Подскажите плииз...
Есть PDC на Линукс и Самба3. конфиг ниже...
-------------
[global]
hide unreadable = Yes
map acl inherit = Yes
inherit acls = Yes
obey pam restrictions = No
strict allocate = No
strict sync = No
sync always = No
admin users = @wheel
workgroup = TRADE
printing = cups
server string = PDC SMB %v
printcap name = cups
printcap cache time = 750
cups options = raw
map to guest = Bad User
logon path =
logon home =
template homedir =
logon drive = P:
logon script = STARTUP.CMD
idmap gid = 10000-20000
idmap uid = 10000-20000
enable privileges = yes
security = user
username map = /etc/samba/smbusers
smb passwd file = /etc/samba/smbpasswd
null passwords = no
unix password sync = yes
passwd program = /usr/bin/passwd %u
domain logons = Yes
domain master = Yes
local master = Yes
os level = 65
preferred master = Yes
log level = 6
log file = /var/log/samba/log.%m
log level = 0
time server = yes
wins support = Yes
wins proxy = yes
dos charset = 866
unix charset = UTF-8
display charset = UTF-8
use sendfile = no
wide links = no
socket options = TCP_NODELY SO_SNDBUF=8192 SORCVBUF=8192 SO_KEEPALIVE SO_REUSEADDR SO_BROADCAST
debug level = 1
kernel oplocks = Yes
deadtime = 15
keep alive = 120
getwd cache = yes
ldap suffix =
passdb backend = smbpasswd
[homes]
comment = Home Directories
valid users = %U, @wheel
browseable = No
read only = No
directory mask = 0700
create mask = 0600
inherit acls = Yes
------------------------------------------------------
И пытаюсь ввести в члены домена FreeBSD c Самбой3 со след. конфигом, чтобы winbindd-ом авторизоваться на PDC.
------------------------------------------------------
[global]
log file = /var/log/samba/log.%m
netbios name = myserver
display charset = KOI8-R
idmap gid = 10000-20000
password server = pdcserver
idmap uid = 10000-20000
dos charset = CP866
template homedir = /usr/data/home/%U
workgroup = TRADE
os level = 20
security = user
unix charset = UTF-8
template shell = /bin/bash
winbind separator = \
encrypt passwords = yes
password server = pdcserver
winbind use default domain = yes
[Backup]
path=/data/Backup
comment = Backups
writable = No
browseable = Yes
create mask = 0660
directory mask = 0770
force user = root
admin users = @"TRADE\domain admins"
valid users = @"TRADE\domain admins"
--------------------------
комманды wbinfo -u и -g проходят, при наборе wbinfo -t выдается
----------------------
myserver# wbinfo -t
checking the trust secret via RPC calls failed
error code was NT_STATUS_CANT_ACCESS_DOMAIN_INFO (0xc00000da)
Could not check secret
myserver#
-------------------------
Тоже самое и выдается на PDC т.е. на pdcserver (это когда на нем набираешь эту комманду). При вводе команды net rpc testjoin -S (что на myserver, что на pdcserver) выдается:
-------------------------
pdcserver# net rpc testjoin -S pdcserver
[2007/11/12 11:57:39, 0] rpc_client/cli_pipe.c:get_schannel_session_key(2449)
get_schannel_session_key: could not fetch trust account password for domain 'TRADE'
[2007/11/12 11:57:39, 0] utils/net_rpc_join.c:net_rpc_join_ok(70)
net_rpc_join_ok: failed to get schannel session key from server nautilus for domain TRADE. Error was NT_STATUS_CANT_ACCESS_DOMAIN_INFO
Join to domain 'TRADE' is not valid
pdcserver#
---------------------
В чем проблема??? подскажите плиииз хоть куда копать и что делать??? Как посмотреть, что не так???
Буду благодарен за любую инфу... Могу предоставить любые ответы на наводящие вопросы
Заранее спасибо
----------------------
С уважением Сергей
Есть PDC на Линукс и Самба3. конфиг ниже...
