locked
Windows 7 x64 e SAMBA Linux Shares RRS feed

  • Domanda

  • Salve,
    ho una piccola LAN con 2 PC widnwos (Windows 7 Pro x64 e Win Xp Pro) e 1 server Linux (Ubuntu server, ultima versione). Il ruolo del server è: NAS & Web+Mail.

    Ho installato e configurato SAMBA per poter accedere alle varie shares dai miei due PC Windows.
    Quando avvio Esplora Risorse di Rete dal PC con Windows 7 e faccio il doppio-click sul nome del server Linux, dopo aver digitato il nome utente e password (samba), mi esce sempre un messaggio di errore "impossibile accedere al server ...  L'utente potrebbe non disporre dell'autorizzazione.....
    Mi è stato fatto presente di modificare il valore di LmCompatibilityLevel da 3 "Clients use only NTLMv2 authentication, and they use NTLMv2 session security if the server supports it. Domain controllers accept LM, NTLM, and NTLMv2 authentication." a 1 "Clients use LM and NTLM authentication, and they use NTLMv2 session security if the server supports it. Domain controllers accept LM, NTLM, and NTLMv2 authentication." ma non ho risolto nulla.
    In aggiunta ho eseguito una macchina virutale con windows Xp sempre dal mio PC di Windows 7 e riesco tranquillamente ad accedere al server ubuntu e le sue shares con credenziali: "ubuntu\sangeli". Questo mi conferma quindi che tutto quello che ho imposato lato server è corretto ma al contempo mi conferma con molto rammarico che Windows 7 è la causa dei miei problemi.

    Che dovrei fare?
    Non riesco a ottenrere nessun progresso: solo arrabbiature e perdita di tempo.

    Grazie,
    Spiro
    venerdì 7 settembre 2012 10:56

Risposte

  • Aggiornamento.

    Oggi mi son messo sotto nel vedere di sistemare questo problema, ho proceduto in questo modo: ho verificato le impostazioni in Local Security Policy -> Security Options di una installazione Windows 7 64bit funzionante, poi le ho replicate pari pari sulla macchina Win 7 che mi dava problemi.

    Il problema è scomparso.

    Siccome avevo modificato almeno una decina di parametri, ho riportato la situazione alle impostazioni originarie (che davano problemi) e poi ho modificato un'impostazione per volta (tra quelle che erano differenti sulle due installazioni).

    E' venuto fuori che nel  mio caso la voce da modificare è 

    Microsoft network client: Digitally sign communications (always)

    Di default dovrebbe essere DISABLE ma nella installazione problematica era su ENABLE.

    Rimessa su DISABLE e come per magia i NAS sono diventati raggiungibili.

    martedì 11 settembre 2012 18:32
  • L'ultima versione di samba, è afflitta da un problema alle "Extended Signatures" https://bugzilla.samba.org/show_bug.cgi?id=9075

    puoi provare la modifica consigliata da Don Zauker oppure aggiungere  al tuo smb.conf  server signing = auto 

     (ultima risorsa: usare i backports e installare una versione di samba inferiore alla 3.5...) 


    Gastone Canali >http://www.armadillo.it

    Se alcuni post rispondono al tuo quesito (non necessariamente i miei), ricorda di contrassegnarli come risposta e non dimenticare di contrassegnare anche i post utili . GRAZIE!



    martedì 11 settembre 2012 19:24
    Moderatore
  • Dovrebbe essere questa:

    Client di rete Microsoft: aggiungi firma digitale alla comunicazione client (sempre)

    Poi basta un reboot.

    Per il discorso  vulnerabilità, non ho le competenze adeguate per rispondere correttamente...

    • Modificato Don Zauker martedì 11 settembre 2012 19:53
    • Contrassegnato come risposta Spiro Angeli giovedì 13 settembre 2012 04:51
    martedì 11 settembre 2012 19:50
  • Io lascerei server signing = auto  senza toccare w7, il vantaggio  sarà quello di non preoccuparti di eventuali nuovi pc windows con "firma digitale alla comunicazione client" attiva.

    Spiro ti chiedo anche di segnare i post che risolutivi (mi sono permesso di suggerirteli) e contrassegnare anche i post utili

    Grazie


    Gastone Canali >http://www.armadillo.it

    Se alcuni post rispondono al tuo quesito (non necessariamente i miei), ricorda di contrassegnarli come risposta e non dimenticare di contrassegnare anche i post utili . GRAZIE!

    • Contrassegnato come risposta Spiro Angeli giovedì 13 settembre 2012 04:51
    martedì 11 settembre 2012 20:12
    Moderatore

Tutte le risposte

  • Ciao, Windows 7 riesce ad accedere con il firewall disabilitato?
    venerdì 7 settembre 2012 11:53
    Moderatore
  • Il firewall di windows è disattivato in quanto utilizzo Kaspersky Internet Security e quindi è lui che mi fa da firewall.

    Ho provato ad accedere alla share anche con Kaspersky momentaneamente disabilitato ma non funziona. Ottengo sempre lo stesso errore. Poi se clicco nuovamente mi appare questaschermata.

    Spiro


    venerdì 7 settembre 2012 13:21
  • Potresti postare il tuo smb.conf e specificare la versione esatta si samba che hai installato?

    Attualmente uso delle Debian stable (Squeeze) con samba 3.5.6 integrate in AD con winbind, i client sono xp, vista sp2 e win7 sp1, senza particolari problemi.


    Gastone Canali >http://www.armadillo.it

    Se alcuni post rispondono al tuo quesito (non necessariamente i miei), ricorda di contrassegnarli come risposta e non dimenticare di contrassegnare anche i post utili . GRAZIE!

    venerdì 7 settembre 2012 13:25
    Moderatore
  • Ecco la configurazione:

    #======================= Global Settings =======================
    [global]

            workgroup = WORKGROUP
            netbios name = ubuntu
            server string = Server Ubuntu
            security = user
            browsable = yes

    #======================= Share Definitions =======================

    [samba_spiro]
            comment = Spiro Test folder
            path = /home/sangeli/samba
            browseable = yes
            writeable = yes
            create mask = 775
            directory mask = 775
            valid users = nobody, sangeli

    [log]
            comment = Log folder
            path = /var/log
            browseable = yes
            read only = no
            create mask = 775
            directory mask = 775

    #============================== End ==============================

    La versione di samba è Samba version 3.6.3

    Spiro

    venerdì 7 settembre 2012 13:32
  • Per favore,

    c'è qualche persona esperta che mi può assistere in questo? è da due giorni che sto lavorando a questo problema e sto solo perdendo il mio tempo a causa di questo sistema operativo che ha le corna puntate su samba.

    Qualche suggerimento? Non ne posso più di perdere tempo in questo modo, invece di lavorarci con il pc ci sto solo perdendo tempo.

    Grazie,

    Spiro

    sabato 8 settembre 2012 07:02
  • Io ho fatto un test con una ubuntu 12.04.1 e samba  3.6.3 e il tuo smb.conf.

    dopo aver creato l'utente sangeli  con il comando adduser sangeli e aggiunto a samba con il comando smbpasswd -a sangeli tutto ha funzionato correttamente .... (client xp,win7 e macosx)

    questo comando è fondamentale perchè tutto funzioni correttamente:  smbpasswd -a sangeli

    (per le elencare gli utenti presenti nel sam database pdbedit -L ) 

    Questo è il mio conf (per funzionare necessita dell'utente linux sangeli, poi smbpasswd -a sangeli e service smbd restart)

    [global]
       workgroup = WORKGROUP
       server string = %h server (Samba, Ubuntu)
       dns proxy = no
       log file = /var/log/samba/log.%m
       max log size = 1000
       syslog = 0
       panic action = /usr/share/samba/panic-action %d
       encrypt passwords = true
       passdb backend = tdbsam
       obey pam restrictions = yes
       unix password sync = yes
       passwd program = /usr/bin/passwd %u
       passwd chat = *Enter\snew\s*\spassword:* %n\n *Retype\snew\s*\spassword:* %n\n *password\supdated\ssuccessfully* .
       pam password change = yes
       map to guest = bad user
       usershare allow guests = yes
    ;[homes]
    ;   comment = Home Directories
    ;   browseable = yes
    [log]
             comment = Log folder
             path = /var/log
             browseable = yes
             read only = no
             create mask = 775
             directory mask = 775
     [samba_spiro]
             comment = Spiro Test folder
             path = /home/sangeli/samba
             browseable = yes
             writeable = yes
             create mask = 775
             directory mask = 775


    Gastone Canali >http://www.armadillo.it

    Se alcuni post rispondono al tuo quesito (non necessariamente i miei), ricorda di contrassegnarli come risposta e non dimenticare di contrassegnare anche i post utili . GRAZIE!



    sabato 8 settembre 2012 09:33
    Moderatore
  • Buon pomeriggio,

    io ho provato a verificare tutti i parametri e le impostazioni di sistema del server ubuntu.

    questo è l'output del comando: pdbedit -L

    nobody:65534:nobody
    sangeli:1000:sangeli

    non vedo alcun errore nel logo di smaba. L'unico file con testo generato dal sistema è in questo file: "log.smbd"

    Questo il suo contenuto:

    [2012/09/08 16:39:00,  0] smbd/server.c:1051(main)
      smbd version 3.6.3 started.
      Copyright Andrew Tridgell and the Samba Team 1992-2011
    [2012/09/08 16:39:00.348511,  0] smbd/server.c:1107(main)
      standard input is not a socket, assuming -D option

    Questo il risultato del comando testparm
    Load smb config files from /etc/samba/smb.conf
    rlimit_max: increasing rlimit_max (1024) to minimum Windows limit (16384)
    Processing section "[samba_spiro]"
    Processing section "[log]"
    Loaded services file OK.
    Server role: ROLE_STANDALONE
    Press enter to see a dump of your service definitions

    [global]
            server string = %h server (Samba, Ubuntu)
            map to guest = Bad User
            obey pam restrictions = Yes
            pam password change = Yes
            passwd program = /usr/bin/passwd %u
            passwd chat = *Enter\snew\s*\spassword:* %n\n *Retype\snew\s*\spassword:* %n\n *password\supdated\ssuccessfully* .
            unix password sync = Yes
            syslog = 0
            log file = /var/log/samba/log.%m
            max log size = 1000
            dns proxy = No
            usershare allow guests = Yes
            panic action = /usr/share/samba/panic-action %d
            idmap config * : backend = tdb

    [samba_spiro]
            comment = Spiro Test folder
            path = /home/sangeli/samba
            valid users = nobody, sangeli
            read only = No
            create mask = 0775
            directory mask = 0775

    [log]
            comment = Log folder
            path = /var/log
            read only = No
            create mask = 0775
            directory mask = 0775

    Quello che mi disturba assai è che con una macchina virtuale di XP funzionante dal mio PC con win 7 riesco ad accedere alla share con le credenziali dell'account di SAMBA.

    Con le stesse credenziali utilizzate su XP invece non ci riesco e ottengo sempre lo stesso errore.

    Ho implementato la configurazione globale presentatami e non cambia nulla. In aggiunta, quando utilizzo FreeNas e creo una share ho lo stesso problema.

    Io credo di avere qualche problema con il mio sistema operativo, anche se di nuova installazione. O esiste qualche cosa nel mio profilo che mi impedisce di connettermi o esiste qualche cosa nel sistema che mi previene di collegarmi.

    Io non so proprio cosa fare. Non credo sia un problema di server ubuntu ma del mio PC.

    Non so se installando ubuntu da capo cambi qualche cosa. Come poter risolvere questo mio incubo? Forse se qualche anima pia potesse collegarsi in remoto sul mio pc via teamviewer questo potrebbe risolvere in poche battute il tutto. Io proprio non so cosa più fare per una cosa che dovrebbe essere così semplice e banale.

    Grazie,

    Spiro


    sabato 8 settembre 2012 14:47
  • Ho provato anche a creare un nuovo utente come segue:

    useradd test
    passwd  test
    (ovviamente ho impostato la password)

    smbpasswd -a test
    (ovviamente ho impostato la password)

    Ho poi provato a connettermi ma ottengo lo stesso errore.

    Spiro

    sabato 8 settembre 2012 15:08
  • Sono stato fortunato da avere un portatile con Windows 7 x64 e poterlo connettere alla mia stessa rete.

    Con il portatile con grande contentezza riesco a poter accedere alle shares di SAMBA. Anche questo portatile ha Kaspersky Internet Security.

    Ora, invece con molta tristezza, bisogna comprendere cosa accade sul mio PC.

    Ho provato ad accedere con un altro utente sul mio PC e ottengo la stessa cosa, in questo caso neanche ottengo la maschera di nome utente/password. Ovviamente non ho fatto il reboot e poi effettuato come primo accesso a Windows con questo altro utente.

    Come fare per capire questo? Ora non so più cosa fare. :-(

    Grazie,

    Spiro


    sabato 8 settembre 2012 16:12
  • Cancella i log di samba in /var/log/samba poi fa un restart di smbd prova connetterti dal tuo pc e posta le righe più significative.


    Gastone Canali >http://www.armadillo.it

    Se alcuni post rispondono al tuo quesito (non necessariamente i miei), ricorda di contrassegnarli come risposta e non dimenticare di contrassegnare anche i post utili . GRAZIE!

    sabato 8 settembre 2012 22:36
    Moderatore
  • lo ho già fatto. Trovi sopra la risposta. Comunque la rimetto qui:

    non vedo alcun errore nel logo di smaba. L'unico file con testo generato dal sistema è in questo file: "log.smbd"

    Questo il suo contenuto:

    [2012/09/08 16:39:00,  0] smbd/server.c:1051(main)
      smbd version 3.6.3 started.
      Copyright Andrew Tridgell and the Samba Team 1992-2011
    [2012/09/08 16:39:00.348511,  0] smbd/server.c:1107(main)
      standard input is not a socket, assuming -D option

    Spiro

    sabato 8 settembre 2012 22:40
  • Cosa potrei monitorare sia su Win 7 che sul server Linux per comprendere il comportamento del mio PC?

    Più tardi provo a fare il boot in safe mode con rete e vedere se mi permette di collegarmi al server Linux. Se riesco questo potrebbe esserci di aiuto.

    Poi, potrebbe esserci qualche Local Security Policy che potrebbe essere impostata incorrettamente sul mio PC?
    Proprio non riesco a comprendere come mail il mio PC rifiuta di farmi collegare. Chissà se ha nulla a che fare con i protocolli di sicurezza o di rete.
    Attendo speranzoso qualse suggerimento in quanto ne sono molto scontento in merito.
    Grazie,

    Spiro

    domenica 9 settembre 2012 11:42
  • Ho voluto essere completo nella mia ricerca ed effettuato quanto segue:

    1. svuotato gli eventi di registro, cancellato tutti i file nel /var/log/samba. Ho poi provato a connettermi sia da Win 7 che da Win 7 in Safe Mode e non riesco a collegarmi alla share.

