Failed With Error Nt_status_pipe_disconnected
Contents |
ads issue Issues related to software problems. Post Reply Print view Search Advanced search 13 posts 1 2 Next Pedzel Posts: 62 Joined: 2011/02/22 13:48:00 [SOLVED] Samba ads
Winbind Could Not Receive Trustdoms
issue Quote Postby Pedzel » 2011/02/22 14:01:54 Hi All.I have a big issue wbinfo -u with my samba.I have tried to change my security settings to ads but i failed Running : 2.6.18-194.el5 #1 SMP Fri Apr 2 14:58:14 EDT 2010 x86_64 x86_64 x86_64 GNU/Linux with Samba version 3.0.33-3.29.el5_5.1.Before setting security to ads my shares were visible and accessible from other windows clients. I decided to change the security to ads. Configured kerberos and so on.I have used this manual: http://www.howtoforge.com/samba_ads_security_mode_p2When i try to enter the share from windows client it can not connect. I look at the messages i see:Feb 22 14:56:31 XXX winbindd[7959]: [2011/02/22 14:56:31, 0] rpc_client/cli_pipe.c:rpc_api_pipe(790)Feb 22 14:56:31 XXX winbindd[7959]: rpc_api_pipe: Remote machine XXXXXXXX pipe \NETLOGON fnum 0xc00dreturned critical error. Error was NT_STATUS_PIPE_DISCONNECTEDin winbind logs i see : [2011/02/22 14:56:31, 1] nsswitch/winbindd_util.c:trustdom_recv(230) Could not receive trustdomsDo you have any ideas where to look for solving this issue?Best regardsMarcin Top pschaff Retired Moderator Posts: 18276 Joined: 2006/12/13 20:15:34 Location: Tidewater, Virginia, North America Contact: Contact pschaff Website [SOLVED] Samba ads issue Quote Postby pschaff » 2011/02/22 23:50:40 Welcome to the CentOS fora. Reading FAQ & Readme First is recommended for new users.Have you taken Redmond out of the picture and tried to connect from CentOS with smbclient? Top Pedzel Posts: 62 Joined: 2011/02/22 13:48:00 Re: Samba ads issue Quote Postby Pedzel » 2011/02/23 06:24:16 Hi,The same from smb client. [root@xxx ~]# smbclient //192.168.201.30/gfsPassword:session setup failed: NT_STATUS_PIPE_DISCONNECTEDFeb 23 07:16:32 XXX winbindd[7840]: [2011/02/23 07:16:32, 0] rpc_client/cli_pipe.c:rpc_api_pipe(790)Feb 23 07:16:32 XXX winbindd[7840]: rpc_api_pipe: Remote machine XXXX pipe \NETLOGON fnum 0x4000returned critical error. Error was NT_STATUS_PIPE_DISCONNECTED Top Pedzel Posts: 62 Joined: 2011/02/22 13:48:00 Re: Samba ads issue Quote Postby Pedzel » 2011/02/23 07:40:42 Here is my smb.conf :Code: Select all[global]
workgroup = XXX
realm = XXX
server string = Samba Server Version %v
secur
[x] Format For Printing -XML -Clone This Bug -Last Comment First Last Prev Next This bug is not in your last search results. Bug561325 - Winbind authentication problem against Windows 2008 R2 AD. Summary: Winbind authentication problem against Windows 2008 R2 AD. Status: CLOSED WONTFIX Aliases: None Product: Red Hat Enterprise Linux 5 Classification: Red Hat Component: samba (Show other bugs) Sub Component: --- Version: 5.4 Hardware: x86_64 Linux Priority low http://www.centos.org/forums/viewtopic.php?t=21676 Severity high TargetMilestone: rc TargetRelease: --- Assigned To: Guenther Deschner QA Contact: qe-baseos-daemons Docs Contact: URL: Whiteboard: Keywords: Depends On: Blocks: Show dependency tree /graph Reported: 2010-02-03 07:39 EST by Johan Bergström Modified: 2012-02-06 08:16 EST (History) CC List: 14 users (show) dpal gdeschner hoan.dinh jardine_p johan.bergstrom manuel.pelayo mniranja oguzyilmaz presgas rdieter rprice tao https://bugzilla.redhat.com/show_bug.cgi?id=561325 ukh walt See Also: Fixed In Version: Doc Type: Bug Fix Doc Text: Story Points: --- Clone Of: Environment: Last Closed: 2010-05-26 11:38:14 EDT Type: --- Regression: --- Mount Type: --- Documentation: --- CRM: Verified Versions: Category: --- oVirt Team: --- RHEL 7.3 requirements from Atomic Host: Cloudforms Team: --- Attachments (Terms of Use) Samba config (1.28 KB, application/octet-stream) 2010-02-03 07:39 EST, Johan Bergström no flags Details Migration notes for samba3 (117.42 KB, application/pdf) 2010-06-18 16:17 EDT, Robert Freeman-Day no flags Details Add an attachment (proposed patch, testcase, etc.) Groups: None (edit) Description Johan Bergström 2010-02-03 07:39:44 EST Created attachment 388518 [details] Samba config Description of problem: After joining a Win2k8 R2 Forest/Domain native AD without problems. I wanted to setup user authentication for logging in with pam_winbind. But encountered this problem; [root@udcsp03 etc]# wbinfo -a domainuser%password plaintext password authentication failed error code was NT_STATUS_PIPE_DISCONNECTED (0xc00000b0) error messsage was: Named pipe dicconnected Could not authenticate user domainuser%password with plaintext password challenge/response password authentication failed error
