[Samba] Windows 11 24H2, Samba 4.21.3 AD DC and domain users cannot log in
Virgo Pärna
virgo.parna at mail.ee
Wed Jan 22 10:38:08 UTC 2025
On 22.01.2025 12:25, Rowland Penny via samba wrote:
>>
>> After this started happening, I did try setting same password
>> again for user with smbpasswd in linux.
>
> Try using samba-tool to set a new password for the user.
I'l try it.
Although righ now I'm considering removing computer from domain and
adding again... Because isse seems to be with all domain users at that
computer.
>
>>
>> But that NETLOGON message in event log makes it look, like
>> more generic problem.
>> I thought of checking name resolution, but Windows nslookup
>> seems to be unable to resolve SRV records. But they seem to be ok.
>> Windows nslookup requiring ending name with dot caused some initial
>> confusion.
>
> If Windows cannot resolve SRV records, then it looks like you have DNS
> problems, are the clients using a DC as their first nameserver ?
>
Issue was, that with linux nslookup name "_ldap._tcp.ad.domain" works.
But I did not know, that I need to do use name "_ldap._tcp.ad.domain."
with Windows nslookup (dot at the end). After that all SRV records resolve.
--
Virgo Pärna
virgo.parna at mail.ee
More information about the samba
mailing list