Displaying 20 results from an estimated 2000 matches similar to: "network design - taking advantage of samba+openldap"
2010 Jun 05
1
wins or windbind problem? - help please
I have four domains in my LAN. I set up trust relationships for the
domains, having each PDC working as wins server for each domain but I hd
not set up winbind. I have samba3-3.3.12 + ldap (openldap 2.4.21) as users
backend.
I mean, I have wins support = yes for each PDC, and I can access to the
shared folders of each PDC from any windows computer from my LAN.
The problem is accessing to
2009 Feb 04
1
Idmap + LDAP + winbind: our first BDC - doubts about idmap ranges and winbbindd + Idmap dn
Hi,
My doubt is about Idmap + LDAP + winbind, related do BDC + PDC. We
are using Samba 3.0.33 (Slackware 12.0.0).
Our layout is almost like this one
http://us1.samba.org/samba/docs/man/Samba-Guide/images/chap6-net.png,
but we have more BLDGn than this example.
Actually, we are taking ideas from
http://us1.samba.org/samba/docs/man/Samba-Guide/happy.html
and from
2005 Nov 10
1
how to migrate to samba-ldap transparently?
We are in the point of change our samba 3.0.5 PDC setup in order to make
it authenticate its users against openldap 2.3.11.
We already have the openldap server working with all the PDC users data
and we also have already tested the wanted scenario using an identical PDC
setuped up with the same SID and its netbios name changed and some PCs for
testing as domain clients (we outsourced this
2005 Jul 08
1
Roaming profiles question
I have Samba 3.014a running. If I use the standard profiles definition:
[profiles]
path = /opt/samba/profiles
writeable = yes
browseable = no
create mode = 0600
directory mode = 0700
then everything works fine. But changing just the path to
path = /home/%U/profiles
breaks it completely. I can curious why this doesn't work. The user
that is logging in owns their
2005 Apr 06
1
force create mode / force directory mode in 3.0.13 behavior changed?
... as in they dont appear to be forcing anymore anymore ? =)
I've tried on two seperate machines, slightly different configs but same
statements in the stanza I was testing...
Trying to force 750/640 and it appeared to work quite nicely in the
past.. No other mode statements around, and according to docs, force
does a bitwire OR on the mode, no AND or masking. Still, with 750/640
forced,
2005 May 25
3
Auto-Extracting/expanging ISO images
Perhaps a bit off-topic, but figured this might be a good question to pose
to the list before I go off re-inventing the wheel again...
Has anyone, or does anyone know of, a way to directly mount or utilize and
iso image file as a filesystem? I'd like to use samba to create a series of
shares based on ISO images; assuming one can mount an ISO image file one
could in theory serve windows
2005 May 04
1
Can u help me
Hello Sir,
Can u help me to provide useful information
about the samba. I want to ask few question which are
1)what security does samba provides from sever side
and client side.
2)What auditing features does samba provides and
finally
3) Is it possible to detect brute forcing attacks
(such as NAT) against a SAMBA server
I will be very grateful if can give me information on
these.
2005 Jul 04
1
Lock accounts with SAMBA
Hi,
I'm a busy sysadmin locking and unlocking user accounts. I'd like to be
able to do it from my linux -kerberos enabled samba workstation.
I can easily use net commands to see if a user's account is locked in
the ADS. How do I actually lock it from within samba.
I've written a user management system at the school that does lots of
things, I'd like it to be able to do
2005 Jun 23
4
System Imaging
I am using Samba 3.0.20pre1 as a DC and I want to know if there is
something similar to Deep Freeze www.faronics.com (except open source)
for Linux. Deep Freeze automatically compares the software installation
on a client machine to an image on a server. If the client machine
differs, the client is automatically synced with the server. I want to
achieve this with Samba and a linux tool if
2005 Apr 06
4
kill this damn spam...
Is there anyway we can stop this 'need Employee' or other kinds of spam that seems to infiltrate this mailing list?
Joe
2005 May 18
1
OS X Server and Duplication
One question and a comment---
Is it possible to setup a G4 X Server into a duplicating server for my k12 LDAP Server?
If not, what are the steps to creating a duplication server for my LDAP server using a PC.