-------------
[global]
hide unreadable = Yes
map acl inherit = Yes
inherit acls = Yes
obey pam restrictions = No
strict allocate = No
strict sync = No
sync always = No
admin users = @wheel
workgroup = TRADE
printing = cups
server string = PDC SMB %v
printcap name = cups
printcap cache time = 750
cups options = raw
map to guest = Bad User
logon path =
logon home =
template homedir =
logon drive = P:
logon script = STARTUP.CMD
idmap gid = 10000-20000
idmap uid = 10000-20000
enable privileges = yes
security = user
username map = /etc/samba/smbusers
smb passwd file = /etc/samba/smbpasswd
null passwords = no
unix password sync = yes
passwd program = /usr/bin/passwd %u
domain logons = Yes
domain master = Yes
local master = Yes
os level = 65
preferred master = Yes
log level = 6
log file = /var/log/samba/log.%m
log level = 0
time server = yes
wins support = Yes
wins proxy = yes
dos charset = 866
unix charset = UTF-8
display charset = UTF-8
use sendfile = no
wide links = no
socket options = TCP_NODELY SO_SNDBUF=8192 SORCVBUF=8192 SO_KEEPALIVE SO_REUSEADDR SO_BROADCAST
debug level = 1
kernel oplocks = Yes
deadtime = 15
keep alive = 120
getwd cache = yes
ldap suffix =
passdb backend = smbpasswd
[homes]
comment = Home Directories
valid users = %U, @wheel
browseable = No
read only = No
directory mask = 0700
create mask = 0600
inherit acls = Yes
------------------------------------------------------
И пытаюсь ввести в члены домена FreeBSD c Самбой3 со след. конфигом, чтобы winbindd-ом авторизоваться на PDC.
------------------------------------------------------
[global]
log file = /var/log/samba/log.%m
netbios name = myserver
display charset = KOI8-R
idmap gid = 10000-20000
password server = pdcserver
idmap uid = 10000-20000
dos charset = CP866
template homedir = /usr/data/home/%U
workgroup = TRADE
os level = 20
security = user
unix charset = UTF-8
template shell = /bin/bash
winbind separator = \
encrypt passwords = yes
password server = pdcserver
winbind use default domain = yes
[Backup]
path=/data/Backup
comment = Backups
writable = No
browseable = Yes
create mask = 0660
directory mask = 0770
force user = root
admin users = @"TRADE\domain admins"
valid users = @"TRADE\domain admins"
--------------------------
комманды wbinfo -u и -g проходят, при наборе wbinfo -t выдается
----------------------
myserver# wbinfo -t
checking the trust secret via RPC calls failed
error code was NT_STATUS_CANT_ACCESS_DOMAIN_INFO (0xc00000da)
Could not check secret
myserver#
-------------------------
Тоже самое и выдается на PDC т.е. на pdcserver (это когда на нем набираешь эту комманду). При вводе команды net rpc testjoin -S (что на myserver, что на pdcserver) выдается:
-------------------------
pdcserver# net rpc testjoin -S pdcserver
[2007/11/12 11:57:39, 0] rpc_client/cli_pipe.c:get_schannel_session_key(2449)
get_schannel_session_key: could not fetch trust account password for domain 'TRADE'
[2007/11/12 11:57:39, 0] utils/net_rpc_join.c:net_rpc_join_ok(70)
net_rpc_join_ok: failed to get schannel session key from server nautilus for domain TRADE. Error was NT_STATUS_CANT_ACCESS_DOMAIN_INFO
Join to domain 'TRADE' is not valid
pdcserver#
---------------------
В чем проблема??? подскажите плиииз хоть куда копать и что делать??? Как посмотреть, что не так???
Буду благодарен за любую инфу... Могу предоставить любые ответы на наводящие вопросы
Заранее спасибо
----------------------
С уважением Сергей