[Samba] When ad domain machine shutdown, samba can not auth with unix local user

Rowland Penny rpenny at samba.org
Thu Mar 7 09:48:41 UTC 2019


On Thu, 7 Mar 2019 17:13:36 +0800
谷雷 via samba <samba at lists.samba.org> wrote:

> Hi,
> 	I config my samba join a ad domain(security = ADS), using
> samba 4.7.1 in CentOS7.5.
> 
> 	Everything gone well, I can login with ad user and local user
> at the same time.

Do you have the same users in AD as in /etc/passwd ?

> 
> 	But when the ad domain get down, I can not login with local
> user.
> 
> 	wbinfo -t prompt: NT_STATUS_DOMAIN_CONTROLLER_NOT_FOUND,
> 	smbclient login with NT_STATUS_NO_LOGON_SERVER error.
> 
> 	I lookup the debug message, and found auth method winbind
> break in auth_check_ntlm_password, and not try sam_ignoredomain
> method.
> 
> 	May there some way make samba can auth with unix local when
> ad domain get down?

It sort of depends how you are running Samba, can you post your
smb.conf

Rowland

 




More information about the samba mailing list