Difference between revisions of "Talk:Client Authentication:Ubuntu"

From SME Server
Jump to navigationJump to search
(Talk page cleared of recent comments)
 
Line 12: Line 12:
  
 
[[User:VIP-ire|Daniel B.]] 08:30, 31 August 2010
 
[[User:VIP-ire|Daniel B.]] 08:30, 31 August 2010
 
Good work, thanks. Just some minor edits for consistency of naming of SME Server, See: http://wiki.contribs.org/Help:Wiki_Manual_of_Style. [[User:Trex|Terry Fage]] ([[User talk:Trex|talk]]) 14:48, 17 February 2013 (MST)
 
 
Using Xubuntu.
 
 
Made some minor chages where sudo is required.
 
 
Note that you need to set the hostname in /etc/hostname and update /etc/hosts to match the username or it will create a new machine account in /db/accounts and will give you an incorrect /home folder
 
 
Also found that the shares were mounted in /home/USER/share
 
I didn't get a folder at /home/DOMAIN/share
 
 
Also getting these server log errors :
 
 
esmith smbd[24543]: rpc_server/netlogon/srv_netlog_nt.c:976(_netr_ServerAuthenticate3)
 
esmith smbd[24543]: _netr_ServerAuthenticate2: netlogon_creds_server_check failed. Rejecting auth request from client FRED machine account FRED$
 
 
Lot of posts about regarding Win 7 Clients but not many on Linux. These may help but I am none the wiser :
 
 
http://sead1.open.ac.uk/samba_analysis/bugzilla/bugentry_6247.html
 
http://samba.2283325.n4.nabble.com/Error-netr-ServerAuthenticate2-netlogon-creds-server-check-failed-td2426381.html
 
 
 
Also note that if you use sudo at a terminal on the client you get the following errors :
 
 
fred@fred:~$ sudo mc
 
 
[sudo] password for fred:
 
 
Access is denied
 
 
pam_mount(mount.c:69): Messages from underlying mount program:
 
 
pam_mount(mount.c:73): mount error(13): Permission denied
 
 
pam_mount(mount.c:73): Refer to the mount.cifs(8) manual page (e.g. man mount.cifs)
 
 
pam_mount(pam_mount.c:521): mount of homes failed
 
 
pam_mount(mount.c:69): umount messages:
 
 
pam_mount(mount.c:73): umount: /root/nethome: not found
 
 
pam_mount(mount.c:752): unmount of homes failed
 
 
 
Also got these messages in /var/log/syslog :
 
 
Status code returned 0xc000006d NT_STATUS_LOGON_FAILURE
 
 
CIFS VFS: Send error in SessSetup = -13
 
 
CIFS VFS: cifs_mount failed w/return code = -13
 
 
ASlo cannot run synaptic form the menu.
 
 
Menu shows it runs as synaptic-pkexec
 
 
I tfails as follows :
 
fred@fred:~$ synaptic-pkexec
 
**
 
ERROR:pkexec.c:138:pam_conversation_function: code should not be reached
 
Aborted
 
 
It does run with sudo
 
 
[[User :ReetP|John Crisp]] 12.30 20th February 2013
 
 
 
“Made some minor chages where sudo is required. “ Not required, the HowTo clearly states that sudo su should be used for root privileges.
 
 
I have never found it necessary to change /etc/hostname or /etc/hosts and never had an incorrect home folder.
 
 
I have setup several computers using this HowTo and shares have always been mounted in the correct folder at /home/DOMAIN/username/share.
 
 
I do not understand the point of the comment regarding Window 7 clients, it's obvious that Windows is more widely used but this HowTo has nothing to do with Windows and is directed at those who have seen the light and want help with a better OS.
 
 
Using sudo at a terminal on the client does give some errors but not all those highlighted above, maybe the HowTo was not followed correctly or maybe it does not work with Xubuntu.
 
 
Synaptic is no longer installed by default in Ubuntu although I believe it is still used by some distros based on Ubuntu. There has been a bug in Synaptic which prevents it loading from the menu. There is a simple workaround which I have tested and which works, I will add it to the HowTo if it's still considered worthwhile continuing.
 
 
It seems this HowTo throws up several error messages but it does seem to work therefore what is the consensus, do I continue or shall I scrap it due to the error messages? [[User:Relayer|Relayer]] ([[User talk:Relayer|talk]]) 15:01, 22 February 2013 (MST)
 
 
 
Relayer, Excellent work. I found the above problems when I followed your instructions on Xubuntu - it may be worth you trying a VM install and seeing if you can repeat them.
 
 
hosts/hostname were a problem for me as they did not match the names on the server - I noticed the server created a new machine name which was not necessary - my machines were named 'username-xubuntu' so I changed it to just 'username'
 
 
Mounts were an issue but no idea why.
 
 
Windows 7 - it was due to the log errors I noticed as above. I was getting those errors and searched for an answer - Win 7 clients commonly tend to generate them on the server, but not many linux clients, so I was making a note.
 
 
Regarding the terminal errors, I am sure it is due to some misconfiguration on Xubuntu but do not know what.
 
 
Synaptic isn't installed on Xubuntu, but I always add it. I am sure many others do. It threw an error so I reported it - not a criticism, but a fact :-) If you have a woraround, then please add a note box that there is a potential problem with Synaptic, and the workarounds.
 
 
[[User :ReetP|John Crisp]] 18.25 25th February 2013
 

Latest revision as of 21:50, 12 June 2013

Have you considered using LDAP against sme8, may or may not be simpler, at least you wouldn't be using winbind.

Snoble 23:28, 15 March 2010 (UTC)

it could be interesting but how? any hint? thank you

Stefano 23:56, 30 August 2010


Yes, it'd be interesting, but I think we need to apply a patch so that users have the posixAccount objectClass (needed to store the UidNumber). See this bug: http://bugs.contribs.org/show_bug.cgi?id=6074 I've posted a patch, and I'm waiting for someone to review it.

Daniel B. 08:30, 31 August 2010