Displaying 20 results from an estimated 518 matches for "infractory".
2017 Aug 31
3
file server: %U or %u?
On Thu, 31 Aug 2017 16:27:12 +0200
mathias dufresne <infractory at gmail.com> wrote:
> PS: the short way to explain %u is adding domain/workgroup to
> username is the fact we are using trust relationship?
>
Probably, what you have to get your head around is this:
The users 'fred', 'DOMAINA\fred' and 'DOMAINB\fred' are all...
2017 Aug 30
2
Shares not accessible when using FQDN
2017-08-30 16:15 GMT+02:00 mathias dufresne <infractory at gmail.com>:
>
>
> 2017-08-30 16:05 GMT+02:00 Rowland Penny via samba <samba at lists.samba.org>
> :
>
>> On Wed, 30 Aug 2017 15:01:05 +0200
>> "L.P.H. van Belle via samba" <samba at lists.samba.org> wrote:
>>
>> > Small addition...
2016 Oct 19
2
NS records for a new AD DC
2016-10-19 8:56 GMT+02:00 Rowland Penny via samba <samba at lists.samba.org>:
> On Wed, 19 Oct 2016 08:47:25 +0200
> mathias dufresne <infractory at gmail.com> wrote:
>
> >
> > >
> > > The domain member will ask its nameserver (which should be an AD
> > > DC),
> > >
> >
> > The client send request to its resolver, which can be an AD DC but not
> > necessarily (we don't use...
2016 Jun 30
2
DNS Suddenly breaking
...>>
>> I'm able to ping it without issues, jut not able to
>> resolve
>> anything
>> externally.
>>
>> On Thu, Jun 30, 2016 at 9:09 AM, mathias dufresne
>> <infractory at gmail.com <mailto:infractory at gmail.com>
>> <mailto:infractory at gmail.com <mailto:infractory at gmail.com>>>
>> wrote:
>>
>> To get recursion working with internal DNS you
>> only need
>...
2016 Jun 30
2
DNS Suddenly breaking
...t;>
>> Yes, it's set up with 8.8.8.8
>>
>> I'm able to ping it without issues, jut not able to resolve
>> anything
>> externally.
>>
>> On Thu, Jun 30, 2016 at 9:09 AM, mathias dufresne
>> <infractory at gmail.com <mailto:infractory at gmail.com>>
>> wrote:
>>
>> To get recursion working with internal DNS you only need
>> to set up:
>> dns forwarder = <IP of your main DNS>
>>
>> Is it...
2018 Nov 08
1
joining a Centos7 to MS AD
Hi,
After more investigations I'm now believing that we have some issue on our
AD site declaration. I'll be back once I would have get more information.
Best regards,
M.
Le jeu. 8 nov. 2018 à 11:22, mathias dufresne <infractory at gmail.com> a
écrit :
> Hi all,
>
> AD version is MS 2008R2.
>
> smb.conf is :
> [global]
> workgroup = AD
> security = ADS
> realm = AD.DOMAIN.TLD
>
> dedicated keytab file = /etc/krb5.keytab
> kerberos method = secrets and keytab
> server string = Samb...
2016 Jul 06
2
[samba as AD] Scripting GPO creation
PS: I could share information about what should be modified to modify the
very same GPO, I didn't yet as I'm not sure anyone there would be
interested and because that would work only for that kind of GPO.
2016-07-06 17:08 GMT+02:00 mathias dufresne <infractory at gmail.com>:
> Context: several teams have to manage only a a bunch of the company's
> computers, so these team must not being able to manage other computers.
> Firstly we split our computers into several OU, one by team.
> Secondly we created one group per team.
> Next ste...
2016 Apr 21
2
Winbind idmap question
...Hi,
>
> Does "wbinfo -i <user>" work, and return the same results, on all the DCs?
>
> Are the DCs running the distribution & versions (e.g. CentOS, Debian,
> whatever) or are there differences there, also?
>
> On 21 April 2016 at 11:16, mathias dufresne <infractory at gmail.com> wrote:
>
> > Hi Jonathan,
> >
> > Thank you for that, that solved the issue.
> >
> > Unfortunately I get another issue: on one DC id <user> gives "no such
> > user".
> > Adding domain (id ad.domain\\<user>) does not...
2016 Jul 12
3
Option configure
On Tue, Jul 12, 2016 at 10:13 AM, mathias dufresne <infractory at gmail.com> wrote:
> Could you simply try to modify type=forking to type=notify and test again?
> Perhaps your old has disappeared (they do sometimes, not often enough)...
Seems to work for starting smbd and nmbd (although Type=forking has
been running flawlessly for many months) on my...
2016 Oct 13
1
samba with customized ldap backend
2016-10-12 15:26 GMT+02:00 Rowland Penny via samba <samba at lists.samba.org>:
> On Wed, 12 Oct 2016 15:06:08 +0200
> mathias dufresne <infractory at gmail.com> wrote:
>
> > As SSSD seems to work with others tools (SSH, SMTP auth...), as the OP
> > doesn't described his error very clearly, I do think you can't say the
> > error is SSSD for sure. You can expect the error is from SSSD, you
> > can even be s...
2016 Jun 30
0
DNS Suddenly breaking
...30 IN A 172.217.0.46
;; Query time: 4 msec
;; SERVER: 192.168.1.235#53(192.168.1.235)
;; WHEN: Thu Jun 30 14:55:20 EDT 2016
;; MSG SIZE rcvd: 55
----------
It looks like it's failing at the first dig, but my resolv looks good...
