[Samba] dsdb_access Access check failed on CN=Configuration

Mike Ray mray at xes-inc.com
Wed May 22 16:52:45 UTC 2019

Setting the log level to 10 shows this blurp in the output of the ldapcmp command:

resolve_lmhosts: Attempting lmhosts lookup for name dc3.otherinternaldomain.local<0x20>
startlmhosts: Can't open lmhosts file /etc/samba/lmhosts. Error was No such file or directory
ERROR(ldb): uncaught exception - LDAP error 32 LDAP_NO_SUCH_OBJECT -  <dsdb_access: Access check failed on CN=Configuration,DC=domain,DC=local> <>

I can confirm that file does not exist.

It is interesting that it is looking for the 'otherinternaldomain.local' instead of just 'domain.local'.

However, removing that entry from /etc/hosts does not change the output of the command.

More information about the samba mailing list