Hi guys.

I have smb clients are unable to connect with Samba server which is on IPA client, Samba is ROLE_DOMAIN_MEMBER
Such Samba server logs:
```
[2026/08/12 14:41:18.966193, 0, traceid=32] ../../source3/winbindd/winbindd_cm.c:3435(cm_connect_netlogon) cm_connect_netlogon: Unable to connect to DC ipa-dzien.mine.priv of domain MINE over TCP/IP: NT_STATUS_CONNECTION_REFUSED. Please check your firewall if it allows connections to port 135 and port range 49152-65535 over TCP/IP! [2026/08/12 14:41:25.966577, 1, traceid=32] ../../source3/libads/ldap.c:610(cldap_ping_list) cldap_ping_list: realm[MINE.PRIV] no valid response num_requests[1] for count[2] - NT_STATUS_NO_LOGON_SERVERS

```

and there certainly - on IPA Samba ROLE_IPA_DC (ipa-dzien.mine.priv) - Samba is not listening on those ports. I must be missing or doing something wrong - so I assume since it's well established IPA's set of futures - would it be ROLE_DOMAIN_MEMBER box or IPA's ROLE_IPA_DC end?

I do not spot any obvious errors in IPA's logs, regular checks also do not warn of something.
All Samba installs also went without errors.

many thanks, L.
--
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://forge.fedoraproject.org/infra/tickets/issues/new

Reply via email to