[Samba] ActiveDirectory, DNS and Samba Server on different subnets

Adrian Sender asender at tinistuffhosting.com
Sat Jan 27 15:14:36 GMT 2007


Security = Domain is for NT4 domain member, you want security = ADS.

Have you read the docs? samba 3 by example chapter 7.


Adrian Sender

----- Original Message ----- 
From: "Ana Giordano" <amg_samba at yahoo.com>
To: <samba at lists.samba.org>
Cc: "Richardson, Brian" <brichardson at firstam.com>
Sent: Saturday, January 27, 2007 12:29 PM
Subject: [Samba] ActiveDirectory, DNS and Samba Server on different subnets


I am trying to configure Samba in Domain security mode. I am getting an 
error message when running "net rpc join" (see below).
My Active Directory and Samba Sever are in different subnets. Do I required 
anything else in the smb.conf to address it? I tried adding the wins server 
option but it did not address the issue.
Also I am not sure if my Active Directory is configured to allow NT 
emulation. Would that explain the NT_STATUS_NOT_SUPPORT error message?

Active Directory (Win 2003 Server + SP2):
DNS (Windows Box):                           
Samba Server (Sun Solaris 9):           
Samba #:                3.0.23

./net join -S faidhc01sdcg05 -Uadmin%pwd
[2007/01/25 09:28:40, 0] utils/net_rpc_join.c:net_rpc_join_newstyle(341)
Error in domain join verification (credential setup failed): 
Unable to join domain FAIDHC01SDCG05.

# Global parameters
workgroup = FAFIDDOM
netbios name = FAEGSNA01SCCU02
server string =
log file = /var/log/samba/log.%m
max log size = 50
username map = /opt/samba/lib/username.map
security = Domain
password server = faidhc01sdcg05
encrypt passwords = Yes
create mask = 0775
directory mask = 0775
kernel oplocks = No
oplocks = No
level2 oplocks = No
case sensitive = No
preserve case = Yes

guest ok = no
read only = no

comment = All Printers
path = /var/spool/samba
printable = Yes
browseable = No

comment = ETG VOBS
path = /apps/vobstore
guest ok = yes
read only = no

8:00? 8:25? 8:40? Find a flick in no time
with the Yahoo! Search movie showtime shortcut.

This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.

More information about the samba mailing list