[Samba] Samba + Windows 2003 AD

Henrik Dige Semark hendigsem at hotmail.com
Fri Jan 9 18:19:09 GMT 2009


Hey :)

I have now added undervisning.local to my resolv.conf but it is not working anyways :) my new debuglevel

# net ads join -U Administrator --debuglevel=10
[2009/01/09 19:12:32,  5] lib/debug.c:debug_dump_status(407)
  INFO: Current debug levels:
    all: True/10
    tdb: False/0
    printdrivers: False/0
    lanman: False/0
    smb: False/0
    rpc_parse: False/0
    rpc_srv: False/0
    rpc_cli: False/0
    passdb: False/0
    sam: False/0
    auth: False/0
    winbind: False/0
    vfs: False/0
    idmap: False/0
    quota: False/0
    acls: False/0
    locking: False/0
    msdfs: False/0
    dmapi: False/0
    registry: False/0
[2009/01/09 19:12:32,  3] param/loadparm.c:lp_load_ex(8778)
  lp_load_ex: refreshing parameters
[2009/01/09 19:12:32,  3] param/loadparm.c:init_globals(4621)
  Initialising global parameters
[2009/01/09 19:12:32,  3] param/params.c:pm_process(569)
  params.c:pm_process() - Processing configuration file "/etc/samba/smb.conf"
[2009/01/09 19:12:32,  3] param/loadparm.c:do_section(7441)
  Processing section "[global]"
  doing parameter dos charset = ASCII
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(104)
  Attempting to register new charset UCS-2LE
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(112)
  Registered charset UCS-2LE
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(104)
  Attempting to register new charset UTF-16LE
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(112)
  Registered charset UTF-16LE
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(104)
  Attempting to register new charset UCS-2BE
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(112)
  Registered charset UCS-2BE
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(104)
  Attempting to register new charset UTF-16BE
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(112)
  Registered charset UTF-16BE
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(104)
  Attempting to register new charset UTF8
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(112)
  Registered charset UTF8
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(104)
  Attempting to register new charset UTF-8
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(112)
  Registered charset UTF-8
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(104)
  Attempting to register new charset ASCII
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(112)
  Registered charset ASCII
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(104)
  Attempting to register new charset 646
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(112)
  Registered charset 646
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(104)
  Attempting to register new charset ISO-8859-1
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(112)
  Registered charset ISO-8859-1
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(104)
  Attempting to register new charset UCS2-HEX
[2009/01/09 19:12:32,  5] lib/iconv.c:smb_register_charset(112)
  Registered charset UCS2-HEX
[2009/01/09 19:12:32,  5] lib/charcnv.c:charset_name(82)
  Substituting charset 'UTF-8' for LOCALE
[2009/01/09 19:12:32,  5] lib/charcnv.c:charset_name(82)
  Substituting charset 'UTF-8' for LOCALE
[2009/01/09 19:12:32,  5] lib/charcnv.c:charset_name(82)
  Substituting charset 'UTF-8' for LOCALE
[2009/01/09 19:12:32,  5] lib/charcnv.c:charset_name(82)
  Substituting charset 'UTF-8' for LOCALE
[2009/01/09 19:12:32,  5] lib/charcnv.c:charset_name(82)
  Substituting charset 'UTF-8' for LOCALE
[2009/01/09 19:12:32,  5] lib/charcnv.c:charset_name(82)
  Substituting charset 'UTF-8' for LOCALE
[2009/01/09 19:12:32,  5] lib/charcnv.c:charset_name(82)
  Substituting charset 'UTF-8' for LOCALE
