[Samba] AD domain member cannot authenticate user in remote forest unless smbclient uses "localhost"

Rowland penny rpenny at samba.org
Tue Oct 29 15:00:17 UTC 2019

On 29/10/2019 14:52, Nathaniel W. Turner via samba wrote:
> Hi Rowland,
> On Tue, Oct 29, 2019 at 5:37 AM Rowland penny via samba <
> samba at lists.samba.org> wrote:
>> I am sorry but you seem to be asking on the wrong list, you appear to be
>> using sssd (which isn't supported with Samba from 4.8.0), Samba isn't
>> doing the authentication.
> What part of my problem description, or which log entries make you think I
> am using sssd?
> n

The fact that you do not have lines in smb.conf similar to these:

idmap config TC83 : backend = rid
idmap config TC83 : range = 100000-1999999

The lack of these lines means one of two things, either your smb.conf 
isn't set up correctly or you are using sssd and it is usually the 
latter ;-)


More information about the samba mailing list