I am fairly new to LDAP, and as I play around with it more I am understanding the way it functions. But I am a bit confused about duplication server. As I understand it, a duplication
2008 Jun 09
6
second samba pdc
Hello List,
I have 2 samba domain on 2 physical Servers but the User Administration is
over 1 LDAP Server. At the moment i become some errors on my first PDC box:
smbd[16074]: sid S-1-5-21-3194266148-564761370-2586249389-101652 does not
belong to our domain (Thats all hosts from the second PDC)
* first samba Server SID = S-1-5-21-3991578539-3149662252-1894531253
* second samba Server SID
2006 Nov 07
1
smb + ldap: changing passwords from windows: SSHA instead of CRYPT
Dear friends,
We have samba-3.0.21c-1 under RH9 + openldap 2.3.11 under FC4. When a
windows user changes his password using Ctrl-Alt-Del the password is
stored on ldap in SSHA format but we need to work with CRYPT because we
have some apps that don't support SSHA.
These are the lines related with authentication defined in smb.conf:
encrypt passwords = yes
ldap passwd sync = Yes
2005 Mar 23
2
samba3 x86_64 performance
Hi all,
has anyone had any experience with samba3 on a X86_64 system. Are there any significant performance benefits ?
cheers
Stephan
2005 May 30
3
Obtaining log level 10 for just specified user(s) (MS Word & Excel File Locking issue - still)
Is it possible to make samba produce a log at level 10 for only a specified
user(s), I am trying (still) to figure out why Samba processes climb to 100%
CPU and the user loses connection with MS Word & Excel files being locked.
Have been dealing with this issue for quite some time now, but had to put it
on the back burner for a while because we had little time to deal with it.
Apprently only
2016 Sep 14
5
Exporting keytab for SPN failure
> On Sep 14, 2016, at 10:44 AM, Achim Gottinger via samba <samba at lists.samba.org> wrote:
>
>
>
> Am 14.09.2016 um 05:53 schrieb Michael A Weber via samba:
>> Experts—
>>
>> I’m attempting to export a keytab for a created SPN on the AD DC machine but I’m receiving an error:
>>
>> ERROR(runtime): uncaught exception - Key table entry not
2016 Sep 14
1
Exporting keytab for SPN failure
> On Sep 14, 2016, at 12:57 PM, Achim Gottinger <achim at ag-web.biz> wrote:
>
>
>
> Am 14.09.2016 um 18:23 schrieb Michael A Weber:
>>
>>> On Sep 14, 2016, at 10:44 AM, Achim Gottinger via samba <samba at lists.samba.org <mailto:samba at lists.samba.org>> wrote:
>>>
>>>
>>>
>>> Am 14.09.2016 um 05:53
2016 May 18
2
ISC's dhcp server, radvd and bind9 now adding samba as an AD DC
So I had dhcp, radvd and bind working together nicely and now I threw in a
wrench of setting up an AD DC
I want to change my dhcp server setting to put client's into the new AD
Domain but am a little hesitant as it is all working so nicely with DDNS
I'm starting to think all I need to do is edit just my dhcpd.conf and
change occurrences of DOMAIN1.SUBDOMAIN.TLD to
2016 May 27
2
ISC's dhcp server, radvd and bind9 now adding samba as an AD DC
I had left my config alone for now and dhcp still writes to
DOMAIN1.SUBDOMAIN.TLD. But samba has been complaining about not being able
to write to bind in its zone.
[2016/05/27 07:30:06.738434, 0]
../source4/dsdb/dns/dns_update.c:295(dnsupdate_nameupdate_done)
../source4/dsdb/dns/dns_update.c:295: Failed DNS update -
NT_STATUS_UNSUCCESSFUL
If you are right about it using kerberos I think I am
2016 May 27
2
ISC's dhcp server, radvd and bind9 now adding samba as an AD DC
https://wiki.samba.org/index.php/Configure_BIND_as_backend_for_Samba_AD
helped me find that I needed to add
options {
[...]
tkey-gssapi-keytab "/usr/local/samba/private/dns.keytab";
[...]
};
That seems to have fixed my errors with DNS
On Fri, May 27, 2016 at 9:26 AM, Rowland penny <rpenny at samba.org> wrote:
> On 27/05/16 14:37, Jeff Sadowski wrote:
>