[2009/01/09 19:12:32,  5] lib/charcnv.c:charset_name(82)
  Substituting charset 'UTF-8' for LOCALE
[2009/01/09 19:12:32,  5] lib/charcnv.c:charset_name(82)
  Substituting charset 'UTF-8' for LOCALE
[2009/01/09 19:12:32,  5] lib/charcnv.c:charset_name(82)
  Substituting charset 'UTF-8' for LOCALE
[2009/01/09 19:12:32,  5] lib/charcnv.c:charset_name(82)
  Substituting charset 'UTF-8' for LOCALE
[2009/01/09 19:12:32,  5] lib/charcnv.c:charset_name(82)
  Substituting charset 'UTF-8' for LOCALE
  doing parameter display charset = ASCII
  doing parameter workgroup = UNDERVISNING
  doing parameter realm = UNDERVISNING.LOCAL
  doing parameter server string = Debian 4.0 - Samba %v - BDC
  doing parameter security = ADS
  doing parameter password server = bgdc.birke-gym.dk
  doing parameter log level = 10
  doing parameter log file = /var/log/samba/UNDERVISNING
  doing parameter disable netbios = Yes
  doing parameter name resolve order = wins lmhosts hosts bcast
  doing parameter os level = 1000
  doing parameter preferred master = No
  doing parameter local master = No
  doing parameter domain master = No
  doing parameter wins server = bgdc.birke-gym.dk
  doing parameter idmap uid = 500-10000000
  doing parameter idmap gid = 500-10000000
  doing parameter template shell = /bin/bash
  doing parameter winbind separator = %
  doing parameter winbind enum users = Yes
  doing parameter winbind enum groups = Yes
  doing parameter winbind use default domain = Yes
  doing parameter inherit permissions = Yes
  doing parameter inherit owner = Yes
  doing parameter hide special files = Yes
  doing parameter hide unreadable = Yes
[2009/01/09 19:12:32,  4] param/loadparm.c:lp_load_ex(8822)
  pm_process() returned Yes
[2009/01/09 19:12:32,  7] param/loadparm.c:lp_servicenumber(9027)
  lp_servicenumber: couldn't find homes
[2009/01/09 19:12:32, 10] param/loadparm.c:set_server_role(8000)
  set_server_role: role = ROLE_DOMAIN_MEMBER
[2009/01/09 19:12:32,  5] lib/util.c:init_names(271)
  Netbios name list:-
  my_netbios_names[0]="HDS-MEDION"
[2009/01/09 19:12:32,  2] lib/interface.c:add_interface(334)
  added interface wlan0 ip=fe80::219:d2ff:fec1:90d3%wlan0 bcast=fe80::ffff:ffff:ffff:ffff%wlan0 netmask=ffff:ffff:ffff:ffff::
[2009/01/09 19:12:32,  2] lib/interface.c:add_interface(334)
  added interface tap0 ip=fe80::8c10:1cff:fe56:55d7%tap0 bcast=fe80::ffff:ffff:ffff:ffff%tap0 netmask=ffff:ffff:ffff:ffff::
[2009/01/09 19:12:32,  2] lib/interface.c:add_interface(334)
  added interface vnet0 ip=fe80::d86d:68ff:fe4b:187d%vnet0 bcast=fe80::ffff:ffff:ffff:ffff%vnet0 netmask=ffff:ffff:ffff:ffff::
[2009/01/09 19:12:32,  2] lib/interface.c:add_interface(334)
  added interface wlan0 ip=192.168.1.38 bcast=192.168.1.255 netmask=255.255.255.0
[2009/01/09 19:12:32,  2] lib/interface.c:add_interface(334)
  added interface vnet0 ip=192.168.122.1 bcast=192.168.122.255 netmask=255.255.255.0
[2009/01/09 19:12:32,  2] lib/interface.c:add_interface(334)
  added interface tap0 ip=10.8.0.3 bcast=10.8.0.255 netmask=255.255.255.0
Enter Administrator's password:
[2009/01/09 19:12:36,  1] libnet/libnet_join.c:libnet_Join(1770)
  libnet_Join:
      libnet_JoinCtx: struct libnet_JoinCtx
          in: struct libnet_JoinCtx
              dc_name                  : NULL
              machine_name             : 'HDS-MEDION'
              domain_name              : *
                  domain_name              : 'UNDERVISNING.LOCAL'
              account_ou               : NULL
              admin_account            : 'Administrator'
              admin_password           : *
              machine_password         : NULL
              join_flags               : 0x00000023 (35)
                     0: WKSSVC_JOIN_FLAGS_JOIN_WITH_NEW_NAME
                     0: WKSSVC_JOIN_FLAGS_JOIN_DC_ACCOUNT