    Lato Server Linux:

    queste sono le uniche tre cose che ho trovato in /var/log/smba e i due file sono vuoti.

    cores  log.192.168.0.110  log.spiro-pc

    Lato Windows 7:

    Evento "Applicazione" da Win 7 avviato normalmente

    Livello	Data e ora	Origine	ID evento	Categoria attività
    Informazioni	09/09/2012 16:36:11	Windows Error Reporting	1001	Nessuna	"Bucket errato 56095614, tipo 5
    Nome evento: ShellBrowserCancel
    Risposta: Non disponibile
    ID CAB: 0
    
    Firma problema:
    P1: {C0542A90-4BF0-11D1-83EE-00A0C90DC849}
    P2: Network
    P3: 
    P4: 
    P5: 
    P6: 
    P7: 
    P8: 
    P9: 
    P10: 
    
    File allegati:
    C:\Users\SAngeli\AppData\Local\Temp\WER7DF4.tmp.WERInternalMetadata.xml
    
    I file potrebbero essere disponibili qui:
    C:\Users\SAngeli\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppHang_{C0542A90-4BF0-1_13d9f01ebfd579ef9d63094658a64965597b7b_0df28ad5
    
    Simbolo analisi: 
    Nuova ricerca di soluzioni: 0
    ID rapporto: b0d5e8f4-fa8b-11e1-b2a7-0011d8864843
    Stato rapporto: 0"
    Informazioni	09/09/2012 16:36:08	Windows Error Reporting	1001	Nessuna	"Bucket errato , tipo 0
    Nome evento: ShellBrowserCancel
    Risposta: Non disponibile
    ID CAB: 0
    
    Firma problema:
    P1: {C0542A90-4BF0-11D1-83EE-00A0C90DC849}
    P2: Network
    P3: 
    P4: 
    P5: 
    P6: 
    P7: 
    P8: 
    P9: 
    P10: 
    
    File allegati:
    
    I file potrebbero essere disponibili qui:
    
    
    Simbolo analisi: 
    Nuova ricerca di soluzioni: 0
    ID rapporto: b0d5e8f4-fa8b-11e1-b2a7-0011d8864843
    Stato rapporto: 0"
    Informazioni	09/09/2012 16:36:08	Windows Error Reporting	1001	Nessuna	"Bucket errato , tipo 0
    Nome evento: ShellBrowserCancel
    Risposta: Non disponibile
    ID CAB: 0
    
    Firma problema:
    P1: {C0542A90-4BF0-11D1-83EE-00A0C90DC849}
    P2: Network
    P3: 
    P4: 
    P5: 
    P6: 
    P7: 
    P8: 
    P9: 
    P10: 
    
    File allegati:
    C:\Users\SAngeli\AppData\Local\Temp\WER7DF4.tmp.WERInternalMetadata.xml
    
    I file potrebbero essere disponibili qui:
    C:\Users\SAngeli\AppData\Local\Microsoft\Windows\WER\ReportQueue\AppHang_{C0542A90-4BF0-1_13d9f01ebfd579ef9d63094658a64965597b7b_cab_0dee7e03
    
    Simbolo analisi: 
    Nuova ricerca di soluzioni: 0
    ID rapporto: b0d5e8f4-fa8b-11e1-b2a7-0011d8864843
    Stato rapporto: 4"
    

    Evento "Sicurezza" da Win 7 avviato normalmente

    Livello	Data e ora	Origine	ID evento	Categoria attività	Registro	Computer
    Informazioni	09/09/2012 16:39:05	Microsoft-Windows-Security-Auditing	4648	Accesso	Security	SPIRO-PC	"È stato tentato un accesso utilizzando credenziali esplicite.
    
    Soggetto:
    	ID sicurezza:		SPIRO-PC\SAngeli
    	Nome account:		SAngeli
    	Dominio account:		SPIRO-PC
    	ID accesso:		0x1e34c
    	GUID accesso:		{00000000-0000-0000-0000-000000000000}
    
    Account di cui sono state utilizzate le credenziali:
    	Nome account:		test
    	Dominio account:		ubuntu
    	GUID accesso:		{00000000-0000-0000-0000-000000000000}
    
    Server di destinazione:
    	Nome server di destinazione:	ubuntu
    	Informazioni aggiuntive:	ubuntu
    
    Informazioni sul processo:
    	ID processo:		0x4
    	Nome processo:		
    
    Informazioni di rete:
    	Indirizzo di rete:	-
    	Porta:			-
    
    Questo evento viene generato quando un processo tenta di far accedere un account specificando esplicitamente le credenziali dell'account. Generalmente si verifica in configurazioni di tipo batch, ad esempio attività pianificate, oppure quando si utilizza il comando RUNAS."
    Informazioni	09/09/2012 16:39:00	Microsoft-Windows-Security-Auditing	4673	Utilizzo privilegi sensibili	Security	SPIRO-PC	"È stato chiamato un servizio privilegiato.
    
    Soggetto:
    	ID sicurezza:		SPIRO-PC\SAngeli
    	Nome account:		SAngeli
    	Dominio account:		SPIRO-PC
    	ID accesso:		0x1e34c
    
    Servizio:
    	Server:	Security
    	Nome servizio:	-
    
    Processo:
    	ID processo:	0x1410
    	Nome processo:	C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
    
    Informazioni sulla richiesta del servizio:
    	Privilegi:		SeLoadDriverPrivilege"
    Informazioni	09/09/2012 16:39:00	Microsoft-Windows-Security-Auditing	4673	Utilizzo privilegi sensibili	Security	SPIRO-PC	"È stato chiamato un servizio privilegiato.
    
    Soggetto:
    	ID sicurezza:		SPIRO-PC\SAngeli
    	Nome account:		SAngeli
    	Dominio account:		SPIRO-PC
    	ID accesso:		0x1e34c
    
    Servizio:
    	Server:	Security
    	Nome servizio:	-
    
    Processo:
    	ID processo:	0x1410
    	Nome processo:	C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
    
    Informazioni sulla richiesta del servizio:
    	Privilegi:		SeLoadDriverPrivilege"
    Informazioni	09/09/2012 16:38:58	Microsoft-Windows-Security-Auditing	4673	Utilizzo privilegi sensibili	Security	SPIRO-PC	"È stato chiamato un servizio privilegiato.
    
    Soggetto:
    	ID sicurezza:		SERVIZIO LOCALE
    	Nome account:		SERVIZIO LOCALE
    	Dominio account:		NT AUTHORITY
    	ID accesso:		0x3e5
    
    Servizio:
    	Server:	Security
    	Nome servizio:	-
    
    Processo:
    	ID processo:	0x3f4
    	Nome processo:	C:\Windows\System32\svchost.exe
    
    Informazioni sulla richiesta del servizio:
    	Privilegi:		SeLoadDriverPrivilege"
    Informazioni	09/09/2012 16:38:45	Microsoft-Windows-Security-Auditing	4673	Utilizzo privilegi sensibili	Security	SPIRO-PC	"È stato chiamato un servizio privilegiato.
    
    Soggetto:
    	ID sicurezza:		SPIRO-PC\SAngeli
    	Nome account:		SAngeli
    	Dominio account:		SPIRO-PC
    	ID accesso:		0x1e34c
    
    Servizio:
    	Server:	Security
    	Nome servizio:	-
    
    Processo:
    	ID processo:	0x1410
    	Nome processo:	C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
    
    Informazioni sulla richiesta del servizio:
    	Privilegi:		SeLoadDriverPrivilege"
    Informazioni	09/09/2012 16:38:45	Microsoft-Windows-Security-Auditing	4673	Utilizzo privilegi sensibili	Security	SPIRO-PC	"È stato chiamato un servizio privilegiato.
    
    Soggetto:
    	ID sicurezza:		SPIRO-PC\SAngeli
    	Nome account:		SAngeli
    	Dominio account:		SPIRO-PC
    	ID accesso:		0x1e34c
    
    Servizio:
    	Server:	Security
    	Nome servizio:	-
    
    Processo:
    	ID processo:	0x1410
    	Nome processo:	C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
    
    Informazioni sulla richiesta del servizio:
    	Privilegi:		SeLoadDriverPrivilege"
    Informazioni	09/09/2012 16:38:33	Microsoft-Windows-Eventlog	1102	Cancellazione registri	Security	SPIRO-PC	"Registro di controllo cancellato.
    Soggetto:
    	ID sicurezza:	SPIRO-PC\SAngeli
    	Nome account:	SAngeli
    	Nome dominio:	SPIRO-PC
    	ID accesso:	0x1e31e"

    Evento "Applicazione" da Win 7 avviato in Safe Mode

    Livello	Data e ora	Origine	ID evento	Categoria attività
    Informazioni	09/09/2012 16:43:35	Windows Error Reporting	1001	Nessuna	"Bucket errato , tipo 0
    Nome evento: ShellBrowserCancel
    Risposta: Non disponibile
    ID CAB: 0
    
    Firma problema:
    P1: {C0542A90-4BF0-11D1-83EE-00A0C90DC849}
    P2: Network
    P3: 
    P4: 
    P5: 
    P6: 
    P7: 
    P8: 
    P9: 
    P10: 
    
    File allegati:
    
    I file potrebbero essere disponibili qui:
    
    
    Simbolo analisi: 
    Nuova ricerca di soluzioni: 0
    ID rapporto: bb6fbe0b-fa8c-11e1-bd69-0011d8864843
    Stato rapporto: 0"
    Informazioni	09/09/2012 16:43:35	Windows Error Reporting	1001	Nessuna	"Bucket errato , tipo 0
    Nome evento: ShellBrowserCancel
    Risposta: Non disponibile
    ID CAB: 0
    
    Firma problema:
    P1: {C0542A90-4BF0-11D1-83EE-00A0C90DC849}
    P2: Network
    P3: 
    P4: 
    P5: 
    P6: 
    P7: 
    P8: 
    P9: 
    P10: 
    
    File allegati:
    C:\Users\SAngeli\AppData\Local\Temp\WERE4AE.tmp.WERInternalMetadata.xml
    
    I file potrebbero essere disponibili qui:
    C:\Users\SAngeli\AppData\Local\Microsoft\Windows\WER\ReportQueue\AppHang_{C0542A90-4BF0-1_13d9f01ebfd579ef9d63094658a64965597b7b_cab_05f9e4ae
    
    Simbolo analisi: 
    Nuova ricerca di soluzioni: 0
    ID rapporto: bb6fbe0b-fa8c-11e1-bd69-0011d8864843
    Stato rapporto: 4"

    Evento "Sicurezza" da Win 7 avviato in Safe Mode

    Livello	Data e ora	Origine	ID evento	Categoria attività	Registro	Computer
    Informazioni	09/09/2012 16:43:22	Microsoft-Windows-Security-Auditing	4648	Accesso	Security	SPIRO-PC	"È stato tentato un accesso utilizzando credenziali esplicite.
    
    Soggetto:
    	ID sicurezza:		SPIRO-PC\SAngeli
    	Nome account:		SAngeli
    	Dominio account:		SPIRO-PC
    	ID accesso:		0x1ad08
    	GUID accesso:		{00000000-0000-0000-0000-000000000000}
    
    Account di cui sono state utilizzate le credenziali:
    	Nome account:		test
    	Dominio account:		ubuntu
    	GUID accesso:		{00000000-0000-0000-0000-000000000000}
    
    Server di destinazione:
    	Nome server di destinazione:	ubuntu
    	Informazioni aggiuntive:	ubuntu
    
    Informazioni sul processo:
    	ID processo:		0x4
    	Nome processo:		
    
    Informazioni di rete:
    	Indirizzo di rete:	-
    	Porta:			-
    
    Questo evento viene generato quando un processo tenta di far accedere un account specificando esplicitamente le credenziali dell'account. Generalmente si verifica in configurazioni di tipo batch, ad esempio attività pianificate, oppure quando si utilizza il comando RUNAS."
    Informazioni	09/09/2012 16:42:22	Microsoft-Windows-Eventlog	1102	Cancellazione registri	Security	SPIRO-PC	"Registro di controllo cancellato.
    Soggetto:
    	ID sicurezza:	SPIRO-PC\SAngeli
    	Nome account:	SAngeli
    	Nome dominio:	SPIRO-PC
    	ID accesso:	0x1ad08"


    Evento "Sistema" da Win 7 avviato in Safe Mode

    Livello	Data e ora	Origine	ID evento	Categoria attività
    Errore	09/09/2012 16:42:45	Microsoft-Windows-DistributedCOM	10005	Nessuna	"DCOM ha ricevuto l'errore ""%%1068"" durante il tentativo di avviare il servizio fdPHost con gli argomenti """" per eseguire il server 
    {D3DCB472-7261-43CE-924B-0704BD730D5F}"
    Errore	09/09/2012 16:42:45	Microsoft-Windows-DistributedCOM	10005	Nessuna	"DCOM ha ricevuto l'errore ""%%1068"" durante il tentativo di avviare il servizio fdPHost con gli argomenti """" per eseguire il server 
    {145B4335-FE2A-4927-A040-7C35AD3180EF}"

    Ora appena ho del tempo provo a fare alcune ricerche su Internet per trovare qualche soluzione ma che cerco?

    Spiro

    domenica 9 settembre 2012 15:02
  • Esegui le seguenti operazioni

      • aggiungi al tuo smb.conf  log level = 3
      • service smbd stop
      • cancella tutti i file di log rm -f /var/log/samba/log*
      • riavvia il servizio service smbd start
      • connettiti dal tuo pc alla share

    Adesso dovresti avere qualcosa nei log files...

    Fare il debug lato w7 non ti aiuta devi capire perchè non si capiscono sfruttando i log linux


    Gastone Canali >http://www.armadillo.it

    Se alcuni post rispondono al tuo quesito (non necessariamente i miei), ricorda di contrassegnarli come risposta e non dimenticare di contrassegnare anche i post utili . GRAZIE!

    domenica 9 settembre 2012 21:44
    Moderatore
  • OTTIMO! Ora si che mi piace questo consiglio.

