Hier ein paar Daten für die Experten. Es handelt sich hier um das Windows 7 - System, das seit neuestem deutlich länger “Negotiating Credentials …” anzeigt, wenn ich mich remote vom Mac aus einwähle. Der Master DC heißt “userver” und zeigt folgendes:
root@userver:~# samba-tool fsmo show
SchemaMasterRole owner: CN=NTDS Settings,CN=USERVER,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=msbe,DC=local
InfrastructureMasterRole owner: CN=NTDS Settings,CN=USERVER,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=msbe,DC=local
RidAllocationMasterRole owner: CN=NTDS Settings,CN=USERVER,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=msbe,DC=local
PdcEmulationMasterRole owner: CN=NTDS Settings,CN=USERVER,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=msbe,DC=local
DomainNamingMasterRole owner: CN=NTDS Settings,CN=USERVER,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=msbe,DC=local
DomainDnsZonesMasterRole owner: CN=NTDS Settings,CN=USERVER,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=msbe,DC=local
ForestDnsZonesMasterRole owner: CN=NTDS Settings,CN=USERVER,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=msbe,DC=local
Logge ich mich auf dem Windows 7 Rechner per RDP ein, sieht man im NETLOGON.LOG folgendes:
04/04 16:56:53 [LOGON] SamLogon: Network logon of msbe\ms from mbp3.local Entered
04/04 16:56:53 [MISC] NetpDcInitializeContext: DSGETDC_VALID_FLAGS is c01ffff1
04/04 16:56:53 [MAILSLOT] NetpDcPingListIp: msbe.local.: Sent UDP ping to 192.168.0.3
04/04 16:56:53 [MISC] NlPingDcNameWithContext: Sent 1/1 ldap pings to vserver.msbe.local
04/04 16:56:53 [MISC] NlPingDcNameWithContext: vserver.msbe.local responded over IP.
04/04 16:56:53 [PERF] NlSetServerClientSession: Not changing connection (0000000001D88628): "\\vserver.msbe.local"
ClientSession: 0000000001DAEA90NlPrintRpcDebug: Dumping extended error for I_NetLogonSamLogonWithFlags with 0xc0020017
04/04 16:57:14 [CRITICAL] [0] ProcessID is 800
04/04 16:57:14 [CRITICAL] [0] System Time is: 4/4/2018 14:57:14:969
04/04 16:57:14 [CRITICAL] [0] Generating component is 18
04/04 16:57:14 [CRITICAL] [0] Status is 1722
04/04 16:57:14 [CRITICAL] [0] Detection location is 1442
04/04 16:57:14 [CRITICAL] [0] Flags is 0
04/04 16:57:14 [CRITICAL] [0] NumberOfParameters is 1
04/04 16:57:14 [CRITICAL] Unicode string: vserver.msbe.local
04/04 16:57:14 [CRITICAL] [1] ProcessID is 800
04/04 16:57:14 [CRITICAL] [1] System Time is: 4/4/2018 14:57:14:969
04/04 16:57:14 [CRITICAL] [1] Generating component is 18
04/04 16:57:14 [CRITICAL] [1] Status is 1722
04/04 16:57:14 [CRITICAL] [1] Detection location is 323
04/04 16:57:14 [CRITICAL] [1] Flags is 0
04/04 16:57:14 [CRITICAL] [1] NumberOfParameters is 0
04/04 16:57:14 [CRITICAL] [2] ProcessID is 800
04/04 16:57:14 [CRITICAL] [2] System Time is: 4/4/2018 14:57:14:969
04/04 16:57:14 [CRITICAL] [2] Generating component is 18
04/04 16:57:14 [CRITICAL] [2] Status is 1237
04/04 16:57:14 [CRITICAL] [2] Detection location is 313
04/04 16:57:14 [CRITICAL] [2] Flags is 0
04/04 16:57:14 [CRITICAL] [2] NumberOfParameters is 0
04/04 16:57:14 [CRITICAL] [3] ProcessID is 800
04/04 16:57:14 [CRITICAL] [3] System Time is: 4/4/2018 14:57:14:969
04/04 16:57:14 [CRITICAL] [3] Generating component is 18
04/04 16:57:14 [CRITICAL] [3] Status is 10060
04/04 16:57:14 [CRITICAL] [3] Detection location is 311
04/04 16:57:14 [CRITICAL] [3] Flags is 0
04/04 16:57:14 [CRITICAL] [3] NumberOfParameters is 3
04/04 16:57:14 [CRITICAL] Long val: 49153
04/04 16:57:14 [CRITICAL] Pointer val: 0
04/04 16:57:14 [CRITICAL] Pointer val: 0
04/04 16:57:14 [CRITICAL] [4] ProcessID is 800
04/04 16:57:14 [CRITICAL] [4] System Time is: 4/4/2018 14:57:14:969
04/04 16:57:14 [CRITICAL] [4] Generating component is 18
04/04 16:57:14 [CRITICAL] [4] Status is 10060
04/04 16:57:14 [CRITICAL] [4] Detection location is 318
04/04 16:57:14 [CRITICAL] [4] Flags is 0
04/04 16:57:14 [CRITICAL] [4] NumberOfParameters is 0
04/04 16:57:14 [SESSION] MSBE: NlStartApiClientSession: Unbind from server \\vserver.msbe.local (TCP) 0.