                     0: WKSSVC_JOIN_FLAGS_DEFER_SPN
                     0: WKSSVC_JOIN_FLAGS_MACHINE_PWD_PASSED
                     0: WKSSVC_JOIN_FLAGS_JOIN_UNSECURE
                     1: WKSSVC_JOIN_FLAGS_DOMAIN_JOIN_IF_JOINED
                     0: WKSSVC_JOIN_FLAGS_WIN9X_UPGRADE
                     0: WKSSVC_JOIN_FLAGS_ACCOUNT_DELETE
                     1: WKSSVC_JOIN_FLAGS_ACCOUNT_CREATE
                     1: WKSSVC_JOIN_FLAGS_JOIN_TYPE
              os_version               : NULL
              os_name                  : NULL
              create_upn               : 0x00 (0)
              upn                      : NULL
              modify_config            : 0x00 (0)
              ads                      : NULL
              debug                    : 0x01 (1)
              secure_channel_type      : SEC_CHAN_WKSTA (2)
[2009/01/09 19:12:36, 10] libsmb/dsgetdcname.c:dsgetdcname(1406)
  dsgetdcname: domain_name: UNDERVISNING.LOCAL, domain_guid: (null), site_name: (null), flags: 0x40001010
[2009/01/09 19:12:36, 10] libsmb/dsgetdcname.c:debug_dsdcinfo_flags(47)
  debug_dsdcinfo_flags: 0x40001010
      DS_DIRECTORY_SERVICE_REQUIRED DS_WRITABLE_REQUIRED DS_RETURN_DNS_NAME 
[2009/01/09 19:12:36,  5] lib/gencache.c:gencache_init(61)
  Opening cache file at /var/run/samba/gencache.tdb
[2009/01/09 19:12:36, 10] lib/gencache.c:gencache_get(208)
  Returning valid cache entry: key = AD_SITENAME/DOMAIN/UNDERVISNING.LOCAL, value = BG, timeout = Tue Jan 19 04:14:07 2038
[2009/01/09 19:12:36,  5] libads/dns.c:sitename_fetch(817)
  sitename_fetch: Returning sitename for UNDERVISNING.LOCAL: "BG"
[2009/01/09 19:12:36, 10] lib/gencache.c:gencache_get_data_blob(269)
  Cache entry with key = DSGETDCNAME/DOMAIN/UNDERVISNING.LOCAL couldn't be found
[2009/01/09 19:12:36, 10] libsmb/dsgetdcname.c:dsgetdcname_cached(567)
  dsgetdcname_cached: cache fetch failed with: NT_STATUS_OBJECT_NAME_NOT_FOUND
[2009/01/09 19:12:36, 10] libsmb/dsgetdcname.c:dsgetdcname_rediscover(1342)
  dsgetdcname_rediscover
[2009/01/09 19:12:36,  4] libads/dns.c:ads_dns_lookup_srv(432)
  ads_dns_lookup_srv: 1 records returned in the answer section.
[2009/01/09 19:12:36, 10] libads/dns.c:ads_dns_parse_rr_srv(213)
  ads_dns_parse_rr_srv: Parsed bgdc.undervisning.local [0, 100, 389]
[2009/01/09 19:12:36, 10] libsmb/dsgetdcname.c:process_dc_dns(1160)
  LDAP ping to bgdc.undervisning.local
[2009/01/09 19:12:41,  3] lib/util_sock.c:interpret_string_addr_internal(122)
  interpret_string_addr_internal: getaddrinfo failed for name bgdc.undervisning.local [Name or service not known]
[2009/01/09 19:12:41,  3] lib/util_sock.c:interpret_addr(158)
  interpret_addr: Unknown host. bgdc.undervisning.local
[2009/01/09 19:12:41,  1] libads/cldap.c:recv_cldap_netlogon(156)
  no reply received to cldap netlogon
[2009/01/09 19:12:41,  1] libnet/libnet_join.c:libnet_Join(1801)
  libnet_Join:
      libnet_JoinCtx: struct libnet_JoinCtx
          out: struct libnet_JoinCtx
              account_name             : NULL
              netbios_domain_name      : NULL
              dns_domain_name          : NULL
              dn                       : NULL
              domain_sid               : NULL
                  domain_sid               : (NULL SID)
              modified_config          : 0x00 (0)
              error_string             : 'failed to find DC for domain UNDERVISNING.LOCAL'
              domain_is_ad             : 0x00 (0)
              result                   : WERR_DOMAIN_CONTROLLER_NOT_FOUND
[2009/01/09 19:12:41, 10] intl/lang_tdb.c:lang_tdb_init(138)
  lang_tdb_init: /usr/share/samba/da_DK:da:en_GB:en.msg: No such file or directory
Failed to join domain: failed to find DC for domain UNDERVISNING.LOCAL
[2009/01/09 19:12:41,  2] utils/net.c:main(1172)
  return code = -1


