[Samba] Samba 2.2 and Windows 2003 AD

Tom White tomwhite at comcast.net
Thu Apr 14 00:41:58 GMT 2005


Paul,

thanks for the reply , I am seeeing in the W2k3 Event log Security log
Failure Audits saying bad username or password and then locking the windows
account. I am not using kerberos , ldap or windbind only smbd and nmbd are
running , most shares are being access with the guest account nobody , I'm
including some configuration and status info ,

thanks for your help

# Global parameters
[global]
        workgroup = ESC
        netbios name = LIMS
        server string = Samba Server
        security = SERVER
        password server = ESC1
        username map = /etc/samba/smbusers
        log file = /var/log/samba/%m.log
        max log size = 50
        keepalive = 3000
        socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
        dns proxy = No
        remote announce = 10.0.0.255
        hosts allow = 10. 192.168.1. 192.168.2. 127.
        printing = lprng

[homes]
        comment = Home Directories
        valid users = %S
        read only = No
        create mask = 0664
        directory mask = 0775
        browseable = No

[printers]
        comment = All Printers
        path = /var/spool/samba
        printable = Yes
        browseable = No

[tmp]
        comment = Temporary file space
        path = /tmp
        read only = No
        guest ok = Yes

[quant]
        comment = quant direcxtory
        path = /u01/app/oracle/acsprod/quant
        read only = No
        guest ok = Yes





smbstatus

Samba version 2.2.1a
Service      uid      gid      pid     machine
----------------------------------------------
s2home       nobody   nobody   25472   tomw2k2  (10.0.0.156) Wed Apr 13
15:38:36
 2005
web          nobody   nobody   30517   tomwhite2k (10.1.0.42) Tue Apr 12
16:00:2
3 2005
s2home       nobody   nobody   13452   joshh2k  (10.1.0.43) Wed Apr 13
12:49:05
2005
web          nobody   nobody   22486   johnh2k  (10.1.0.54) Wed Apr 13
09:04:37
2005
web          nobody   nobody   13696   suem2k   (10.1.0.1) Wed Apr 13
15:11:31 2
005
web          nobody   nobody   23518   sampcust2k3 (10.4.0.3) Wed Apr 13
08:28:5
8 2005
root         nobody   nobody   13452   joshh2k  (10.1.0.43) Wed Apr 13
08:19:50
2005
eph          nobody   nobody   27214   svcomps  (10.3.0.96) Wed Apr 13
16:28:26
2005
quant        root     root     21590   d1pz5d1j (10.3.0.4) Wed Apr 13
13:35:42 2
005
s2home       nobody   nobody   30171   kents2k2 (10.2.0.82) Tue Apr 12
17:12:06
2005
quant        nobody   nobody   24275   toc123   (10.3.0.31) Wed Apr 13
09:50:37
2005
mas90        nobody   nobody   25472   tomw2k2  (10.0.0.156) Wed Apr 13
15:52:45
 2005
web          nobody   nobody    2713   mickig2k2 (10.1.0.49) Wed Apr 13
08:02:17
 2005
bna          nobody   nobody    3514   svcomph  (10.3.0.121) Wed Apr 13
14:13:33
 2005
IPC$         nobody   nobody   25472   tomw2k2  (10.0.0.156) Wed Apr 13
16:22:45
 2005
quant        nobody   nobody    2424   hach1win98 (10.3.0.27) Wed Apr 13
10:28:4
2 2005
eph          nobody   nobody   15229   svcompw  (10.3.0.113) Wed Apr 13
12:50:35
 2005
s2home       nobody   nobody   18989   nancyw2k (10.2.0.105) Tue Apr 12
16:26:25
 2005


Locked files:
Pid    DenyMode   R/W        Oplock           Name
--------------------------------------------------
13696  DENY_WRITE RDONLY     EXCLUSIVE+BATCH
/u01/app/oracle/acsprod/reports/we
b//GAIACIL/L193119.pdf   Wed Apr 13 16:52:32 2005
23518  DENY_WRITE RDONLY     EXCLUSIVE+BATCH
/u01/app/oracle/acsprod/reports/we
b//DICK03/COCL194385.pdf   Wed Apr 13 08:29:24 2005
10850  DENY_WRITE RDONLY     NONE             //dev/urandom   Wed Apr 13
18:43:4
2 2005
13696  DENY_WRITE RDONLY     EXCLUSIVE+BATCH
/u01/app/oracle/acsprod/reports/we
b//RULENGLCO/L192767.pdf   Wed Apr 13 16:42:14 2005
22486  DENY_WRITE RDONLY     EXCLUSIVE+BATCH
/u01/app/oracle/acsprod/reports/we
b//SYNENVWI/L193497.pdf   Wed Apr 13 17:46:33 2005
23518  DENY_WRITE RDONLY     NONE
/u01/app/oracle/acsprod/reports/we
b//RAYPROIL/COCL193726.pdf   Wed Apr 13 10:11:52 2005


----- Original Message ----- 
From: "Paul_Krash" <codesup at alonsystems.com>
To: "Tom White" <tomwhite at comcast.net>
Cc: <samba at lists.samba.org>
Sent: Saturday, April 09, 2005 1:37 PM
Subject: Re: [Samba] Samba 2.2 and Windows 2003 AD


> What errors (if any) show up in the syslog on the Linux Servers,
> and event logs on your upgraded W2K3 server?
>
> Are you using kerberos and ldap with winbind?
>
> Best,
>
> Paul Krash
>
> Tom White wrote:
> > Hello,
> >
> > I have upgraded  my NT4 domain to W2003 with Active Directory and I seem
to be having user/password problems now with several of my Redhat AS 2.1
Linux servers that are running samba 2.2 , file shares open sometimes and
then sometimes it ask the windows user fro a user/password that doesn't work
, three tries and the windows accounts gets locked .  Any help much
appreciated , this is a production system with 200+ users .  I see the new
version 3 and am considering upgrading , but need a quick fix
> >
> > TIA
> > Tom



More information about the samba mailing list