Sponsored Content
Homework and Emergencies Homework & Coursework Questions cannot join xp or vista to samba domain (PDC) Post 302396426 by pogipants on Thursday 18th of February 2010 11:21:27 AM
Old 02-18-2010
cannot join xp or vista to samba domain (PDC)

Use and complete the template provided. The entire template must be completed. If you don't, your post may be deleted!

1. The problem statement, all variables and given/known data:
I have a barebones XP Pro SP2 with no firewall.

CentOS 5.xx running a Samba 3.xx Domain (PDC)

The XP machine has the Samba server set as the WINS server and netbios over tcp/ip is enabled.

The PDC is running a WINS server that is in fact working correctly.
-The xp machine can see it with the "net view" command.
-The xp machine can "ping" the server by using its netbios name.


2. Relevant commands, code, scripts, algorithms:
Here is the configuration of the /etc/samba/smb.conf file
Code:
#### SAMBA CONFIG ####

### GENERAL SERVER STUFF 
[global]
workgroup = WORKGROUP
netbios name = samba 
server string = i r samba
encrypt passwords = yes

wins support = Yes

hosts allow = 192.

load printers = Yes
printcap name = cups
show add printer wizard = Yes
printing = cups

passdb backend = tdbsam
security = user
add user script = /usr/sbin/useradd -m %u
delete user script = /usr/sbin/userdel -r %u
add group script = /usr/sbin/groupadd %g
delete group script = /usr/sbin/groudel %g
add user to group script = /usr/sbin/usermod -G %g %u
add machine script = /usr/sbin/useradd -s /bin/false -d /dev/null -g machines %u

# Followiing specifies the default logon script
# Per user logon scripts can be specified by the user
# account using pdbedit logon script = logon.bat
# This sets the default profile path
# Set per user paths with pbedit
logon drive = H:
domain logons = Yes
os level = 35
preferred master = Yes
domain master = Yes

[homes]
	comment = HOME DIRECTORIES
	valid users = %S
	read only = No

[netlogon]
	comment = NETWORK LOGON SERVICE
	path = /var/lib/samba/netlogon/scripts
	browseable = No
	read only = No

[Profiles]
	comment = ROAMING PROFILE SHARE
	path = /var/lib/samba/profiles
	read only = No
	browseable = No
	guest ok = Yes
	profile acls = Yes

[printers]
	comment = ALL PRINTERS
	path = /var/spool/samba
	guest ok = Yes
	printable = Yes
	use client driver = Yes
	browseable = Yes


### $HARE$$$$
[share]
	comment = comment
	path = /share
	read only = Yes
	valid users = vmuser



3. The attempts at a solution (include all code and scripts):
I've tried to see so many different sites and solutions but none have worked. They seem to have done the same thing i've done just with a success. I've seriously been trying to get this fixed for like 2 weeks at school. Even though i failed i want to know what's going on!



4. School Info

University of Cincinnati
Cincinnati, OH, USA
Nyland
32 IT 415 you have to go to Winter09-10 ==> 32 ==> IT.
 

10 More Discussions You Might Find Interesting

1. UNIX for Dummies Questions & Answers

Using Samba to join a win 2000 Domain

I am trying to set samba up to join my windows 2000 domain and I am having troubles If anyone if familiar with this help would be greatly appreciated I issue the following command # ./smbpasswd -j DOMAIN -r DOMAINCONTROLER And the following gets returned load_client_codepage: filename... (4 Replies)
Discussion started by: gennaro
4 Replies

2. UNIX for Dummies Questions & Answers

domain logon problem - FreeBSD PDC w/ win2k pro and winxp pro

this is the seventh problem i'm having with samba. for some reason, i cannot logon to the domain. i've created user accounts... and i was able to establish a connection between the samba server (my PDC) and my workstations by logging in as "root." however now when i try to logon it gives... (5 Replies)
Discussion started by: xyyz
5 Replies

3. UNIX for Advanced & Expert Users

Samba does not connect to domain

I have a samba server and a raid SAN which is actually running samba. Neither one lets me access anything on the samba unix side. I really do not know where to look anymore. there are no errors. When I try to connect to the samba server I get prompted with login and password repeatedly. Frank (4 Replies)
Discussion started by: frankkahle
4 Replies