    Ecco quanto richiestomi. Ho effettuato i passaggi suggeriti e poi ho provato due volte ad accedere alla Share.

    root@ubuntu:/var/log/samba# cat log.smbd
    [2012/09/09 23:57:27,  0] smbd/server.c:1051(main)
      smbd version 3.6.3 started.
      Copyright Andrew Tridgell and the Samba Team 1992-2011
    [2012/09/09 23:57:27,  2] lib/tallocmsg.c:124(register_msg_pool_usage)
      Registered MSG_REQ_POOL_USAGE
    [2012/09/09 23:57:27,  2] lib/dmallocmsg.c:78(register_dmalloc_msgs)
      Registered MSG_REQ_DMALLOC_MARK and LOG_CHANGED
    [2012/09/09 23:57:27.088323,  3] param/loadparm.c:9572(lp_load_ex)
      lp_load_ex: refreshing parameters
    [2012/09/09 23:57:27.088392,  3] param/loadparm.c:5192(init_globals)
      Initialising global parameters
    [2012/09/09 23:57:27.088450,  2] param/loadparm.c:4985(max_open_files)
      rlimit_max: increasing rlimit_max (1024) to minimum Windows limit (16384)
    [2012/09/09 23:57:27.088544,  3] ../lib/util/params.c:550(pm_process)
      params.c:pm_process() - Processing configuration file "/etc/samba/smb.conf"
    [2012/09/09 23:57:27.088599,  3] param/loadparm.c:8310(do_section)
      Processing section "[global]"
    [2012/09/09 23:57:27.088745,  2] param/loadparm.c:8327(do_section)
      Processing section "[samba_spiro]"
    [2012/09/09 23:57:27.088884,  2] param/loadparm.c:8327(do_section)
      Processing section "[log]"
    [2012/09/09 23:57:27.089110,  3] param/loadparm.c:6630(lp_add_ipc)
      adding IPC service
    [2012/09/09 23:57:27.089346,  2] lib/interface.c:341(add_interface)
      added interface eth0 ip=fe80::214:5eff:fe08:8398%eth0 bcast=fe80::ffff:ffff:ffff:ffff%eth0 netmask=ffff:ffff:ffff:ffff::
    [2012/09/09 23:57:27.089510,  2] lib/interface.c:341(add_interface)
      added interface eth0 ip=192.168.0.50 bcast=192.168.0.255 netmask=255.255.255.0
    [2012/09/09 23:57:27.089586,  3] smbd/server.c:1086(main)
      loaded services
    [2012/09/09 23:57:27.089698,  0] smbd/server.c:1107(main)
      standard input is not a socket, assuming -D option
    [2012/09/09 23:57:27.089749,  3] smbd/server.c:1118(main)
      Becoming a daemon.
    [2012/09/09 23:57:27.093610,  3] passdb/lookup_sid.c:1737(get_primary_group_sid)
      Forcing Primary Group to 'Domain Users' for root
    [2012/09/09 23:57:27.094575,  3] auth/token_util.c:438(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:57:27.094711,  3] auth/token_util.c:469(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:57:27.095482,  3] passdb/lookup_sid.c:1737(get_primary_group_sid)
      Forcing Primary Group to 'Domain Users' for nobody
    [2012/09/09 23:57:27.095607,  3] auth/token_util.c:438(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:57:27.095719,  3] auth/token_util.c:469(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:57:27.096856,  3] rpc_server/svcctl/srv_svcctl_reg.c:569(svcctl_init_winreg)
      Initialise the svcctl registry keys if needed.
    [2012/09/09 23:57:27.098160,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.098536,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.098942,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.099220,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.099606,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.099881,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100277,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100554,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100634,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100749,  3] rpc_server/eventlog/srv_eventlog_reg.c:59(eventlog_init_winreg)
      Initialise the eventlog registry keys if needed.
    [2012/09/09 23:57:27.101134,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.101240,  3] printing/pcap.c:138(pcap_cache_reload)
      reloading printcap cache
    [2012/09/09 23:57:27.101928,  3] printing/pcap.c:189(pcap_cache_reload)
      reload status: ok
    [2012/09/09 23:57:27.102111,  3] printing/printing.c:1644(start_background_queue)
      start_background_queue: Starting background LPQ thread
    [2012/09/09 23:57:27.103213,  3] ../lib/util/util_net.c:70(interpret_string_addr_internal)
      interpret_string_addr_internal: getaddrinfo failed for name :: [Address family for hostname not supported]
    [2012/09/09 23:57:27.103478,  3] ../lib/util/util_net.c:70(interpret_string_addr_internal)
      interpret_string_addr_internal: getaddrinfo failed for name :: [Address family for hostname not supported]
    [2012/09/09 23:57:27.104015,  2] smbd/server.c:839(smbd_parent_loop)
      waiting for connections
    [2012/09/09 23:57:27.107978,  1] lib/serverid.c:197(serverid_deregister)
      Deleting serverid.tdb record failed: NT_STATUS_NOT_FOUND
    [2012/09/09 23:57:27.108077,  1] smbd/server.c:309(remove_child_pid)
      Could not remove pid 2317 from serverid.tdb
    [2012/09/09 23:57:27.108129,  1] smbd/server.c:323(remove_child_pid)
      Could not find child 2317 -- ignoring
    [2012/09/09 23:58:31.971896,  3] smbd/server.c:292(remove_child_pid)
      smbd/server.c:292 Unclean shutdown of pid 2321
    [2012/09/09 23:58:31.972032,  1] smbd/server.c:300(remove_child_pid)
      Scheduled cleanup of brl and lock database after unclean shutdown
    [2012/09/09 23:58:51.988965,  1] smbd/server.c:272(cleanup_timeout_fn)
      Cleaning up brl and lock database after unclean shutdown
    [2012/09/09 23:59:46.655279,  3] smbd/server.c:292(remove_child_pid)
      smbd/server.c:292 Unclean shutdown of pid 2325
    [2012/09/09 23:59:46.655419,  1] smbd/server.c:300(remove_child_pid)
      Scheduled cleanup of brl and lock database after unclean shutdown
    [2012/09/10 00:00:06.675544,  1] smbd/server.c:272(cleanup_timeout_fn)
      Closed policy
    [2012/09/09 23:57:27.098942,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.099220,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.099606,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.099881,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100277,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100554,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100634,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100749,  3] rpc_server/eventlog/srv_eventlog_reg.c:59(eventlog_init_winreg)
      Initialise the eventlog registry keys if needed.
    [2012/09/09 23:57:27.101134,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.101240,  3] printing/pcap.c:138(pcap_cache_reload)
      reloading printcap cache
    [2012/09/09 23:57:27.101928,  3] printing/pcap.c:189(pcap_cache_reload)
      reload status: ok
    [2012/09/09 23:57:27.102111,  3] printing/printing.c:1644(start_background_queue)
      start_background_queue: Starting background LPQ thread
    [2012/09/09 23:57:27.103213,  3] ../lib/util/util_net.c:70(interpret_string_addr_internal)
      interpret_string_addr_internal: getaddrinfo failed for name :: [Address family for hostname not supported]
    [2012/09/09 23:57:27.103478,  3] ../lib/util/util_net.c:70(interpret_string_addr_internal)
      interpret_string_addr_internal: getaddrinfo failed for name :: [Address family for hostname not supported]
    [2012/09/09 23:57:27.104015,  2] smbd/server.c:839(smbd_parent_loop)
      waiting for connections
    [2012/09/09 23:57:27.107978,  1] lib/serverid.c:197(serverid_deregister)
      Deleting serverid.tdb record failed: NT_STATUS_NOT_FOUND
    [2012/09/09 23:57:27.108077,  1] smbd/server.c:309(remove_child_pid)
      Could not remove pid 2317 from serverid.tdb
    [2012/09/09 23:57:27.108129,  1] smbd/server.c:323(remove_child_pid)
      Could not find child 2317 -- ignoring
    [2012/09/09 23:58:31.971896,  3] smbd/server.c:292(remove_child_pid)
      smbd/server.c:292 Unclean shutdown of pid 2321
    [2012/09/09 23:58:31.972032,  1] smbd/server.c:300(remove_child_pid)
      Scheduled cleanup of brl and lock database after unclean shutdown
    [2012/09/09 23:58:51.988965,  1] smbd/server.c:272(cleanup_timeout_fn)
      Cleaning up brl and lock database after unclean shutdown
    [2012/09/09 23:59:46.655279,  3] smbd/server.c:292(remove_child_pid)
      smbd/server.c:292 Unclean shutdown of pid 2325
    [2012/09/09 23:59:46.655419,  1] smbd/server.c:300(remove_child_pid)
      Scheduled cleanup of brl and lock database after unclean shutdown
    [2012/09/10 00:00:06.675544,  1] smbd/server.c:272(cleanup_timeout_fn)
      Cleaning up brl and lock database after unclean shutdown
      Closed policy
    [2012/09/09 23:57:27.098942,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.099220,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.099606,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.099881,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100277,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100554,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100634,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100749,  3] rpc_server/eventlog/srv_eventlog_reg.c:59(eventlog_init_winreg)
      Initialise the eventlog registry keys if needed.
    [2012/09/09 23:57:27.101134,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.101240,  3] printing/pcap.c:138(pcap_cache_reload)
      reloading printcap cache
    [2012/09/09 23:57:27.101928,  3] printing/pcap.c:189(pcap_cache_reload)
      reload status: ok
    [2012/09/09 23:57:27.102111,  3] printing/printing.c:1644(start_background_queue)
      start_background_queue: Starting background LPQ thread
    [2012/09/09 23:57:27.103213,  3] ../lib/util/util_net.c:70(interpret_string_addr_internal)
      interpret_string_addr_internal: getaddrinfo failed for name :: [Address family for hostname not supported]
    [2012/09/09 23:57:27.103478,  3] ../lib/util/util_net.c:70(interpret_string_addr_internal)
      interpret_string_addr_internal: getaddrinfo failed for name :: [Address family for hostname not supported]
    [2012/09/09 23:57:27.104015,  2] smbd/server.c:839(smbd_parent_loop)
      waiting for connections
    [2012/09/09 23:57:27.107978,  1] lib/serverid.c:197(serverid_deregister)
      Deleting serverid.tdb record failed: NT_STATUS_NOT_FOUND
    [2012/09/09 23:57:27.108077,  1] smbd/server.c:309(remove_child_pid)
      Could not remove pid 2317 from serverid.tdb
    [2012/09/09 23:57:27.108129,  1] smbd/server.c:323(remove_child_pid)
      Could not find child 2317 -- ignoring
    [2012/09/09 23:58:31.971896,  3] smbd/server.c:292(remove_child_pid)
      smbd/server.c:292 Unclean shutdown of pid 2321
    [2012/09/09 23:58:31.972032,  1] smbd/server.c:300(remove_child_pid)
      Scheduled cleanup of brl and lock database after unclean shutdown
    [2012/09/09 23:58:51.988965,  1] smbd/server.c:272(cleanup_timeout_fn)
      Cleaning up brl and lock database after unclean shutdown
    [2012/09/09 23:59:46.655279,  3] smbd/server.c:292(remove_child_pid)
      smbd/server.c:292 Unclean shutdown of pid 2325
    [2012/09/09 23:59:46.655419,  1] smbd/server.c:300(remove_child_pid)
      Scheduled cleanup of brl and lock database after unclean shutdown
    [2012/09/10 00:00:06.675544,  1] smbd/server.c:272(cleanup_timeout_fn)
      Cleaning up brl and lock database after unclean shutdown
      Closed policy
    [2012/09/09 23:57:27.098942,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.099220,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.099606,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.099881,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100277,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100554,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100634,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.100749,  3] rpc_server/eventlog/srv_eventlog_reg.c:59(eventlog_init_winreg)
      Initialise the eventlog registry keys if needed.
    [2012/09/09 23:57:27.101134,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/09 23:57:27.101240,  3] printing/pcap.c:138(pcap_cache_reload)
      reloading printcap cache
    [2012/09/09 23:57:27.101928,  3] printing/pcap.c:189(pcap_cache_reload)
      reload status: ok
    [2012/09/09 23:57:27.102111,  3] printing/printing.c:1644(start_background_queue)
      start_background_queue: Starting background LPQ thread
    [2012/09/09 23:57:27.103213,  3] ../lib/util/util_net.c:70(interpret_string_addr_internal)
      interpret_string_addr_internal: getaddrinfo failed for name :: [Address family for hostname not supported]
    [2012/09/09 23:57:27.103478,  3] ../lib/util/util_net.c:70(interpret_string_addr_internal)
      interpret_string_addr_internal: getaddrinfo failed for name :: [Address family for hostname not supported]
    [2012/09/09 23:57:27.104015,  2] smbd/server.c:839(smbd_parent_loop)
      waiting for connections
    [2012/09/09 23:57:27.107978,  1] lib/serverid.c:197(serverid_deregister)
      Deleting serverid.tdb record failed: NT_STATUS_NOT_FOUND
    [2012/09/09 23:57:27.108077,  1] smbd/server.c:309(remove_child_pid)
      Could not remove pid 2317 from serverid.tdb
    [2012/09/09 23:57:27.108129,  1] smbd/server.c:323(remove_child_pid)
      Could not find child 2317 -- ignoring
    [2012/09/09 23:58:31.971896,  3] smbd/server.c:292(remove_child_pid)
      smbd/server.c:292 Unclean shutdown of pid 2321
    [2012/09/09 23:58:31.972032,  1] smbd/server.c:300(remove_child_pid)
      Scheduled cleanup of brl and lock database after unclean shutdown
    [2012/09/09 23:58:51.988965,  1] smbd/server.c:272(cleanup_timeout_fn)
      Cleaning up brl and lock database after unclean shutdown
    [2012/09/09 23:59:46.655279,  3] smbd/server.c:292(remove_child_pid)
      smbd/server.c:292 Unclean shutdown of pid 2325
    [2012/09/09 23:59:46.655419,  1] smbd/server.c:300(remove_child_pid)
      Scheduled cleanup of brl and lock database after unclean shutdown
    [2012/09/10 00:00:06.675544,  1] smbd/server.c:272(cleanup_timeout_fn)
      Cleaning up brl and lock database after unclean shutdown
    root@ubuntu:/var/log/samba#

    Spiro

    domenica 9 settembre 2012 22:08
  • Dubito fortemente che riusciremo a risolvere la cosa....

    Devi avere dei log relativi al tentativo di connessione che sono utili nel tuo caso es. log.spiro-pc e log.ip_address_dispiro_pc

    log.smbd riporta le informazioni relative al "demone" e non alla connessione.

    http://oreilly.com/openbook/samba/book/ch09_01.html

    http://oreilly.com/openbook/samba/book/ch04_08.html


    Gastone Canali >http://www.armadillo.it

    Se alcuni post rispondono al tuo quesito (non necessariamente i miei), ricorda di contrassegnarli come risposta e non dimenticare di contrassegnare anche i post utili . GRAZIE!

    lunedì 10 settembre 2012 09:17
    Moderatore
  • In verità solo oggi, dopo aver riavviato il server ho notato l'esistenza di questi file, che giustamente mi chiedevi. Ecco qui il loro contenuto. Spero tanto di esserti di aiuto ad identificare l'errore e quindi risolvere l'enigma.

