samba -- getting tougher!

wuboy

Member
Feb 28, 2002
59
0
0

hi folks...

i'm having a bit of a problem with this setup.
basically i have a samba file server behind a firewall. now, i have redirected the netbios ports 137-139 to the machine behind the firewall using IPTables.

however, when i try to add a machine (a public machine) to the domain, it doesnt find it.
im not sure why, but am i missing something? do i need to forward more ports?

it's not secure to open up these ports, but i havent found a way around it yet.

thanks all

 

StuckMojo

Golden Member
Oct 28, 1999
1,069
1
76

joining a domain works by using broadcast. broadcast traffic doesn't get forwarded. thus it can't find the "domain controller" behind the firewall
AFAIK
 

StuckMojo

Golden Member
Oct 28, 1999
1,069
1
76

NT 4 domain, btw. active directory / win2k is supposed to work with DNS and thus can have a domain controller not on the same subnet (or so i hear)
 

wuboy

Member
Feb 28, 2002
59
0
0

errrr, yah, i dunno. im not running active directory or anything with windows right now.

however, i have a samba server doing PDC behind the firewall. i'm not sure how public computers are able to access it yet. if the wiring were better, i'd put the workstations within the firewall, but it cannot be done now. so i have to figure out how to go around that for now.

stumped. like crazy. it's a cry for help on my end...
 

wuboy

Member
Feb 28, 2002
59
0
0

n0cmonkey,

yeah, i know that also. but i cant see any way around it. as soon as i know how to get it to work, i will limit it to IP address.

but please, does anyone know how to get it to work????? please?
 

n0cmonkey

Elite Member
Jun 10, 2001
42,936
1
0
sudo tcpdump -i eth0 host new_computers_ip

Then try adding the computer to your domain. See what ports it tries to use and make sure it is sending the information to the correct host.
 

StuckMojo

Golden Member
Oct 28, 1999
1,069
1
76

samba does NT4 style domains

AFAIK when a box wants to join the domain, it makes some kind of broadcast request asking for a domain controller (kinda like DHCP server discovery). broadcast traffic will not go thru a firewall. you would have to either bridge (bridges pass everything, routers dont), or maybe use proxy_arp (but that might not work)
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |