[Samba] winbind: Failed to create BUILTIN\Administrators
Matthias Grimm
mgr at renzel.it
Thu May 7 11:32:20 GMT 2009
Hello, I'm still testing Samba with security=ads. Everything runs fine
atm., but when I logon I'm getting this in pc's log:
[2009/05/07 13:17:58, 2] lib/access.c:check_access(406)
Allowed connection from (10.255.255.7)
[2009/05/07 13:17:58, 2] lib/access.c:check_access(406)
Allowed connection from (10.255.255.7)
[2009/05/07 13:17:58, 1] smbd/service.c:make_connection_snum(1111)
10.255.255.7 (10.255.255.7) connect to service Software initially as
user CITRIX\virtualbox$ (uid=654837002, gid=654836227) (pid 23351)
[2009/05/07 13:18:02, 1] smbd/service.c:close_cnum(1323)
10.255.255.7 (10.255.255.7) closed connection to service Software
[2009/05/07 13:21:23, 2] lib/access.c:check_access(406)
Allowed connection from (10.255.255.7)
[2009/05/07 13:21:23, 2] lib/access.c:check_access(406)
Allowed connection from (10.255.255.7)
[2009/05/07 13:21:23, 2] smbd/reply.c:reply_special(492)
netbios connect: name1=SAMBA-ADS name2=VIRTUALBOX
[2009/05/07 13:21:23, 2] smbd/reply.c:reply_special(499)
netbios connect: local=samba-ads remote=virtualbox, name type = 0
[2009/05/07 13:21:23, 2] smbd/sesssetup.c:setup_new_vc_session(1368)
setup_new_vc_session: New VC == 0, if NT4.x compatible we would close
all old resources.
[2009/05/07 13:21:23, 2] auth/token_util.c:create_local_nt_token(450)
WARNING: Failed to create BUILTIN\Administrators group! Can Winbind
allocate gids?
[2009/05/07 13:21:23, 2] auth/token_util.c:create_local_nt_token(474)
WARNING: Failed to create BUILTIN\Users group! Can Winbind allocate gids?
[2009/05/07 13:21:23, 2] lib/access.c:check_access(406)
Allowed connection from (10.255.255.7)
[2009/05/07 13:21:23, 2] auth/token_util.c:create_local_nt_token(450)
WARNING: Failed to create BUILTIN\Administrators group! Can Winbind
allocate gids?
[2009/05/07 13:21:23, 2] auth/token_util.c:create_local_nt_token(474)
WARNING: Failed to create BUILTIN\Users group! Can Winbind allocate gids?
[2009/05/07 13:21:23, 2] lib/access.c:check_access(406)
Allowed connection from (10.255.255.7)
[2009/05/07 13:21:23, 2] auth/token_util.c:create_local_nt_token(450)
WARNING: Failed to create BUILTIN\Administrators group! Can Winbind
allocate gids?
[2009/05/07 13:21:23, 2] auth/token_util.c:create_local_nt_token(474)
WARNING: Failed to create BUILTIN\Users group! Can Winbind allocate gids?
[2009/05/07 13:21:23, 2] lib/access.c:check_access(406)
Allowed connection from (10.255.255.7)
[2009/05/07 13:21:23, 2] lib/access.c:check_access(406)
Allowed connection from (10.255.255.7)
[2009/05/07 13:21:23, 1] smbd/service.c:make_connection_snum(1111)
10.255.255.7 (10.255.255.7) connect to service profiles initially as
user CITRIX\mgr1 (uid=654836941, gid=654836225) (pid 23439)
[2009/05/07 13:21:23, 2] smbd/open.c:open_file(551)
CITRIX\mgr1 opened file NTUSER.DAT read=Yes write=No (numopen=1)
[2009/05/07 13:21:23, 2] smbd/open.c:open_file(551)
CITRIX\mgr1 opened file ntuser.ini read=Yes write=No (numopen=2)
[2009/05/07 13:21:26, 2] smbd/close.c:close_normal_file(606)
CITRIX\mgr1 closed file NTUSER.DAT (numopen=1) NT_STATUS_OK
[2009/05/07 13:21:26, 2] smbd/close.c:close_normal_file(606)
CITRIX\mgr1 closed file ntuser.ini (numopen=0) NT_STATUS_OK
[2009/05/07 13:21:27, 2] auth/token_util.c:create_local_nt_token(450)
WARNING: Failed to create BUILTIN\Administrators group! Can Winbind
allocate gids?
[2009/05/07 13:21:27, 2] auth/token_util.c:create_local_nt_token(474)
WARNING: Failed to create BUILTIN\Users group! Can Winbind allocate gids?
[2009/05/07 13:21:27, 2] lib/access.c:check_access(406)
Allowed connection from (10.255.255.7)
[2009/05/07 13:21:27, 2] lib/access.c:check_access(406)
Allowed connection from (10.255.255.7)
[2009/05/07 13:21:27, 1] smbd/service.c:make_connection_snum(1111)
10.255.255.7 (10.255.255.7) connect to service mgr1 initially as user
CITRIX\mgr1 (uid=654836941, gid=654836225) (pid 23439)
As you could see, it logs on fine. I'm stumbled over it, when trying to
find out, why one of my Software-GPOs won't work.
Is it only a cosmetic Warning, or could it be related to, that I have
trouble when login in on and getting the profile when I set paramter
'valid users = CITRIX\%S'?
Samba is on CentOS 5.3, sernet's samba 3.3.4.
Matthias
--
Matthias Grimm
Systemadministrator
VKF Renzel GmbH
Im Geer 15
D-46419 Isselburg
Rechtsform: GmbH, Sitz: Isselburg, AG Coesfeld, HRB 8004,
Geschaeftsfuehrer: Heinz Renzel, Ansgar Huegging, Joachim Ostendorf
Fon: +49-2874-910-323
mailto:mgr at renzel.it
http://www.vkf-renzel.de
Eagles may fly, but weasels don't get sucked into jet engines.
Five exclamation marks, the sure sign of an insane mind.
(Terry Pratchett)
More information about the samba
mailing list