    File: log.spiro-pc

    sangeli@ubuntu:/var/log/samba$ cat log.spiro-pc
    [2012/09/09 23:58:10.484045,  3] smbd/process.c:1662(process_smb)
      Transaction 0 of length 159 (0 toread)
    [2012/09/09 23:58:10.484119,  3] smbd/process.c:1467(switch_message)
      switch message SMBnegprot (pid 2321) conn 0x0
    [2012/09/09 23:58:10.511935,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [PC NETWORK PROGRAM 1.0]
    [2012/09/09 23:58:10.512011,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [LANMAN1.0]
    [2012/09/09 23:58:10.512064,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [Windows for Workgroups 3.1a]
    [2012/09/09 23:58:10.512116,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [LM1.2X002]
    [2012/09/09 23:58:10.512167,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [LANMAN2.1]
    [2012/09/09 23:58:10.512219,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [NT LM 0.12]
    [2012/09/09 23:58:10.512270,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [SMB 2.002]
    [2012/09/09 23:58:10.512321,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [SMB 2.???]
    [2012/09/09 23:58:10.535306,  3] smbd/negprot.c:419(reply_nt1)
      using SPNEGO
    [2012/09/09 23:58:10.535373,  3] smbd/negprot.c:704(reply_negprot)
      Selected protocol NT LM 0.12
    [2012/09/09 23:58:10.538853,  3] smbd/process.c:1662(process_smb)
      Transaction 1 of length 142 (0 toread)
    [2012/09/09 23:58:10.538914,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2321) conn 0x0
    [2012/09/09 23:58:10.546422,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:10.546488,  2] smbd/sesssetup.c:1279(setup_new_vc_session)
      setup_new_vc_session: New VC == 0, if NT4.x compatible we would close all old resources.
    [2012/09/09 23:58:10.546541,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:10.546597,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:10.554966,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:58:10.555540,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:58:10.557209,  3] smbd/process.c:1662(process_smb)
      Transaction 2 of length 196 (0 toread)
    [2012/09/09 23:58:10.557274,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2321) conn 0x0
    [2012/09/09 23:58:10.557336,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:10.557388,  2] smbd/sesssetup.c:1279(setup_new_vc_session)
      setup_new_vc_session: New VC == 0, if NT4.x compatible we would close all old resources.
    [2012/09/09 23:58:10.557438,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:10.557489,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:10.557557,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[] domain=[] workstation=[SPIRO-PC] len1=1 len2=0
    [2012/09/09 23:58:10.557652,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user []\[]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:58:10.557707,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [UBUNTU]\[]@[SPIRO-PC]
    [2012/09/09 23:58:10.557779,  3] auth/auth.c:268(check_ntlm_password)
      check_ntlm_password: guest authentication for user [] succeeded
    [2012/09/09 23:58:10.559053,  3] auth/token_util.c:438(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:58:10.559757,  3] auth/token_util.c:469(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:58:10.562410,  3] ../libcli/auth/ntlmssp_sign.c:535(ntlmssp_sign_init)
      NTLMSSP Sign/Seal - Initialising with flags:
    [2012/09/09 23:58:10.562490,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088215
    [2012/09/09 23:58:10.562572,  3] smbd/password.c:297(register_existing_vuid)
      register_existing_vuid: User name: nobody     Real name: (null)
    [2012/09/09 23:58:10.562644,  3] smbd/password.c:307(register_existing_vuid)
      register_existing_vuid: UNIX uid 65534 is UNIX user nobody, and will be vuid 100
    [2012/09/09 23:58:10.572059,  3] smbd/process.c:1662(process_smb)
      Transaction 0 of length 137 (0 toread)
    [2012/09/09 23:58:10.572140,  3] smbd/process.c:1467(switch_message)
      switch message SMBnegprot (pid 2322) conn 0x0
    [2012/09/09 23:58:10.572656,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [PC NETWORK PROGRAM 1.0]
    [2012/09/09 23:58:10.572720,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [LANMAN1.0]
    [2012/09/09 23:58:10.572773,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [Windows for Workgroups 3.1a]
    [2012/09/09 23:58:10.572825,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [LM1.2X002]
    [2012/09/09 23:58:10.572877,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [LANMAN2.1]
    [2012/09/09 23:58:10.572966,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [NT LM 0.12]
    [2012/09/09 23:58:10.573140,  3] smbd/negprot.c:419(reply_nt1)
      using SPNEGO
    [2012/09/09 23:58:10.573193,  3] smbd/negprot.c:704(reply_negprot)
      Selected protocol NT LM 0.12
    [2012/09/09 23:58:10.578042,  3] smbd/process.c:1662(process_smb)
      Transaction 1 of length 142 (0 toread)
    [2012/09/09 23:58:10.578104,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2322) conn 0x0
    [2012/09/09 23:58:10.578170,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:10.578226,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:10.578281,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:10.578373,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:58:10.578918,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:58:10.579440,  3] smbd/process.c:1662(process_smb)
      Transaction 2 of length 196 (0 toread)
    [2012/09/09 23:58:10.579500,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2322) conn 0x0
    [2012/09/09 23:58:10.579561,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:10.579612,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:10.579664,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:10.579730,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[] domain=[] workstation=[SPIRO-PC] len1=1 len2=0
    [2012/09/09 23:58:10.579823,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user []\[]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:58:10.579878,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [UBUNTU]\[]@[SPIRO-PC]
    [2012/09/09 23:58:10.579949,  3] auth/auth.c:268(check_ntlm_password)
      check_ntlm_password: guest authentication for user [] succeeded
    [2012/09/09 23:58:10.580121,  3] auth/token_util.c:438(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:58:10.580235,  3] auth/token_util.c:469(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:58:10.581847,  3] ../libcli/auth/ntlmssp_sign.c:535(ntlmssp_sign_init)
      NTLMSSP Sign/Seal - Initialising with flags:
    [2012/09/09 23:58:10.581929,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088215
    [2012/09/09 23:58:10.582012,  3] smbd/password.c:297(register_existing_vuid)
      register_existing_vuid: User name: nobody     Real name: (null)
    [2012/09/09 23:58:10.582067,  3] smbd/password.c:307(register_existing_vuid)
      register_existing_vuid: UNIX uid 65534 is UNIX user nobody, and will be vuid 100
    [2012/09/09 23:58:12.843739,  3] smbd/process.c:1662(process_smb)
      Transaction 3 of length 142 (0 toread)
    [2012/09/09 23:58:12.843886,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2321) conn 0x0
    [2012/09/09 23:58:12.843954,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:12.844007,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:12.844063,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:12.844141,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:58:12.844214,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:58:12.844942,  3] smbd/process.c:1662(process_smb)
      Transaction 4 of length 196 (0 toread)
    [2012/09/09 23:58:12.845005,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2321) conn 0x0
    [2012/09/09 23:58:12.845065,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:12.845115,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:12.845166,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:12.845230,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[] domain=[] workstation=[SPIRO-PC] len1=1 len2=0
    [2012/09/09 23:58:12.845326,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user []\[]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:58:12.845381,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [UBUNTU]\[]@[SPIRO-PC]
    [2012/09/09 23:58:12.845443,  3] auth/auth.c:268(check_ntlm_password)
      check_ntlm_password: guest authentication for user [] succeeded
    [2012/09/09 23:58:12.845574,  3] auth/token_util.c:438(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:58:12.845681,  3] auth/token_util.c:469(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:58:12.846839,  3] ../libcli/auth/ntlmssp_sign.c:535(ntlmssp_sign_init)
      NTLMSSP Sign/Seal - Initialising with flags:
    [2012/09/09 23:58:12.846912,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088215
    [2012/09/09 23:58:12.846992,  3] smbd/password.c:297(register_existing_vuid)
      register_existing_vuid: User name: nobody     Real name: (null)
    [2012/09/09 23:58:12.847043,  3] smbd/password.c:307(register_existing_vuid)
      register_existing_vuid: UNIX uid 65534 is UNIX user nobody, and will be vuid 101
    [2012/09/09 23:58:12.850594,  3] smbd/process.c:1662(process_smb)
      Transaction 3 of length 142 (0 toread)
    [2012/09/09 23:58:12.850668,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2322) conn 0x0
    [2012/09/09 23:58:12.850730,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:12.850780,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:12.850833,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:12.850907,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:58:12.850974,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:58:12.852891,  3] smbd/process.c:1662(process_smb)
      Transaction 4 of length 196 (0 toread)
    [2012/09/09 23:58:12.852966,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2322) conn 0x0
    [2012/09/09 23:58:12.853026,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:12.853076,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:12.853127,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:12.853203,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[] domain=[] workstation=[SPIRO-PC] len1=1 len2=0
    [2012/09/09 23:58:12.853286,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user []\[]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:58:12.853340,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [UBUNTU]\[]@[SPIRO-PC]
    [2012/09/09 23:58:12.853401,  3] auth/auth.c:268(check_ntlm_password)
      check_ntlm_password: guest authentication for user [] succeeded
    [2012/09/09 23:58:12.853513,  3] auth/token_util.c:438(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:58:12.853621,  3] auth/token_util.c:469(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:58:12.854674,  3] ../libcli/auth/ntlmssp_sign.c:535(ntlmssp_sign_init)
      NTLMSSP Sign/Seal - Initialising with flags:
    [2012/09/09 23:58:12.854743,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088215
    [2012/09/09 23:58:12.854822,  3] smbd/password.c:297(register_existing_vuid)
      register_existing_vuid: User name: nobody     Real name: (null)
    [2012/09/09 23:58:12.854873,  3] smbd/password.c:307(register_existing_vuid)
      register_existing_vuid: UNIX uid 65534 is UNIX user nobody, and will be vuid 101
    [2012/09/09 23:58:21.813311,  3] smbd/process.c:1662(process_smb)
      Transaction 5 of length 142 (0 toread)
    [2012/09/09 23:58:21.813439,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2321) conn 0x0
    [2012/09/09 23:58:21.813507,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:21.813560,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:21.813616,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:21.813695,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:58:21.813768,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:58:21.815568,  3] smbd/process.c:1662(process_smb)
      Transaction 6 of length 278 (0 toread)
    [2012/09/09 23:58:21.815628,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2321) conn 0x0
    [2012/09/09 23:58:21.815688,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:21.815739,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:21.815791,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:21.815856,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[SAngeli] domain=[SPIRO-PC] workstation=[SPIRO-PC] len1=24 len2=24
    [2012/09/09 23:58:21.815956,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user [SPIRO-PC]\[SAngeli]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:58:21.816011,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [UBUNTU]\[SAngeli]@[SPIRO-PC]
    [2012/09/09 23:58:21.816707,  3] passdb/lookup_sid.c:1737(get_primary_group_sid)
      Forcing Primary Group to 'Domain Users' for sangeli
    [2012/09/09 23:58:21.816944,  3] ../libcli/auth/ntlm_check.c:413(ntlm_password_check)
      ntlm_password_check: NT MD4 password check failed for user sangeli
    [2012/09/09 23:58:21.817193,  2] auth/auth.c:319(check_ntlm_password)
      check_ntlm_password:  Authentication for user [SAngeli] -> [SAngeli] FAILED with error NT_STATUS_WRONG_PASSWORD
    [2012/09/09 23:58:21.817265,  3] smbd/error.c:81(error_packet_set)
      error packet at smbd/sesssetup.c(124) cmd=115 (SMBsesssetupX) NT_STATUS_LOGON_FAILURE
    [2012/09/09 23:58:21.842042,  3] smbd/process.c:1662(process_smb)
      Transaction 7 of length 142 (0 toread)
    [2012/09/09 23:58:21.842107,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2321) conn 0x0
    [2012/09/09 23:58:21.842184,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:21.842235,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:21.842287,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:21.842361,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:58:21.842425,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:58:21.843257,  3] smbd/process.c:1662(process_smb)
      Transaction 8 of length 278 (0 toread)
    [2012/09/09 23:58:21.843317,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2321) conn 0x0
    [2012/09/09 23:58:21.843377,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:21.843427,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:21.843479,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:21.843543,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[SAngeli] domain=[SPIRO-PC] workstation=[SPIRO-PC] len1=24 len2=24
    [2012/09/09 23:58:21.843630,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user [SPIRO-PC]\[SAngeli]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:58:21.843684,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [UBUNTU]\[SAngeli]@[SPIRO-PC]
    [2012/09/09 23:58:21.843843,  3] passdb/lookup_sid.c:1737(get_primary_group_sid)
      Forcing Primary Group to 'Domain Users' for sangeli
    [2012/09/09 23:58:21.844025,  3] ../libcli/auth/ntlm_check.c:413(ntlm_password_check)
      ntlm_password_check: NT MD4 password check failed for user sangeli
    [2012/09/09 23:58:21.844253,  2] auth/auth.c:319(check_ntlm_password)
      check_ntlm_password:  Authentication for user [SAngeli] -> [SAngeli] FAILED with error NT_STATUS_WRONG_PASSWORD
    [2012/09/09 23:58:21.844315,  3] smbd/error.c:81(error_packet_set)
      error packet at smbd/sesssetup.c(124) cmd=115 (SMBsesssetupX) NT_STATUS_LOGON_FAILURE
    [2012/09/09 23:58:21.853581,  3] smbd/process.c:1662(process_smb)
      Transaction 9 of length 142 (0 toread)
    [2012/09/09 23:58:21.853644,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2321) conn 0x0
    [2012/09/09 23:58:21.853703,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:21.853754,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:21.853804,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:21.853876,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:58:21.853938,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:58:21.855336,  3] smbd/process.c:1662(process_smb)
      Transaction 10 of length 278 (0 toread)
    [2012/09/09 23:58:21.855394,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2321) conn 0x0
    [2012/09/09 23:58:21.855454,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:21.855504,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:21.855555,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:21.855618,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[SAngeli] domain=[SPIRO-PC] workstation=[SPIRO-PC] len1=24 len2=24
    [2012/09/09 23:58:21.855702,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user [SPIRO-PC]\[SAngeli]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:58:21.855766,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [UBUNTU]\[SAngeli]@[SPIRO-PC]
    [2012/09/09 23:58:21.855919,  3] passdb/lookup_sid.c:1737(get_primary_group_sid)
      Forcing Primary Group to 'Domain Users' for sangeli
    [2012/09/09 23:58:21.856099,  3] ../libcli/auth/ntlm_check.c:413(ntlm_password_check)
      ntlm_password_check: NT MD4 password check failed for user sangeli
    [2012/09/09 23:58:21.856324,  2] auth/auth.c:319(check_ntlm_password)
      check_ntlm_password:  Authentication for user [SAngeli] -> [SAngeli] FAILED with error NT_STATUS_WRONG_PASSWORD
    [2012/09/09 23:58:21.856387,  3] smbd/error.c:81(error_packet_set)
      error packet at smbd/sesssetup.c(124) cmd=115 (SMBsesssetupX) NT_STATUS_LOGON_FAILURE
    [2012/09/09 23:58:26.284667,  3] smbd/server_exit.c:180(exit_server_common)
      Server exit (failed to receive smb request)
    [2012/09/09 23:58:31.910555,  3] smbd/process.c:1662(process_smb)
      Transaction 11 of length 142 (0 toread)
    [2012/09/09 23:58:31.910682,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2321) conn 0x0
    [2012/09/09 23:58:31.910751,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:31.910803,  2] smbd/sesssetup.c:1279(setup_new_vc_session)
      setup_new_vc_session: New VC == 0, if NT4.x compatible we would close all old resources.
    [2012/09/09 23:58:31.910854,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:31.910910,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:31.910989,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:58:31.911062,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:58:31.911922,  3] smbd/process.c:1662(process_smb)
      Transaction 12 of length 268 (0 toread)
    [2012/09/09 23:58:31.911983,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2321) conn 0x0
    [2012/09/09 23:58:31.912044,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:58:31.912095,  2] smbd/sesssetup.c:1279(setup_new_vc_session)
      setup_new_vc_session: New VC == 0, if NT4.x compatible we would close all old resources.
    [2012/09/09 23:58:31.912144,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:58:31.912195,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:58:31.912260,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[test] domain=[ubuntu] workstation=[SPIRO-PC] len1=24 len2=24
    [2012/09/09 23:58:31.912360,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user [ubuntu]\[test]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:58:31.912415,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [ubuntu]\[test]@[SPIRO-PC]
    [2012/09/09 23:58:31.913059,  3] passdb/lookup_sid.c:1737(get_primary_group_sid)
      Forcing Primary Group to 'Domain Users' for test
    [2012/09/09 23:58:31.913463,  3] auth/auth.c:268(check_ntlm_password)
      check_ntlm_password: sam authentication for user [test] succeeded
    [2012/09/09 23:58:31.952555,  2] auth/auth.c:309(check_ntlm_password)
      check_ntlm_password:  authentication for user [test] -> [test] -> [test] succeeded
    [2012/09/09 23:58:31.952733,  3] auth/token_util.c:438(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:58:31.952847,  3] auth/token_util.c:469(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:58:31.954950,  3] ../libcli/auth/ntlmssp_sign.c:535(ntlmssp_sign_init)
      NTLMSSP Sign/Seal - Initialising with flags:
    [2012/09/09 23:58:31.955031,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088215
    [2012/09/09 23:58:31.955113,  3] smbd/password.c:297(register_existing_vuid)
      register_existing_vuid: User name: test       Real name:
    [2012/09/09 23:58:31.955179,  3] smbd/password.c:307(register_existing_vuid)
      register_existing_vuid: UNIX uid 1001 is UNIX user test, and will be vuid 105
    [2012/09/09 23:58:31.961174,  3] smbd/password.c:238(register_homes_share)
      Adding homes service for user 'test' using home directory: '/home/test'
    [2012/09/09 23:58:31.963325,  3] smbd/process.c:1662(process_smb)
      Transaction 13 of length 82 (0 toread)
    [2012/09/09 23:58:31.963397,  3] smbd/process.c:1467(switch_message)
      switch message SMBtconX (pid 2321) conn 0x0
    [2012/09/09 23:58:31.963488,  3] lib/access.c:338(allow_access)
      Allowed connection from 192.168.0.110 (192.168.0.110)
    [2012/09/09 23:58:31.963565,  3] smbd/service.c:837(make_connection_snum)
      Connect path is '/tmp' for service [IPC$]
    [2012/09/09 23:58:31.963650,  3] smbd/vfs.c:102(vfs_init_default)
      Initialising default vfs hooks
    [2012/09/09 23:58:31.963716,  3] smbd/vfs.c:128(vfs_init_custom)
      Initialising custom vfs hooks from [/[Default VFS]/]
    [2012/09/09 23:58:31.964019,  3] smbd/service.c:1081(make_connection_snum)
      spiro-pc (192.168.0.110) connect to service IPC$ initially as user test (uid=1001, gid=1001) (pid 2321)
    [2012/09/09 23:58:31.964091,  3] smbd/reply.c:871(reply_tcon_and_X)
      tconX service=IPC$
    [2012/09/09 23:58:31.964487,  3] smbd/service.c:1345(close_cnum)
      spiro-pc (192.168.0.110) closed connection to service IPC$
    [2012/09/09 23:58:31.964548,  3] smbd/connection.c:35(yield_connection)
      Yielding connection to IPC$
    [2012/09/09 23:58:31.969986,  3] smbd/server_exit.c:180(exit_server_common)
      Server exit (failed to receive smb request)
    [2012/09/09 23:59:29.648089,  3] smbd/process.c:1662(process_smb)
      Transaction 0 of length 159 (0 toread)
    [2012/09/09 23:59:29.648178,  3] smbd/process.c:1467(switch_message)
      switch message SMBnegprot (pid 2325) conn 0x0
    [2012/09/09 23:59:29.648700,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [PC NETWORK PROGRAM 1.0]
    [2012/09/09 23:59:29.648768,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [LANMAN1.0]
    [2012/09/09 23:59:29.648824,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [Windows for Workgroups 3.1a]
