 65534 a limitation?
- credentials seems to fail, however MYAD is the only domain where there is
no problems for accessing shares.
- Is there any limitation in the idmap uid  and idmap gid?

A few minutes before, in the log, i've line that said others domains are
correctly added.

Regard's
Vincent




More information about the samba mailing list