RE: smb_auth failing

From: R.Ilker Gokhan <IlkerG@dont-contact.us>
Date: Wed, 5 Apr 2000 17:20:07 +0300

Hi again,
FAT filesystem has not ability file security. Only NTFS filesystem has got
it into Microsoft products. If you have any NTFS partition on PDC you can
use:
        # smb_auth -W domain -S /share/path/to/on/NTFS/proxyauth -d
Ilker G.
Bye from Istanbul

-----Original Message-----
From: Scroggins, Kelly [mailto:ScroggiK@Aegiscomgroup.com]
Sent: Wednesday, April 05, 2000 4:39 PM
To: 'R.Ilker Gokhan'
Subject: RE: smb_auth failing

-----Original Message-----
From: R.Ilker Gokhan [mailto:IlkerG@sumerbank.com.tr]

Hi Kelly,
Allright, smb seems that is working. Do you see that after put the word
"allow":

The proxyauth file has the word 'allow' in it. And that's all it has. I
edited it with vi and I used the :set list command to check for
non-printing characters. I did a search for them too. i.e.: /\r, /\t, etc.

 .......
.......
Contents of //PDC-SERVER/NETLOGON/proxyauth: allow
ERR or OK

In addition, Your NT file system on the PDC should has NFTS filesystem. You
wrote :The 'Everyone' group has read
rigths to this directory (on the PDC). no directory!! assign read access to
the proxyauth file to Everyone or groups.

If NTFS is required, that is the problem. The PDC is on a FAT file system.
If what you say is true, that is the problem.

 

Thanks for you reply,

Kelly

 

Good luck again...
Ilker G.
  
-----Original Message-----
From: Scroggins, Kelly [ mailto:ScroggiK@Aegiscomgroup.com
<mailto:ScroggiK@Aegiscomgroup.com> ]
Sent: Tuesday, April 04, 2000 6:22 PM
To: 'R.Ilker Gokhan'
Subject: RE: smb_auth failing

I checked that too. I used the :set list command in vi to see that there
are no hidden characters.
  
kelly
  
  

-----Original Message-----
From: R.Ilker Gokhan [ mailto:IlkerG@sumerbank.com.tr
<mailto:IlkerG@sumerbank.com.tr> ]
Sent: Tuesday, April 04, 2000 10:22 AM
To: 'Scroggins, Kelly'
Subject: RE: smb_auth failing

Pay attention, there should not be any other character (enter or space)
after the word "allow"

-----Original Message-----
From: Scroggins, Kelly [ mailto:ScroggiK@Aegiscomgroup.com
<mailto:ScroggiK@Aegiscomgroup.com>
< mailto:ScroggiK@Aegiscomgroup.com <mailto:ScroggiK@Aegiscomgroup.com> > ]
Sent: Tuesday, April 04, 2000 6:02 PM
To: 'R.Ilker Gokhan'
Subject: RE: smb_auth failing

I did that. The word 'allow' is in the proxyauth file. And that's the only

thing in it.
  
kelly
  

-----Original Message-----
From: R.Ilker Gokhan [ mailto:IlkerG@sumerbank.com.tr
<mailto:IlkerG@sumerbank.com.tr>
< mailto:IlkerG@sumerbank.com.tr <mailto:IlkerG@sumerbank.com.tr> > ]
Sent: Tuesday, April 04, 2000 2:33 AM
To: 'Scroggins, Kelly'; 'Squid Mailing List'
Subject: RE: smb_auth failing

You have to put ONE word in proxyauth: "allow"..

Good luck...

-----Original Message-----
From: Scroggins, Kelly [ mailto:ScroggiK@Aegiscomgroup.com
<mailto:ScroggiK@Aegiscomgroup.com>
< mailto:ScroggiK@Aegiscomgroup.com <mailto:ScroggiK@Aegiscomgroup.com> >
< mailto:ScroggiK@Aegiscomgroup.com <mailto:ScroggiK@Aegiscomgroup.com> <
mailto:ScroggiK@Aegiscomgroup.com <mailto:ScroggiK@Aegiscomgroup.com> > > ]
Sent: Monday, April 03, 2000 11:17 PM
To: 'Squid Mailing List'
Subject: smb_auth failing

I've set up smb_auth according to the docs. I've followed the
'troubleshootin' section in the 'smb proxy authentication module' document
by Richard Huveneers.
i.e. running smb_auth from the command line with the '-d' switch.

I can see everything complete up to the point where it wants to read the
contents of the 'proxyauth' file on the PDC. The 'Everyone' group has read
rigths to this directory (on the PDC). But the process will error at that
point.

--- sample ---

[squid@linux squid]$ /usr/bin/smb_auth -W bob -d
someuserid someuserid-password
Domain name: bob
Pass-through authentication: no
Query address options:
Domain controller IP address: 10.116.xxx.xxx
Domain controller NETBIOS name: PDC-SERVER
Contents of //PDC-SERVER/NETLOGON/proxyauth:
ERR
  

--- end sample ---

Does this mean that smb is working? Is the squid box actually seeing the
domain and the PDC? I'm sure the users have read rights to the 'proxyauth'
file in the 'netlogon' directory.

Has anyone seen this? Any and all suggestions are welcome.

----------------------------------------
 To "shutdown" your system type "win".
Received on Wed Apr 05 2000 - 08:23:35 MDT

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 16:52:49 MST