Re: [Samba] Phanton domain controller problem...

2005-01-28 Thread Tarjei Huse
tor, 27,.01.2005 kl. 18.04 -0700, skrev John H Terpstra:
 On Thursday 27 January 2005 17:37, Ruth Ivimey-Cook wrote:
  John H Terpstra wrote:
   Stop Samba. Delete your wins.dat file and browse.dat file in
 
  /var/lib/samba
 
  Thanks, that did it. The files are in /var/cache/samba on FC3
 
  Can I ask: in trying to sort this out, I discovered I wasn't running
  winbindd. Now, I've no other WINS server, although there is a DNS server.
  Do I need winbindd?
 
 You need winbind to handle users who use workstations that are NOT part of 
 your domain.
?! 

Why? I've used samba with workstations that are not part of my domains
lots of times without using winbind. I though winbind was for using
samba as a memberserver in a domain controlled by another samba/windows
PDC.

Tarjei
 - John T.
 -- 
 John H Terpstra
 Samba-Team Member
 Phone: +1 (650) 580-8668
 
 Author:
 The Official Samba-3 HOWTO  Reference Guide, ISBN: 0131453556
 Samba-3 by Example, ISBN: 0131472216
 Hardening Linux, ISBN: 0072254971
 Other books in production.
-- 
Tarjei Huse [EMAIL PROTECTED]

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Phanton domain controller problem...

2005-01-28 Thread John H Terpstra
On Friday 28 January 2005 09:39, Tarjei Huse wrote:
 tor, 27,.01.2005 kl. 18.04 -0700, skrev John H Terpstra:
  On Thursday 27 January 2005 17:37, Ruth Ivimey-Cook wrote:
   John H Terpstra wrote:
Stop Samba. Delete your wins.dat file and browse.dat file in
  
   /var/lib/samba
  
   Thanks, that did it. The files are in /var/cache/samba on FC3
  
   Can I ask: in trying to sort this out, I discovered I wasn't running
   winbindd. Now, I've no other WINS server, although there is a DNS
   server. Do I need winbindd?
 
  You need winbind to handle users who use workstations that are NOT part
  of your domain.

 ?!

 Why? I've used samba with workstations that are not part of my domains
 lots of times without using winbind. I though winbind was for using
 samba as a memberserver in a domain controlled by another samba/windows
 PDC.

Not quite! If your Samba server will be accessed from domains other than the 
Samba domain, or if you have access from machines that are not domain members 
winbind will permit the allocation of UIDs and GIDs from the assigned pool 
that will keep the identity of the foreign user separate from users that are 
members of the Samba domain. Of course the Samba domain members are local 
users on the host that Samba is running on.

For example:

If you have a user called george on the Samba server, and the samba domain 
is called BIGDOGS, this user will be BIGDOGS\george. A user called george 
who has a local account on a notebook running Windows 2000, where the 
notebook is called HOLYCOWS will be recognized as HOLYCOW\george only if 
winbind is running. In this case winbind will allocate a separate UID for 
HOLYCOW\george and he will NOT be given access as if he is the Windows user 
BIGDOGS\george.

If you are happy to map the HOLYCOW\george automatically to the user on the 
UNIX host called george there is no need to run winbind.

I hope that helps to clarify things.

- John T.


 Tarjei

  - John T.
  --
  John H Terpstra
  Samba-Team Member
  Phone: +1 (650) 580-8668
 
  Author:
  The Official Samba-3 HOWTO  Reference Guide, ISBN: 0131453556
  Samba-3 by Example, ISBN: 0131472216
  Hardening Linux, ISBN: 0072254971
  Other books in production.

-- 
John H Terpstra
Samba-Team Member
Phone: +1 (650) 580-8668

Author:
The Official Samba-3 HOWTO  Reference Guide, ISBN: 0131453556
Samba-3 by Example, ISBN: 0131472216
Hardening Linux, ISBN: 0072254971
Other books in production.
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Phanton domain controller problem...

