[Samba] KB5029244...

Jones Syue 薛懷宗 jonessyue at qnap.com
Fri Aug 11 17:18:22 UTC 2023


If there are still issues after you patch Samba, please let us know.

Per my test which could confirm that:
1. Win11 22H2 with KB5029244 (2023/Aug) installed, cannot establish secure
channel against non-patched samba ad dc; just like KB5028166 (2023/Jul).
2. Several symptoms are caused by broken secure channel, and all of them
could be addressed by Bug 15418 bugfixes patch. Thank you, Metze!

These symptoms like:
a. join ad fail, error is "The trust relationship between this workstation
and the primary domain failed."

b. access fail, error is "The trust relationship between this workstation
and the primary domain failed." and "System error 1789 has occurred.".

c. rdp fail, error is "The remote computer that you are trying to connect
to require Network Level Authentication (NLA), but your Windows domain
controller cannot be contacted to perform NLA. If you are an administrator
on the remote computer, you can disable NLA by using the options on the
Remote tab of the System Properties dialog box."

And Event Viewer could see 2 kinds of Event ID:
Event ID 3210 (NETLOGON), or Event ID 1058 (GroupPolicy).

--
Regards,
Jones Syue | 薛懷宗
QNAP Systems, Inc.



More information about the samba mailing list