[Samba] Strange problem with winbind on linux domain member (works for 2 minutes...)

Jakob Curdes jc at info-systems.de
Thu Feb 5 13:19:40 UTC 2026


Hello, after upgrading a samba4 AD domain member server on ubuntu24 
(Re-joined with same name, but probably unrelated), I expreience a 
strange behavior.

When starting all three services smbd,nmbd,winbind, everything works. 
Then after about 2 minutes, the shares are not accessible any more, and 
winbind shows an error message on systemctl status:

Feb 05 13:35:01 *** winbindd[3131]: [2026/02/05 13:35:01.392619, 0] 
source3/winbindd/winbindd_samr.c:71(open_internal_samr_conn)
Feb 05 13:35:01 *** winbindd[3131]:   open_internal_samr_conn: Could not 
connect to samr pipe: NT_STATUS_CONNECTION_DISCONNECTED

I first had the time sync as idea, but the server is in sync with DC and 
the workstations which are also domain members.
Time zone is also the same.
Other than this error I find no clues. All wbinfo tests succeed, 
kerberos is fine, etc.

Probably relevant part of smb.conf (but this config is exactly the same 
as before the upgrade):

    winbind refresh tickets = Yes
    dedicated keytab file = /etc/krb5.keytab
    kerberos method = secrets and keytab
    winbind use default domain = no
    winbind enum users = yes
    winbind enum groups = yes
    winbind nested groups   = Yes
    winbind expand groups   = 4

Any idea what could cause this? The DCs are also Ubuntu 24. We have no 
other known issues in the domain, but this actually the only LINUX 
member server.
I now restart winbind every minute via cron, but this is obviously a 
workaround....

Best regards, Jakob





More information about the samba mailing list