[Samba] Connect to share (ads security) from non-domain computer

Vinz Focker vinz.focker at gmail.com
Thu Nov 12 17:38:54 MST 2009

Environment: Samba 3.0.28a on Ubuntu 8.04.3 LTS joined to 2008 R2
Security: ads

Now sometimes there is the need to connect to a share from a Computer
that is not joined to the domain (by entering some valid domain
account after opening the share of course)

If one opens the samba server in the network browser (or start->run
\\SMBSRV) the following error popup message is immediately is
displayed and credentials get never asked:

  no process is on the other end of the pipe
and on the samba side the following errors get logged:

check_ntlm_password:  Authentication for user [xxxxx] -> [xxxxx]

rpc_api_pipe: Remote machine ADS.xxxxxx.com pipe \NETLOGON fnum 0x4005
returned critical error. Error was NT_STATUS_PIPE_DISCONNECTED

However, everything works perfectly on computers joined to the domain.
In addition if one logs on locally on a computer joined to the domain
the same error occurs.

Any hints how to allow resp. enable connections to samba shares in ads
mode from within non-domain accounts ?


More information about the samba mailing list