Dan NAE wrote:
lonely wolf wrote:
On 06/07/2007 01:04 AM, Dan Nae wrote:
Se da: un server samba (linux), un client win xp
Se cere: sa se faca doua share-uri, unul public (fara parola) si unul
privat (cu parola)
Puteti sa-mi dati si mie un exemplu de configuratie _testata_ si care si
merge?

Mentiuni:
- !!! clientul e windows xp, cu client linux merge in toate modurile din
fuleu

- cu security=user icspe-ul cere in continuu o parola pe share-ul public
Chestia asta mi se intimpla pina sa adaug "map to guest"


- cu security=share merge,
nu utiliza security=share, apar belele cind mixezi cu share-uri parolate

 dar daca incerc sa ma conectez la share-ul
privat la inceput imi da niste mesaje de gen "the server is not
accessible, you might not have permission to use this network resource,
the network path was not found" fara sa-mi ceara username si pwd; dupa
ce incerc de vreo 2-3 ori merge (adica cere o parola si intra); totusi
nu ma lasa sa modific campul cu "username" (dar am user=xxx in samba)
dupa sapaturi am ajuns la concluzia ca se cacheuieste username-ul
folosit pentru accesarea service list-ului

adauga in smb.conf linia
  map to guest = Bad User

Am incercat si asta, si combinat cu security=user ajung la aproximativ
acelasi lucru (adica la inceput refuza sa se conecteze la share-ul cu
parola, dupa un timp se razgandeste, cere parola si merge).
daca nu ma insel (cunostintele mele de Windows sint antice si de demult, in ultimii 10 ani m-am ferit cit am putut), asta provine oarecum din felul in care incearca Windows autentificarea (sistem care s-a mai si schimbat in decursul timpului). in esenta, - incearca fara parola (sau cel putin asa facea pe vremuri, se pare ca mai nou au renuntat sa incerce asta implicit)
- incearca userul si parola utilizatorului curent din Windows
- alte combinatii
 O solutie ar
fi sa-i dai "remember password", dupa care merge, dar ramane problema
primului acces.

Oare nu exista o solutie care sa nu genereze nici un mesaj de eroare? Eu
ca user m-as enerva daca mi-ar aparea mesajul ala.
pune debug level pe o valoare suficient de mare (>=3 probabil) si vezi ce zice samba in loguri. configul pe care ti l-am dat e in productie de un an, avind Windows 2000 si XP_uri (SP2 / SP2+ all current patches) in calitate de clienti. Pe servere am samba-3.0.10-1.4E.12.2 si samba-3.0.10-1.fc1.1.legacy
Ete:
[EMAIL PROTECTED] root]# smbstatus
using configfile = /etc/samba/smb.conf
Processing section "[homes]"
Processing section "[arhive]" <========= asta e share public
[...]
Processing section "[gof]"     <========= resursa parolata
Processing section "[NOBUG_QS]"

Samba version 3.0.10-1.fc1.1.legacy
PID     Username      Group         Machine
-------------------------------------------------------------------
21616   pascu         pascu         manager      (192.168.15.10)
21585   cristina-m    cristina-m    cristina     (192.168.0.21)
Opened /var/cache/samba/connections.tdb

Service      pid     machine       Connected at
-------------------------------------------------------
gof          21616   manager       Thu Jun  7 10:54:58 2007
gof          21585   cristina      Thu Jun  7 10:07:41 2007


#less /var/log/samba/192.168.0.21.log:
[2007/06/07 10:07:41, 2] lib/access.c:check_access(324)
 Allowed connection from  (192.168.0.21)
[2007/06/07 10:07:41, 2] smbd/sesssetup.c:setup_new_vc_session(608)
setup_new_vc_session: New VC == 0, if NT4.x compatible we would close all old resources.
[2007/06/07 10:07:41, 2] smbd/sesssetup.c:setup_new_vc_session(608)
setup_new_vc_session: New VC == 0, if NT4.x compatible we would close all old resources.

#less /var/log/samba/cristina.log
[2007/06/07 10:06:23, 1] smbd/service.c:close_cnum(836)
 cristina (192.168.0.21) closed connection to service gof
[2007/06/07 10:06:23, 2] smbd/server.c:exit_server(571)
 Closing connections
[2007/06/07 10:07:41, 2] lib/access.c:check_access(324)
 Allowed connection from  (192.168.0.21)
[2007/06/07 10:07:41, 2] auth/auth.c:check_ntlm_password(305)
check_ntlm_password: authentication for user [cristina-m] -> [cristina-m] -> [cristina-m] succeeded
[2007/06/07 10:07:41, 2] lib/access.c:check_access(324)
 Allowed connection from  (192.168.0.21)
[2007/06/07 10:07:41, 1] smbd/service.c:make_connection_snum(648)
cristina (192.168.0.21) connect to service gof initially as user cristina-m (uid=510, gid=545) (pid 21585)


--
Quote from the Boss: "Teamwork is a lot of people doing what I say."
(Marketing executive, Citrix Corporation)


_______________________________________________
RLUG mailing list
[email protected]
http://lists.lug.ro/mailman/listinfo/rlug

Raspunde prin e-mail lui