4. Ubuntu

How To Join NIS Domain to an Ubuntu workstation

Hi guys, i am having a problem :confused:actually i never did this before,so please help me to join nis domain to an ubuntu workstation. As i have configured and running NIS Server on RedHat 4.0 in my network and want to set an ubuntu workstation as client. please tell all steps......looking for... (2 Replies)
Discussion started by: daya.pandit
2 Replies

5. UNIX for Dummies Questions & Answers

migrate samba pdc from one server to another

Hi there, Hope this forum is adapted to my question. I have : + 1 Debian server with Samba set to authenticate users in the domain HOME (workgroup = HOME / domain logons = yes). + 3 Windows XP Laptops configured to belong to the domain HOME. So on startup, I'm invited to enter a login password... (2 Replies)
Discussion started by: chebarbudo
2 Replies

6. UNIX for Dummies Questions & Answers

Samba change domain controller

Hello people i have a samba and they changed domain controller from a windows 2003 to a windows 2008, there is a problem with the version of samba maybe incompatibilities i dont know what show me this domain_client_validate: unable to validate password for user xxxx in domain xxxx to Domain... (0 Replies)
Discussion started by: enkei17
0 Replies

7. Debian

Testing a SAMBA Domain Controller

Hello,,, We have an existing(working) MS PDC in our office. I have already installed SAMBA with LDAP Authentication on a TEST machine (on same LAN). But, am unable to join a WinXP machine to this domain. in smb.conf i have: WORKGROUP = mydomain and tried to join the XP machine to... (0 Replies)
Discussion started by: coolatt
0 Replies

8. Windows & DOS: Issues & Discussions

Lost Domain Admin Privileges in Samba

Hello, I have apparently lost all domain admin privledges in Samba. I have had several problems ever since I installed the 1/31 Solaris patch cluster. I had to roll out one Samba update (146363-01), which denied all logons network access. However, this particular problem seems to have begun... (0 Replies)
Discussion started by: stringman
0 Replies

9. Red Hat

RHEL 6 SAMBA PDC not loading user's profile

Hi all I am facing a problem. I have configured SAMBA PDC on RHEL 6. Everything is going very smooth. Users are being logged in properly & their network drives (i-e; z: drives) are being shown. But either i login to Windows XP or Windows 7, user's profile does not get loaded. I get an error... (0 Replies)
Discussion started by: Yawar_Aziz
0 Replies

10. Red Hat

Open source s/w to join to AD domain

Looking for open source software to join my RHEL6.x to AD domain for . - Domain login - Group based restriction Already tested - Pbis open -> But rejected as some library conflicts - Realmd -> Not supportive for RHEL 6.x Please suggest any open source tools (2 Replies)
Discussion started by: Shirishlnx
2 Replies
PDBEDIT(8)						    System Administration tools 						PDBEDIT(8)

