[Samba] NT_STATUS_NO_TRUST_SAM_ACCOUNT after temporary connectivity break to AD DC

shridhar shetty shridhar.sanjeeva at gmail.com
Thu Oct 13 15:15:52 UTC 2016


I am sorry. I had posted that in a message that I have been using backend
= rid.


To avoid confusion re-posting the smb.conf file. :)
---------------------------------------------------------------------
[global]
workgroup = XXXX
netbios name = inmusbackup01
server string = FILE SERVER
realm = XXX.XXX.COM

#Winbindd configuration
winbind separator = +
winbind enum users = yes
winbind enum groups = yes
winbind use default domain = yes
template homedir = /home/%U
template shell = /bin/bash
winbind refresh tickets = yes

#Setting Security level
security = ads
kerberos method = secrets and keytab
encrypt passwords = yes

idmap config *:backend = tdb
idmap config *:range = 2000-9999
idmap config XXXX : backend  = rid
idmap config XXXX : range = 10000-999999

log file = /var/log/samba/samba.log
log level = 5
max log size = 500
load printers = no
---------------------------------------------------------------------

* original problem
-- If the DC to which the machine was joined is inaccessible, the trust
relation breaks even if other DCs are online.




On Thu, Oct 13, 2016 at 7:28 PM, Rowland Penny via samba <
samba at lists.samba.org> wrote:

> On Thu, 13 Oct 2016 19:13:25 +0530
> shridhar shetty <shridhar.sanjeeva at gmail.com> wrote:
>
> > That is what I said.
> > I have been using backend  = rid.
> >
>
> The last smb.conf you posted had this line:
>
> idmap config xxxx : backend  = ad
>
> Rowland
>
> --
> To unsubscribe from this list go to the following URL and read the
> instructions:  https://lists.samba.org/mailman/options/samba
>


More information about the samba mailing list