Нужна помощь по OpenLDAP!!!

После последнего обновления что-то случилось с OpenLDAP.
Заметил по файлопомойке на самбе. Перестала пускать пользователей.
При монтировании каталога самбы из консоли,
_

mount.cifs //192.168.0.77/files /mnt/disk -o user=user,password=password

_
выдаёт ошибку клиенту

mount error(13): Permission denied
Refer to the mount.cifs(8) manual page (e.g. man mount.cifs)

А в системный лог пишет

Nov 12 11:54:32 clientws kernel: No dialect specified on mount. Default has changed to a more secure dialect, SMB2.1 or later (e.g. SMB3), from CIFS (SMB1). To use the less secure SMB1 dialect to access old servers which do not support SMB3 (or SMB2.1) specify vers=1.0 on mount.
Nov 12 11:54:32 clientws kernel: Status code returned 0xc000006d STATUS_LOGON_FAILURE

Если послать ему команду с версией протокола самбы
_

mount.cifs //192.168.0.77/files /mnt/disk -o user=user,password=password,vers=3.0

_
то сообщения No dialect specified on mount уже не будет. Останется только строка

Nov 12 11:54:32 clientws kernel: Status code returned 0xc000006d STATUS_LOGON_FAILURE

Теперь самое главное.
В системных логах сервера при запуске наблюдается вот такая фигня. На трёх идентичных серверах всё так же. Обратите внимание на строки с Can’t contact LDAP server