2005-01-28 Thread Ruth Ivimey-Cook
On Fri, 28 Jan 2005, John H Terpstra wrote:

For example:
[snip]
I hope that helps to clarify things.


John, Yes, I am a lot clearer now :-)

Ruth

-- 
Ruth Ivimey-Cook
Software engineer and technical writer.
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] Phanton domain controller problem...

2005-01-27 Thread Ruth Ivimey-Cook
Hi,

Recently I reinstalled the OS on my Samba PDC, letting Linux FC3 installer
do it's thing then overwriting the smb.conf with my old one.

Now I find that although it tries but can't become Domain master browser
again, although it is happy to become a local master, a login server and to
serve files. The reason given in the log files is that there is another PDC
on the submet at 192.168.0.145 (see below). That IP is the IP address that
this (the only) samba server had for a short period during the reinstall.
There is no machine at that IP now.

What is going on? Is there some file that stores PDC IP addresses? Note in
the winbind dump below, the 192.168.0.145 address for HOME and for
FILESTORE, both of which are bogus.

Regards,

Ruth


[2005/01/27 23:17:39, 4] nmbd/nmbd_winsserver.c:wins_write_database(1825)
  wins_write_database: Dump of WINS name list.
  *00   TTL = PERMANENT 192.168.0.7 64
  *20   TTL = PERMANENT 192.168.0.7 64
  FILESTORE00   TTL = Sun Jan 30 23:03:56 2005192.168.0.145
192.168.0.7 66
  FILESTORE03   TTL = Sun Jan 30 23:03:56 2005192.168.0.145
192.168.0.7 66
  FILESTORE20   TTL = Sun Jan 30 23:03:56 2005192.168.0.145
192.168.0.7 66
  GANDALF00 TTL = Mon Jan 31 09:56:17 2005  192.168.0.8 44
  GANDALF20 TTL = Mon Jan 31 09:56:17 2005  192.168.0.8 44
  HOME00TTL = Sun Jan 30 23:03:56 2005  255.255.255.255 e4
  HOME1bTTL = Fri Jan 28 15:11:24 2005192.168.0.145 64
  HOME1cTTL = Sun Jan 30 23:03:56 2005192.168.0.145
192.168.0.7 e4
  HOME1eTTL = Sun Jan 30 23:03:56 2005  255.255.255.255 e4
  __SAMBA__00   TTL = PERMANENT 192.168.0.7 64
  __SAMBA__20   TTL = PERMANENT 192.168.0.7 64
[2005/01/27 23:17:39, 4]
nmbd/nmbd_packets.c:initiate_name_release_packet(410)
  initiate_name_release_packet: sending release for name FILESTORE00
(bcast=No) to IP 127.0.0.1

