[Samba] Auth fail getpwuid(3000007) failed
Leander Schäfer
info at netocean.de
Sat May 3 06:11:03 MDT 2014
Am 03.05.14 13:55, schrieb Rowland Penny:
> On 03/05/14 12:43, Leander Schäfer wrote:
>> It's now the third day in row - no matter how hard I try or what
>> Samba client I use - I keep on getting
>>
>>
>> [2014/05/03 12:43:58.736462, 3]
>> ../source3/auth/auth.c:177(auth_check_ntlm_password)
>> check_ntlm_password: Checking password for unmapped user
>> [MYDOMAIN]\[admin]@[STORAGE-01] with the new password interface
>> [2014/05/03 12:43:58.736492, 3]
>> ../source3/auth/auth.c:180(auth_check_ntlm_password)
>> check_ntlm_password: mapped user is:
>> [STORAGE-01]\[admin]@[STORAGE-01]
>> [2014/05/03 12:43:58.739132, 3]
>> ../source3/auth/auth.c:226(auth_check_ntlm_password)
>> check_ntlm_password: sam authentication for user [admin] succeeded
>> [2014/05/03 12:43:58.739185, 2]
>> ../source3/auth/auth.c:278(auth_check_ntlm_password)
>> check_ntlm_password: authentication for user [admin] -> [admin] ->
>> [admin] succeeded
>> [2014/05/03 12:43:58.739232, 3]
>> ../auth/ntlmssp/ntlmssp_sign.c:547(ntlmssp_sign_init)
>> NTLMSSP Sign/Seal - Initialising with flags:
>> [2014/05/03 12:43:58.739256, 3]
>> ../auth/ntlmssp/ntlmssp_util.c:34(debug_ntlmssp_flags)
>> Got NTLMSSP neg_flags=0x60088215
>> [2014/05/03 12:43:58.749805, 1]
>> ../source3/auth/token_util.c:430(add_local_groups)
>> SID S-1-5-21-830508780-2314411135-1621753014-1101 ->
>> getpwuid(4294967295) failed
>> [2014/05/03 12:43:58.749851, 3]
>> ../source3/auth/token_util.c:316(create_local_nt_token_from_info3)
>> Failed to finalize nt token
>> [2014/05/03 12:43:58.749875, 1]
>> ../source3/smbd/sesssetup.c:276(reply_sesssetup_and_X_spnego)
>> Failed to generate session_info (user and group token) for session
>> setup: NT_STATUS_UNSUCCESSFUL
>> [2014/05/03 12:43:58.749950, 3]
>> ../source3/smbd/error.c:82(error_packet_set)
>> NT error packet at ../source3/smbd/sesssetup.c(279) cmd=115
>> (SMBsesssetupX) NT_STATUS_UNSUCCESSFUL
>> [2014/05/03 12:43:58.750230, 3]
>> ../source3/smbd/server_exit.c:221(exit_server_common)
>> Server exit (failed to receive smb request)
>>
>> This is quite frustrating. Any ideas what could be wrong here?
>>
>> Kind Regards
>> Leander
>>
>>
>> Am 02.05.14 11:21, schrieb Rowland Penny:
>>> On 02/05/14 09:38, Leander Schäfer wrote:
>>>> Hi
>>>>
>>>> sorry to bother, but all of a sudden after a fresh install of samba
>>>> with the regular smb4.conf it keeps on failing when users try to
>>>> authenticate:
>>>>
>>>>
>>>> smbclient -U MyUser \\\\MyServerName\\MyShare MyPassword
>>>> session setup failed: NT_STATUS_UNSUCCESSFUL
>>>>
>>>> [...]