Nov 12 10:37:26 calcserver syslog-ng[3609]: syslog-ng starting up; version='3.13.2'
Nov 12 10:37:27 calcserver kernel: Ethernet Channel Bonding Driver: v3.7.1 (April 27, 2011)
Nov 12 10:37:27 calcserver kernel: bond0: Enslaving eth0 as an active interface with a down link
Nov 12 10:37:27 calcserver kernel: r8169 0000:05:00.0 eth1: link down
Nov 12 10:37:27 calcserver kernel: r8169 0000:05:00.0 eth1: link down
Nov 12 10:37:27 calcserver kernel: bond0: Enslaving eth1 as an active interface with a down link
Nov 12 10:37:27 calcserver init[1]: Entering runlevel: 3
Nov 12 10:37:27 calcserver cron[4435]: (CRON) STARTUP (V5.0)
Nov 12 10:37:27 calcserver start-stop-daemon[4432]: pam_unix(start-stop-daemon:session): session opened for user nobody by (uid=0)
Nov 12 10:37:27 calcserver start-stop-daemon[4432]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:27 calcserver start-stop-daemon[4432]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:27 calcserver start-stop-daemon[4432]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:27 calcserver start-stop-daemon[4432]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:27 calcserver start-stop-daemon[4478]: pam_unix(start-stop-daemon:session): session opened for user transmission by (uid=0)
Nov 12 10:37:27 calcserver start-stop-daemon[4478]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:27 calcserver start-stop-daemon[4478]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:27 calcserver start-stop-daemon[4478]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:27 calcserver start-stop-daemon[4478]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:27 calcserver acpid[4504]: starting up with netlink and the input layer
Nov 12 10:37:27 calcserver kernel: RPC: Registered named UNIX socket transport module.
Nov 12 10:37:27 calcserver kernel: RPC: Registered udp transport module.
Nov 12 10:37:27 calcserver kernel: RPC: Registered tcp transport module.
Nov 12 10:37:27 calcserver kernel: RPC: Registered tcp NFSv4.1 backchannel transport module.
Nov 12 10:37:27 calcserver ntpd[4433]: ntpd 4.2.8p11@1.3728-o Wed Mar 21 08:09:05 UTC 2018 (1): Starting
Nov 12 10:37:27 calcserver ntpd[4433]: Command line: /usr/sbin/ntpd -p /var/run/ntpd.pid -g -u ntp:ntp
Nov 12 10:37:27 calcserver acpid[4504]: 1 rule loaded
Nov 12 10:37:27 calcserver acpid[4504]: waiting for events: event logging is off
Nov 12 10:37:27 calcserver /etc/init.d/slapd[4536]: /var/lib/openldap-data/DB_CONFIG does not exist, slapd performance may be sub-optimal
Nov 12 10:37:27 calcserver git-daemon[4537]: base-path '/var/git' does not exist or is not a directory
Nov 12 10:37:28 calcserver kernel: NET: Registered protocol family 10
Nov 12 10:37:28 calcserver kernel: IPv6: ADDRCONF(NETDEV_UP): bond0: link is not ready
Nov 12 10:37:28 calcserver kernel: Segment Routing with IPv6
Nov 12 10:37:28 calcserver ntpd[4560]: proto: precision = 0.078 usec (-24)
Nov 12 10:37:28 calcserver ntpd[4560]: Listen and drop on 0 v6wildcard [::]:123
Nov 12 10:37:28 calcserver ntpd[4560]: Listen and drop on 1 v4wildcard 0.0.0.0:123
Nov 12 10:37:28 calcserver ntpd[4560]: Listen normally on 2 lo 127.0.0.1:123
Nov 12 10:37:28 calcserver ntpd[4560]: Listen normally on 3 lo [::1]:123
Nov 12 10:37:28 calcserver ntpd[4560]: Listening on routing socket on fd #20 for interface updates
Nov 12 10:37:28 calcserver ntpd[4560]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:28 calcserver ntpd[4560]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:28 calcserver ntpd[4560]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:28 calcserver ntpd[4560]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:28 calcserver sshd[4587]: Server listening on 0.0.0.0 port 22.
Nov 12 10:37:28 calcserver sshd[4587]: Server listening on :: port 22.
Nov 12 10:37:28 calcserver slapd[4601]: @(#) $OpenLDAP: slapd 2.4.44 (Oct 29 2018 12:20:00) $
    @calcserver:/var/calculate/tmp/portage/net-nds/openldap-2.4.44/work/openldap-2.4.44-abi_x86_64.amd64/servers/slapd
Nov 12 10:37:28 calcserver slapd[4601]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:28 calcserver slapd[4601]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:28 calcserver slapd[4601]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:28 calcserver slapd[4601]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:28 calcserver rpc.idmapd[4629]: Setting log level to 0
Nov 12 10:37:28 calcserver rpc.statd[4672]: Version 2.3.3 starting
Nov 12 10:37:28 calcserver rpc.statd[4672]: Flags: TI-RPC 
Nov 12 10:37:28 calcserver rpc.statd[4672]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:28 calcserver rpc.statd[4672]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:28 calcserver rpc.statd[4672]: Running as root.  chown /var/lib/nfs to choose different user