snip

[2005/01/27 23:17:39, 4] nmbd/nmbd_packets.c:debug_browse_data(100)
  debug_browse_data():
0 char ..FILESTORE. hex 01 05 00 00 00 00 46 49 4c 45 53 54 4f 52 45
00
   10 char ..U. hex 00 00 00 00 00 00 04 09 00 00 00 00 0f 01 55
aa
   20 char Samba Fileserver hex 53 61 6d 62 61 20 46 69 6c 65 73 65 72 76 65
72
   30 char .hex 00
[2005/01/27 23:17:39, 5] libsmb/nmblib.c:send_udp(776)
  Sending a packet of len 217 to (192.168.0.255) on port 138
[2005/01/27 23:17:39, 0] nmbd/nmbd.c:main(669)
  Netbios nameserver version 3.0.10-1.fc3 started.
  Copyright Andrew Tridgell and the Samba Team 1994-2004
[2005/01/27 23:17:39, 0] nmbd/nmbd_logonnames.c:add_logon_names(163)
  add_domain_logon_names:
  Attempting to become logon server for workgroup HOME on subnet 192.168.0.7
[2005/01/27 23:17:39, 0] nmbd/nmbd_logonnames.c:add_logon_names(163)
  add_domain_logon_names:
  Attempting to become logon server for workgroup HOME on subnet
UNICAST_SUBNET
[2005/01/27 23:17:39, 0]
nmbd/nmbd_become_dmb.c:become_domain_master_browser_wins(327)
  become_domain_master_browser_wins:
  Attempting to become domain master browser on workgroup HOME, subnet
UNICAST_SUBNET.
[2005/01/27 23:17:39, 0]
nmbd/nmbd_become_dmb.c:become_domain_master_browser_wins(341)
  become_domain_master_browser_wins: querying WINS server from IP
192.168.0.7 for domain master browser name HOME1b on workgroup H
OME
[2005/01/27 23:17:39, 0]
nmbd/nmbd_become_dmb.c:become_domain_master_query_success(225)
  become_domain_master_query_success:
  There is already a domain master browser at IP 192.168.0.145 for workgroup
HOME registered on subnet UNICAST_SUBNET.
[2005/01/27 23:17:39, 0]
nmbd/nmbd_logonnames.c:become_logon_server_success(124)
  become_logon_server_success: Samba is now a logon server for workgroup
HOME on subnet UNICAST_SUBNET
[2005/01/27 23:17:43, 0]
nmbd/nmbd_logonnames.c:become_logon_server_success(124)
  become_logon_server_success: Samba is now a logon server for workgroup
HOME on subnet 192.168.0.7
[2005/01/27 23:18:02, 0]
nmbd/nmbd_become_lmb.c:become_local_master_stage2(396)
  *

  Samba name server FILESTORE is now a local master browser for workgroup
HOME on subnet 192.168.0.7

  *
[2005/01/27 23:18:23, 0]
nmbd/nmbd_browsesync.c:domain_master_node_status_fail(250)
  domain_master_node_status_fail:
  Doing a node status request to the domain master browser
  for workgroup HOME at IP 192.168.0.145 failed.
  Cannot sync browser lists.


-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Phanton domain controller problem...

2005-01-27 Thread John H Terpstra
On Thursday 27 January 2005 17:01, Ruth Ivimey-Cook wrote:
 Hi,

 Recently I reinstalled the OS on my Samba PDC, letting Linux FC3 installer
 do it's thing then overwriting the smb.conf with my old one.

 Now I find that although it tries but can't become Domain master browser
 again, although it is happy to become a local master, a login server and to
 serve files. The reason given in the log files is that there is another PDC
 on the submet at 192.168.0.145 (see below). That IP is the IP address that
 this (the only) samba server had for a short period during the reinstall.
 There is no machine at that IP now.

 What is going on? Is there some file that stores PDC IP addresses? Note in
 the winbind dump below, the 192.168.0.145 address for HOME and for
 FILESTORE, both of which are bogus.

Stop Samba. Delete your wins.dat file and browse.dat file in /var/lib/samba 
(or wherever they are on FC3) and restart samba.

- John T.
-- 
John H Terpstra
Samba-Team Member
Phone: +1 (650) 580-8668

Author:
The Official Samba-3 HOWTO  Reference Guide, ISBN: 0131453556
Samba-3 by Example, ISBN: 0131472216
Hardening Linux, ISBN: 0072254971
Other books in production.
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Phanton domain controller problem...

2005-01-27 Thread John H Terpstra
On Thursday 27 January 2005 17:37, Ruth Ivimey-Cook wrote:
 John H Terpstra wrote:
  Stop Samba. Delete your wins.dat file and browse.dat file in

 /var/lib/samba

 Thanks, that did it. The files are in /var/cache/samba on FC3

 Can I ask: in trying to sort this out, I discovered I wasn't running
 winbindd. Now, I've no other WINS server, although there is a DNS server.
 Do I need winbindd?

You need winbind to handle users who use workstations that are NOT part of 
your domain.

- John T.
-- 
John H Terpstra
Samba-Team Member
Phone: +1 (650) 580-8668

Author:
The Official Samba-3 HOWTO  Reference Guide, ISBN: 0131453556
Samba-3 by Example, ISBN: 0131472216
Hardening Linux, ISBN: 0072254971
Other books in production.
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba