[Samba] Samba 4.2.x requiring TLS authentication

Rowland penny rpenny at samba.org
Wed Jul 27 20:35:59 UTC 2016


On 27/07/16 20:59, Felipe Izaguirre wrote:
> Hi everyone,
>
> I have installed a Samba AD DC version 4.2.11-20 in a Centos 6.7 machine
> and joined it in an existing domain. Everything seems working fine except I
> can't bind to it using LDAP simple authentication. When I try to perform a
> simple ldapsearch I get the following response:
>
> ldap_bind: Strong(er) authentication required (8)
> additional info: BindSimple: Transport encryption required.
>
> That is weird as I have not set the certificates and haven't had configured
> nothing to use LDAPS. Looking in the documentation it says that by default
> Samba 4 does not use LDAPS and to configure it you need to provide the
> certificates.
> So, why is this DC is asking me to use LDAPS? Is there some samba-tool
> command I can run to debug or some hidden option to disable it?
>
> I really appreciate any help you can provide.
>
>
>
> Felipe Izaguirre
> *Computer Scientist Student and Sysadmin*

try adding 'ldap server require strong auth =no' to smb.conf, see here 
for more info:

https://wiki.samba.org/index.php/Samba_4.4_Features_added/changed#ldap_server_require_strong_auth_.28G.29

Rowland




More information about the samba mailing list