NAME
pdbedit - manage the SAM database (Database of Samba Users) SYNOPSIS
pdbedit [-a] [-b passdb-backend] [-c account-control] [-C value] [-d debuglevel] [-D drive] [-e passdb-backend] [-f fullname] [--force-initialized-passwords] [-g] [-h homedir] [-i passdb-backend] [-I domain] [-K] [-L] [-m] [-M SID|RID] [-N description] [-P account-policy] [-p profile] [--policies-reset] [-r] [-s configfile] [-S script] [-t] [--time-format] [-u username] [-U SID|RID] [-v] [-V] [-w] [-x] [-y] [-z] [-Z] DESCRIPTION
This tool is part of the samba(7) suite. The pdbedit program is used to manage the users accounts stored in the sam database and can only be run by root. The pdbedit tool uses the passdb modular interface and is independent from the kind of users database used (currently there are smbpasswd, ldap, nis+ and tdb based and more can be added without changing the tool). There are five main ways to use pdbedit: adding a user account, removing a user account, modifing a user account, listing user accounts, importing users accounts. OPTIONS
-L|--list This option lists all the user accounts present in the users database. This option prints a list of user/uid pairs separated by the ':' character. Example: pdbedit -L sorce:500:Simo Sorce samba:45:Test User -v|--verbose This option enables the verbose listing format. It causes pdbedit to list the users in the database, printing out the account fields in a descriptive format. Example: pdbedit -L -v --------------- username: sorce user ID/Group: 500/500 user RID/GRID: 2000/2001 Full Name: Simo Sorce Home Directory: \BERSERKERsorce HomeDir Drive: H: Logon Script: \BERSERKER etlogonsorce.bat Profile Path: \BERSERKERprofile --------------- username: samba user ID/Group: 45/45 user RID/GRID: 1090/1091 Full Name: Test User Home Directory: \BERSERKERsamba HomeDir Drive: Logon Script: Profile Path: \BERSERKERprofile -w|--smbpasswd-style This option sets the "smbpasswd" listing format. It will make pdbedit list the users in the database, printing out the account fields in a format compatible with the smbpasswd file format. (see the smbpasswd(5) for details) Example: pdbedit -L -w sorce:500:508818B733CE64BEAAD3B435B51404EE: D2A2418EFC466A8A0F6B1DBB5C3DB80C: [UX ]:LCT-00000000: samba:45:0F2B255F7B67A7A9AAD3B435B51404EE: BC281CE3F53B6A5146629CD4751D3490: [UX ]:LCT-3BFA1E8D: -u|--user username This option specifies the username to be used for the operation requested (listing, adding, removing). It is required in add, remove and modify operations and optional in list operations. -f|--fullname fullname This option can be used while adding or modifing a user account. It will specify the user's full name. Example: -f "Simo Sorce" -h|--homedir homedir This option can be used while adding or modifing a user account. It will specify the user's home directory network path. Example: -h "\\BERSERKER\sorce" -D|--drive drive This option can be used while adding or modifing a user account. It will specify the windows drive letter to be used to map the home directory. Example: -D "H:" -S|--script script This option can be used while adding or modifing a user account. It will specify the user's logon script path. Example: -S "\\BERSERKER\netlogon\sorce.bat" -p|--profile profile This option can be used while adding or modifing a user account. It will specify the user's profile directory. Example: -p "\\BERSERKER\netlogon" -M|'--machine SID' SID|rid This option can be used while adding or modifying a machine account. It will specify the machines' new primary group SID (Security Identifier) or rid. Example: -M S-1-5-21-2447931902-1787058256-3961074038-1201 -U|'--user SID' SID|rid This option can be used while adding or modifying a user account. It will specify the users' new SID (Security Identifier) or rid. Example: -U S-1-5-21-2447931902-1787058256-3961074038-5004 Example: '--user SID' S-1-5-21-2447931902-1787058256-3961074038-5004 Example: -U 5004 Example: '--user SID' 5004 -c|--account-control account-control This option can be used while adding or modifying a user account. It will specify the users' account control property. Possible flags are listed below. o N: No password required o D: Account disabled o H: Home directory required o T: Temporary duplicate of other account o U: Regular user account o M: MNS logon user account o W: Workstation Trust Account o S: Server Trust Account o L: Automatic Locking o X: Password does not expire o I: Domain Trust Account Example: -c "[X ]" -K|--kickoff-time This option is used to modify the kickoff time for a certain user. Use "never" as argument to set the kickoff time to unlimited. Example: pdbedit -K never user -a|--create This option is used to add a user into the database. This command needs a user name specified with the -u switch. When adding a new user, pdbedit will also ask for the password to be used. Example: pdbedit -a -u sorce new password: retype new password Note pdbedit does not call the unix password syncronisation script if unix password sync has been set. It only updates the data in the Samba user database. If you wish to add a user and synchronise the password that immediately, use smbpasswd's -a option. -t|--password-from-stdin This option causes pdbedit to read the password from standard input, rather than from /dev/tty (like the passwd(1) program does). The password has to be submitted twice and terminated by a newline each. -r|--modify This option is used to modify an existing user in the database. This command needs a