Disabled Detected You currently have javascript disabled. Several functions may not work. Please re-enable javascript to access full functionality. 1 Acitve Directory authentication questions https://forums.openfiler.com/index.php?/topic/4824-acitve-directory-authentication-questions/ Started by steves , Oct 23 2010 12:33 PM Please log http://samba.2283325.n4.nabble.com/Samba-winbind-with-Active-Directory-auth-td2448956.html in to reply 4 replies to this topic #1 steves steves Member Guests 10 posts Posted 23 October 2010 - 12:33 PM I'm trying to use AD authentication.I have a Windows 2008 AD server.From some of the threads I read it seems 2008 could be part of failed with my problem (Samba maybe only supporting 2003 well).However, I can connect and see groups so I suspect I'm almost there.When I click an AD group, no users are shown.And, when trying to access my Openfiler server from Windows to use shares, I get the error:\\Server is not accessible.You might not have permission to use this network resource.Contact the administrator failed with error of this server to find out if you have access permissions.No process is on the other end of the pipe. In /var/log/samba/log.wb-CORP (CORP is the domain), I have these errors: rpc_api_pipe: Remote machine XXXXXXXXXfnum 0x8001 returned critical error. Error was NT_STATUS_PIPE_DISCONNECTED Where XXXXXXXXX is the fqdn of the domain controller (ADS) machine. I'm looking for ideas on how to debug this and anyone else'sexperience using ADS for authentication. I'm also not 100% clear on how ADS should be set in the Openfiler "Accounts" tab.I know I want ADS checked and not LDAP but can't I use LDAP authentication against ADS -- check "Use LDAP Authentication" below in the Expert mode Authentication Configuration section, but do not check "Use LDAP" in the main area? Or should I use Kerberos?I've tried both but it seems if I'm fully using ADS for authentication on my LAN Kerberos shouldn't be needed.When I try using it the ADS server logs Kerberos certificate errors (I did nothing to set Kerberos up there). If the Expert mode "Use LDAP Authentication" is c
♦ ♦ | Report Content as Inappropriate ♦ ♦ Samba/winbind with Active Directory auth Hi List, I'm installing a Samba server with the intended purpose of serving files to Windows users with seamless authentication on the smb server. For that, I've been reading and following every single google search result regarding the subject, but it seems I'm stuck at some point where other people are not blocked ... To summarize, I have these commands OK: # kinit [hidden email] # klist (ticket ok) # net join ads -S server -U admin_user # wbinfo -u and -g (both showing "DOMAIN\...") # wbinfo -t (succeeded) I configured PAM to use winbind, and to test it I'm using ssh with the same config as I will for samba Here's what I get when I try to ssh into my smb server using my AD credentials: Jan 18 15:34:18 smb sshd[9157]: pam_winbind(sshd:auth): getting password (0x00000000) Jan 18 15:34:18 smb sshd[9157]: pam_winbind(sshd:auth): request failed: Named pipe dicconnected, PAM error was System error (4), NT error was NT_STATUS_PIPE_DISCONNECTED Jan 18 15:34:18 smb sshd[9157]: pam_winbind(sshd:auth): internal module error (retval = 4, user = 'DOMAIN\myusername') Jan 18 15:34:18 smb sshd[9157]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.168.5.6 user= DOMAIN\myusername Jan 18 15:34:20 smb sshd[9157]: Failed password for DOMAIN\myusername from 192.168.5.6 port 50872 ssh2 Any idea on what this error (NT_STATUS...) means ? Also when trying this I get an error: smb:~# wbinfo -a admin_user%admin_pwd plaintext password authentication failed Could not authenticate user henry_admin with plaintext password challenge/response password authentication failed error code was NT_STATUS_PIPE_DISCONNECTED (0xc00000b0) error messsage was: Named pipe dicconnected Could not authenticate user admin_user with challenge/response smb:~# Here's my PAM config: auth sufficient pam_winbind.so auth required pam_unix.so use_first_pass account sufficient pam_winbind.so account required pam_unix.so session required pam_mkhomedir.so skel=/etc/skel/ umask=0022 session sufficient pam_winbind.so session required pam_unix.so password requisite pam_cracklib.so retry=3 type= password sufficient pam_unix.so nullok use_authtok md5 shadow password s