LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 01-04-2007, 04:04 PM   #1
m2azer
Member
 
Registered: Sep 2004
Location: USA
Distribution: red hat, fedora & centos
Posts: 202

Rep: Reputation: 30
PAM / Winbind = NT_STATUS_LOGON_FAILURE


Hello all,

I am setting up samba 3.0.23c as a domain member of win2003 active directory- the following steps were successful:
1-join the domain (Joined domain CAD)
2-nmbd, smbd and winbindd were started fine
3-edited nsswich.conf
a-passwd files winbind
b-group files winbind
4-wbinfo -u and -g worked fine i could see the users and the groups as well as getnet passwd user -all fine
5- wbinfo -t return checking the trust secret via RPC calls succeeded


First question: when I created a folder on samba then changed the owner to be one of the AD users the ls -l that folder i get
-rw-r--r-- 1 10002 root 0 Jan 4 12:15 file INSTEAD OF
-rw-r--r-- 1 John root 0 Jan 4 12:15 file
so instead of getting back the owner name i get the owner UID?

i am also getting the following
[root@itbox john]# smbclient -L testbox
Password:
session setup failed: NT_STATUS_LOGON_FAILURE

client machines XP pro are able to browse the network and
get to see my share (user share) however when i double click it i get a login asking for the user name and password

smb.conf:
[global]
workgroup = CAD
netbios name = itbox
security = DOMAIN
encrypt passwords = yes
winbind separator = +
idmap uid = 10000-20000
idmap gid = 10000-20000
winbind enum users = yes
winbind enum groups = yes
winbind use default domain = yes
[homes]
comment = Home Directories
valid users = %S
read only = No
browseable = No

pam.d/samba
#%PAM-1.0
auth required pam_nologin.so
auth required pam_stack.so service=system-auth
auth required pam_winbind.so
account required pam_winbind.so
account required pam_stack.so service=system-auth
session required pam_mkhomedir.so skel=/etc/samba/skel umask=0022
session required pam_stack.so service=system-auth
password required pam_stack.so service=system-auth

do i also need to configue my pam.d/login??
i am still getting
[root@itbox samba]# smbclient -L itbox
Password:
session setup failed: NT_STATUS_LOGON_FAILURE

Last edited by m2azer; 01-05-2007 at 12:59 PM.
 
Old 01-06-2007, 03:24 AM   #2
musicman_ace
Senior Member
 
Registered: May 2001
Location: Indiana
Distribution: Gentoo, Debian, RHEL, Slack
Posts: 1,555

Rep: Reputation: 46
Just as an FYI, Security=DOMAIN is used for an NT4 domain not 2003 AD

You may need to change it to Security=ADS
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
winbind pam module paul_mat Linux - Networking 0 12-21-2005 11:22 PM
winbind without PAM Gort32 Slackware 0 12-16-2005 10:00 AM
winbind + ADS + PAM paul_mat Linux - Networking 2 08-26-2005 12:02 AM
Simple Samba and PAM -> NT_STATUS_LOGON_FAILURE subspawn Linux - Software 1 01-17-2005 07:41 AM
Cyrus/Winbind/Pam taggedd Linux - Software 0 10-27-2003 07:28 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 07:19 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration