原文出处:https://discussions.apple.com/thread/5483728?start=0&tstart=0
问题情况:
Open Directory 密码服务报错:
DoAuth: {0xd666eb1e840a11e78d78320019de5b40, %username%} SMB-NTLMv2 authentication failed, SASL error -13 (password incorrect).
解决办法:
On command line….
1. Enter “gpedit.msc” in the Start Search box.
2. Open “Computer Configuration”/Windows Settings/Security Settings/Local Policies/Security Settings.
3. In the right pane, enable the following policies:
Network access: Allow anonymous SID/name translation
Network access: Let Everyone permissions apply to anonymous users
Also please disable the following policies.
Network access: Restrict anonymous access to Named Pipes and Shares
Network access: Do not allow anonymous enumeration of SAM accounts
Network access: Do not allow anonymous enumeration of SAM accounts and shares
Change the following policy:
Network security: LAN Manager authentication level
Change the value to “Send LM & NTLM – use NTLMv2 session security if negotiated”.
P.S: 如果不行就设置为“仅发送 NTLMv2 响应”。这样的话可能导致 Windows 不能访问其他 Windows 电脑的共享。
Another Solution: https://ubuntuforums.org/showthread.php?t=1366201
S O L U T I O N
Do followings manipulations in windows
Control Panel – Administrative Tools – Local Security Policy
Local Policies – Security Options
Network security: LAN Manager authentication level
Send LM & NTLM responses
Minimum session security for NTLM SSP
Disable Require 128-bit encryption
Comment