Bug 10929 - Problem with authentication
Summary: Problem with authentication
Alias: None
Product: Samba 4.1 and newer
Classification: Unclassified
Component: Winbind (show other bugs)
Version: 4.1.13
Hardware: x64 Linux
: P5 normal (vote)
Target Milestone: 4.1
Assignee: Björn Jacke
QA Contact:
Depends on:
Reported: 2014-11-10 03:10 UTC by Fredy Posada
Modified: 2020-01-08 12:00 UTC (History)
0 users

See Also:

samba log start (22.79 KB, text/plain)
2014-11-10 03:12 UTC, Fredy Posada
no flags Details

Note You need to log in before you can comment on or make changes to this bug.
Description Fredy Posada 2014-11-10 03:10:44 UTC
Good night,

I have a problem with the authentication server using samba - winbind. This server came running smoothly for more than a year ago. However, due to a network problem connecting to the ADS was lost and now I can not reconnect.

I increased the detail log to determine the cause, but I was unable. Deputy error message Winbind and Samba.

Thanks for any help you can give me.

Fredy Posada

Winbind log:

incocreap:/var/log # more samba.log.winbindd
[2014/11/09 21:58:04.822605,  3] ../source3/param/loadparm.c:4839(lp_load_ex)
  lp_load_ex: refreshing parameters
[2014/11/09 21:58:04.822739,  3] ../source3/param/loadparm.c:750(init_globals)
  Initialising global parameters
[2014/11/09 21:58:04.822821,  3] ../lib/util/params.c:550(pm_process)
  params.c:pm_process() - Processing configuration file "/etc/samba/smb.conf"
[2014/11/09 21:58:04.822863,  3] ../source3/param/loadparm.c:3565(do_section)
  Processing section "[global]"
  doing parameter workgroup = INCOCREDITO
  doing parameter logon path = \\%L\profiles\.msprofile
  doing parameter logon home = \\%L\%U\.9xprofile
  doing parameter logon drive = P:
  doing parameter usershare allow guests = No
  doing parameter winbind separator = #        usershare allow guests = No
  doing parameter idmap backend = tdb
[2014/11/09 21:58:04.823063,  1] ../source3/param/loadparm.c:3179(lp_do_parameter)
  WARNING: The "idmap backend" option is deprecated
  doing parameter idmap uid = 16777216-33554431
[2014/11/09 21:58:04.823142,  1] ../source3/param/loadparm.c:3179(lp_do_parameter)
  WARNING: The "idmap uid" option is deprecated
  doing parameter idmap gid = 16777216-33554431
[2014/11/09 21:58:04.823220,  1] ../source3/param/loadparm.c:3179(lp_do_parameter)
  WARNING: The "idmap gid" option is deprecated
  doing parameter idmap config AD:backend = rid
  doing parameter idmap config AD:range = 16777216-33554431
  doing parameter realm = INCOCREDITO.COM.CO
  doing parameter security = ADS
  doing parameter template homedir = /home/%D/%U
  doing parameter template shell = /bin/bash
  doing parameter winbind refresh tickets = yes
  doing parameter ldap admin dn = CN=admin2002,CN=Users,DC=incocredito,DC=com,DC=co
  doing parameter socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
  doing parameter domain master = false
  doing parameter encrypt passwords = Yes
  doing parameter ldap machine suffix = ou=Computers
  doing parameter ldap suffix = dc=incocredito,dc=com,dc=co
  doing parameter local master = No
  doing parameter ldap idmap suffix = ou=Idmap
  doing parameter wins support = No
  doing parameter preferred master = no
  doing parameter load printers = No
  doing parameter guest ok = No
  doing parameter browseable = Yes
  doing parameter restrict anonymous = Yes
  doing parameter password server = incodom1.incocredito.com.co incodom2.incocredito.com.co
  doing parameter netbios name = incocreap
  doing parameter log level = 4
  doing parameter log file = /var/log/samba.log.%m
  doing parameter max log size = 50
  doing parameter debug timestamp = yes
[2014/11/09 21:58:04.823922,  4] ../source3/param/loadparm.c:4878(lp_load_ex)
  pm_process() returned Yes
[2014/11/09 21:58:04.824119,  2] ../source3/lib/interface.c:341(add_interface)
  added interface eth0 ip= bcast= netmask=
[2014/11/09 21:58:04.824270,  2] ../source3/lib/interface.c:341(add_interface)
  added interface eth0 ip= bcast= netmask=
[2014/11/09 21:58:04.825724,  4] ../source3/lib/time.c:266(TimeInit)
  TimeInit: Serverzone is 18000
[2014/11/09 21:58:04.826298,  0] ../source3/winbindd/winbindd_cache.c:3196(initialize_winbindd_cache)
  initialize_winbindd_cache: clearing cache and re-creating with version number 2
[2014/11/09 21:58:04.838716,  2] ../source3/winbindd/winbindd_util.c:255(add_trusted_domain)
  Added domain BUILTIN (null) S-1-5-32
[2014/11/09 21:58:04.838846,  2] ../source3/winbindd/winbindd_util.c:255(add_trusted_domain)
  Added domain INCOCREAP (null) S-1-5-21-2240438533-64597085-3450219591
[2014/11/09 21:58:04.838913,  0] ../source3/winbindd/winbindd_util.c:634(init_domain_list)
  Could not fetch our SID - did we join?
[2014/11/09 21:58:04.838973,  0] ../source3/winbindd/winbindd.c:1240(winbindd_register_handlers)
  unable to initialize domain list
Comment 1 Fredy Posada 2014-11-10 03:12:30 UTC
Created attachment 10422 [details]
samba log start
Comment 2 Amit Kumar 2018-09-17 07:30:33 UTC
Dear Fredy.

Its been long since bug was opened. Are you still facing the issue?

[2014/11/09 21:58:04.838913,  0] ../source3/winbindd/winbindd_util.c:634(init_domain_list)   Could not fetch our SID - did we join?

This means you need to rejoin.
# net ads join -U <>
Comment 3 Björn Jacke 2020-01-08 12:00:30 UTC
This looks like a support request, this cannot be handled in bugzilla. Please consult the samba mailing list or a supporting company from https://www.samba.org/samba/support/