由于已为 ONTAP 禁用 NT_STATUS_AUTH_account_disabled ,无法访问 CIFS 共享 9
适用场景
- ONTAP 9
- CIFS
问题描述
- 无法访问CIFS共享
- 无法使用域凭据进行ssh或访问系统管理器:
secd.cifsAuth.problem: vserver (vserver) General CIFS authentication problem. Error: Ontap admin cifs authentication basic procedure failed
- Secd 日志示例:
.------------------------------------------------------------------------------.
| RPC FAILURE: |
| secd_rpc_ontap_admin_cifs_auth_basic has failed |
| Result = 0, RPC Result = 6942 |
| RPC received at Fri Oct 8 01:01:01 2021 |
|------------------------------------------------------------------------------'
Failure Summary:
Error: Ontap admin cifs authentication basic procedure failed
...
Cannot contact any KDC for requested realm (KRB5_KDC_UNREACH)
Failed to initiate Kerberos authentication. Trying NTLM.
Encountered NT error (NT_STATUS_MORE_PROCESSING_REQUIRED) for SMB command SessionSetup
Encountered NT error (NT_STATUS_AUTH_ACCOUNT_DISABLED) for SMB command SessionSetup
- 在其他 SVM 上创建新的 CIFS 服务器可能会成功
- 命令输出包含
NT_STATUS_AUTH_ACCOUNT_DISABLED
::*> vserver services access-check authentication show-creds -node <node_name> -vserver <vserver_name> -win-name <windows_user