    [2012/09/09 23:59:29.648879,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [LM1.2X002]
    [2012/09/09 23:59:29.648955,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [LANMAN2.1]
    [2012/09/09 23:59:29.649010,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [NT LM 0.12]
    [2012/09/09 23:59:29.649064,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [SMB 2.002]
    [2012/09/09 23:59:29.649119,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [SMB 2.???]
    [2012/09/09 23:59:29.649295,  3] smbd/negprot.c:419(reply_nt1)
      using SPNEGO
    [2012/09/09 23:59:29.649352,  3] smbd/negprot.c:704(reply_negprot)
      Selected protocol NT LM 0.12
    [2012/09/09 23:59:29.651538,  3] smbd/process.c:1662(process_smb)
      Transaction 1 of length 142 (0 toread)
    [2012/09/09 23:59:29.651601,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2325) conn 0x0
    [2012/09/09 23:59:29.651670,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:59:29.651727,  2] smbd/sesssetup.c:1279(setup_new_vc_session)
      setup_new_vc_session: New VC == 0, if NT4.x compatible we would close all old resources.
    [2012/09/09 23:59:29.651782,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:59:29.651842,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:29.651937,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:59:29.652494,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:59:29.655821,  3] smbd/process.c:1662(process_smb)
      Transaction 2 of length 196 (0 toread)
    [2012/09/09 23:59:29.655889,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2325) conn 0x0
    [2012/09/09 23:59:29.655971,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:59:29.656023,  2] smbd/sesssetup.c:1279(setup_new_vc_session)
      setup_new_vc_session: New VC == 0, if NT4.x compatible we would close all old resources.
    [2012/09/09 23:59:29.656075,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:59:29.656128,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:29.656196,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[] domain=[] workstation=[SPIRO-PC] len1=1 len2=0
    [2012/09/09 23:59:29.656292,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user []\[]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:59:29.656347,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [UBUNTU]\[]@[SPIRO-PC]
    [2012/09/09 23:59:29.656419,  3] auth/auth.c:268(check_ntlm_password)
      check_ntlm_password: guest authentication for user [] succeeded
    [2012/09/09 23:59:29.656602,  3] auth/token_util.c:438(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:59:29.656720,  3] auth/token_util.c:469(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:59:29.658298,  3] ../libcli/auth/ntlmssp_sign.c:535(ntlmssp_sign_init)
      NTLMSSP Sign/Seal - Initialising with flags:
    [2012/09/09 23:59:29.658380,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088215
    [2012/09/09 23:59:29.658464,  3] smbd/password.c:297(register_existing_vuid)
      register_existing_vuid: User name: nobody     Real name: (null)
    [2012/09/09 23:59:29.658520,  3] smbd/password.c:307(register_existing_vuid)
      register_existing_vuid: UNIX uid 65534 is UNIX user nobody, and will be vuid 100
    [2012/09/09 23:59:29.667929,  3] smbd/process.c:1662(process_smb)
      Transaction 0 of length 137 (0 toread)
    [2012/09/09 23:59:29.668011,  3] smbd/process.c:1467(switch_message)
      switch message SMBnegprot (pid 2326) conn 0x0
    [2012/09/09 23:59:29.668521,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [PC NETWORK PROGRAM 1.0]
    [2012/09/09 23:59:29.668585,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [LANMAN1.0]
    [2012/09/09 23:59:29.668638,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [Windows for Workgroups 3.1a]
    [2012/09/09 23:59:29.668690,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [LM1.2X002]
    [2012/09/09 23:59:29.668743,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [LANMAN2.1]
    [2012/09/09 23:59:29.668794,  3] smbd/negprot.c:598(reply_negprot)
      Requested protocol [NT LM 0.12]
    [2012/09/09 23:59:29.668995,  3] smbd/negprot.c:419(reply_nt1)
      using SPNEGO
    [2012/09/09 23:59:29.669054,  3] smbd/negprot.c:704(reply_negprot)
      Selected protocol NT LM 0.12
    [2012/09/09 23:59:29.669846,  3] smbd/process.c:1662(process_smb)
      Transaction 1 of length 142 (0 toread)
    [2012/09/09 23:59:29.669904,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2326) conn 0x0
    [2012/09/09 23:59:29.669970,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:59:29.670024,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:59:29.670080,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:29.670171,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:59:29.670717,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:59:29.672861,  3] smbd/process.c:1662(process_smb)
      Transaction 2 of length 196 (0 toread)
    [2012/09/09 23:59:29.672955,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2326) conn 0x0
    [2012/09/09 23:59:29.673022,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:59:29.673089,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:59:29.673142,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:29.673210,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[] domain=[] workstation=[SPIRO-PC] len1=1 len2=0
    [2012/09/09 23:59:29.673303,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user []\[]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:59:29.673359,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [UBUNTU]\[]@[SPIRO-PC]
    [2012/09/09 23:59:29.673429,  3] auth/auth.c:268(check_ntlm_password)
      check_ntlm_password: guest authentication for user [] succeeded
    [2012/09/09 23:59:29.673608,  3] auth/token_util.c:438(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:59:29.673728,  3] auth/token_util.c:469(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:59:29.675270,  3] ../libcli/auth/ntlmssp_sign.c:535(ntlmssp_sign_init)
      NTLMSSP Sign/Seal - Initialising with flags:
    [2012/09/09 23:59:29.675350,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088215
    [2012/09/09 23:59:29.675432,  3] smbd/password.c:297(register_existing_vuid)
      register_existing_vuid: User name: nobody     Real name: (null)
    [2012/09/09 23:59:29.675487,  3] smbd/password.c:307(register_existing_vuid)
      register_existing_vuid: UNIX uid 65534 is UNIX user nobody, and will be vuid 100
    [2012/09/09 23:59:31.927073,  3] smbd/process.c:1662(process_smb)
      Transaction 3 of length 142 (0 toread)
    [2012/09/09 23:59:31.927196,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2325) conn 0x0
    [2012/09/09 23:59:31.927265,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:59:31.927318,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:59:31.927374,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:31.927454,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:59:31.927528,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:59:31.928184,  3] smbd/process.c:1662(process_smb)
      Transaction 4 of length 196 (0 toread)
    [2012/09/09 23:59:31.928247,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2325) conn 0x0
    [2012/09/09 23:59:31.928308,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:59:31.928359,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:59:31.928411,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:31.928477,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[] domain=[] workstation=[SPIRO-PC] len1=1 len2=0
    [2012/09/09 23:59:31.928573,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user []\[]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:59:31.928629,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [UBUNTU]\[]@[SPIRO-PC]
    [2012/09/09 23:59:31.928691,  3] auth/auth.c:268(check_ntlm_password)
      check_ntlm_password: guest authentication for user [] succeeded
    [2012/09/09 23:59:31.928827,  3] auth/token_util.c:438(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:59:31.928953,  3] auth/token_util.c:469(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:59:31.930136,  3] ../libcli/auth/ntlmssp_sign.c:535(ntlmssp_sign_init)
      NTLMSSP Sign/Seal - Initialising with flags:
    [2012/09/09 23:59:31.930209,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088215
    [2012/09/09 23:59:31.930306,  3] smbd/password.c:297(register_existing_vuid)
      register_existing_vuid: User name: nobody     Real name: (null)
    [2012/09/09 23:59:31.930358,  3] smbd/password.c:307(register_existing_vuid)
      register_existing_vuid: UNIX uid 65534 is UNIX user nobody, and will be vuid 101
    [2012/09/09 23:59:31.931404,  3] smbd/process.c:1662(process_smb)
      Transaction 3 of length 142 (0 toread)
    [2012/09/09 23:59:31.931475,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2326) conn 0x0
    [2012/09/09 23:59:31.931537,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:59:31.931588,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:59:31.931641,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:31.931715,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:59:31.931783,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:59:31.932462,  3] smbd/process.c:1662(process_smb)
      Transaction 4 of length 196 (0 toread)
    [2012/09/09 23:59:31.932521,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2326) conn 0x0
    [2012/09/09 23:59:31.932581,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:59:31.932632,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:59:31.932683,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:31.932746,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[] domain=[] workstation=[SPIRO-PC] len1=1 len2=0
    [2012/09/09 23:59:31.932827,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user []\[]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:59:31.932881,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [UBUNTU]\[]@[SPIRO-PC]
    [2012/09/09 23:59:31.932967,  3] auth/auth.c:268(check_ntlm_password)
      check_ntlm_password: guest authentication for user [] succeeded
    [2012/09/09 23:59:31.933085,  3] auth/token_util.c:438(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:59:31.933195,  3] auth/token_util.c:469(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:59:31.934258,  3] ../libcli/auth/ntlmssp_sign.c:535(ntlmssp_sign_init)
      NTLMSSP Sign/Seal - Initialising with flags:
    [2012/09/09 23:59:31.934330,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088215
    [2012/09/09 23:59:31.934409,  3] smbd/password.c:297(register_existing_vuid)
      register_existing_vuid: User name: nobody     Real name: (null)
    [2012/09/09 23:59:31.934461,  3] smbd/password.c:307(register_existing_vuid)
      register_existing_vuid: UNIX uid 65534 is UNIX user nobody, and will be vuid 101
    [2012/09/09 23:59:37.020940,  3] smbd/process.c:1662(process_smb)
      Transaction 5 of length 142 (0 toread)
    [2012/09/09 23:59:37.021069,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2325) conn 0x0
    [2012/09/09 23:59:37.021138,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:59:37.021191,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:59:37.021246,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:37.021325,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:59:37.021400,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:59:37.022115,  3] smbd/process.c:1662(process_smb)
      Transaction 6 of length 278 (0 toread)
    [2012/09/09 23:59:37.022192,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2325) conn 0x0
    [2012/09/09 23:59:37.022254,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:59:37.022305,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:59:37.022357,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:37.022424,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[SAngeli] domain=[SPIRO-PC] workstation=[SPIRO-PC] len1=24 len2=24
    [2012/09/09 23:59:37.022526,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user [SPIRO-PC]\[SAngeli]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:59:37.022582,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [UBUNTU]\[SAngeli]@[SPIRO-PC]
    [2012/09/09 23:59:37.023293,  3] passdb/lookup_sid.c:1737(get_primary_group_sid)
      Forcing Primary Group to 'Domain Users' for sangeli
    [2012/09/09 23:59:37.023515,  3] ../libcli/auth/ntlm_check.c:413(ntlm_password_check)
      ntlm_password_check: NT MD4 password check failed for user sangeli
    [2012/09/09 23:59:37.023758,  2] auth/auth.c:319(check_ntlm_password)
      check_ntlm_password:  Authentication for user [SAngeli] -> [SAngeli] FAILED with error NT_STATUS_WRONG_PASSWORD
    [2012/09/09 23:59:37.023830,  3] smbd/error.c:81(error_packet_set)
      error packet at smbd/sesssetup.c(124) cmd=115 (SMBsesssetupX) NT_STATUS_LOGON_FAILURE
    [2012/09/09 23:59:37.030235,  3] smbd/process.c:1662(process_smb)
      Transaction 7 of length 142 (0 toread)
    [2012/09/09 23:59:37.030299,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2325) conn 0x0
    [2012/09/09 23:59:37.030360,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:59:37.030412,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:59:37.030464,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:37.030539,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:59:37.030604,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:59:37.031929,  3] smbd/process.c:1662(process_smb)
      Transaction 8 of length 278 (0 toread)
    [2012/09/09 23:59:37.031991,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2325) conn 0x0
    [2012/09/09 23:59:37.032051,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:59:37.032103,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:59:37.032155,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:37.032220,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[SAngeli] domain=[SPIRO-PC] workstation=[SPIRO-PC] len1=24 len2=24
    [2012/09/09 23:59:37.032308,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user [SPIRO-PC]\[SAngeli]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:59:37.032363,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [UBUNTU]\[SAngeli]@[SPIRO-PC]
    [2012/09/09 23:59:37.032521,  3] passdb/lookup_sid.c:1737(get_primary_group_sid)
      Forcing Primary Group to 'Domain Users' for sangeli
    [2012/09/09 23:59:37.032705,  3] ../libcli/auth/ntlm_check.c:413(ntlm_password_check)
      ntlm_password_check: NT MD4 password check failed for user sangeli
    [2012/09/09 23:59:37.032943,  2] auth/auth.c:319(check_ntlm_password)
      check_ntlm_password:  Authentication for user [SAngeli] -> [SAngeli] FAILED with error NT_STATUS_WRONG_PASSWORD
    [2012/09/09 23:59:37.033009,  3] smbd/error.c:81(error_packet_set)
      error packet at smbd/sesssetup.c(124) cmd=115 (SMBsesssetupX) NT_STATUS_LOGON_FAILURE
    [2012/09/09 23:59:46.284127,  3] smbd/server_exit.c:180(exit_server_common)
      Server exit (failed to receive smb request)
    [2012/09/09 23:59:46.625364,  3] smbd/process.c:1662(process_smb)
      Transaction 9 of length 142 (0 toread)
    [2012/09/09 23:59:46.625476,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2325) conn 0x0
    [2012/09/09 23:59:46.625543,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:59:46.625596,  2] smbd/sesssetup.c:1279(setup_new_vc_session)
      setup_new_vc_session: New VC == 0, if NT4.x compatible we would close all old resources.
    [2012/09/09 23:59:46.625647,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:59:46.625704,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:46.625783,  3] smbd/sesssetup.c:660(reply_spnego_negotiate)
      reply_spnego_negotiate: Got secblob of size 40
    [2012/09/09 23:59:46.625858,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088297
    [2012/09/09 23:59:46.626828,  3] smbd/process.c:1662(process_smb)
      Transaction 10 of length 274 (0 toread)
    [2012/09/09 23:59:46.626890,  3] smbd/process.c:1467(switch_message)
      switch message SMBsesssetupX (pid 2325) conn 0x0
    [2012/09/09 23:59:46.626950,  3] smbd/sesssetup.c:1333(reply_sesssetup_and_X)
      wct=12 flg2=0xc817
    [2012/09/09 23:59:46.627002,  2] smbd/sesssetup.c:1279(setup_new_vc_session)
      setup_new_vc_session: New VC == 0, if NT4.x compatible we would close all old resources.
    [2012/09/09 23:59:46.627052,  3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego)
      Doing spnego session setup
    [2012/09/09 23:59:46.627104,  3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego)
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:46.627170,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[sangeli] domain=[ubuntu] workstation=[SPIRO-PC] len1=24 len2=24
    [2012/09/09 23:59:46.627271,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user [ubuntu]\[sangeli]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:59:46.627327,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [ubuntu]\[sangeli]@[SPIRO-PC]
    [2012/09/09 23:59:46.627504,  3] passdb/lookup_sid.c:1737(get_primary_group_sid)
      Forcing Primary Group to 'Domain Users' for sangeli
    [2012/09/09 23:59:46.629914,  3] auth/auth.c:268(check_ntlm_password)
      check_ntlm_password: sam authentication for user [sangeli] succeeded
    [2012/09/09 23:59:46.635813,  2] auth/auth.c:309(check_ntlm_password)
      check_ntlm_password:  authentication for user [sangeli] -> [sangeli] -> [sangeli] succeeded
    [2012/09/09 23:59:46.635992,  3] auth/token_util.c:438(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:59:46.636108,  3] auth/token_util.c:469(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:59:46.637903,  3] ../libcli/auth/ntlmssp_sign.c:535(ntlmssp_sign_init)
      NTLMSSP Sign/Seal - Initialising with flags:
    [2012/09/09 23:59:46.637983,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088215
    [2012/09/09 23:59:46.638066,  3] smbd/password.c:297(register_existing_vuid)
      register_existing_vuid: User name: sangeli    Real name: sangeli
    [2012/09/09 23:59:46.638117,  3] smbd/password.c:307(register_existing_vuid)
      register_existing_vuid: UNIX uid 1000 is UNIX user sangeli, and will be vuid 104
    [2012/09/09 23:59:46.643898,  3] smbd/password.c:238(register_homes_share)
      Adding homes service for user 'sangeli' using home directory: '/home/sangeli'
    [2012/09/09 23:59:46.645535,  3] smbd/process.c:1662(process_smb)
      Transaction 11 of length 82 (0 toread)
    [2012/09/09 23:59:46.645645,  3] smbd/process.c:1467(switch_message)
      switch message SMBtconX (pid 2325) conn 0x0
    [2012/09/09 23:59:46.645778,  3] lib/access.c:338(allow_access)
      Allowed connection from 192.168.0.110 (192.168.0.110)
    [2012/09/09 23:59:46.645917,  3] smbd/service.c:837(make_connection_snum)
      Connect path is '/tmp' for service [IPC$]
    [2012/09/09 23:59:46.646050,  3] smbd/vfs.c:102(vfs_init_default)
      Initialising default vfs hooks
    [2012/09/09 23:59:46.646156,  3] smbd/vfs.c:128(vfs_init_custom)
      Initialising custom vfs hooks from [/[Default VFS]/]
      NativeOS=[] NativeLanMan=[] PrimaryDomain=[]
    [2012/09/09 23:59:46.627170,  3] ../libcli/auth/ntlmssp_server.c:348(ntlmssp_server_preauth)
      Got user=[sangeli] domain=[ubuntu] workstation=[SPIRO-PC] len1=24 len2=24
    [2012/09/09 23:59:46.627271,  3] auth/auth.c:219(check_ntlm_password)
      check_ntlm_password:  Checking password for unmapped user [ubuntu]\[sangeli]@[SPIRO-PC] with the new password interface
    [2012/09/09 23:59:46.627327,  3] auth/auth.c:222(check_ntlm_password)
      check_ntlm_password:  mapped user is: [ubuntu]\[sangeli]@[SPIRO-PC]
    [2012/09/09 23:59:46.627504,  3] passdb/lookup_sid.c:1737(get_primary_group_sid)
      Forcing Primary Group to 'Domain Users' for sangeli
    [2012/09/09 23:59:46.629914,  3] auth/auth.c:268(check_ntlm_password)
      check_ntlm_password: sam authentication for user [sangeli] succeeded
    [2012/09/09 23:59:46.635813,  2] auth/auth.c:309(check_ntlm_password)
      check_ntlm_password:  authentication for user [sangeli] -> [sangeli] -> [sangeli] succeeded
    [2012/09/09 23:59:46.635992,  3] auth/token_util.c:438(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:59:46.636108,  3] auth/token_util.c:469(finalize_local_nt_token)
      Failed to fetch domain sid for WORKGROUP
    [2012/09/09 23:59:46.637903,  3] ../libcli/auth/ntlmssp_sign.c:535(ntlmssp_sign_init)
      NTLMSSP Sign/Seal - Initialising with flags:
    [2012/09/09 23:59:46.637983,  3] ../libcli/auth/ntlmssp.c:34(debug_ntlmssp_flags)
      Got NTLMSSP neg_flags=0xe2088215
    [2012/09/09 23:59:46.638066,  3] smbd/password.c:297(register_existing_vuid)
      register_existing_vuid: User name: sangeli    Real name: sangeli
    [2012/09/09 23:59:46.638117,  3] smbd/password.c:307(register_existing_vuid)
      register_existing_vuid: UNIX uid 1000 is UNIX user sangeli, and will be vuid 104
    [2012/09/09 23:59:46.643898,  3] smbd/password.c:238(register_homes_share)
      Adding homes service for user 'sangeli' using home directory: '/home/sangeli'
    [2012/09/09 23:59:46.645535,  3] smbd/process.c:1662(process_smb)
      Transaction 11 of length 82 (0 toread)
    [2012/09/09 23:59:46.645645,  3] smbd/process.c:1467(switch_message)
      switch message SMBtconX (pid 2325) conn 0x0
    [2012/09/09 23:59:46.645778,  3] lib/access.c:338(allow_access)
      Allowed connection from 192.168.0.110 (192.168.0.110)
    [2012/09/09 23:59:46.645917,  3] smbd/service.c:837(make_connection_snum)
      Connect path is '/tmp' for service [IPC$]
    [2012/09/09 23:59:46.646050,  3] smbd/vfs.c:102(vfs_init_default)
      Initialising default vfs hooks
    [2012/09/09 23:59:46.646156,  3] smbd/vfs.c:128(vfs_init_custom)
      Initialising custom vfs hooks from [/[Default VFS]/]
    [2012/09/09 23:59:46.646434,  3] smbd/service.c:1081(make_connection_snum)
      spiro-pc (192.168.0.110) connect to service IPC$ initially as user sangeli (uid=1000, gid=1000) (pid 2325)
    [2012/09/09 23:59:46.646535,  3] smbd/reply.c:871(reply_tcon_and_X)
      tconX service=IPC$
    [2012/09/09 23:59:46.647038,  3] smbd/service.c:1345(close_cnum)
      spiro-pc (192.168.0.110) closed connection to service IPC$
    [2012/09/09 23:59:46.647139,  3] smbd/connection.c:35(yield_connection)
      Yielding connection to IPC$
    [2012/09/09 23:59:46.653385,  3] smbd/server_exit.c:180(exit_server_common)
      Server exit (failed to receive smb request)

