[Samba] 4.3.0 trust relationship

Sergio Rizzi sergio.rizzi at labs.it
Wed Oct 21 12:50:33 UTC 2015


On 02/09/2015 15:04, mathias dufresne wrote:
> samba-tool domain trust validate trusted.domain.tld \
>   --local-dc-password=trustedAdminPass \
>   --local-dc-username=administrator \
>   -U administrator at trusted.domain.tld
>
> Using Samba's internal DNS make DNS queries forwarding transparent (with
> the few tools I think about to check).
>
> To be able to connect on machine.A.domain.tld using a user from
> B.domain.tld you'll have to "Authenticated users" special group to RDP
> authorized peoples.

Following this type of validation i obtain:

OK: LocalValidation: DC[\\dc.trusted.domain.tld] CONNECTION[WERR_OK] 
TRUST[WERR_OK] VERIFY_STATUS_RETURNED
OK: LocalRediscover: DC[\\dc.trusted.domain.tld] CONNECTION[WERR_OK]

And wbinfo -u --domain=trusted.domain.tld works.

Unfortunately i'm still getting "Checking password for unmapped user 
[trusted.domain.tld]\[trusteduser]@[localmachine]" in samba-4.3.1 logs 
(and wrong user/pass in RDP login)

Am i missing something?

Sergio.



More information about the samba mailing list