[Samba] samba ldap domain join

lenny at edpausa.com lenny at edpausa.com
Tue May 9 15:19:02 GMT 2006


Still can't figure this one out.

I get

Error: Insufficient 'write' privilege to the 'uidNumber' attribute of
entry 'sambadomainname=ldapauth,dc=mydomain,dc=com'.[2006/05/09 10:29:16,
0] rpc_server/srv_samr_nt.c:(2415)
  _samr_create_user: Running the command
`/usr/local/samba/bin/smbldap-useradd -n -g machines -c Machine -d
/dev/null -s /bin/false computer$' gave 1

when trying to join the domain from WinXP workstation.

but if I run this manually
 /usr/local/samba/bin/smbldap-useradd -w machine$

machine$ computer account gets created exactly where it's expected, under
ou=computers. Why isn't the default action creating machine
accounts with -w switch ? Do I misunderstand something ?


If simply browsing shares all windows auth. works fine via ldap.

thank you all.



>
> All LDAP authentciation works just fine,
> windows passwords can be set LDAP users. Windows workstations can connect
> to the machine's shares using windows passwords stored in LDAP>
>
> LDAP tools are configured with the right LDAP credentials and DN settings,
> for people and computers. The logs show authenticated connections with
> Directory Manager's credentials, but the computer accounts don't get
> created.
>
> Any advise ?
>
> This seems to be the last issue I need to get fixed.
>
> Error: Insufficient 'write' privilege to the 'uidNumber' attribute of
> entry 'sambadomainname=ldapauth,dc=mydomain,dc=com'.[2006/05/04 10:15:17,
> 0] rpc_server/srv_samr_nt.c:(2415)
>   _samr_create_user: Running the command
> `/usr/local/samba/bin/smbldap-useradd -n -g machines -c Machine -d
> /dev/null -s /bin/false computer$' gave 1
>
>
> --
> To unsubscribe from this list go to the following URL and read the
> instructions:  https://lists.samba.org/mailman/listinfo/samba
>
>




More information about the samba mailing list