Nov 12 10:37:28 calcserver rpc.statd[4672]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:28 calcserver rpc.statd[4672]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:28 calcserver rpc.statd[4672]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:28 calcserver rpc.statd[4672]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:28 calcserver rpc.statd[4672]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:28 calcserver rpc.statd[4672]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:28 calcserver rpc.statd[4672]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:28 calcserver rpc.statd[4672]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:28 calcserver clamd[4713]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:28 calcserver clamd[4713]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:28 calcserver clamd[4713]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:28 calcserver clamd[4713]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:29 calcserver kernel: e1000: eth0 NIC Link is Up 1000 Mbps Full Duplex, Flow Control: RX
Nov 12 10:37:29 calcserver kernel: bond0: link status definitely up for interface eth0, 1000 Mbps full duplex
Nov 12 10:37:29 calcserver kernel: bond0: making interface eth0 the new active one
Nov 12 10:37:29 calcserver kernel: bond0: first active interface up!
Nov 12 10:37:29 calcserver kernel: IPv6: ADDRCONF(NETDEV_CHANGE): bond0: link becomes ready
Nov 12 10:37:29 calcserver kernel: r8169 0000:05:00.0 eth1: link up
Nov 12 10:37:29 calcserver kernel: bond0: link status definitely up for interface eth1, 1000 Mbps full duplex
Nov 12 10:37:30 calcserver ntpd[4560]: Listen normally on 4 bond0 192.168.0.7:123
Nov 12 10:37:30 calcserver ntpd[4560]: bind(24) AF_INET6 fe80::92e2:baff:fe56:739c%4#123 flags 0x11 failed: Cannot assign requested address
Nov 12 10:37:30 calcserver ntpd[4560]: unable to create socket on bond0 (5) for fe80::92e2:baff:fe56:739c%4#123
Nov 12 10:37:30 calcserver ntpd[4560]: failed to init interface for address fe80::92e2:baff:fe56:739c%4
Nov 12 10:37:32 calcserver ntpd[4560]: Listen normally on 6 bond0 [fe80::92e2:baff:fe56:739c%4]:123
Nov 12 10:37:33 calcserver kernel: Installing knfsd (copyright (C) 1996 okir@monad.swb.de).
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver rpc.mountd[4766]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver rpc.mountd[4767]: Version 2.3.3 starting
Nov 12 10:37:33 calcserver kernel: NFSD: Using /var/lib/nfs/v4recovery as the NFSv4 state recovery directory
Nov 12 10:37:33 calcserver kernel: NFSD: starting 90-second grace period (net f0000098)
Nov 12 10:37:33 calcserver sm-notify[4784]: Version 2.3.3 starting
Nov 12 10:37:33 calcserver ntpd[4560]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver ntpd[4560]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver ntpd[4560]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver ntpd[4560]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver ntpd[4560]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver ntpd[4560]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:33 calcserver ntpd[4560]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 12 10:37:33 calcserver ntpd[4560]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 12 10:37:37 calcserver /etc/init.d/proftpd[4183]: proftpd: waiting for clamd (50 seconds)
Nov 12 10:37:37 calcserver /etc/init.d/samba[4185]: samba: waiting for slapd (50 seconds)
Nov 12 10:37:37 calcserver /etc/init.d/local[4190]: local: waiting for clamd (50 seconds)
Nov 12 10:37:50 calcserver kernel: random: crng init done
Nov 12 10:37:50 calcserver kernel: random: 1 urandom warning(s) missed due to ratelimiting
Nov 12 10:40:01 calcserver cron[5050]: (root) CMD (test -x /usr/sbin/run-crons && /usr/sbin/run-crons)
Nov 12 10:40:01 calcserver run-crons[5058]: (root) CMD (/etc/cron.hourly/clocksync)
Nov 12 10:40:08 calcserver run-crons[5062]: (root) CMD (/etc/cron.hourly/vnstat)
Nov 12 10:50:01 calcserver cron[5164]: (root) CMD (test -x /usr/sbin/run-crons && /usr/sbin/run-crons)
Nov 12 10:59:01 calcserver cron[5244]: (root) CMD (rm -f /var/spool/cron/lastrun/cron.hourly)
Nov 12 11:00:01 calcserver cron[5252]: (root) CMD (test -x /usr/sbin/run-crons && /usr/sbin/run-crons)
Nov 12 11:00:01 calcserver run-crons[5257]: (root) CMD (/etc/cron.hourly/clocksync)
Nov 12 11:00:09 calcserver run-crons[5263]: (root) CMD (/etc/cron.hourly/vnstat)
Nov 12 11:10:01 calcserver cron[5322]: (root) CMD (test -x /usr/sbin/run-crons && /usr/sbin/run-crons)
Nov 12 11:15:01 calcserver cron[5380]: (root) CMD (/usr/bin/nice -n19 /usr/bin/ionice -c3 /usr/sbin/cl-core --method update --schedule -p --wait-another-update off &>/dev/null)
Nov 12 11:20:01 calcserver cron[5424]: (root) CMD (test -x /usr/sbin/run-crons && /usr/sbin/run-crons)
Nov 12 11:30:01 calcserver cron[5477]: (root) CMD (test -x /usr/sbin/run-crons && /usr/sbin/run-crons)
Nov 12 11:33:47 calcserver sshd[5513]: pam_ldap: could not open secret file /etc/ldap.secret (No such file or directory)
Nov 12 11:33:47 calcserver sshd[5511]: Accepted keyboard-interactive/pam for user from 192.168.0.33 port 34711 ssh2
Nov 12 11:33:47 calcserver sshd[5511]: pam_unix(sshd:session): session opened for user  by (uid=0)