04/04 16:57:15 [CRITICAL] NlPrintRpcDebug: Couldn't get EEInfo for I_NetLogonSamLogonWithFlags: 1761 (may be legitimate for 0xc000000d)
04/04 16:57:15 [LOGON] SamLogon: Network logon of msbe\ms from mbp3.local Returns 0xC000000D
04/04 16:57:17 [SESSION] I_NetLogonGetAuthData called: (null) MSBE (Flags 0x1)
04/04 16:57:17 [SESSION] I_NetLogonGetAuthData called: (null) MSBE (Flags 0x1)
04/04 16:57:17 [SESSION] I_NetLogonGetAuthData called: (null) MSBE (Flags 0x1)
04/04 16:57:17 [MISC] DsGetDcName function called: Dom:MSBE Acct:(null) Flags: FORCE PDC NETBIOS RET_NETBIOS
04/04 16:57:17 [MISC] NetpDcInitializeContext: DSGETDC_VALID_FLAGS is c01ffff1
04/04 16:57:17 [MAILSLOT] NetpDcPingListIp: msbe.local.: Sent UDP ping to 192.168.0.2
04/04 16:57:17 [MISC] NetpDcGetName: NetpDcGetNameIp returned 0
04/04 16:57:17 [MISC] DsGetDcName function returns 0: Dom:MSBE Acct:(null) Flags: FORCE PDC NETBIOS RET_NETBIOS
04/04 16:57:17 [MISC] DsGetDcName function called: Dom:(null) Acct:(null) Flags: RET_NETBIOS
04/04 16:57:17 [MISC] NetpDcInitializeContext: DSGETDC_VALID_FLAGS is c01ffff1
04/04 16:57:17 [MISC] NetpDcGetName: msbe.local. cache is too old, need to redo discovery. 48216868
04/04 16:57:17 [MAILSLOT] NetpDcPingListIp: msbe.local.: Sent UDP ping to 192.168.0.3
04/04 16:57:17 [MISC] NetpDcGetName: NetpDcGetNameIp returned 0
04/04 16:57:17 [MISC] LoadBalanceDebug (Flags: RET_NETBIOS ): DC=VSERVER, SrvCount=2, FailedAQueryCount=0, DcsPinged=1, LoopIndex=0
04/04 16:57:17 [MISC] DsGetDcName function returns 0: Dom:(null) Acct:(null) Flags: RET_NETBIOS
04/04 16:57:17 [MISC] DsGetDcName function called: Dom:(null) Acct:(null) Flags: RET_NETBIOS
04/04 16:57:17 [MISC] NetpDcInitializeContext: DSGETDC_VALID_FLAGS is c01ffff1
04/04 16:57:17 [MISC] NetpDcGetName: msbe.local. using cached information
04/04 16:57:17 [MISC] DsGetDcName function returns 0: Dom:(null) Acct:(null) Flags: RET_NETBIOS
04/04 16:57:17 [MISC] DsGetDcName function called: Dom:(null) Acct:(null) Flags: RET_NETBIOS
04/04 16:57:17 [MISC] NetpDcInitializeContext: DSGETDC_VALID_FLAGS is c01ffff1
04/04 16:57:17 [MISC] NetpDcGetName: msbe.local. using cached information
04/04 16:57:17 [MISC] DsGetDcName function returns 0: Dom:(null) Acct:(null) Flags: RET_NETBIOS
04/04 16:57:18 [MISC] DsGetDcName function called: Dom:msbe Acct:(null) Flags: IP KDC
04/04 16:57:18 [MISC] NetpDcInitializeContext: DSGETDC_VALID_FLAGS is c01ffff1
04/04 16:57:18 [MISC] NetpDcGetName: msbe.local. cache is too old. 36350011
04/04 16:57:18 [MAILSLOT] NetpDcPingListIp: msbe.local.: Sent UDP ping to 192.168.0.3
04/04 16:57:18 [MISC] NlPingDcNameWithContext: Sent 1/1 ldap pings to vserver.msbe.local
04/04 16:57:18 [MISC] NlPingDcNameWithContext: vserver.msbe.local responded over IP.
04/04 16:57:18 [MISC] NetpDcGetName: msbe.local. using cached information
04/04 16:57:18 [MISC] DsGetDcName function returns 0: Dom:msbe Acct:(null) Flags: IP KDC
04/04 16:57:18 [MISC] DsGetDcName function called: Dom:MSBE.LOCAL Acct:(null) Flags: IP KDC
04/04 16:57:18 [MISC] NetpDcInitializeContext: DSGETDC_VALID_FLAGS is c01ffff1
04/04 16:57:18 [MISC] NetpDcGetName: MSBE.LOCAL using cached information
04/04 16:57:18 [MISC] DsGetDcName function returns 0: Dom:MSBE.LOCAL Acct:(null) Flags: IP KDC
04/04 16:57:19 [MISC] DsGetDcName function called: Dom:MSBE Acct:(null) Flags: RET_DNS
04/04 16:57:19 [MISC] NetpDcInitializeContext: DSGETDC_VALID_FLAGS is c01ffff1
04/04 16:57:19 [MISC] NetpDcGetName: msbe.local. using cached information
04/04 16:57:19 [MISC] DsGetDcName function returns 0: Dom:MSBE Acct:(null) Flags: RET_DNS
04/04 16:57:42 [MISC] DsGetDcName function called: Dom:cats-net Acct:(null) Flags: IP KDC
04/04 16:57:42 [MISC] DsIGetDcName: Ignore single label DNS domain name cats-net
04/04 16:57:42 [MISC] NetpDcInitializeContext: DSGETDC_VALID_FLAGS is c01ffff1
04/04 16:57:42 [MAILSLOT] Sent 'Sam Logon' message to cats-net[1C] on all transports.
Dabei fällt mir auf, dass die Authentizierung ggf. gegenüber dem Server “vserver” erfolgt. Dies ist ebenfalls ein UCS, der als Slave konfiguriert ist. Selbstverständlich haben beide Server den derzeit aktuellen patchlevel 9. Sie befinden sich beide im selben lokalen Class C - Netzwerk.
Hilft das bei der Ursachenfindung ?
Gruß Martin