SMB authentication negotiation problem on Windows SP3

  • Thread starter Thread starter Guest
  • Start date Start date
G

Guest

I have a standalone 2000 SP3 on network 1, a domain-member 2000 sp2 on
network2, and some domain member XP and 2000 sp4 on network3.

From the SP2 on network2 I can visit the shares on the sp3 on network1 and
copy files to it. However, I can't do that from any of the machines on
network3. At first I thought it was a security access problem because I did
have two ACLs sitting on the router that connects all three networks.

After I turn off the ACL, I still can't browse the folders on the SP3 on
network 1 from network3. Everytime I do that with a UNC path in Explorer or
in Net Use, it will say "no logon server available". Yet I can telnet into
TCP port 445, 139, and 135 on the SP3. There is no hidden firewall (client or
network) anywhere. I sniffed w/ Ethereal several sessions between network3
and the sp3 and they all show the following errors:
A -- XP or SP4 on net3, B -- SP3 on net1
Source Destination Protocol Info

A B smb session setup Andx request, NTLMSSP_NEGOTIATE
B A SMB session setup Andx Response, NTLMSSP_cHALLENGE, NTLMSSP_CHALLENGE,
Error: STATUS_MORE_PROCESSING-REQUIRED
A B SMB Session Setup Andx Request, NTLMSSP_AUTH
B A SMB Session Setup Andx Response, Error: STATUS_NO_LOGON_SERVERS

I do not have enough SMB knowledge to decode the information in the packets.

Is it possible sp3 has compatibility issues with XP/2000 SP4 in negotiating
authentication methods, while it has no problem doing that with 2000 sp2 on
net2?

Thanks!
daniel
 
Back
Top