Есть мысль, что проблема может быть связана с бондингом. Хотя, сам бондинг работает нормально. Но, примерно два года назад, было замечено, что некоторые сервисы, которые требуют сети для запуска, не распознают bond0 как сетевое устройство и не запускаются, предполагая, что сети нет.
Похоже, что самба тоже не видит OpenLDAP и не может проверить пользователя. Поэтому и PERMISSION_DENIED.

Как восстановить работоспособность OpenLDAP?

Работает ли монтирование следующей командой?

mount.cifs //192.168.0.77/files /mnt/disk -o user=user,password=password,vers=1.0

Нет. Всё тот же mount error(13): Permission denied
и в messages
clientws kernel: Status code returned 0xc000006d NT_STATUS_LOGON_FAILURE

Перезапуск /etc/init.d/slapd отрабатывает нормально?

При рестарте в messages вот такие строки

Nov 14 10:42:00 calcserver /etc/init.d/slapd[5098]: /var/lib/openldap-data/DB_CONFIG does not exist, slapd performance may be sub-optimal
Nov 14 10:42:00 calcserver slapd[5104]: @(#) $OpenLDAP: slapd 2.4.44 (Oct 29 2018 12:20:00) $
    @calcserver:/var/calculate/tmp/portage/net-nds/openldap-2.4.44/work/openldap-2.4.44-abi_x86_64.amd64/servers/slapd
Nov 14 10:42:00 calcserver slapd[5104]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 14 10:42:00 calcserver slapd[5104]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 14 10:42:00 calcserver slapd[5104]: nss_ldap: failed to bind to LDAP server ldap://localhost: Can't contact LDAP server
Nov 14 10:42:00 calcserver slapd[5104]: nss_ldap: could not search LDAP server - Server is unavailable
Nov 14 10:42:26 calcserver sshd[5117]: pam_ldap: could not open secret file /etc/ldap.secret (No such file or directory)

Соответственно и в консоли указание на /var/lib/openldap-data/DB_CONFIG does not exist
Но, я так понимаю, это не относится к проблеме.

Есть ли записи в samba ветке?

ldapsearch -o ldif-wrap=no -D cn=ldapadmin,dc=calculate -w "secret" -b ou=Samba,ou=Services,dc=calculate

Пароль (secret) вы может получить из /var/lib/calculate/calculate.ldap

Ответ на команду ldapsearch
ldap_bind: Invalid credentials (49)

Не тот пароль ввёл! Нужен был пароль админа, а я от самбы ввёл.
Ответ очень длинный. Сейчас опубликую.

Вот ответ на команду ldapsearch

 # extended LDIF
#
 # LDAPv3
 # base <ou=Samba,ou=Services,dc=calculate> with scope subtree
 # filter: (objectclass=*)
 # requesting: ALL
#

 # Samba, Services, calculate
dn: ou=Samba,ou=Services,dc=calculate
objectClass: top
objectClass: organizationalUnit
ou: Samba
userPassword:: e1NTSEF9VVNCd3hKY0M3bFNoWnY1OHNvBTUxWjRHV0UvSF15UEY=

 # Computers, Samba, Services, calculate
dn: ou=Computers,ou=Samba,ou=Services,dc=calculate
objectClass: top
objectClass: organizationalUnit
ou: Computers

 # Users, Samba, Services, calculate
dn: ou=Users,ou=Samba,ou=Services,dc=calculate
objectClass: top
objectClass: organizationalUnit
ou: Users

 # Groups, Samba, Services, calculate
dn: ou=Groups,ou=Samba,ou=Services,dc=calculate
objectClass: top
objectClass: organizationalUnit
ou: Groups

