Am 28.07.20 um 12:21 schrieb Lothar Schilling: > > Adding those two lines in smb.conf did the trick. Thank you. By the > way, it is your textbook I am following :-) Great book! > Thank you :-). But remember you will reduce security ba setting these parameters! Don't do it in a production environment. > > Am 28.07.2020 um 11:31 schrieb Stefan Kania: >> Did you configure LDAPS in LAM? The message comes from Samba and not >> from LAM. It has something to do with the bedlock Bug read this: >> >> https://www.kania-online.de/ldb-tools-nach-badlock/ >> >> I wrote how you can disable the secure settings >> >> Am 28.07.20 um 09:26 schrieb Lothar Schilling: >>> Hi everybody, >>> >>> I am completely new to this group - and to LAM as well. Trying to get >>> rid of our Windows SBS domain controller I am building a new Samba 4 >>> server dedicated only to domain controlling, Debian 10.4, Samba 4.9.5. >>> I'm doing this from scratch, following the textbooks. I've also setup >>> LAM as graphical interface for administration. >>> >>> But once I try logging into the server's profile via that LAM interface >>> as Administrator, I get this: "LDAP error, server says: (8) Strong(er) >>> authentication required". >>> >>> (1) "ldbsearch -H ldap://ldap.[my].[domain] "cn=Administrator" -k yes": >>> is working with the same password I would use in LAM >>> >>> (2) Server profile settings in LAM >>> >>> - TLS is deactivated >>> - Login: Fixed list, cn=Administrator,cn=users,dc=[my],dc=[domain] >>> >>> (3) ldap.conf >>> >>> # >>> # LDAP Defaults >>> # >>> # See ldap.conf(5) for details >>> # This file should be world readable but not world writable. >>> BASE dc=[my],dc=[domain] >>> URI ldap://ldap.[my].[domain] ldap://ldap-master.[my].[domain]:666 >>> #SIZELIMIT 12 >>> #TIMELIMIT 15 >>> #DEREF never >>> # TLS certificates (needed for GnuTLS) >>> #TLS_CACERT /etc/ssl/certs/ca-certificates.crt >>> >>> What am I doing wrong? >>> >>> Help appreciated, thank you! >>> >>> Lothar Schilling >>> >>> >>> >>> >>> _______________________________________________ >>> Lam-public mailing list >>> Lam-public@lists.sourceforge.net >>> https://lists.sourceforge.net/lists/listinfo/lam-public >> >> >> _______________________________________________ >> Lam-public mailing list >> Lam-public@lists.sourceforge.net >> https://lists.sourceforge.net/lists/listinfo/lam-public > > > _______________________________________________ > Lam-public mailing list > Lam-public@lists.sourceforge.net > https://lists.sourceforge.net/lists/listinfo/lam-public
-- Stefan Kania Landweg 13 25693 St. Michaelisdonn Signieren jeder E-Mail hilft Spam zu reduzieren und schützt Ihre Privatsphäre. Ein kostenfreies Zertifikat erhalten Sie unter https://www.dgn.de/dgncert/index.html
smime.p7s
Description: S/MIME Cryptographic Signature
_______________________________________________ Lam-public mailing list Lam-public@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/lam-public