Вывалилась машина из домена
Возникла такая проблема.. Машина входит в домен, была авторизация через доменного пользователя и вдруг неожиданно машина выпала из домена.
wdinfo -u нормально показывает доменных пользователей.
getent passwd показывает только локальных пользователей.
конфиг smb.conf на домене
cat /etc/samba/smb.conf
[global]
workgroup = SMARKET
security = user
encrypt passwords = yes
smb passwd file = /etc/samba/smbpasswd
interfaces = lo eth0
passdb backend = tdbsam
local master = yes
domain master = yes
preferred master = yes
domain logons = yes
logon path =\\%L\Profiles\%U
admin users = admin Administrator root
wins support = yes
name resolve order = wins lmhosts bcast
add user script = /usr/sbin/useradd -d /dev/null -g machines -s /bin/false -m %u
winbind uid = 10000-20000
winbind gid = 10000-20000
winbind separator = +
winbind cache time = 10
template homedir = /home/%D/%U
template shell = /bin/bash
#guest account = samp
# -------------------------------------
[netlogon]
comment = Network Login Service
path = /var/samba/netlogon
writable = no
guest ok = yes
write list = admin, administrator, root
#--------------------------------------
[homes]
comment=Home Directories
browsable = no
writable = yes
#--------------------------------------
[Profiles]
path = /var/samba/profiles
browseable = no
create mask = 0600
directory mask = 0700
конфиг smb.conf на хосте
cat /etc/samba/smb.conf
[global]
workgroup = SMARKET
encrypt passwords = yes
security = domain
idmap config * : range = 10000-20000
template shell = /bin/bash
winbind use default domain = true
winbind offline logon = false
server string = Samba Server Version %v
netbios name = snab
# --------------------------- Logging Options -----------------------------
log file = /var/log/samba/log.%m
max log size = 50
passdb backend = tdbsam
map to guest = bad user
winbind enum users = yes
winbind enum groups =yes
domain master = no
domain logons = no
local master = no
preferred master = no
wins server = smarket
# --------------------------- Printing Options -----------------------------
load printers = yes
cups options = raw
#============================ Share Definitions ==============================
[homes]
comment = Home Directories
browseable = no
writable = yes
[printers]
comment = All Printers
path = /var/spool/samba
browseable = no
writable = no
printable = yes
конфиг был скопирован с хоста у которого нет такой проблемы с авторизацией.
systemctl status winbind выдает следующее:
● winbind.service - Samba Winbind Daemon
Loaded: loaded (/usr/lib/systemd/system/winbind.service; enabled; vendor preset: disabled)
Active: active (running) since Ср 2019-06-19 09:09:55 MSK; 6min ago
Docs: man:winbindd(8)
man:samba(7)
man:smb.conf(5)
Main PID: 8922 (winbindd)
Status: "winbindd: ready to serve connections..."
Tasks: 5
CGroup: /system.slice/winbind.service
├─8922 /usr/sbin/winbindd --foreground --no-process-group
├─8927 /usr/sbin/winbindd --foreground --no-process-group
├─8928 /usr/sbin/winbindd --foreground --no-process-group
├─8929 /usr/sbin/winbindd --foreground --no-process-group
└─8960 /usr/sbin/winbindd --foreground --no-process-group
июн 19 09:09:54 sysadmin systemd[1]: Starting Samba Winbind Daemon...
июн 19 09:09:54 sysadmin winbindd[8922]: [2019/06/19 09:09:54.997356, 0] ../source3/winbindd/winbindd_cache.c:3160(initialize_winbindd_cache)
июн 19 09:09:54 sysadmin winbindd[8922]: initialize_winbindd_cache: clearing cache and re-creating with version number 2
июн 19 09:09:55 sysadmin winbindd[8922]: [2019/06/19 09:09:55.001549, 0] ../lib/util/become_daemon.c:138(daemon_ready)
июн 19 09:09:55 sysadmin winbindd[8922]: daemon_ready: STATUS=daemon 'winbindd' finished starting up and ready to serve connections
июн 19 09:09:55 sysadmin systemd[1]: Started Samba Winbind Daemon.
июн 19 09:09:55 sysadmin winbindd[8927]: [2019/06/19 09:09:55.102522, 0] ../source3/libsmb/namequery.c:76(saf_store)
июн 19 09:09:55 sysadmin winbindd[8927]: saf_store: refusing to store 0 length domain or servername!
июн 19 09:10:00 sysadmin winbindd[8929]: [2019/06/19 09:10:00.105242, 0] ../source3/libsmb/namequery.c:76(saf_store)
июн 19 09:10:00 sysadmin winbindd[8929]: saf_store: refusing to store 0 length domain or servername!
не могу понять что случилось..