 # CALCULATE, Samba, Services, calculate
dn: sambaDomainName=CALCULATE,ou=Samba,ou=Services,dc=calculate
sambaRefuseMachinePwdChange: 0
sambaMinPwdLength: 5
sambaLockoutDuration: 30
objectClass: sambaDomain
sambaMaxPwdAge: -1
sambaNextRid: 1004
sambaForceLogoff: -1
sambaPwdHistoryLength: 0
sambaDomainName: CALCULATE
sambaSID: S-1-5-21-2791374772-4093890263-3882722806
sambaLockoutThreshold: 0
sambaAlgorithmicRidBase: 1000
sambaLockoutObservationWindow: 30
sambaNextUserRid: 1000
sambaMinPwdAge: 0
sambaLogonToChgPwd: 0

 # System Operators, Groups, Samba, Services, calculate
dn: cn=System Operators,ou=Groups,ou=Samba,ou=Services,dc=calculate
sambaGroupType: 5
displayName: Domain System Operators
cn: System Operators
objectClass: top
objectClass: posixGroup
objectClass: sambaGroupMapping
sambaSID: S-1-5-32-549
gidNumber: 549
description: Domain System Operators

 # Print Operators, Groups, Samba, Services, calculate
dn: cn=Print Operators,ou=Groups,ou=Samba,ou=Services,dc=calculate
sambaGroupType: 5
displayName: Domain Print Operators
cn: Print Operators
objectClass: top
objectClass: posixGroup
objectClass: sambaGroupMapping
sambaSID: S-1-5-32-550
gidNumber: 550
description: Domain Print Operators

 # Domain Guests, Groups, Samba, Services, calculate
dn: cn=Domain Guests,ou=Groups,ou=Samba,ou=Services,dc=calculate
sambaGroupType: 2
displayName: Domain Guests Users
cn: Domain Guests
objectClass: top
objectClass: posixGroup
objectClass: sambaGroupMapping
sambaSID: S-1-5-21-2791374772-4093890263-3882722806-514
gidNumber: 514
description: Domain Guests Users

 # Domain Admins, Groups, Samba, Services, calculate
dn: cn=Domain Admins,ou=Groups,ou=Samba,ou=Services,dc=calculate
sambaGroupType: 2
displayName: Domain Administrators
cn: Domain Admins
objectClass: top
objectClass: posixGroup
objectClass: sambaGroupMapping
sambaSID: S-1-5-21-2791374772-4093890263-3882722806-512
gidNumber: 512
description: Domain Administrators

 # Account Operators, Groups, Samba, Services, calculate
dn: cn=Account Operators,ou=Groups,ou=Samba,ou=Services,dc=calculate
sambaGroupType: 5
displayName: Domain Users to manipulate users accounts
cn: Account Operators
objectClass: top
objectClass: posixGroup
objectClass: sambaGroupMapping
sambaSID: S-1-5-32-548
gidNumber: 548
description: Domain Users to manipulate users accounts

 # Domain Users, Groups, Samba, Services, calculate
dn: cn=Domain Users,ou=Groups,ou=Samba,ou=Services,dc=calculate
sambaGroupType: 2
displayName: Domain Users
cn: Domain Users
objectClass: top
objectClass: posixGroup
objectClass: sambaGroupMapping
sambaSID: S-1-5-21-2791374772-4093890263-3882722806-513
gidNumber: 513
description: Domain Users

 # Administrators, Groups, Samba, Services, calculate
dn: cn=Administrators,ou=Groups,ou=Samba,ou=Services,dc=calculate
sambaGroupType: 5
displayName: Domain Members can fully administer the computer/sambaDomainName
cn: Administrators
objectClass: top
objectClass: posixGroup
objectClass: sambaGroupMapping
sambaSID: S-1-5-32-544
gidNumber: 544
description: Domain Members can fully administer the computer/sambaDomainName

 # client, Groups, Samba, Services, calculate
dn: cn=client,ou=Groups,ou=Samba,ou=Services,dc=calculate
sambaGroupType: 2
displayName: Client group
cn: client
objectClass: top
objectClass: posixGroup
objectClass: sambaGroupMapping
sambaSID: S-1-5-21-2791374772-4093890263-3882722806-2801
gidNumber: 900
description: Client group