# nslookup undervisning.local
Server:        10.3.17.1
Address:    10.3.17.1#53

Name:    undervisning.local
Address: 10.3.17.8
Name:    undervisning.local
Address: 10.3.17.1

# nslookup bgdc.undervisning.local
Server:        10.3.17.1
Address:    10.3.17.1#53

Name:    bgdc.undervisning.local
Address: 10.3.17.1

BTW. I have updated my SMB to version 3.2.7 with LDAP and ADS support

----

Med Venlig Hilsen / Best regards

Henrik Dige Semark



From: hendigsem at hotmail.com
To: agray at aeso.ca; samba at lists.samba.org
Subject: RE: [Samba] Samba + Windows 2003 AD
Date: Thu, 8 Jan 2009 22:42:44 +0000








I don't know way my last mail did not got posted, but now I have add my domains to my resolv.conf

mail:~# nslookup undervisning.local
Server:         10.3.17.1
Address:        10.3.17.1#53

Name:   undervisning.local
Address: 10.3.17.1
Name:   undervisning.local
Address: 10.3.17.8

nslookup bgdc.undervisning.local
Server:         10.3.17.1
Address:        10.3.17.1#53

Name:   bgdc.undervisning.local
Address: 10.3.17.1

But its still the same error when I try to join the debian with Win2k3 domain

[2009/01/08 23:39:30, 0] utils/net_ads.c:ads_startup(289)
  ads_connect: Operations error
[2009/01/08 23:39:30, 2] utils/net.c:main(988)
  return code = -1

I might think that its my anonymous user on the win-server that isen't configured right as Avron said in the first mail (https://bugzilla.samba.org/show_bug.cgi?id=4771)


----

Med Venlig Hilsen / Best regards

Henrik Dige Semark



> Subject: RE: [Samba] Samba + Windows 2003 AD
> Date: Thu, 8 Jan 2009 10:59:06 -0700
> From: agray at aeso.ca
> To: hendigsem at hotmail.com; samba at lists.samba.org
> 
> I have two domains. One is production and one is development.
> - - - - - - 
> Development domain:
> bash-2.05# cat /etc/resolv.conf
> domain dev.ca
> search dev.ca
> nameserver yyy.yyy.yyy.xx
> nameserver yyy.yyy.yyy.yy
>  
> bash-2.05# ping -I 1 dev.ca
> PING dev.ca: 56 data bytes
> 64 bytes from ddc01.dev.ca (yyy.yyy.yyy.zz): icmp_seq=0. time=14. ms
> 64 bytes from ddc01.dev.ca (yyy.yyy.yyy.zz): icmp_seq=1. time=21. ms
> ^C
> - - - - - -  
> Production domain:
> bash-2.05# cat /etc/resolv.conf
> doamin prod.ca
> search prod.ca
> nameserver xxx.xxx.xxx.xx
> nameserver xxx.xxx.xxx.yy
> 
> bash-2.05# ping -I 1 prod.ca
> PING prod.ca: 56 data bytes
> 64 bytes from pdc01 (xxx.xxx.xxx.zz): icmp_seq=0. time=0. ms
> 64 bytes from pdc01 (xxx.xxx.xxx.zz): icmp_seq=1. time=0. ms
> ^C
> - - - - - - 
> I have one host that sees BOTH domains:
> # cat /etc/resolv.conf
> doamin dev.ca
> search dev.ca prod.ca
> 
> nameserver yyy.yyy.yyy.xx
> nameserver yyy.yyy.yyy.yy
> nameserver xxx.xxx.xxx.xx
> 
> bash-2.05# ping -I 1 dev.ca
> PING dev.ca: 56 data bytes
> 64 bytes from ddc01.dev.ca (yyy.yyy.yyy.zz): icmp_seq=0. time=14. ms
> 64 bytes from ddc01.dev.ca (yyy.yyy.yyy.zz): icmp_seq=1. time=21. ms
> ^C
>  
> bash-2.05# ping -I 1 prod.ca
> PING prod.ca: 56 data bytes
> 64 bytes from pdc01 (xxx.xxx.xxx.zz): icmp_seq=0. time=0. ms
> 64 bytes from pdc01 (xxx.xxx.xxx.zz): icmp_seq=1. time=0. ms
> ^C
> - - - - - - 
> 
> Can you ping XXX.UNDERVISNING.LOCAL by IP address? Can you nslookup
> XXX.UNDERVISNING.LOCAL?
> 
> - Avron

_________________________________________________________________
Del dine billeder med alle vennerne med Windows Live Photo Gallery.
http://download.live.com/photogallery


More information about the samba mailing list