    Seguono altri log.

    Spiro

    lunedì 10 settembre 2012 13:50
  • proseguo dei log.

    File: log.192.168.0.110

    sangeli@ubuntu:/var/log/samba$ cat log.192.168.0.110
    [2012/09/09 23:58:10.472584,  3] lib/access.c:338(allow_access)
      Allowed connection from 192.168.0.110 (192.168.0.110)
    [2012/09/09 23:58:10.472778,  3] smbd/oplock.c:922(init_oplocks)
      init_oplocks: initializing messages.
    [2012/09/09 23:58:10.472954,  3] smbd/oplock_linux.c:226(linux_init_kernel_oplocks)
      Linux kernel oplocks enabled
    [2012/09/09 23:58:10.475941,  3] smbd/process.c:1662(process_smb)
      Transaction 0 of length 72 (0 toread)
    [2012/09/09 23:58:10.479424,  2] smbd/reply.c:553(reply_special)
      netbios connect: name1=UBUNTU         0x20 name2=SPIRO-PC       0x0
    [2012/09/09 23:58:10.483318,  2] smbd/reply.c:573(reply_special)
      netbios connect: local=ubuntu remote=spiro-pc, name type = 0
    [2012/09/09 23:58:10.570063,  3] lib/access.c:338(allow_access)
      Allowed connection from 192.168.0.110 (192.168.0.110)
    [2012/09/09 23:58:10.570232,  3] smbd/oplock.c:922(init_oplocks)
      init_oplocks: initializing messages.
    [2012/09/09 23:58:10.570368,  3] smbd/oplock_linux.c:226(linux_init_kernel_oplocks)
      Linux kernel oplocks enabled
    [2012/09/09 23:58:10.570508,  3] smbd/process.c:1662(process_smb)
      Transaction 0 of length 72 (0 toread)
    [2012/09/09 23:58:10.570575,  2] smbd/reply.c:553(reply_special)
      netbios connect: name1=UBUNTU         0x20 name2=SPIRO-PC       0x0
    [2012/09/09 23:58:10.570644,  2] smbd/reply.c:573(reply_special)
      netbios connect: local=ubuntu remote=spiro-pc, name type = 0
    [2012/09/09 23:59:29.646727,  3] lib/access.c:338(allow_access)
      Allowed connection from 192.168.0.110 (192.168.0.110)
    [2012/09/09 23:59:29.646915,  3] smbd/oplock.c:922(init_oplocks)
      init_oplocks: initializing messages.
    [2012/09/09 23:59:29.647022,  3] smbd/oplock_linux.c:226(linux_init_kernel_oplocks)
      Linux kernel oplocks enabled
    [2012/09/09 23:59:29.647167,  3] smbd/process.c:1662(process_smb)
      Transaction 0 of length 72 (0 toread)
    [2012/09/09 23:59:29.647237,  2] smbd/reply.c:553(reply_special)
      netbios connect: name1=UBUNTU         0x20 name2=SPIRO-PC       0x0
    [2012/09/09 23:59:29.647309,  2] smbd/reply.c:573(reply_special)
      netbios connect: local=ubuntu remote=spiro-pc, name type = 0
    [2012/09/09 23:59:29.666838,  3] lib/access.c:338(allow_access)
      Allowed connection from 192.168.0.110 (192.168.0.110)
    [2012/09/09 23:59:29.667003,  3] smbd/oplock.c:922(init_oplocks)
      init_oplocks: initializing messages.
    [2012/09/09 23:59:29.667107,  3] smbd/oplock_linux.c:226(linux_init_kernel_oplocks)
      Linux kernel oplocks enabled
    [2012/09/09 23:59:29.667251,  3] smbd/process.c:1662(process_smb)
      Transaction 0 of length 72 (0 toread)
    [2012/09/09 23:59:29.667321,  2] smbd/reply.c:553(reply_special)
      netbios connect: name1=UBUNTU         0x20 name2=SPIRO-PC       0x0
    [2012/09/09 23:59:29.667392,  2] smbd/reply.c:573(reply_special)
      netbios connect: local=ubuntu remote=spiro-pc, name type = 0

