The Samba-Bugzilla – Bug 4799
Samba Active Directory member: Users cant access share "failed to parse PAC"
Last modified: 2008-11-06 04:16:37 UTC
I intend to use Samba as member of Win2k Active Directory with Winbind.
But every time a user wants to access my share i get the following error: decode_pac_data: failed to parse PAC
The user is allowed to use the share ofcourse.
The logs are too long to paste here so loaded them onto a webserver.
Ok, I hope this stuff is useful to you Samba guys.
Reproduced it with a Win2k w/o SP DC.
This is where MS used a slightly different PAC formatting. Should be fixed by installing MS updates (SP4).
In the initial PAC format (where MS stored all domain groups SIDs as full sids instead of storing them in the rid-array) there is apparently not num_groups2 uint32.
Can you please verify if installing latest MS updates solves that issue for you?
Ok Ive installed SP4 on the 2k Server.
Then I tried to access the shares again, without success.
After deletion and reinstallation of Kerberos and Samba it worked.
Now I love Samba again.
Fixed since a long time.