CIFS users no longer able to authenticate

  • 7009255
  • 29-Aug-2011
  • 21-Jun-2012

Environment

Novell Open Enterprise Server 2 (OES 2) Linux
Novell Open Enterprise Server 11 (OES 11) Linux

Situation

Users unable or are no longer able to authenticate to the server using the CIFS protocol
CIFS users cannot login
CIFS no longer works after moving server object

Resolution

Verify that there is an nfapCIFSDialect attribute on the NCP server object and it is set to 4.

1. Open iManager and select Directory Administration -> Modify Object
2. Select the NCP server object for the server having CIFS login issues
3. Select the 'other' tab
4. Highlight the nfapCIFSDialect attribute and either modify it or add it from the Unvalued Attribute list if it is missing
5. Confirm that the value is set to "4"

Restart CIFS

#rcnovell-cifs restart


Additional Information

This is a LAN trace of an authentication attempt when the server is in a 'broken' condition.  Notice the response in frame 7960 "Negotiate Protocol Response"  Under the NetBIOS Session service header, you'll notice how the SMB section does not indicate any type of protocol response. 



This second screenshot of a trace shows what an 'appropriate' response should look like.



The same root cause has also been seen in other LAN traces to show the server replying to the Negotiate Protocol request with a TCP ACK, but no Negotiate Protocol Repsonse at all.