[Samba] Trusted domain want to add users in the trusting domain ?

L B bertignac at gmail.com
Mon Apr 24 12:31:55 GMT 2006


Hello,

 I am running a samba/ldap PDC on domainA with winbind. It works fine as a
domain controler.
Samba : 3.0.21c
OpenLDAP : 2.2.15

 I want to add domainB as a trusted domain (ie the users of domainB would
have access to the shares of domainA without another authentication).

 I configured this and net rpc give me this :

# net rpc trustdom list
Password:
Trusted domains list:

DomainB           S-1-5-21-575847380-1121575906-1599857423

Trusting domains list:

DomainB           S-1-5-21-575847380-1121575906-1599857423


 When "john" authenticates on domainB, he tries to mount a share of a server
of domainA. And when it does this, I see these logs on the PDC of domainA :

Apr 24 14:04:19 SambaPDC smbd[14805]: [2006/04/24 14:04:19, 0]
auth/auth_util.c:smb_create_user(49)
Apr 24 14:04:19 SambaPDC smbd[14805]:   smb_create_user: Running the command
`/opt/IDEALX/sbin/smbldap-useradd -m "john"' gave 126
Apr 24 14:04:19 SambaPDC smbd[14805]: [2006/04/24 14:04:19, 0]
auth/auth_util.c:smb_create_user(49)
Apr 24 14:04:19 SambaPDC smbd[14805]:   smb_create_user: Running the command
`/opt/IDEALX/sbin/smbldap-useradd -m "john"' gave 126
Apr 24 14:04:19 SambaPDC smbd[14805]: [2006/04/24 14:04:19, 0]
auth/auth_util.c:smb_create_user(49)
Apr 24 14:04:19 SambaPDC smbd[14805]:   smb_create_user: Running the command
`/opt/IDEALX/sbin/smbldap-useradd -m "john"' gave 126
Apr 24 14:04:19 SambaPDC smbd[14805]: [2006/04/24 14:04:19, 0]
auth/auth_util.c:make_server_info_info3(1297)
Apr 24 14:04:19 SambaPDC smbd[14805]:   make_server_info_info3: pdb_init_sam
failed!


 I don't understand why samba tries to add users of domainB in my domainA
LDAP. Someone knows what is wrong ?

In fact only domainB need ressources of domainA, so domainB may be useless
in domainA trusting list. Do I still need winbind in this case ?


Thank you for any hints
--
LB


--
L.B.


More information about the samba mailing list