Bug#536365: [Pkg-samba-maint] Bug#536365: samba: domain member don't authorize domain users
On Mon, Jul 13, 2009 at 12:43:43PM +0400, Vladimir Stavrinov wrote: Thats mean, samba couldn't find pdc and then use local domain hog. At some point of upgrade (the exact version unknown as I don't track it) this problem gone away and thus this bug should be closed. -- * Vladimir Stavrinov ** *** v...@inist.ru * * -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org
Bug#536365: [Pkg-samba-maint] Bug#536365: samba: domain member don't authorize domain users
On Fri, Jul 10, 2009 at 10:10:31PM +0200, Christian Perrier wrote: I'm not entirely sure about the whole sequence, but have you tried adding passdb backend = smbpasswd on the server which you upgraded from 3.3.4 to 3.4? Has no effect. See above: I don' touch production servers, but experiment with fresh install instead. More over one of those servers has tdbsam backend and other - smbpasswd, but smbpasswd file is empty. Both are working with old version. The default value for passdb backend changed between 3.3 and 3.4 and I noticed the following in log.pot you sent: I think passdb backend is not a problem. If You careful read thread, You know that user authorized locally and that is what is core of problem. Here is one more evidence from log.pot: saf_fetch: failed to find server for INISTDOM domain ... Mapped domain from [INISTDOM] to [HOG] for user [vs] from workstation [POT] Thats mean, samba couldn't find pdc and then use local domain hog. -- * Vladimir Stavrinov ** *** v...@inist.ru * * -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org
Bug#536365: [Pkg-samba-maint] Bug#536365: samba: domain member don't authorize domain users
On Sat, Jul 11, 2009 at 02:46:07PM -0700, Steve Langasek wrote: If you think this is a Samba bug, please open a new bug report. It is certainly unrelated to this existing bug report. I am not sure. Could be a ulimit issue, or an issue with the limit in /proc/sys/fs/nr_open. No, all of those and related parameters has ordinary values. How this effected by samba? Again: downgrade solve this problem. That is this is the samba issue. In any way, Your are right to stop this sub-thread. -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org
Bug#536365: [Pkg-samba-maint] Bug#536365: samba: domain member don't authorize domain users
Quoting Vladimir Stavrinov (v...@inist.ru): Package: samba Version: 2:3.4.0-1 Severity: normal This is result of upgrade from 2:3.3.6-1. It try authorize them locally. The same true as well for fresh installed and joined to w2k domain samba. Downgrade to 2:3.3.4-1 solve this problem. Do you have a level 10 log aof such a failure? The output of testparm would also help (that gives the content of your smb.conf filecleared from everything that has the default values). signature.asc Description: Digital signature
Bug#536365: [Pkg-samba-maint] Bug#536365: samba: domain member don't authorize domain users
On Thu, Jul 09, 2009 at 06:40:40PM +0200, Christian Perrier wrote: Do you have a level 10 log aof such a failure? Yes. If You want, I will send it to You, but it is hundreds lines. The output of testparm would also help (that gives the content of After fresh install samba, the only modification was made: workgroup = inistdom security = domain password server = nts1 Then join domain: net rpc join -U Administrator It say OK. and pdc show this host in members list. -- * Vladimir Stavrinov ** *** v...@inist.ru * * -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org
Bug#536365: [Pkg-samba-maint] Bug#536365: samba: domain member don't authorize domain users
On Thu, Jul 09, 2009 at 10:14:11PM +0400, Vladimir Stavrinov wrote: On Thu, Jul 09, 2009 at 06:40:40PM +0200, Christian Perrier wrote: Do you have a level 10 log aof such a failure? Yes. If You want, I will send it to You, but it is hundreds lines. The output of testparm would also help (that gives the content of After fresh install samba, the only modification was made: workgroup = inistdom security = domain password server = nts1 Why is this last line needed? Does the PDC autodetection not work in your environment? -- Steve Langasek Give me a lever long enough and a Free OS Debian Developer to set it on, and I can move the world. Ubuntu Developerhttp://www.debian.org/ slanga...@ubuntu.com vor...@debian.org -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org
Bug#536365: [Pkg-samba-maint] Bug#536365: samba: domain member don't authorize domain users
On Thu, Jul 09, 2009 at 04:17:32PM -0700, Steve Langasek wrote: password server = nts1 Why is this last line needed? Does the PDC autodetection not work in your environment? It does work. But this is not core of problem. To be more accurate, it was working before upgrade. But with 3.4.0 it does not work with or without password server parameter. ** Vladimir Stavrinov ** *** v...@inist.ru ** * http://inist.ru/ *** ** -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org
Bug#536365: [Pkg-samba-maint] Bug#536365: samba: domain member don't authorize domain users
On Fri, Jul 10, 2009 at 03:46:43AM +0400, Vladimir Stavrinov wrote: On Thu, Jul 09, 2009 at 04:17:32PM -0700, Steve Langasek wrote: password server = nts1 Why is this last line needed? Does the PDC autodetection not work in your environment? It does work. But this is not core of problem. To be more accurate, it was working before upgrade. But with 3.4.0 it does not work with or without password server parameter. Ok, that's what I wanted to confirm since sometimes infrequently-used options in smb.conf have unexpected side-effects. -- Steve Langasek Give me a lever long enough and a Free OS Debian Developer to set it on, and I can move the world. Ubuntu Developerhttp://www.debian.org/ slanga...@ubuntu.com vor...@debian.org -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org