iptables -L -v will show you which rules are being triggered (when the
service is started).
Its possible its hitting the implicit deny all for the input rule, try
adding some logging to your rules.
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]
Behalf Of Faisal,
October 2003 12:00
To: Gavin Davenport
Cc: Gerald (Jerry) Carter; [EMAIL PROTECTED]; [EMAIL PROTECTED]
Subject: RE: [Samba] Error: Cannot find KDC for requested realm
On Fri, 2003-10-17 at 20:43, Gavin Davenport wrote:
You must authenticate using kinit first, and then net ads join with no
arguments
You must authenticate using kinit first, and then net ads join with no
arguments.
then start winbindd and smb.
I've posted extensively about this - search the archives.
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Jonathan Villa wrote:
[global]
workgroup = OURDOMAIN
security = ADS
realm
I have to say I've had a massive increase (like 200 hundred swen.A mails in
the last 24 hours) since I (re)joined the samba list. I don't think its a
fault of the list, but I'm curious as to why I've had such an increase. I
used to get about 1 virussed mail a month before I joined.
Its
Controllers
snip
[EMAIL PROTECTED] /root]# getent passwd
root:x:0:0:root:/root:/bin/bash
snip
xfs:x:43:43:X Font Server:/etc/X11/fs:/bin/false
gdm:x:42:42::/home/gdm:/bin/bash
gavdav:x:500:500:Gavin Davenport:/home/gavdav:/bin/bash
named:x:200:200:Nameserver:/var/named:/bin/false
vcsa:x:69:69:virtual
-Original Message-
From: Gavin Davenport [mailto:[EMAIL PROTECTED]
Sent: 15 October 2003 09:05
To: [EMAIL PROTECTED]
Cc: Tim Jordan, Network Services
Subject: RE: [Samba] Re: domain groups accessing samba share
Hiya Tim, Thanks for helping.
Can you post your
smb.conf
/etc/pam.d/login
wbinfo
Hi there
Make this:
valid users = @LABOR\domain admins
write list = @LABOR\domain admins
write useres = @LABOR\domain admins
What if the domain user doesn't have a local user on the unix machine ?
How do I get round that ??
-Original Message-
From: [EMAIL
or as $logdir/log.hostname ?
Gavin Davenport
*
My smb.conf
# Global parameters
[global]
workgroup = MYDOMAIN
realm = MYNETWORK.ISP.CO.UK
server string = Linux Samba Server
configure: error: ldap.h is needed for LDAP support
You need the openldap-devel package for ldap.h I think.
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]
Behalf Of Kenny Mann
Sent: 08 October 2003 19:45
To: [EMAIL PROTECTED]
Subject: [Samba] Ldap.h missing in
No, it's a bug. Please file it in bugzilla.
Basically, we look in the path for krb5-config before we consult
that parameter.
Done.
https://bugzilla.samba.org/show_bug.cgi?id=600parameter.
--
To unsubscribe from this list go to the following URL and read the
instructions:
I am able to invoke swat from http://moon:901 http://moon:901/ but I
am not able to invoke from mars.
If I put http://moon:901 http://moon:901/ from the mars web browser I
am getting the error page cannot be displayed
look at /etc/xinetd/swat file. the default 'allow' (if you're using xinetd)
use system krb5 libs, but maybe
compile and install heimdal 0.6 somewhere to be linked ???
Gavin Davenport
-Original Message-
From: Gavin Davenport [mailto:[EMAIL PROTECTED]
Sent: 09 October 2003 09:44
To: [EMAIL PROTECTED]
Subject: RPM build not honouring contents of SPEC file.
Hi
to work.
Gavin Davenport
-Original Message-
From: Gavin Davenport [mailto:[EMAIL PROTECTED]
Sent: 09 October 2003 15:38
To: [EMAIL PROTECTED]
Subject: Rehat Samba 3.0.0 and MIT KRb 1.3.1 build problems.
Hi there
Because I can't work out how to get the samba 3 SRPM to honour my preferred
netstat -an | grep LIST
if there's an entry for *.901 the service is listening.
should also be things written into $logdir/log.swat I think.
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]
Behalf Of Daniel Alsén
Sent: 06 October 2003 23:31
To: [EMAIL PROTECTED]
specified. Is that a (build) bug or
did I do it wrong ??
Gavin Davenport
--
To unsubscribe from this list go to the following URL and read the
instructions: http://lists.samba.org/mailman/listinfo/samba
Thats a very bad idea as thats how lots of windows virusses try to spread :)
Have a look at SSH; you can login, copy files, run remote sessions, all
reasonably securely.
You can probably tunnel a samba connection through an ssh connection too :)
Gavs
-Original Message-
From: [EMAIL
!
Is this a software version thing or is the PDC signing the SMB packets with
an old host key ??
Has anyone done ADS authentication on a Redhat 7.1 box/samba 3.0.0 host ??
Gavin Davenport
p.s. I've just tried the same build on a redhat 8.0 box. Thats failing for
the same reason.
Is it a password thing
??
Anyone any help - I'm not sure if I have a winbind problem or a krb5
problem - somewhere in between ?
Gavin Davenport
--
To unsubscribe from this list go to the following URL and read the
instructions: http://lists.samba.org/mailman/listinfo/samba
database while initializing kadmin
interface.
my machine didn't have a /var/kerberos/krb5kdc/kdc.conf file - do I create
one by hand or is there a tool to help generate one ??
Can anyone help me with some diagnostic tips ?
Gavin Davenport
--
To unsubscribe from this list go to the following URL
19 matches
Mail list logo