    File: log.nmbd

    sangeli@ubuntu:/var/log/samba$ cat log.nmbd
    [2012/09/10 15:23:07,  0] nmbd/nmbd.c:860(main)
      nmbd version 3.6.3 started.
      Copyright Andrew Tridgell and the Samba Team 1992-2011
    [2012/09/10 15:23:07,  2] lib/tallocmsg.c:124(register_msg_pool_usage)
      Registered MSG_REQ_POOL_USAGE
    [2012/09/10 15:23:07,  2] lib/dmallocmsg.c:78(register_dmalloc_msgs)
      Registered MSG_REQ_DMALLOC_MARK and LOG_CHANGED
    [2012/09/10 15:23:07,  3] param/loadparm.c:9572(lp_load_ex)
      lp_load_ex: refreshing parameters
    [2012/09/10 15:23:07,  3] param/loadparm.c:5192(init_globals)
      Initialising global parameters
    [2012/09/10 15:23:07,  2] param/loadparm.c:4985(max_open_files)
      rlimit_max: increasing rlimit_max (1024) to minimum Windows limit (16384)
    [2012/09/10 15:23:07,  3] ../lib/util/params.c:550(pm_process)
      params.c:pm_process() - Processing configuration file "/etc/samba/smb.conf"
    [2012/09/10 15:23:07,  3] param/loadparm.c:8310(do_section)
      Processing section "[global]"
    [2012/09/10 15:23:07,  3] nmbd/nmbd.c:382(reload_nmbd_services)
      services not loaded
    [2012/09/10 15:23:07,  2] nmbd/nmbd.c:893(main)
      Becoming a daemon.
    [2012/09/10 15:23:07,  3] nmbd/nmbd.c:962(main)
      Opening sockets 137
    [2012/09/10 15:23:07,  3] nmbd/nmbd.c:732(open_sockets)
      open_sockets: Broadcast sockets opened.
    [2012/09/10 15:23:07,  2] lib/interface.c:341(add_interface)
      added interface eth0 ip=fe80::214:5eff:fe08:8398%eth0 bcast=fe80::ffff:ffff:ffff:ffff%eth0 netmask=ffff:ffff:ffff:ffff::
    [2012/09/10 15:23:07,  2] lib/interface.c:341(add_interface)
      added interface eth0 ip=192.168.0.50 bcast=192.168.0.255 netmask=255.255.255.0
    [2012/09/10 15:23:07,  2] nmbd/nmbd_subnetdb.c:180(make_subnet)
      making subnet name:192.168.0.50 Broadcast address:192.168.0.255 Subnet mask:255.255.255.0
    [2012/09/10 15:23:07,  2] nmbd/nmbd_subnetdb.c:297(create_subnets)
      create_subnets: ignoring non IPv4 interface.
    [2012/09/10 15:23:07,  2] nmbd/nmbd_subnetdb.c:180(make_subnet)
      making subnet name:UNICAST_SUBNET Broadcast address:0.0.0.0 Subnet mask:0.0.0.0
    [2012/09/10 15:23:07,  2] nmbd/nmbd_subnetdb.c:180(make_subnet)
      making subnet name:REMOTE_BROADCAST_SUBNET Broadcast address:0.0.0.0 Subnet mask:0.0.0.0
    [2012/09/10 15:23:07,  2] nmbd/nmbd_lmhosts.c:43(load_lmhosts_file)
      load_lmhosts_file: Can't open lmhosts file /etc/samba/lmhosts. Error was No such file or directory
    [2012/09/10 15:23:07,  3] nmbd/nmbd.c:984(main)
      Loaded hosts file /etc/samba/lmhosts
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name *<00> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet 192.168.0.50
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name *<20> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet 192.168.0.50
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name __SAMBA__<20> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet 192.168.0.50
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name __SAMBA__<00> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet 192.168.0.50
    [2012/09/10 15:23:07,  3] nmbd/nmbd_serverlistdb.c:130(create_server_on_workgroup)
      create_server_on_workgroup: Created server entry UBUNTU of type 40819a03 (ubuntu server (Samba, Ubuntu)) on workgroup WORKGROUP.
    [2012/09/10 15:23:07,  3] nmbd/nmbd_workgroupdb.c:259(initiate_myworkgroup_startup)
      initiate_myworkgroup_startup: Added server name entry UBUNTU on subnet 192.168.0.50
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name *<00> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet UNICAST_SUBNET
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name *<20> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet UNICAST_SUBNET
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name __SAMBA__<20> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet UNICAST_SUBNET
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name __SAMBA__<00> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet UNICAST_SUBNET
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name UBUNTU<20> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet UNICAST_SUBNET
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name UBUNTU<03> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet UNICAST_SUBNET
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name UBUNTU<00> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet UNICAST_SUBNET
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name WORKGROUP<00> with first IP 192.168.0.50 ttl=0 nb_flags=80 to subnet UNICAST_SUBNET
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name WORKGROUP<1e> with first IP 192.168.0.50 ttl=0 nb_flags=80 to subnet UNICAST_SUBNET
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name *<00> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet REMOTE_BROADCAST_SUBNET
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name *<20> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet REMOTE_BROADCAST_SUBNET
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name __SAMBA__<20> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet REMOTE_BROADCAST_SUBNET
    [2012/09/10 15:23:07,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name __SAMBA__<00> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet REMOTE_BROADCAST_SUBNET
    [2012/09/10 15:23:07,  3] nmbd/nmbd_sendannounce.c:209(send_host_announcement)
      send_host_announcement: type 819a03 for host UBUNTU on subnet 192.168.0.50 for workgroup WORKGROUP
    [2012/09/10 15:23:07,  3] nmbd/nmbd_elections.c:77(check_for_master_browser_success)
      check_for_master_browser_success: Local master browser for workgroup WORKGROUP exists at IP 192.168.0.110 (just checking).
    [2012/09/10 15:23:11,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name UBUNTU<20> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet 192.168.0.50
    [2012/09/10 15:23:11,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name UBUNTU<03> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet 192.168.0.50
    [2012/09/10 15:23:11,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name UBUNTU<00> with first IP 192.168.0.50 ttl=0 nb_flags= 0 to subnet 192.168.0.50
    [2012/09/10 15:23:11,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name WORKGROUP<00> with first IP 192.168.0.50 ttl=0 nb_flags=80 to subnet 192.168.0.50
    [2012/09/10 15:23:11,  3] nmbd/nmbd_namelistdb.c:252(add_name_to_subnet)
      add_name_to_subnet: Added netbios name WORKGROUP<1e> with first IP 192.168.0.50 ttl=0 nb_flags=80 to subnet 192.168.0.50
    [2012/09/10 15:23:28,  3] nmbd/nmbd_serverlistdb.c:397(write_browse_list)
      write_browse_list: Wrote browse list into file /var/cache/samba/browse.dat
    [2012/09/10 15:24:18,  3] nmbd/nmbd_sendannounce.c:209(send_host_announcement)
      send_host_announcement: type 819a03 for host UBUNTU on subnet 192.168.0.50 for workgroup WORKGROUP
    [2012/09/10 15:24:54,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:24:55,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:24:56,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:26:18,  3] nmbd/nmbd_sendannounce.c:209(send_host_announcement)
      send_host_announcement: type 819a03 for host UBUNTU on subnet 192.168.0.50 for workgroup WORKGROUP
    [2012/09/10 15:27:12,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:27:13,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:27:14,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:28:18,  3] nmbd/nmbd_elections.c:77(check_for_master_browser_success)
      check_for_master_browser_success: Local master browser for workgroup WORKGROUP exists at IP 192.168.0.110 (just checking).
    [2012/09/10 15:29:21,  3] nmbd/nmbd_sendannounce.c:209(send_host_announcement)
      send_host_announcement: type 819a03 for host UBUNTU on subnet 192.168.0.50 for workgroup WORKGROUP
    [2012/09/10 15:31:52,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name WPAD<00>
    [2012/09/10 15:31:53,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name WPAD<00>
    [2012/09/10 15:31:54,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name WPAD<00>
    [2012/09/10 15:33:19,  3] nmbd/nmbd_sendannounce.c:209(send_host_announcement)
      send_host_announcement: type 819a03 for host UBUNTU on subnet 192.168.0.50 for workgroup WORKGROUP
    [2012/09/10 15:33:19,  3] nmbd/nmbd_elections.c:77(check_for_master_browser_success)
      check_for_master_browser_success: Local master browser for workgroup WORKGROUP exists at IP 192.168.0.110 (just checking).
    [2012/09/10 15:34:03,  3] nmbd/nmbd_incomingdgrams.c:276(process_local_master_announce)
      process_local_master_announce: from SPIRO-PC<00> IP 192.168.0.110 to WORKGROUP<1e> for server SPIRO-PC.
    [2012/09/10 15:34:03,  3] nmbd/nmbd_serverlistdb.c:130(create_server_on_workgroup)
      create_server_on_workgroup: Created server entry SPIRO-PC of type 40071003 (PC Spiro Angeli) on workgroup WORKGROUP.
    [2012/09/10 15:34:03,  3] nmbd/nmbd_serverlistdb.c:397(write_browse_list)
      write_browse_list: Wrote browse list into file /var/cache/samba/browse.dat
    [2012/09/10 15:35:29,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:35:30,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:35:31,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:38:31,  3] nmbd/nmbd_sendannounce.c:209(send_host_announcement)
      send_host_announcement: type 819a03 for host UBUNTU on subnet 192.168.0.50 for workgroup WORKGROUP
    [2012/09/10 15:38:31,  3] nmbd/nmbd_elections.c:77(check_for_master_browser_success)
      check_for_master_browser_success: Local master browser for workgroup WORKGROUP exists at IP 192.168.0.110 (just checking).
    [2012/09/10 15:42:30,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name WPAD<00>
    [2012/09/10 15:42:31,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name WPAD<00>
    [2012/09/10 15:42:32,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name WPAD<00>
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:26:18,  3] nmbd/nmbd_sendannounce.c:209(send_host_announcement)
      send_host_announcement: type 819a03 for host UBUNTU on subnet 192.168.0.50 for workgroup WORKGROUP
    [2012/09/10 15:27:12,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:27:13,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:27:14,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:28:18,  3] nmbd/nmbd_elections.c:77(check_for_master_browser_success)
      check_for_master_browser_success: Local master browser for workgroup WORKGROUP exists at IP 192.168.0.110 (just checking).
    [2012/09/10 15:29:21,  3] nmbd/nmbd_sendannounce.c:209(send_host_announcement)
      send_host_announcement: type 819a03 for host UBUNTU on subnet 192.168.0.50 for workgroup WORKGROUP
    [2012/09/10 15:31:52,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name WPAD<00>
    [2012/09/10 15:31:53,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name WPAD<00>
    [2012/09/10 15:31:54,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name WPAD<00>
    [2012/09/10 15:33:19,  3] nmbd/nmbd_sendannounce.c:209(send_host_announcement)
      send_host_announcement: type 819a03 for host UBUNTU on subnet 192.168.0.50 for workgroup WORKGROUP
    [2012/09/10 15:33:19,  3] nmbd/nmbd_elections.c:77(check_for_master_browser_success)
      check_for_master_browser_success: Local master browser for workgroup WORKGROUP exists at IP 192.168.0.110 (just checking).
    [2012/09/10 15:34:03,  3] nmbd/nmbd_incomingdgrams.c:276(process_local_master_announce)
      process_local_master_announce: from SPIRO-PC<00> IP 192.168.0.110 to WORKGROUP<1e> for server SPIRO-PC.
    [2012/09/10 15:34:03,  3] nmbd/nmbd_serverlistdb.c:130(create_server_on_workgroup)
      create_server_on_workgroup: Created server entry SPIRO-PC of type 40071003 (PC Spiro Angeli) on workgroup WORKGROUP.
    [2012/09/10 15:34:03,  3] nmbd/nmbd_serverlistdb.c:397(write_browse_list)
      write_browse_list: Wrote browse list into file /var/cache/samba/browse.dat
    [2012/09/10 15:35:29,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:35:30,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:35:31,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name SPIRO-PC<1c>
    [2012/09/10 15:38:31,  3] nmbd/nmbd_sendannounce.c:209(send_host_announcement)
      send_host_announcement: type 819a03 for host UBUNTU on subnet 192.168.0.50 for workgroup WORKGROUP
    [2012/09/10 15:38:31,  3] nmbd/nmbd_elections.c:77(check_for_master_browser_success)
      check_for_master_browser_success: Local master browser for workgroup WORKGROUP exists at IP 192.168.0.110 (just checking).
    [2012/09/10 15:42:30,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name WPAD<00>
    [2012/09/10 15:42:31,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name WPAD<00>
    [2012/09/10 15:42:32,  3] nmbd/nmbd_incomingrequests.c:456(process_name_query_request)
      process_name_query_request: Name query from 192.168.0.110 on subnet 192.168.0.50 for name WPAD<00>
    [2012/09/10 15:43:32,  3] nmbd/nmbd_elections.c:77(check_for_master_browser_success)
      check_for_master_browser_success: Local master browser for workgroup WORKGROUP exists at IP 192.168.0.110 (just checking).
    [2012/09/10 15:44:34,  3] nmbd/nmbd_sendannounce.c:209(send_host_announcement)
      send_host_announcement: type 819a03 for host UBUNTU on subnet 192.168.0.50 for workgroup WORKGROUP

    File: log.wb-UBUNTU

    sangeli@ubuntu:/var/log/samba$ cat log.wb-UBUNTU
    [2012/09/10 15:23:09.229266,  3] winbindd/winbindd_misc.c:160(winbindd_dual_list_trusted_domains)
      [ 1363]: list trusted domains
    [2012/09/10 15:23:09.229492,  3] winbindd/winbindd_samr.c:367(sam_trusted_domains)
      samr: trusted domains
    [2012/09/10 15:23:09.230069,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/10 15:28:09.901631,  3] winbindd/winbindd_misc.c:160(winbindd_dual_list_trusted_domains)
      [ 1363]: list trusted domains
    [2012/09/10 15:28:09.901763,  3] winbindd/winbindd_samr.c:367(sam_trusted_domains)
      samr: trusted domains
    [2012/09/10 15:28:09.901956,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/10 15:33:10.002228,  3] winbindd/winbindd_misc.c:160(winbindd_dual_list_trusted_domains)
      [ 1363]: list trusted domains
    [2012/09/10 15:33:10.002340,  3] winbindd/winbindd_samr.c:367(sam_trusted_domains)
      samr: trusted domains
    [2012/09/10 15:33:10.002531,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/10 15:38:10.051394,  3] winbindd/winbindd_misc.c:160(winbindd_dual_list_trusted_domains)
      [ 1363]: list trusted domains
    [2012/09/10 15:38:10.051505,  3] winbindd/winbindd_samr.c:367(sam_trusted_domains)
      samr: trusted domains
    [2012/09/10 15:38:10.051694,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy
    [2012/09/10 15:43:10.151965,  3] winbindd/winbindd_misc.c:160(winbindd_dual_list_trusted_domains)
      [ 1363]: list trusted domains
    [2012/09/10 15:43:10.152078,  3] winbindd/winbindd_samr.c:367(sam_trusted_domains)
      samr: trusted domains
    [2012/09/10 15:43:10.152265,  3] rpc_server/rpc_handles.c:281(close_policy_hnd)
      Closed policy


    File: log.winbindd

    sangeli@ubuntu:/var/log/samba$ cat log.winbindd
    [2012/09/10 15:46:15.279857,  3] param/loadparm.c:9572(lp_load_ex)
      lp_load_ex: refreshing parameters
    [2012/09/10 15:46:15.280052,  3] param/loadparm.c:5192(init_globals)
      Initialising global parameters
    [2012/09/10 15:46:15.280146,  2] param/loadparm.c:4985(max_open_files)
      rlimit_max: increasing rlimit_max (1024) to minimum Windows limit (16384)
    [2012/09/10 15:46:15.280329,  3] ../lib/util/params.c:550(pm_process)
      params.c:pm_process() - Processing configuration file "/etc/samba/smb.conf"
    [2012/09/10 15:46:15.280424,  3] param/loadparm.c:8310(do_section)
      Processing section "[global]"
    [2012/09/10 15:46:15.280672,  2] param/loadparm.c:8327(do_section)
      Processing section "[samba_spiro]"
    [2012/09/10 15:46:15.280849,  2] param/loadparm.c:8327(do_section)
      Processing section "[log]"
    [2012/09/10 15:46:15.280993,  3] param/loadparm.c:6630(lp_add_ipc)
      adding IPC service
    [2012/09/10 15:46:15.281380,  2] lib/interface.c:341(add_interface)
      added interface eth0 ip=fe80::214:5eff:fe08:8398%eth0 bcast=fe80::ffff:ffff:ffff:ffff%eth0 netmask=ffff:ffff:ffff:ffff::
    [2012/09/10 15:46:15.281518,  2] lib/interface.c:341(add_interface)
      added interface eth0 ip=192.168.0.50 bcast=192.168.0.255 netmask=255.255.255.0