>>>>
>>>> check_ntlm_password: authentication for user [MyUser] ->
>>>> [MyUser] -> [MyUser] succeeded
>>>> [2014/05/02 10:29:40.930648, 3]
>>>> ../auth/ntlmssp/ntlmssp_sign.c:547(ntlmssp_sign_init)
>>>> NTLMSSP Sign/Seal - Initialising with flags:
>>>> [2014/05/02 10:29:40.930671, 3]
>>>> ../auth/ntlmssp/ntlmssp_util.c:34(debug_ntlmssp_flags)
>>>> Got NTLMSSP neg_flags=0x60088215
>>>> NTLMSSP_NEGOTIATE_UNICODE
>>>> NTLMSSP_REQUEST_TARGET
>>>> NTLMSSP_NEGOTIATE_SIGN
>>>> NTLMSSP_NEGOTIATE_NTLM
>>>> NTLMSSP_NEGOTIATE_ALWAYS_SIGN
>>>> NTLMSSP_NEGOTIATE_NTLM2
>>>> NTLMSSP_NEGOTIATE_128
>>>> NTLMSSP_NEGOTIATE_KEY_EXCH
>>>> [2014/05/02 10:29:40.930799, 4]
>>>> ../source3/smbd/sec_ctx.c:424(pop_sec_ctx)
>>>> pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0
>>>> [2014/05/02 10:29:40.930876, 4]
>>>> ../source3/smbd/sec_ctx.c:216(push_sec_ctx)
>>>> push_sec_ctx(0, 0) : sec_ctx_stack_ndx = 1
>>>> [2014/05/02 10:29:40.930905, 4]
>>>> ../source3/smbd/uid.c:495(push_conn_ctx)
>>>> push_conn_ctx(0) : conn_ctx_stack_ndx = 0
>>>> [2014/05/02 10:29:40.930926, 4]
>>>> ../source3/smbd/sec_ctx.c:316(set_sec_ctx)
>>>> setting sec ctx (0, 0) - sec_ctx_stack_ndx = 1
>>>> [2014/05/02 10:29:40.930947, 5]
>>>> ../libcli/security/security_token.c:53(security_token_debug)
>>>> Security token: (NULL)
>>>> [2014/05/02 10:29:40.930968, 5]
>>>> ../source3/auth/token_util.c:629(debug_unix_user_token)
>>>> UNIX token of user 0
>>>> Primary group is 0 and contains 0 supplementary groups
>>>> [2014/05/02 10:29:40.931099, 4]
>>>> ../source3/smbd/sec_ctx.c:424(pop_sec_ctx)
>>>> pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0
>>>> [2014/05/02 10:29:40.931611, 1]
>>>> ../source3/auth/token_util.c:430(add_local_groups)
>>>> SID S-1-5-21-2799780924-1191006566-1534516595-1102 ->
>>>> getpwuid(3000007) failed
>>>> [2014/05/02 10:29:40.931654, 3]
>>>> ../source3/auth/token_util.c:316(create_local_nt_token_from_info3)
>>>> Failed to finalize nt token
>>>> [2014/05/02 10:29:40.931677, 1]
>>>> ../source3/smbd/sesssetup.c:276(reply_sesssetup_and_X_spnego)
>>>> Failed to generate session_info (user and group token) for
>>>> session setup: NT_STATUS_UNSUCCESSFUL
>>>>
>>>> [...]
>>>>
>>>> What's wrong here?! Any hint is geartfully appreciated ;)
>>>>
>>>> Kind Regards
>>> Hi, have you tried:
>>>
>>> smbclient \\\\MyServerName\\MyShare -UMyUser%MyPassword
>>>
>>> Rowland
>>
> I think that you are going to have to give us a bit more info here,
> what OS ? how is samba setup ? what version did you upgrade from ? and
> what version now ? etc.
>
> Rowland
Sure, I just dodn't want to overfloat the mail in the beginning. I'm
using FreeBSD 10.0 RELEASE (amd64). It is a freshly installed machine (I
just re-did the entire setup again) - so no updates or upgrades or
manual installed patches or any of that kind.
Not even the guest acccount is working - so there is currently no access
at all through Samba
# ============= Global ============= #
[global]
# Basic server settings
workgroup = MYDOMAIN
realm = MYDOMAIN.LOCAL
netbios name = STORAGE-01
server role = standalone server
# Password backend
passdb backend = samba_dsdb
# DNS
dns forwarder = 10.0.0.1
# Logging
log level = auth:10
max log size = 0
# Charset
unix charset = UTF-8
dos charset = cp1252
# NTLMv2
ntlm auth = No
lanman auth = No
client ntlmv2 auth = Yes
# Printing
load printers = No
printing = BSD
printcap name = /dev/null
# Default masks
unix extensions = No
create mask = 0777
force create mode = 0777
directory mask = 0777
force directory mode = 0777
# Miscellaneous
veto oplock files = /*.doc/*.xls/*.ppt/*.mdb/*.docx/*.xlsx/*.ppt
veto files =
/.snap/.windows/.zfs/Thumbs.db/.DS_Store/._.DS_Store/.apdisk/
wide links = No
# ============= Shares ============= #
[FireFly]
comment = Shared Music
path = /mnt/FireFly
guest ok = Yes
read only = No
More information about the samba
mailing list