On Thu, Jun 30, 2016 at 10:11 AM, mathias dufresne <infractory at gmail.com>
wrote:
> from both DC:
> dig google.com
> dig @8.8.8.8 google.com
>
> First dig will use resolvers declared into /etc/resolv.conf.
> Second dig forces usage of 8.8.8.8.
>
> Both commands should reply the same things, on all DC.
>
> 2016-06-30 15:58 GM...
2016 Oct 05
2
getent group [groupname] do not show users
...fault.com/questions/625416/samba-4-group-members-not-shown-in-getent-group
> a proposal to use samba-tool as a replacement but samba-tool is not
> available on member servers which make that workaround not usable in
> most cases...
>
> 2016-10-05 11:40 GMT+02:00 mathias dufresne <infractory at gmail.com>:
>
> > Hi all,
> >
> > With Samba 4.4.5, on member servers (I did not tried yet on DCs),
> > using "getent group" with or without specifying a group name groups
> > are shown but they are shown as empty groups, no user name is
> > d...
2015 Nov 04
3
Using samba-python to query AD? Status of API?
On Wed, Nov 4, 2015 at 11:09 AM, mathias dufresne <infractory at gmail.com> wrote:
> Hi,
>
> Once you have installed Samba to be able to run it as Active Directory you
> would have samba-tool available.
>
> # which samba-tool
> /usr/bin/samba-tool
> # file /usr/bin/samba-tool
> /usr/bin/samba-tool: Python script, ASCII text execu...
2016 Apr 21
2
Winbind idmap question
...rations as the two working DC. I'm puzzled.
2016-04-21 11:52 GMT+02:00 Jonathan Hunter <jmhunter1 at gmail.com>:
> You can try "net cache flush" (if you want to inspect the cache, use "net
> cache list")
>
> On 21 April 2016 at 10:40, mathias dufresne <infractory at gmail.com> wrote:
>
> > Hi all,
> >
> > Back on playing winbind I first configure PAM and NSS then tried id
> > <my_user_name> without setting for that user uidNumber.
> >
> > This user get UID from idmap.
> >
> > I set up uidNumber int...
2016 Jun 30
0
DNS Suddenly breaking
...es, it's set up with 8.8.8.8
>
> I'm able to ping it without issues, jut not able to
> resolve
> anything
> externally.
>
> On Thu, Jun 30, 2016 at 9:09 AM, mathias dufresne
> <infractory at gmail.com <mailto:infractory at gmail.com>
> <mailto:infractory at gmail.com <mailto:infractory at gmail.com>>>
> wrote:
>
> To get recursion working with internal DNS you
> only need
>...
2015 Dec 24
2
Authentication to Secondary Domain Controller initially fails when PDC is offline
...thing to create needed
entries (these needed entries should be the same or almost as
for Default-First-Site-Name, anyway tcpdump could help to find which
entries are requested by clients).
Best regards, wishing you all a merry Christmas : )
mathias
2015-12-23 20:37 GMT+01:00 mathias dufresne <infractory at gmail.com>:
> Hi James,
>
> First thanks for you detailed answer and the tests you did to be able to
> write this.
>
> Before reading your mail I was believing MS Windows keeps only one
> credentials, those for last connected account. This is why I did not pushed
> to...
2016 Jan 27
2
NT_STATUS_CONNECTION_REFUSED
On 27 January 2016 at 17:40, mathias dufresne <infractory at gmail.com> wrote:
> Hi,
>
> Samba DC generates a krb5.conf into private directory, where the database
> is hold.
>
> Its content should be that:
> [libdefaults]
> default_realm = SAMBA.DOMAIN.TLD
> dns_lookup_realm = false
> dns_lookup_kd...
2016 Oct 12
2
samba with customized ldap backend
...o sure?
For 'we do not know, ask sssd' I'm not included in that "we". When I don't
know, most generally I try to learn.
2016-10-12 14:34 GMT+02:00 Rowland Penny via samba <samba at lists.samba.org>:
> On Wed, 12 Oct 2016 14:16:12 +0200
> mathias dufresne <infractory at gmail.com> wrote:
>
> > As he wrote that SSH and SMTP auth and others stuffs are working, I
> > would say SSSD should work.
> > As he wrote there is an issue with Samba, I'd like to understand how
> > he is using Samba, what is the exact error and what he's...
2015 Dec 07
2
Fwd: Functionality of Nmbd at Active Directory mode of Samba4 !
...> respect to whom can help you
It is preferrable to say it to yourself firstly, because your posts didn' t
bring any progress in getting working one.
As a result, if you want to join you are wellcome, otherwise, I stop
duscussion with you.
2015-12-07 12:30 GMT+03:00 mathias dufresne <infractory at gmail.com>:
>
>
> 2015-12-05 21:38 GMT+01:00 CpServiceSPb . <cpservicespb at gmail.com>:
>
>> > net:\\server
>> > Sometimes, you have to read documentation.
>>
>> Oh, no.
>> It have to do users, who use Far. :)
>> I remembered just...
2016 Aug 05
2
Samba4 with external bind - best practices?
...non-DC
DNS server.
Hoping this is clear enough...
Cheers,
mathias
2016-08-04 21:34 GMT+02:00 Elias Pereira <empbilly at gmail.com>:
> Guys,
>
> In the clients dns settings I configure the Samba4 or external DNS IP?
>
> On Thu, Jul 28, 2016 at 5:57 AM, mathias dufresne <infractory at gmail.com>
> wrote:
>
>> Here we (the DNS team of our company, not me ;) chose the zone type
>> forward
>> as it is the way DNS works (one resolver on client system, this resolver
>> will forward requests to others DNS server to get answer) and also because
>&...