The OpenNET Project / Index page

[ новости /+++ | форум | теги | ]

форумы  помощь  поиск  регистрация  майллист  вход/выход  слежка  RSS
"samba 3.3.6 - не могу войти в домен"
Вариант для распечатки  
Пред. тема | След. тема 
Форумы Samba, вопросы интеграции Unix и Windows (Public)
Изначальное сообщение [ Отслеживать ]

"samba 3.3.6 - не могу войти в домен"  +/
Сообщение от olmolos email(ok) on 08-Июл-09, 14:03 
Доброе всем время суток. Собственно вот такая ситуация. Ось FreeBSD 7.2, самба в роли PDC, собрана из портов с такими опциями:


WITH_UTMP=true
WITH_POPT=true

smb.conf:


#======================= Global Settings =====================================


[global]
display charset = KOI8-R
idmap gid = 5000-9999
time server = yes
hosts allow = 10.22.59. 127.
passwd program = /usr/bin/passwd %u
max xmit = 65535
netbios name = pdc
oplocks = yes
delete readonly = yes
idmap uid = 5000-9999
invalid users = guest admin nobody
logon script = %U.bat
dos charset = CP866
local master = yes
workgroup = ROCK
os level = 200
security = user
getwd cache = yes
max log size = 50
dos filetimes = yes
log file = /var/log/samba/log.%m
syslog = 0
log level = 0 vfs:2
read raw = yes
smb passwd file = /usr/local/etc/samba/smbpasswd
write raw = yes
socket options = TCP_NODELAY IPTOS_LOWDELAY
logon drive = H:
deadtime = 15
create mask = 644
domain master = yes
hide dot files = yes
null passwords = no
interfaces = 10.22.59.150 127.0.0.1
encrypt passwords = yes
logon home = \\%L\%U
wins support = yes
name resolve order = wins host lmhosts bcast
dos filetime resolution = yes
server string = Сервер
logon path = \\%L\%U\profile
preferred master = yes
unix charset = KOI8-R
bind interfaces only = yes
domain logons = yes
pam password change = yes


#============================ Share Definitions ==============================

[homes]

path = /home/%U
comment = Домашний каталог
browseable = no
writable = yes
valid users = %S
hide dot files = yes

[netlogon]

root preexec = /usr/script/makels '%m' '%U' '%a' '%g' '%L'
comment = Network Logon Service
path = /usr/local/etc/samba/netlogon
browseable = no
writable = no
read only = yes

[public]

comment = Общие каталоги
path = /usr/local/samba/public
create mask = 766
public = yes
hide dot files = yes
writable = yes
vfs objects = full_audit
full_audit:prefix = %m|%u|%I
full_audit:failure = connect, disconnect, open, mkdir, rmdir, unlink, write, rename
full_audit:success = connect, disconnect, open, mkdir, rmdir, unlink, write, rename
full_audit:facility = local5
full_audit:priority = notice


Вывод testparm:


Load smb config files from /usr/local/etc/smb.conf
Processing section "[homes]"
Processing section "[netlogon]"
Processing section "[public]"
Loaded services file OK.
Server role: ROLE_DOMAIN_PDC
Press enter to see a dump of your service definitions

Завожу пользователя root, test и комп testcomp$. Запускаю самбу. Завожу комп в домен, получаю приглашение, перегружаюсь.
Вхожу в винду под локальным админом, пробую зайти на расшару под test, захожу без проблем. А вот в домен войти уже
под самим пользователем test не могу. Пишет что-то типа "Не удалось подключится к домену...".

В логах такое:

log.smbd:

[2009/07/08 12:17:25,  0] smbd/server.c:main(1263)
  smbd version 3.3.6 started.
  Copyright Andrew Tridgell and the Samba Team 1992-2009
[2009/07/08 12:17:35,  0] lib/util_sock.c:get_peer_addr_internal(1676)
  getpeername failed. Error was Socket is not connected

log.nmbd:

