[Samba] ADS domain member: winbind fails

Rowland Penny rpenny at samba.org
Sat Dec 31 08:37:39 UTC 2016


On Sat, 31 Dec 2016 01:14:46 +0100
"Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:

> Am 30.12.2016 um 19:10 schrieb Rowland Penny via samba:
> 
> >> -d10 please :-)
> >>
> >> Volker
> >>
> > 
> > I would have worked up to that ;-)
> > 
> > But the OP has since posted that he just changed the smb.conf on his
> > old PDC and didn't empty /var/lib/samba 
> 
> 
> emptying /var/lib/samba caused issues with joining: no secrets.tdb
> 
> ->
> 
> main ~ # winbindd -i -d10
> INFO: Current debug levels:
>   all: 10
>   tdb: 10
>   printdrivers: 10
>   lanman: 10
>   smb: 10
>   rpc_parse: 10
>   rpc_srv: 10
>   rpc_cli: 10
>   passdb: 10
>   sam: 10
>   auth: 10
>   winbind: 10
>   vfs: 10
>   idmap: 10
>   quota: 10
>   acls: 10
>   locking: 10
>   msdfs: 10
>   dmapi: 10
>   registry: 10
>   scavenger: 10
>   dns: 10
>   ldb: 10
> Maximum core file size limits now 16777216(soft) -1(hard)
> winbindd version 4.2.14 started.
> Copyright Andrew Tridgell and the Samba Team 1992-2014
> lp_load_ex: refreshing parameters
> Initialising global parameters
> rlimit_max: increasing rlimit_max (1024) to minimum Windows limit
> (16384) INFO: Current debug levels:
>   all: 10
>   tdb: 10
>   printdrivers: 10
>   lanman: 10
>   smb: 10
>   rpc_parse: 10
>   rpc_srv: 10
>   rpc_cli: 10
>   passdb: 10
>   sam: 10
>   auth: 10
>   winbind: 10
>   vfs: 10
>   idmap: 10
>   quota: 10
>   acls: 10
>   locking: 10
>   msdfs: 10
>   dmapi: 10
>   registry: 10
>   scavenger: 10
>   dns: 10
>   ldb: 10
> Processing section "[global]"
> doing parameter security = ADS
> doing parameter workgroup = ARBEITSGRUPPE
> doing parameter realm = arbeitsgruppe.secret.tld
> doing parameter log file = /var/log/samba/%m.log
> doing parameter log level = 8
> doing parameter idmap config * : backend = tdb
> doing parameter idmap config * : range = 3000-7999
> doing parameter idmap config ARBEITSGRUPPE:backend = rid
> doing parameter idmap config ARBEITSGRUPPE:range = 10000-999999
> doing parameter username map = /etc/samba/user.map
> doing parameter winbind enum users = Yes
> doing parameter winbind enum groups = Yes
> doing parameter winbind use default domain = Yes
> doing parameter winbind refresh tickets = Yes
> pm_process() returned Yes
> lp_servicenumber: couldn't find homes
> Maximum core file size limits now 16777216(soft) -1(hard)
> Registering messaging pointer for type 2 - private_data=(nil)
> Registering messaging pointer for type 9 - private_data=(nil)
> Registered MSG_REQ_POOL_USAGE
> Registering messaging pointer for type 11 - private_data=(nil)
> Registering messaging pointer for type 12 - private_data=(nil)
> Registered MSG_REQ_DMALLOC_MARK and LOG_CHANGED
> Registering messaging pointer for type 1 - private_data=(nil)
> Registering messaging pointer for type 5 - private_data=(nil)
> lp_load_ex: refreshing parameters
> Freeing parametrics:
> Initialising global parameters
> rlimit_max: increasing rlimit_max (1024) to minimum Windows limit
> (16384) INFO: Current debug levels:
>   all: 10
>   tdb: 10
>   printdrivers: 10
>   lanman: 10
>   smb: 10
>   rpc_parse: 10
>   rpc_srv: 10
>   rpc_cli: 10
>   passdb: 10
>   sam: 10
>   auth: 10
>   winbind: 10
>   vfs: 10
>   idmap: 10
>   quota: 10
>   acls: 10
>   locking: 10
>   msdfs: 10
>   dmapi: 10
>   registry: 10
>   scavenger: 10
>   dns: 10
>   ldb: 10
> Processing section "[global]"
> doing parameter security = ADS
> doing parameter workgroup = ARBEITSGRUPPE
> doing parameter realm = arbeitsgruppe.secret.tld
> doing parameter log file = /var/log/samba/%m.log
> doing parameter log level = 8
> doing parameter idmap config * : backend = tdb
> doing parameter idmap config * : range = 3000-7999
> doing parameter idmap config ARBEITSGRUPPE:backend = rid
> doing parameter idmap config ARBEITSGRUPPE:range = 10000-999999
