[Samba] problem upgrading 3.0.23->3.2.x
Linda W
samba at tlinx.org
Thu Jul 31 14:09:10 GMT 2008
John H Terpstra wrote:
> On Thursday 31 July 2008 01:21:49 Linda W wrote:
>
>> So what happened to groups being in "/etc/samba/smbgroup"?
>
> That has never existed. In Samba 2.x series UNIX groups would automatically
> map to Windows groups. In Samba 3.x it is necessary to explicitly map groups
> using the "net groupmap" utility.
---
Hmmmm...yet it seemed to work in 3.0.23? (not the file, but groups unix groups)
> Have you examined the log files to see why access to shares is failing?
---
I looked, I did not comprehend...
Not sure where to start...Here it seems it is attempting to connect me to service
'Pictures'....but then it fails...
[2008/07/31 06:40:36, 3] smbd/sec_ctx.c:set_sec_ctx(324)
setting sec ctx (5013, 10) - sec_ctx_stack_ndx = 0
[2008/07/31 06:40:36, 1] smbd/service.c:make_connection_snum(1190)
athena (192.168.3.11) connect to service Pictures initially as user law (uid=5
013, gid=10) (pid 617)
[2008/07/31 06:40:36, 3] smbd/sec_ctx.c:set_sec_ctx(324)
setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
[2008/07/31 06:40:36, 3] smbd/reply.c:reply_tcon_and_X(727)
tconX service=PICTURES
[2008/07/31 06:40:36, 3] smbd/process.c:process_smb(1549)
Transaction 14 of length 112 (0 toread)
[2008/07/31 06:40:36, 3] smbd/process.c:switch_message(1361)
switch message SMBtrans2 (pid 617) conn 0xb979d470
[2008/07/31 06:40:36, 3] smbd/sec_ctx.c:set_sec_ctx(324)
setting sec ctx (5013, 10) - sec_ctx_stack_ndx = 0
[2008/07/31 06:40:36, 3] smbd/trans2.c:call_trans2qfilepathinfo(3932)
call_trans2qfilepathinfo: TRANSACT2_QPATHINFO: level = 1004
[2008/07/31 06:40:36, 3] smbd/error.c:error_packet_set(61)
error packet at smbd/trans2.c(3964) cmd=50 (SMBtrans2)
NT_STATUS_OBJECT_PATH_NOT_FOUND
[2008/07/31 06:40:36, 3] smbd/process.c:process_smb(1549)
Transaction 15 of length 108 (0 toread)
[2008/07/31 06:40:36, 3] smbd/process.c:switch_message(1361)
switch message SMBtrans2 (pid 617) conn 0xb979cc90
[2008/07/31 06:40:36, 3] smbd/sec_ctx.c:set_sec_ctx(324)
setting sec ctx (998, 998) - sec_ctx_stack_ndx = 0
[2008/07/31 06:40:36, 3] smbd/msdfs.c:get_referred_path(789)
get_referred_path: |Pictures| in dfs path \ISHTAR\Pictures is not a dfs root.
[2008/07/31 06:40:36, 3] smbd/error.c:error_packet_set(61)
error packet at smbd/trans2.c(7201) cmd=50 (SMBtrans2) NT_STATUS_NOT_FOUND
---
failure is "pictures not a dfs root"....saw that message several times with other
shares as well...
....more access checks...a bunch....
[2008/07/31 06:40:36, 3] smbd/process.c:switch_message(1361)
switch message SMBtconX (pid 617) conn 0x0
[2008/07/31 06:40:36, 3] smbd/sec_ctx.c:set_sec_ctx(324)
setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
[2008/07/31 06:40:36, 3] lib/access.c:only_ipaddrs_in_list(362)
only_ipaddrs_in_list: list has non-ip address (127.1)
[2008/07/31 06:40:36, 3] lib/access.c:check_access(396)
check_access: hostnames in host allow/deny list.
[2008/07/31 06:40:36, 2] lib/access.c:check_access(406)
Allowed connection from 192.168.3.11 (192.168.3.11)
[2008/07/31 06:40:36, 3] smbd/service.c:make_connection_snum(936)
Connect path is '/Share/Pictures' for service [Pictures]
[2008/07/31 06:40:36, 3] lib/util_seaccess.c:se_access_check(249)
[2008/07/31 06:40:36, 3] lib/util_seaccess.c:se_access_check(252)
se_access_check: user sid is S-1-5-21-3863964499-339350228-1432906297-11026
se_access_check: also S-1-5-21-3863964499-339350228-1432906297-1021
se_access_check: also S-1-1-0
se_access_check: also S-1-5-2
se_access_check: also S-1-5-11
se_access_check: also S-1-22-2-0
se_access_check: also S-1-22-2-5
se_access_check: also S-1-22-2-6
se_access_check: also S-1-22-2-12
se_access_check: also S-1-22-2-14
se_access_check: also S-1-22-2-16
se_access_check: also S-1-22-2-17
se_access_check: also S-1-22-2-26
se_access_check: also S-1-22-2-33
se_access_check: also S-1-5-21-3863964499-339350228-1432906297-1085
se_access_check: also S-1-22-2-44
se_access_check: also S-1-22-2-76
se_access_check: also S-1-22-2-100
se_access_check: also S-1-22-2-102
se_access_check: also S-1-22-2-130
se_access_check: also S-1-22-2-131
se_access_check: also S-1-5-21-3863964499-339350228-1432906297-1401
se_access_check: also S-1-22-2-201
se_access_check: also S-1-22-2-202
se_access_check: also S-1-22-2-203
se_access_check: also S-1-22-2-211
se_access_check: also S-1-22-2-212
se_access_check: also S-1-22-2-213
se_access_check: also S-1-22-2-10000
se_access_check: also S-1-22-2-50001
se_access_check: also S-1-5-21-3863964499-339350228-1432906297-101005
se_access_check: also S-1-22-2-50003
se_access_check: also S-1-22-2-10
se_access_check: also S-1-22-2-42
se_access_check: also S-1-22-2-200
se_access_check: also S-1-22-2-50002
----
^^Quite a few access checks...^^
[2008/07/31 06:40:36, 3] smbd/vfs.c:vfs_init_default(96)
Initialising default vfs hooks
[2008/07/31 06:40:36, 3] smbd/vfs.c:vfs_init_custom(130)
Initialising custom vfs hooks from [/[Default VFS]/]
[2008/07/31 06:40:36, 3] lib/util_sid.c:string_to_sid(228)
string_to_sid: Sid trusted_local_net_users does not start with 'S-'.
----
Thought this ^^ was odd..my groupname it expects to have S- in front
of it?
Not sure what most of this means....I used to be able to parse
parts of a log like this, but alot of different terms/formats...looks pretty
foreign now.
More information about the samba
mailing list