Displaying 10 results from an estimated 10 matches for "sambagroup".
2004 Jan 29
1
Featurerequest: LDAPgroups as groupOfUniqeNames
Hi,
This might be a featurerequest for 4.0, but I would be happy if it could
go into 3.1 or something.
I would be very happy if Samba could add the DNs of a user instead of
his/her uid to a sambaGroup, thus using the groupOfUniqe names
objectclass for administering groups.
This would make groups inline with the LDAP consept of groups and make
it possible to use them in ACLs etc.
Tarjei
2006 Sep 08
1
Mapping all members of an AD group to a single unix username?
...ious permutations in the smbusers file ( referenced by
username map ), to get all members of a Windows AD group to be able to
authenticate to a Samba Share, mainly along the lines of DOMAIN\GroupName,
but I can't figure out a way to get this to work.
What I need is for any member of the DOMAIN\SambaGroup to authenticate to
the Samba server as the unix user winuser.
Any tips or pointers on this? I've exausted all perumtations I could think
of in google, and various pages seem to suggest that this can be done, but
don't say how.
Rory
2004 Aug 20
0
Inter. between Samba 2.2.x and 3.x w/ LDAP backend (and another changes)
...user with UID 0?
- I see on LDAP Account Manager (http://lam.sourceforge.net/), on live demo that the Domain SID are stored on LDAP backend, and not on secrets.tdb, is it correct? If yes, how to make it? Is possible to store more than one SID?
- In some examples, all groups uses the posixGroup and sambaGroup objectclass, this can be the error in my built-in account maps? In Samba 3, is it mandatory? If I do it with all my groups, I can view then on Windows Workstations? (without the sambaGroup, on Samba 2, I can use it to provide access control on filesystem, but it can't be listed on Windows machi...
2006 Jul 03
2
How to join a domain without using root?
...it bit by bit.
Server is Samba-3 PDC, clients are NT4 & XP.
I can join the domain using root credentials (so the add machine script
works), but not when using 'administrator'.
unixuser 'administrator' has primary unixgroup 'ntadmins'.
'ntadmins' is mapped to sambagroup 'Domain Admins'.
Samba 'administrator' has SID from <net getlocalsid>-500
I cannot join the domain using 'administrator' - I get error "The machine
account for this computer either does not exist or is anaccessible". But if
I change the unix uid/gid for &...
2003 Nov 20
1
Groups and LDAP
...nd
LDAP. The Samba HOWTO collection says to map each Domain Group to a
UNIX system group, but if all authentication is done via LDAP (Unix and
Windows) then do the groups still have to exist on the Samba Unix
machine? Where do the RIDs fit into all this? I don't see a schema in
LDAP for sambaGroup. Do I create the domain groups with the posixGroup
schema and set their gid to a RID that will exist on the Windows machine
(like 512 for Domain Admins)? Or do I just bypass the group mapping
altogether and set a Domain Admins sambaPrimaryGroupSID to <SID>-512?
Any help on this would be...
2002 Aug 29
0
Samba and Win2k Terminal Services
...e there was a problem. I did
notice, however, that there appears to be group lookups happening based
on rid. ie, when I try to log in I notice a log entry trying to look
up, rid=512 (ie domain admins group)... I have the groups in the ldap
system all set up as posixGroups.. I tried adding the sambaGroup
objectclass and setting the rid, but that didn't seem to help...
any ideas? I can send in more info if needed....
Thanks in advance!
Terry
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smb.conf
Type: application/octet-stream
Size: 1283 bytes
Desc: not...
2009 Mar 04
0
Can anyone comment on my setup?
...server is: S-1-5-21-231587965-5978642536-3325898745
>>
<<screen dump>>
=====================================================================
8. Import Samba Domain, Groups and Samba Admin account into Directory server
8.1 Copy three .ldif files to /root/Desktop:
sambaDomain.ldif
sambaGroups.ldif
sambaAdmin.ldif
8.2 Import sambaDomain.ldif to FDS
/usr/lib/dirsrv/slapd-centserver/ldif2ldap "cn=Directory manager"
ldapadminpassword /root/Desktop/sambaDomain.ldif
8.3 Import sambaGroups.ldif to FDS
/usr/lib/dirsrv/slapd-centserver/ldif2ldap "cn=Directory manager"
ld...
2003 Nov 11
1
Samba 3 Redhat 9 Openldap doc
...g"
delete user from group script = /usr/local/sbin/smbldap-useradd.pl -j -u
"%u" -g "%g"
set primary group script = /usr/local/sbin/smbldap-useradd.pl -m -u
"%u" -gid "%g"
#####################################################################
workgroup = SambaGroup
netbios name = SAMBA-PDC
comment = Samba-PDC Server
security = user
null passwords = yes
encrypt passwords = yes
logon script=logon.bat
### These left Blank will force local profiles but will not override LDAP
config
##if set LDAP takes precedence.
logon drive =
logon path =
domain master = yes...
2004 Jan 15
6
My story installing Samba-LDAP PDC (it has a happy ending)
...they must be set, but I know
they are set with smbpasswd -a.
The example that comes with SLH says the following about the three accounts:
Administrator:
uidNumber: 506 --- I asume this can be any number not equal to 0
gidNumber: 0 --- maybe because the posixGroup 0 should be previosly mapped
to sambaGroup rid 512, althogh this is not written anywhere. Is this true?
sambaSID: a number that ends with 500 (I really don't know if this is truly
necessary, but it DOES NOT come from the formula given above).
sambaPrimaryGroupSID: must end with 512 (to indicate it belongs to the
Domain Admins group, I a...
1997 Oct 03
67
SAMBA
On Fri, 3 Oct 1997, Daniel Feenberg wrote:
> Gosh, you are doing well at a project that I gave up on about a year
> ago. I only wish you were close enough to do some consulting for us.
I guess so do I ;-)
Using the new approach I posted to samba-list earlier today, it is not
really all that tricky any more. Watch for my reports on the list, you
may be able to implement what I've done