Can't authenticate to local Samba AD server

Created on 2 June 2023, over 1 year ago
Updated 29 March 2024, 8 months ago

I can't get a connection to a local (on same host) Samba AD server, and there is no useful debugging information except when I use the wrong encryption options. In that case the log message is "LDAP connection failure: Strong(er) authentication required." and if I try STARTTLS with no other changes then I get "LDAP bind failure: Could not initiate TLS connection: Can't contact LDAP server." If I switch ports to 636 (still STARTTLS) then it's "LDAP connection failure: Can't contact LDAP server." and if I switch to SSL (LDAPS) then it's the same ("LDAP connection failure: Can't contact LDAP server.") I did set "Enabled Detailed LDAP Watchdog logging." but that didn't cause more information to appear in the log messages.

I've tried using localhost, the FQDN, and the IP, all with identical results. nmap shows the port open regardless of which I choose, and netstat shows the port belonging to samba and in LISTEN on both 0.0.0.0:636 and :::636. How can I get useful debugging information?

πŸ’¬ Support request
Status

Closed: cannot reproduce

Version

4.0

Component

Code

Created by

πŸ‡ΊπŸ‡ΈUnited States hyperlogos

Live updates comments and jobs are added and updated live.
Sign in to follow issues

Comments & Activities

Production build 0.71.5 2024