[Samba] winbind 184.108.40.206 as 2008 r2 domain member | groups are not resolving after couple of hours
oliver.weinmann at vega.de
Fri May 6 01:35:02 MDT 2011
Has really no one else this problem??? I mean if someone could make a recommendation what version to use with w2008r2 would be good too.
From: samba-bounces at lists.samba.org [mailto:samba-bounces at lists.samba.org] On Behalf Of Oliver Weinmann
Sent: 05 May 2011 09:19
To: 'samba at lists.samba.org'
Subject: [Samba] winbind 220.127.116.11 as 2008 r2 domain member | groups are not resolving after couple of hours
I'm facing a really big issue. We have upgraded our Windows 2003 Domain to 2008 R2. I have configured the smb.conf as follows:
realm = A.SPACE.CORP
workgroup = A
security = ADS
encrypt passwords = true
password server = gedaspw02.a.space.corp gedasvw02.a.space.corp
idmap config A : backend = ad
idmap config A : default = yes
idmap config A : range = 1-999999
idmap config A : schema_mode = rfc2307
winbind nss info = rfc2307
winbind enum users = no
winbind enum groups = no
preferred master = no
winbind nested groups = Yes
winbind use default domain = Yes
max log size = 50
log level = 10
log file = /var/log/samba/log.%m
dns proxy = no
allow trusted domains = no
client use spnego = Yes
use kerberos keytab = true
winbind refresh tickets = yes
idmap cache time = 60
winbind cache time = 60
When I login as a domain user I always see the following error in /var/log/messages:
May 5 08:10:18 gedaiv22 winbindd: ERROR: Initialization failed for alloc backend, deferred!
The login works fine, but after a couple of hours, the users report that the groupids are no longer resolving.
This is really a big issue and google is no help. :(
Is there a recommendation what winbind version to use with windows 2008 r2? I used the latest rpm packages from sernet.
To unsubscribe from this list go to the following URL and read the
More information about the samba