[Samba] RE: Failed to join win2000 domain in 3.0.25b

=?big5?B?TGF0cmVsbCBXYW5nIKT9xG269Q==?= Latrell.Wang at zyxel.com.tw
Tue Aug 21 09:13:21 GMT 2007


Hi all:

=20

I found that if I use =A1=A7net rpc join=A1=A8 instead of =A1=A7net ads =
join=A1=A8 to join a win2000 ad domain, it will succeed in the same =
setting.

I don=A1=A6t know why this can work. Could somebody explain it? Are =
there any changes for joining win2000 ad domain?

=20

Thanks,

Latrell.

________________________________

From: Latrell Wang =A4=FD=C4m=BA=F5=20
Sent: Thursday, August 02, 2007 4:27 PM
To: samba at lists.samba.org
Subject: RE: Failed to join win2000 domain in 3.0.25b

=20

I wonder if my kerberos version could cause problems. My version is =
1.6.2. Please give me some help.

=20

Thanks,

Latrell.

=20

________________________________

Hi all:

=20

I=A1=A6m trying to join a win2000 ad domain but failed. I can see my =
samba server in computer list of domain controller, but the icon of the =
samba server is disabled. I also got error message from my samba server:

=20

Failed to set password for machine account (NT_STATUS_WRONG_PASSWORD) =
Failed to join domain: Wrong Password

=20

The password should be correct because I can get krb ticket =
successfully. My samba version is 3.0.25b. Joining win2003 domain is =
successfully without a problem. I wonder why it makes difference between =
2000 and 2003. Previously I used version 3.0.23d, and both 2000 and 2003 =
can be joined domain successfully. My global session is as the =
following:

=20

[global]

        dos charset =3D UTF8

        display charset =3D UTF8

        unix charset =3D UTF8

        server string =3D %h

        netbios name =3D smbserver

        write ok =3D yes

        guest account =3D smbguest

        map to guest =3D bad user

        encrypt passwords =3D yes

        map archive =3D no

        max log size=3D 50

        dfree command=3D /usr/local/bin/dfree

        client use spnego =3D yes

        auth methods =3D guest sam_ignoredomain winbind:ntdomain

        host msdfs =3D yes

        winbind use default domain =3D yes

        workgroup =3D PASW

        security =3D ads

        password server =3D PASW.COM *

        realm =3D PASW.COM

        winbind enum users =3D yes

        winbind enum groups =3D yes

        idmap uid =3D 100000-500000

        idmap gid =3D 100000-500000

        winbind cache time =3D 15

        template homedir =3D /tmp/users/home/%D/%U

        template shell =3D /bin/bash

=20

Please help me out.

Thanks in advance,

Latrell

=20



More information about the samba mailing list