    File: log.smbd

    sangeli@ubuntu:/var/log/samba$ cat log.smbd
    [2012/09/10 15:46:15.150729,  3] param/loadparm.c:9572(lp_load_ex)
      lp_load_ex: refreshing parameters
    [2012/09/10 15:46:15.150917,  3] param/loadparm.c:5192(init_globals)
      Initialising global parameters
    [2012/09/10 15:46:15.151101,  3] ../lib/util/params.c:550(pm_process)
      params.c:pm_process() - Processing configuration file "/etc/samba/smb.conf"
    [2012/09/10 15:46:15.151186,  3] param/loadparm.c:8310(do_section)
      Processing section "[global]"
    [2012/09/10 15:46:15.151436,  2] param/loadparm.c:8327(do_section)
      Processing section "[samba_spiro]"
    [2012/09/10 15:46:15.151617,  2] param/loadparm.c:8327(do_section)
      Processing section "[log]"
    [2012/09/10 15:46:15.151838,  3] param/loadparm.c:6630(lp_add_ipc)
      adding IPC service
    [2012/09/10 15:46:15.152188,  2] lib/interface.c:341(add_interface)
      added interface eth0 ip=fe80::214:5eff:fe08:8398%eth0 bcast=fe80::ffff:ffff:ffff:ffff%eth0 netmask=ffff:ffff:ffff:ffff::
    [2012/09/10 15:46:15.152340,  2] lib/interface.c:341(add_interface)
      added interface eth0 ip=192.168.0.50 bcast=192.168.0.255 netmask=255.255.255.0
    [2012/09/10 15:46:15.152443,  2] lib/util_sock.c:236(set_socket_options)
      Failed to set socket option SO_KEEPALIVE (Error Socket operation on non-socket)
    [2012/09/10 15:46:15.152538,  2] lib/util_sock.c:236(set_socket_options)
      Failed to set socket option TCP_NODELAY (Error Socket operation on non-socket)
    [2012/09/10 15:46:15.152625,  3] printing/pcap.c:138(pcap_cache_reload)
      reloading printcap cache
    [2012/09/10 15:46:15.153322,  3] printing/pcap.c:189(pcap_cache_reload)
      reload status: ok
    [2012/09/10 15:46:15.158188,  1] lib/serverid.c:197(serverid_deregister)
      Deleting serverid.tdb record failed: NT_STATUS_NOT_FOUND
    [2012/09/10 15:46:15.158301,  1] smbd/server.c:309(remove_child_pid)
      Could not remove pid 2520 from serverid.tdb
    [2012/09/10 15:46:15.158353,  1] smbd/server.c:323(remove_child_pid)
      Could not find child 2520 -- ignoring
    [2012/09/10 15:48:09.239190,  3] smbd/server.c:629(smbd_parent_housekeeping)
      Printcap cache time expired.
    [2012/09/10 15:48:09.239309,  3] printing/pcap.c:138(pcap_cache_reload)
      reloading printcap cache
    [2012/09/10 15:48:09.239979,  3] printing/pcap.c:189(pcap_cache_reload)
      reload status: ok
    [2012/09/10 15:48:09.244703,  1] lib/serverid.c:197(serverid_deregister)
      Deleting serverid.tdb record failed: NT_STATUS_NOT_FOUND
    [2012/09/10 15:48:09.244818,  1] smbd/server.c:309(remove_child_pid)
      Could not remove pid 2668 from serverid.tdb
    [2012/09/10 15:48:09.244872,  1] smbd/server.c:323(remove_child_pid)
      Could not find child 2668 -- ignoring

    Rimango in attesa.

    Grazie tante!

    Spiro

    lunedì 10 settembre 2012 13:53
  • Scusa se mi accodo ma ho più o meno lo stesso problema.

    In ditta stiamo facendo dei test per il passaggio a Windows 7 64 bit, ho avuto la "fortuna" (ah-ah) di essere scelto nel gruppo di testing e mi sono imbattuto in un problema simile, cioè l'impossibilità di accedere a qualsiasi risorsa di rete utilizzando il protocollo SMB, nel mio caso specifico il server è un piccolo NAS QNAP.

    L'iso che è stata scelta come installazione è stata creata (credo) con MDT 2012 che a quanto ho capito ha una specie di "bug" che rende inaccessibili le share con SMB causa restrizioni troppo elevate impostate di default.

    Prova ne è che utilizzando un Win 7 64bit installato con iso standard non ci sono problemi di sorta, mentre tutti i i pc installati con la iso personalizzata hanno questo problema.

    In rete si trova una marea di FAQ in materia, soprattutto per quanto riguarda l'autenticazione LM, NTLM e NTLMv2 ma non ho ben chiaro quali siano esattamente i parametri da configurare e la procedura esatta.

    Lato NAS ovviamente non ho log dettagliati da poter utilizzare.

    Ah, già modificato il valore LmCompatibilityLevel a 1 (nulla da fare).
    • Modificato Don Zauker lunedì 10 settembre 2012 14:27
    lunedì 10 settembre 2012 14:12
  • E' inutile che posti tutti i log che trovi ...

    Non cancellare i log con samba attivo, altrimenti è necessario il riavvio perchè vengno ricreati

    encrypt passwords = true   è presente nel tuo smb??

    Leggi il link precedenti e questo per aumentare il dettaglio dei log e restringere il campo. 

    http://wiki.samba.org/index.php/Client_specific_Log

    Questo è il problema:

    check_ntlm_password:  Authentication foruser [SAngeli] -> [SAngeli]FAILED witherror NT_STATUS_WRONG_PASSWORD


    Gastone Canali >http://www.armadillo.it

    Se alcuni post rispondono al tuo quesito (non necessariamente i miei), ricorda di contrassegnarli come risposta e non dimenticare di contrassegnare anche i post utili . GRAZIE!

    lunedì 10 settembre 2012 20:05
    Moderatore
  • Ciao,

    mi spiace che i miei log siano troppi. Per pochi file in più ho pensato di fare cosa utile. La prossima volta mi limiterò a quanto richiestomi.

    Il mio global config è stato già condiviso verso gli inizi di questo tread. Comunque, a sanso di equivoci, lo ripresento qui:

     workgroup = WORKGROUP
       server string = %h server (Samba, Ubuntu)
       dns proxy = no
       log file = /var/log/samba/log.%m
       max log size = 1000
       syslog = 0
       panic action = /usr/share/samba/panic-action %d
       encrypt passwords = true
       passdb backend = tdbsam
       obey pam restrictions = yes
       unix password sync = yes
       passwd program = /usr/bin/passwd %u
       passwd chat = *Enter\snew\s*\spassword:* %n\n *Retype\snew\s*\spassword:* %n\n *password\supdated\ssuccessfully* .
       pam password change = yes
       map to guest = bad user
       usershare allow guests = yes
       log level = 3

    Queste le due share che ho creato:

    [samba_spiro]
            comment = Spiro Test folder
            path = /home/sangeli/samba
    ;       browseable = yes
            writeable = yes
            create mask = 775
            directory mask = 775
            valid users = nobody, sangeli
    
    [log]
            comment = Log folder
            path = /var/log
    ;       browseable = yes
            read only = no
            create mask = 775
            directory mask = 775

    Come puoi vedere encrypt passwords è già presente.

    Leggerò in mattinata il link specifico che mi ha fornito.

    Grazie anche per spiegarmi come si cancellano i log. Non lo spevo. Le prossime volte fermo samba, li cancello, e poi riavvio il servizio.

    Cercherò di fare qualche ricerca per quanto da te evidenziato. Speriamo presto di risolvere il problema.

    Una sola cosa non ho compreso: è un problema lato server o lato windows?

    Siro

    martedì 11 settembre 2012 05:38
  • ho implementato le modifiche relative al log nel file di configurazione di samba.

    Ho provato a replicare il problema ma il file log.192.168.0.110 mi ha generato un log enorme che non so se posso metterlo qui. Come mi devo comportare in merito, prima che intasi questo tread con il log? basta questo log o vuoi anche altri file?

    Spiro

    martedì 11 settembre 2012 06:02
  • Aggiornamento.

    Oggi mi son messo sotto nel vedere di sistemare questo problema, ho proceduto in questo modo: ho verificato le impostazioni in Local Security Policy -> Security Options di una installazione Windows 7 64bit funzionante, poi le ho replicate pari pari sulla macchina Win 7 che mi dava problemi.

    Il problema è scomparso.

    Siccome avevo modificato almeno una decina di parametri, ho riportato la situazione alle impostazioni originarie (che davano problemi) e poi ho modificato un'impostazione per volta (tra quelle che erano differenti sulle due installazioni).

    E' venuto fuori che nel  mio caso la voce da modificare è 

    Microsoft network client: Digitally sign communications (always)

    Di default dovrebbe essere DISABLE ma nella installazione problematica era su ENABLE.

    Rimessa su DISABLE e come per magia i NAS sono diventati raggiungibili.

    martedì 11 settembre 2012 18:32
  • L'ultima versione di samba, è afflitta da un problema alle "Extended Signatures" https://bugzilla.samba.org/show_bug.cgi?id=9075

    puoi provare la modifica consigliata da Don Zauker oppure aggiungere  al tuo smb.conf  server signing = auto 

     (ultima risorsa: usare i backports e installare una versione di samba inferiore alla 3.5...) 


    Gastone Canali >http://www.armadillo.it

    Se alcuni post rispondono al tuo quesito (non necessariamente i miei), ricorda di contrassegnarli come risposta e non dimenticare di contrassegnare anche i post utili . GRAZIE!



    martedì 11 settembre 2012 19:24
    Moderatore
  • Credo che sia proprio una vera sfortuna che io, utente entry level, appena mi sono riaccostato a Linux sia incappato subito in un bug. Che sfortuna!

    1) Vorrei fare i miei migliori complimenti a Don Zauker per il risultato che ha ottenuto e per la sua enorme pazienza nel perseverare ad una soluzione. Mi serve un chiarimento: La chiave da modificare, tratodda in Italiano corrisponderebbe forse a questa: Client di rete Microsoft: aggiungi firma digitale alla comunicazione client (se autorizzato dal server)?

    Una volta modificata ovviamente dovrei effettuare o un reboot o un logout, giusto?

    2) Ho provato la seconda soluzione di Gastone, con il quale mi sincero per essermi stato vicino ed aiutato, e funziona.

    Questa modifica lato server Linux introduce alcun tipo di vulnerabilità al server?

    La modifica lato Windows PC, introdurrebbe aluna vulnerabilità?
    Lo chiedo in quanto se dovessi scegliere considerando che potrei interfacciarmi con altri dispositivi samba vedo migliore la soluzione lato PC.

    Grazie,
    Spiro

    martedì 11 settembre 2012 19:47
  • Dovrebbe essere questa:

    Client di rete Microsoft: aggiungi firma digitale alla comunicazione client (sempre)

    Poi basta un reboot.

    Per il discorso  vulnerabilità, non ho le competenze adeguate per rispondere correttamente...

    • Modificato Don Zauker martedì 11 settembre 2012 19:53
    • Contrassegnato come risposta Spiro Angeli giovedì 13 settembre 2012 04:51
    martedì 11 settembre 2012 19:50
  • Grazie!!!

    Buona serata.

    Spiro

    martedì 11 settembre 2012 19:59
  • Io lascerei server signing = auto  senza toccare w7, il vantaggio  sarà quello di non preoccuparti di eventuali nuovi pc windows con "firma digitale alla comunicazione client" attiva.

    Spiro ti chiedo anche di segnare i post che risolutivi (mi sono permesso di suggerirteli) e contrassegnare anche i post utili

    Grazie


    Gastone Canali >http://www.armadillo.it

    Se alcuni post rispondono al tuo quesito (non necessariamente i miei), ricorda di contrassegnarli come risposta e non dimenticare di contrassegnare anche i post utili . GRAZIE!

    • Contrassegnato come risposta Spiro Angeli giovedì 13 settembre 2012 04:51
    martedì 11 settembre 2012 20:12
    Moderatore
  • Grazie Gastone per il consiglio. Ho fatto quanto mi hai richiesto.

    Una domanda: come si fa a suggerire a questo metodo di forum social.technet.microsoft.com di poter introdurre anche la funzionalità "Anteprima" così da poter vedere prima di cliccare su "Inoltra" come si presenta il testo? Se poi pensaci tu, altrimenti dimmi dove poter rivolgere questa richiesta.

    Cordiali saluti e grazie,

    Spiro

    mercoledì 12 settembre 2012 02:52
  • Spiro,  dovresti chiudere il thread cliccando su "Segna come Risposta"   sulle risposte risolutive ...

    Per i suggerimenti li dovresti "postare"  qui TechNet Website Feedback


    Gastone Canali >http://www.armadillo.it

    Se alcuni post rispondono al tuo quesito (non necessariamente i miei), ricorda di contrassegnarli come risposta e non dimenticare di contrassegnare anche i post utili . GRAZIE!

    • Contrassegnato come risposta Spiro Angeli giovedì 13 settembre 2012 04:50
    • Contrassegno come risposta annullato Spiro Angeli giovedì 13 settembre 2012 04:50
    mercoledì 12 settembre 2012 20:56
    Moderatore
  • Grazie Spiro!

    Gastone Canali >http://www.armadillo.it

    Se alcuni post rispondono al tuo quesito (non necessariamente i miei), ricorda di contrassegnarli come risposta e non dimenticare di contrassegnare anche i post utili . GRAZIE!

    giovedì 13 settembre 2012 18:57
    Moderatore
  • Ciao Spiro,

    Se hai un suggerimento da inoltrarci e vuoi communicarlo direttamente al team del forum, magari sarebbe meglio postare qui: Suggestions and Feedback for the Forums, visto che il TechNet WebSite Feedback riguarda piuttosto il sito TechNet (e non il forum).

    # Per segnalare problemi del forum, bug o suggerimenti proposti

    Grazie della collaborazione,


    Anca Popa Follow ForumTechNetIt on Twitter

    Microsoft offre questo servizio gratuitamente, per aiutare gli utenti e aumentare il database dei prodotti e delle tecnologie. Il contenuto viene fornito “così come è” e non comporta alcuna responsabilità da parte dell'azienda. 

    giovedì 20 settembre 2012 14:28
  • Grazie per la informazione.

    Saluti,

    Spiro

    giovedì 20 settembre 2012 19:41