RoonOS 3.0 B374: Cannot connect to ROCK Data share, HBS 3, QNAP (QTS 4.3.4.2814)

I just realized that my HBS sync job from the ROCK’s internal disk to the NAS is failing after the update to RoonOS 3.0.

I made sure it uses the guest/guest credentials but no dice. The log just gives an error -22, “Bad job parameters. Check job settings”, but I didn’t change anything about the job:

[Hybrid Backup Sync] Failed to complete Sync job: “cirrus Roon MEDIA Backup”. Bad job parameters. Check job settings. Attempting to retry. Error code: -22.

The only things I did was:

  • Change the ROCK hostname because this was a change I made with the OS update. But the IP fails, too.
  • Use guest/guest, but I think this was always the case, anyway.

I’m a bit lost, any ideas?

Creating a new storage space fails with a connection error too.

IP and hostname are correct, from router:

I can’t connect from File Station (New SMB Mount) either. Both the Anonymous and the guest/guest credential option fail with connection error.

From my Mac, the SMB connection to ROCK works fine, of course.

Not getting anywhere in an ssh shell (as admin) on the QNAP either. (I also tried with vers=2.0 on the options list but it seems that the QNAP mount command does not accept vers=2.0, vers=3, etc.: “invalid argument”. vers=1.0 is accepted but obviously doesn’t do anything that the default doesn’t do, anyway):

[/usr/bin] # mount.cifs -o user=guest,pass=guest -v //rock/data /testsmb
mount.cifs kernel mount options: ip=192.168.178.26,unc=\\rock\data,user=guest,pass=********
mount error(95): Operation not supported
Refer to the mount.cifs(8) manual page (e.g. man mount.cifs)
[/usr/bin] #

I forgot to add that the Roon database backups from the ROCK by SMB to the QNAP works.

@ivan or anyone? If I am not being a complete idiot (possible), I am pretty sure that this is a problem in RoonOS 3.0 preventing the QNAP’s HBS3 backup solution from connecting to smb://rock/Data with guest/guest to sync the data to the QNAP. Or perhaps something with Samba 4.

(Unfortunately I find nothing in the detailed HBS3 logs other than what I know from the UI: “Bad job parameters. Check job settings, Error code: -22”)

I can’t even create a new Storage Space in HBS3 representing the ROCK:

Hi @Suedkiez ,

Sorry, but RoonOS v3 samba config defaults to SMB2_02 as the minimum protocol version and has SMB1/NT1 disabled. So if the cifs client only supports SMB1/NT1, it’ll fail. Can you share what version cifs returns from the ssh admin shell on the QNAP with mount.cifs -V and modinfo cifs | grep “^version\|smb” to get the version and see if there’s any SMB2 support. Other threads about it supporting SMB1 didn’t go all the way and attempt an SMB1/NT1 connection. I think they were just reporting what the min negotiation capabilities were on both sides. It fails when trying to use just SMB1/NT1 (the first command is listing the README.txt file and the second one is the same but setting NT1, SMB1 dialect, as the minimum and the protocol negotiation fails):

$ smbclient //rock/Data -N -c “ls README.txt”
README.txt                          N      367  Mon Jun 15 16:14:55 2026

$ smbclient //rock/Data -N -c “ls README.txt” -m NT1
lp_load_ex: Max protocol NT1 is less than min protocol SMB2_02.
Protocol negotiation to server rock (for a protocol between SMB2_02 and NT1) failed: NT_STATUS_INVALID_PARAMETER_MIX

If anything changes in future RoonOS builds, we’ll post it in the release notes.