> doing parameter username map = /etc/samba/user.map
> doing parameter winbind enum users = Yes
> doing parameter winbind enum groups = Yes
> doing parameter winbind use default domain = Yes
> doing parameter winbind refresh tickets = Yes
> pm_process() returned Yes
> lp_servicenumber: couldn't find homes
> added interface br0 ip=10.0.0.221 bcast=10.0.0.255
> netmask=255.255.255.0 Netbios name list:-
> my_netbios_names[0]="MAIN"
> added interface br0 ip=10.0.0.221 bcast=10.0.0.255
> netmask=255.255.255.0 Process with PID=3459 does not exist.
> Deleting /run/samba/winbindd.pid, since 3459 is not a Samba process.
> fcntl_lock 9 6 0 1 1
> fcntl_lock: Lock call successful
> TimeInit: Serverzone is -3600
> initialize_winbindd_cache: clearing cache and re-creating with version
> number 2
> check lock order 2 for /var/lock/samba/serverid.tdb
> lock order:  1:<none> 2:/var/lock/samba/serverid.tdb 3:<none>
> Locking key AF19000000000000FFFF
> Allocated locked data 0x0x55938c9a5e80
> Unlocking key AF19000000000000FFFF
> release lock order 2 for /var/lock/samba/serverid.tdb
> lock order:  1:<none> 2:<none> 3:<none>
> Registering messaging pointer for type 33 - private_data=(nil)
> Registering messaging pointer for type 13 - private_data=(nil)
> Registering messaging pointer for type 1028 - private_data=(nil)
> Registering messaging pointer for type 1027 - private_data=(nil)
> Registering messaging pointer for type 1029 - private_data=(nil)
> Registering messaging pointer for type 1036 - private_data=(nil)
> Registering messaging pointer for type 1035 - private_data=(nil)
> Registering messaging pointer for type 1280 - private_data=(nil)
> Registering messaging pointer for type 1032 - private_data=(nil)
> Registering messaging pointer for type 1033 - private_data=(nil)
> Registering messaging pointer for type 1034 - private_data=(nil)
> Registering messaging pointer for type 1 - private_data=(nil)
> Overriding messaging pointer for type 1 - private_data=(nil)
> wcache_tdc_add_domain: Adding domain BUILTIN ((null)), SID S-1-5-32,
> flags = 0x0, attributes = 0x0, type = 0x0
> pack_tdc_domains: Packing 1 trusted domains
> pack_tdc_domains: Packing domain BUILTIN (UNKNOWN)
> idmap config BUILTIN : range = not defined
> Added domain BUILTIN (null) S-1-5-32
> wcache_tdc_add_domain: Adding domain MAIN ((null)), SID
> S-1-5-21-2777655458-4002997014-749295002, flags = 0x0, attributes =
> 0x0, type = 0x0
> pack_tdc_domains: Packing 2 trusted domains
> pack_tdc_domains: Packing domain BUILTIN (UNKNOWN)
> pack_tdc_domains: Packing domain MAIN (UNKNOWN)
> idmap config MAIN : range = not defined
> Added domain MAIN (null) S-1-5-21-2777655458-4002997014-749295002
> set_domain_online_request: called for domain MAIN
> set_domain_online_request: Internal domains are always online
> PANIC (pid 6575): Could not find our domain
> BACKTRACE: 12 stack frames:
>  #0 /usr/lib64/libsmbconf.so.0(log_stack_trace+0x1a) [0x7ff0b02a97aa]
>  #1 /usr/lib64/libsmbconf.so.0(smb_panic_s3+0x20) [0x7ff0b02a9890]
>  #2 /usr/lib64/libsamba-util.so.0(smb_panic+0x2f) [0x7ff0b2f530df]
>  #3 winbindd(+0x36623) [0x55938b418623]
>  #4 winbindd(rescan_trusted_domains+0x1d) [0x55938b41864d]
>  #5 /usr/lib64/libtevent.so.0(tevent_common_loop_timer_delay+0xcd)
> [0x7ff0ad467b0d]
>  #6 /usr/lib64/libtevent.so.0(+0x9b0a) [0x7ff0ad468b0a]
>  #7 /usr/lib64/libtevent.so.0(+0x8227) [0x7ff0ad467227]
>  #8 /usr/lib64/libtevent.so.0(_tevent_loop_once+0x8d) [0x7ff0ad46346d]
>  #9 winbindd(main+0xb7c) [0x55938b4074cc]
>  #10 /lib64/libc.so.6(__libc_start_main+0xf0) [0x7ff0ace99620]
>  #11 winbindd(_start+0x29) [0x55938b407b59]
> dumping core in /var/log/samba/cores/winbindd
> Abgebrochen
> main ~ #
> 
> 

This is strange, it seems that it cannot find the AD domain, could you
try changing the nameserver in your /etc/resolv.conf to your Samba AD DC

Rowland



More information about the samba mailing list