[2009/07/08 12:17:25,  0] nmbd/nmbd.c:main(850)
  nmbd version 3.3.6 started.
  Copyright Andrew Tridgell and the Samba Team 1992-2009
[2009/07/08 12:17:25,  0] nmbd/asyncdns.c:start_async_dns(155)
  started asyncdns process 32563
[2009/07/08 12:17:25,  0] nmbd/nmbd_logonnames.c:add_logon_names(160)
  add_domain_logon_names:
  Attempting to become logon server for workgroup ROCK on subnet 10.22.59.150
[2009/07/08 12:17:25,  0] nmbd/nmbd_logonnames.c:add_logon_names(160)
  add_domain_logon_names:
  Attempting to become logon server for workgroup ROCK on subnet UNICAST_SUBNET
[2009/07/08 12:17:25,  0] nmbd/nmbd_become_dmb.c:become_domain_master_browser_wins(337)
  become_domain_master_browser_wins:
  Attempting to become domain master browser on workgroup ROCK, subnet UNICAST_SUBNET.
[2009/07/08 12:17:25,  0] nmbd/nmbd_become_dmb.c:become_domain_master_browser_wins(351)
  become_domain_master_browser_wins: querying WINS server from IP 127.0.0.1 for domain master browser name ROCK<1b> on workgroup ROCK
[2009/07/08 12:17:25,  0] nmbd/nmbd_logonnames.c:become_logon_server_success(121)
  become_logon_server_success: Samba is now a logon server for workgroup ROCK on subnet UNICAST_SUBNET
[2009/07/08 12:17:25,  0] nmbd/nmbd_become_dmb.c:become_domain_master_stage2(110)
  *****

  Samba server PDC is now a domain master browser for workgroup ROCK on subnet UNICAST_SUBNET

  *****
[2009/07/08 12:17:25,  0] nmbd/nmbd_become_dmb.c:become_domain_master_browser_bcast(292)
  become_domain_master_browser_bcast:
  Attempting to become domain master browser on workgroup ROCK on subnet 10.22.59.150
[2009/07/08 12:17:25,  0] nmbd/nmbd_become_dmb.c:become_domain_master_browser_bcast(305)
  become_domain_master_browser_bcast: querying subnet 10.22.59.150 for domain master browser on workgroup ROCK
[2009/07/08 12:17:30,  0] nmbd/nmbd_logonnames.c:become_logon_server_success(121)
  become_logon_server_success: Samba is now a logon server for workgroup ROCK on subnet 10.22.59.150
[2009/07/08 12:17:34,  0] nmbd/nmbd_become_dmb.c:become_domain_master_stage2(110)
  *****

  Samba server PDC is now a domain master browser for workgroup ROCK on subnet 10.22.59.150

  *****
[2009/07/08 12:17:49,  0] nmbd/nmbd_become_lmb.c:become_local_master_stage2(395)
  *****

  Samba name server PDC is now a local master browser for workgroup ROCK on subnet 10.22.59.150

log.testcomp:

[2009/07/08 10:24:14, 0] smbd/service.c:make_connection_snum(1000)
Can't become connected user!
[2009/07/08 10:25:16, 0] smbd/service.c:make_connection_snum(1000)
Can't become connected user!
[2009/07/08 10:25:51, 0] smbd/service.c:make_connection_snum(1000)
Can't become connected user!
[2009/07/08 10:25:52, 0] smbd/service.c:make_connection_snum(1000)
Can't become connected user!
[2009/07/08 10:26:21, 0] smbd/service.c:make_connection_snum(1000)
Can't become connected user!
[2009/07/08 10:28:06, 0] smbd/service.c:make_connection_snum(1000)
Can't become connected user!


Так вот вопрос, что я не так делаю, ибо на 3.0.35 с такими же настройками захожу в домен без проблем?

Высказать мнение | Ответить | Правка | Cообщить модератору

 Оглавление

Сообщения по теме [Сортировка по времени | RSS]


1. "samba 3.3.6 - не могу войти в домен"  +/
Сообщение от olmolos (ok) on 08-Июл-09, 17:57 
Вопрос снят. Проблему решил комментированием по очереди опций smb.conf. Ошибка была вот где:

    invalid users = guest admin nobody

Убрал из списка пользователя nobody и всё заработало.

Высказать мнение | Ответить | Правка | Наверх | Cообщить модератору

Архив | Удалить

Индекс форумов | Темы | Пред. тема | След. тема




Партнёры:
PostgresPro
Inferno Solutions
Hosting by Hoster.ru
Хостинг:

Закладки на сайте
Проследить за страницей
Created 1996-2025 by Maxim Chirkov
Добавить, Поддержать, Вебмастеру