QTS 4.3.4 definitely supports up to SMB v3. This screenshot is for the NAS used as an SMB server, but it wouldn’t support v3 as a server and just v1 as a client:

[~] # mount.cifs -V
mount.cifs version: 5.6

The QTS OS is a very limited shell environment, so I get:

[~] # modinfo cifs | grep “^version\|smb”
-sh: modinfo: command not found

and

[~] # smbclient //rock/Data -N -c “ls README.txt”
-sh: smbclient: command not found
[~] #

But it runs Samba 4.4.16, which supports SMB3, and it is enabled (again, the daemon is obviously server-side, but anyway):

[~] # smb3enable -h
**smbd (samba daemon) Version 4.4.16**
**smbd (samba daemon) is running.**
**max protocol SMB 3 enabled.**
[~] #
[~] # smb2enable -h 
Usage: /etc/init.d/smb2_protocol.sh {enable|disable|status} [1|2|20|21|3]
Options:
        disable       - SMB 1
        enable 1      - SMB 1
        enable [2|20] - SMB 2.0
        enable 21     - SMB 2.1
        enable 3      - SMB 3

smbd (samba daemon) Version 4.4.16
smbd (samba daemon) is running.
max protocol SMB 3 enabled.
[~] #
[~] # smb2status
**smbd (samba daemon) Version 4.4.16**
**smbd (samba daemon) is running.**
**max protocol SMB 3 enabled.**
[~] #

@Paul_Argue

Found QNAP documentation stating that for security reasons they disabled SMBv1 on QTS 4.2.6 and later (I have 4.3.4.*) by default:

And this is confirmed by the Samba config on my QNAP in /etc/config/smb.conf, which has the “min protocol = SMB2_02” option set. Copy-pasting the [global] section (the rest just defines the shares that the QNAP exports):

[~] # vi /etc/config/smb.conf

[global]
passdb backend = smbpasswd
workgroup = WORKGROUP
security = USER
server string =
encrypt passwords = Yes
username level = 0
map to guest = Bad User
null passwords = yes
max log size = 10
socket options = TCP_NODELAY SO_KEEPALIVE
os level = 20
preferred master = no
dns proxy = No
smb passwd file=/etc/config/smbpasswd
username map = /etc/config/smbusers
guest account = guest
directory mask = 0777
create mask = 0777
oplocks = yes
locking = yes
disable spoolss = no
load printers=yes
veto files = /.AppleDB/.AppleDouble/.AppleDesktop/:2eDS_Store/Network Trash Folder/Temporary Items/TheVolumeSettingsFolder/.@__thumb/.@__desc/:2e*/.@__qini/.Qsync/.@upload_cache/.qsync/.qsync_sn/.@qsys/.streams/.digest/
delete veto files = yes
map archive = no
map system = no
map hidden = no
map read only = no
deadtime = 10
use sendfile = yes
unix extensions = no
store dos attributes = yes
client ntlmv2 auth = yes
dos filetime resolution = no
inherit acls = no
wide links = yes
force unknown acl user = yes
template homedir = /share/homes/DOMAIN=%D/%U
domain logons = no
case sensitive = auto
domain master = auto
local master = no
enhance acl v1 = yes
remove everyone = no
kernel oplocks = no
mangled names = no
printcap cache time = 0
host msdfs = no
printcap name=/etc/printcap
printing=cups
show add printer wizard=no
min receivefile size = 256
conn log = yes
pid directory = /var/lock
server role = auto
smb2 leases = yes
durable handles = yes
kernel share modes = no
posix locking = no
lock directory = /share/MD0_DATA/.samba/lock
state directory = /share/MD0_DATA/.samba/state
cache directory = /share/MD0_DATA/.samba/cache
acl allow execute always = yes
server signing = disabled
streams_depot:delete_lost = yes
streams_depot:check_valid = no
fruit:nfs_aces = no
fruit:veto_appledouble = no
winbind expand groups = 1
follow symlinks = yes
min protocol = SMB2_02
winbind scan trusted domains = no
invalid users = guest
server schannel = yes
wins support = no
aio read size = 1
aio write size = 0
winbind enum groups = Yes
winbind enum users = Yes
name resolve order = host bcast
vfs objects = catia fruit qnap_macea streams_depot aio_pthread