 # Backup Operators, Groups, Samba, Services, calculate
dn: cn=Backup Operators,ou=Groups,ou=Samba,ou=Services,dc=calculate
sambaGroupType: 5
displayName: Domain Members can bypass file security to back up files
cn: Backup Operators
objectClass: top
objectClass: posixGroup
objectClass: sambaGroupMapping
sambaSID: S-1-5-32-551
gidNumber: 551
description: Domain Members can bypass file security to back up files

 # Replicators, Groups, Samba, Services, calculate
dn: cn=Replicators,ou=Groups,ou=Samba,ou=Services,dc=calculate
sambaGroupType: 5
displayName: Domain Supports file replication in a sambaDomainName
cn: Replicators
objectClass: top
objectClass: posixGroup
objectClass: sambaGroupMapping
sambaSID: S-1-5-32-552
gidNumber: 552
description: Domain Supports file replication in a sambaDomainName

 # Domain Computers, Groups, Samba, Services, calculate
dn: cn=Domain Computers,ou=Groups,ou=Samba,ou=Services,dc=calculate
sambaGroupType: 2
displayName: Domain Computers accounts
cn: Domain Computers
objectClass: top
objectClass: posixGroup
objectClass: sambaGroupMapping
sambaSID: S-1-5-21-2791374772-4093890263-3882722806-515
gidNumber: 515
description: Domain Computers accounts

 # client, Users, Samba, Services, calculate
dn: uid=client,ou=Users,ou=Samba,ou=Services,dc=calculate
objectClass: sambaSamAccount
objectClass: account
sambaSID: S-1-5-21-2791374772-4093890263-3882722806-1001
displayName: Client unix workstation
uid: client
sambaAcctFlags: [NDU        ]

 # admin, Users, Samba, Services, calculate
dn: uid=admin,ou=Users,ou=Samba,ou=Services,dc=calculate
objectClass: sambaSamAccount
objectClass: account
sambaSID: S-1-5-21-2791374772-4093890263-3882722806-1002
displayName: Administrator samba service
uid: admin
sambaAcctFlags: [NDU        ]

 # user1, Users, Samba, Services, calculate
dn: uid=user1,ou=Users,ou=Samba,ou=Services,dc=calculate
displayName: Calculate user
uid: user1
objectClass: sambaSamAccount
objectClass: account
sambaAcctFlags: [U          ]
sambaPasswordHistory: 0000000000000000000000000000000000000000000000000000000000000000
sambaSID: S-1-5-21-2791374772-4093890263-3882722806-1003
sambaNTPassword: 35332F94743DAC6D8163C33E3F4C46E2
sambaPwdLastSet: 1496395967

 # user2, Users, Samba, Services, calculate
dn: uid=user2,ou=Users,ou=Samba,ou=Services,dc=calculate
displayName: Calculate user
uid: user2
objectClass: sambaSamAccount
objectClass: account
sambaAcctFlags: [U          ]
sambaPasswordHistory: 0000000000000000000000000000000000000000000000000000000000000000
sambaSID: S-1-5-21-2791374772-4093890263-3882722806-1004
sambaPwdLastSet: 1388768748
sambaNTPassword: CD19FAB9A9C36534D8AF5317C9AE07C8

 # search result
search: 2
result: 0 Success

 # numResponses: 21
 # numEntries: 20

Имена пользователей изменены, хэши паролей тоже.

Давайте попробуем на стороне сервера получить содержимое remote

smbclient -U пользователь //localhost/remote -c ls

Выдал список файлов расшареного ресурса.

Если нет виндовых машин в Samba домене, то, как временное решение, можно отключить “domain logons” в /etc/samba/smb.conf.

Да. Это сработало. Спасибо!
А какие рекомендации по ошибкам подключения к LDAP?

Я подозреваю, что они ругаются пока slapd не запущен?

Подключать ресурсы samba без правки domain logons можно с указанием параметра domain= в опциях монтирования.

calculate-utils (client) будут исправлены в 3.6.1.10 версии.

Спасибо огромное за помощь!!!