user name specified with the -u switch. Other options can be specified to modify the properties of the specified user. This flag is kept for backwards compatibility, but it is no longer necessary to specify it. -m|--machine This option may only be used in conjunction with the -a option. It will make pdbedit to add a machine trust account instead of a user account (-u username will provide the machine name). Example: pdbedit -a -m -u w2k-wks -x|--delete This option causes pdbedit to delete an account from the database. It needs a username specified with the -u switch. Example: pdbedit -x -u bob -i|--import passdb-backend Use a different passdb backend to retrieve users than the one specified in smb.conf. Can be used to import data into your local user database. This option will ease migration from one passdb backend to another. Example: pdbedit -i smbpasswd:/etc/smbpasswd.old -e|--export passdb-backend Exports all currently available users to the specified password database backend. This option will ease migration from one passdb backend to another and will ease backing up. Example: pdbedit -e smbpasswd:/root/samba-users.backup -g|--group If you specify -g, then -i in-backend -e out-backend applies to the group mapping instead of the user database. This option will ease migration from one passdb backend to another and will ease backing up. -b|--backend passdb-backend Use a different default passdb backend. Example: pdbedit -b xml:/root/pdb-backup.xml -l -P|--account-policy account-policy Display an account policy Valid policies are: minimum password age, reset count minutes, disconnect time, user must logon to change password, password history, lockout duration, min password length, maximum password age and bad lockout attempt. Example: pdbedit -P "bad lockout attempt" account policy value for bad lockout attempt is 0 -C|--value account-policy-value Sets an account policy to a specified value. This option may only be used in conjunction with the -P option. Example: pdbedit -P "bad lockout attempt" -C 3 account policy value for bad lockout attempt was 0 account policy value for bad lockout attempt is now 3 -y|--policies If you specify -y, then -i in-backend -e out-backend applies to the account policies instead of the user database. This option will allow to migrate account policies from their default tdb-store into a passdb backend, e.g. an LDAP directory server. Example: pdbedit -y -i tdbsam: -e ldapsam:ldap://my.ldap.host --force-initialized-passwords This option forces all users to change their password upon next login. -N|--account-desc description This option can be used while adding or modifing a user account. It will specify the user's description field. Example: -N "test description" -Z|--logon-hours-reset This option can be used while adding or modifing a user account. It will reset the user's allowed logon hours. A user may login at any time afterwards. Example: -Z -z|--bad-password-count-reset This option can be used while adding or modifing a user account. It will reset the stored bad login counter from a specified user. Example: -z --policies-reset This option can be used to reset the general password policies stored for a domain to their default values. Example: --policies-reset -I|--domain This option can be used while adding or modifing a user account. It will specify the user's domain field. Example: -I "MYDOMAIN" --time-format This option is currently not being used. -h|--help Print a summary of command line options. -d|--debuglevel=level level is an integer from 0 to 10. The default value if this parameter is not specified is 0. The higher this value, the more detail will be logged to the log files about the activities of the server. At level 0, only critical errors and serious warnings will be logged. Level 1 is a reasonable level for day-to-day running - it generates a small amount of information about operations carried out. Levels above 1 will generate considerable amounts of log data, and should only be used when investigating a problem. Levels above 3 are designed for use only by developers and generate HUGE amounts of log data, most of which is extremely cryptic. Note that specifying this parameter here will override the smb.conf.5.html# parameter in the smb.conf file. -V|--version Prints the program version number. -s|--configfile <configuration file> The file specified contains the configuration details required by the server. The information in this file includes server-specific information such as what printcap file to use, as well as descriptions of all the services that the server is to provide. See smb.conf for more information. The default configuration file name is determined at compile time. -l|--log-basename=logdirectory Base directory name for log/debug files. The extension ".progname" will be appended (e.g. log.smbclient, log.smbd, etc...). The log file is never removed by the client. NOTES
This command may be used only by root. VERSION
This man page is correct for version 3 of the Samba suite. SEE ALSO
smbpasswd(5), samba(7) AUTHOR
The original Samba software and related utilities were created by Andrew Tridgell. Samba is now developed by the Samba Team as an Open Source project similar to the way the Linux kernel is developed. The pdbedit manpage was written by Simo Sorce and Jelmer Vernooij. Samba 3.5 06/18/2010 PDBEDIT(8)
All times are GMT -4. The time now is 06:04 AM.
Unix & Linux Forums Content Copyright 1993-2022. All Rights Reserved.
Privacy Policy