Displaying 20 results from an estimated 600 matches similar to: "No admin privileges after upgrade from 3.5.8 to 3.6.0rc3"
2004 Oct 01
1
can't join a domain
when trying to put a samba3 server into a domain (samba3 pdc) I always
get the following error messages:
[root@file samba]# net join -d 2 -U smbadmin RHEL -S
server1.example.com
[2004/09/30 23:36:35, 2] lib/interface.c:add_interface(79)
added interface ip=192.168.0.150 bcast=192.168.0.255
nmask=255.255.255.0
smbadmin's password:
[2004/09/30 23:36:37, 1] libads/ldap.c:ads_connect(251)
2004 Jul 06
1
Q about net groupmap examples on samba.org
Considering the following page...
http://us3.samba.org/samba/docs/man/guide/small.html
First of, my compliments to John for some great examples to study.
In my mind I see three levels of security:
1) Linux - such as SSH'ing into the Linux server, Linux accounts and groups come into play here
2) Samba PDC - "Domain Admins" "Domain Users" come into play here. Examples
2004 Sep 28
0
domain admin group does not have root privileges on windows 2000 or xp machines
I recently upgraded to samba 3 (running on FreeBSD 4.10). I quickly discovered the lack of the
domain admins setting from samba 2, and found documentation directing me to use net groupmap. So
I've got the domain admins group set to include @wheel:
olympus# net groupmap list
System Operators (S-1-5-32-549) -> -1
Replicators (S-1-5-32-552) -> -1
Guests (S-1-5-32-546) -> -1
Domain
2007 Apr 25
2
Can not grant SeMachineAccountPrivilege on Debian Etch
I am testing out Debian Etch, and ran into an issue granting SeMachineAccountPrivilege to an account... which granting that permission had been troublesome in the past.
The command I am issuing is:
net rpc rights grant LDS-DEMO\\ldsinst SeMachineAccountPrivilege
And I try running the command with an account that is a member of the "Domain Admins" group.
The command returns:
Failed to
2005 Mar 15
0
trouble with groupmap
Samba Version 3.0.9-1.3E.2 installed on Vanilla installation of CentOS
Users who log in are unable to install printers via a script like they
do in all of our other domains. The drivers have been installed properly
an rpcclient enumdrivers confirms this. When the user logs in, they are
assigned guest privileges, and I believe that this is what's preventing
the print install.
A quick tail
2007 Jun 01
2
Not seeing the expected group memberships with ifmember.exe /list
We have bumped into a most odd problem.
Server:
Debian Etch and their Samba 3.0.24-2
Client:
WinXP SP2, MSI v3, all hot fixes
The following settings are in place on the server:
#!/bin/bash
#
# initGrps.sh
# Map Windows Domain Groups to UNIX groups
net groupmap add ntgroup="Domain Admins" unixgroup=domadmin rid=512 type=d
net groupmap add ntgroup="Domain Users"
2009 Mar 11
1
Samba PDC - Kerberised CIFS access
Hi All,
I have machine M1 hosting Samba PDC. It stores only user information.
I have machine M2 acting as KDC server.
I have machine M3 hosting CIFS shares and it joins into the domain hosted
by PDC M1.
I have machine M4 used as CIFS client.
On M2, I have added users and cifs/host service principals for M3. Also
added service principal in keytab file.
I have added all the user and service
2005 Apr 15
1
The conflicting domain portions are not supported
Hi, maybe I didn't explained myself well.
What i meant is that the user can't have the SID
S-1-5-21-528226156-890416033-2029241632 but MUST have a sid like
S-1-5-21-528226156-890416033-2029241632-xxxx ( where x is usually assigned
automatically by the add user's script)
Best Regards,
Bruno Guerreiro
-----Original Message-----
From: Jos? M. Fandi?o [mailto:samba@fadesa.es]
Sent:
2005 Apr 15
1
The conflicting domain portions are not supported for NETLOGON calls
Hello list,
When I try to log in a samba 3.0.13 server from a XP Pro
machine, I get this error:
[2005/04/15 10:57:00, 1] rpc_server/srv_netlog_nt.c:_net_sam_logon(766)
_net_sam_logon: user BETA\usuario1 has user sid S-1-5-21-528226156-890416033-2029241632
but group sid S-1-5-21-528226156-890416033-2029241632-513.
The conflicting domain portions are not supported for NETLOGON calls
What
2011 Aug 12
4
3.6.0 winbind issues
Testing 3.6.0 on a member server of a 3.5.8 domain shows some strange problems.
With the standard:
idmap config * : backend = tdb
no results are returned by getent, and wbinfo does not always
work, also no winbind_idmap.tdb file is ever created.
by changing to:
idmap config * : backend = rid
or
idmap config * : backend = hash
results are obtained but are the same regardless of
2011 Mar 15
2
howto check and setup privileges
hi everybody,
when using
enable privileges = yes in smb.conf
where does the permission get saved?
I assume in the passdb backend or is there a tdb server specific file in
/var/lib/samba?
cause when i give a group the permission:
net rpc -S pa-server1 rights grant 'NET\domadmin' SePrintOperatorPrivilege
Enter root's password:
Successfully granted rights.
but when listing the
2005 Jul 21
2
i can't delete groupmap
Hi, i can't delete groupmap in my samba 3.0.12:
# net groupmap list
Domain Users (S-1-5-21-3984604316-2900431957-2958281145-513) -> products
Domain Admins (S-1-5-21-3984604316-2900431957-2958281145-513) -> man
Domain Admins (S-1-5-21-3984604316-2900431957-2958281145-512) -> domadmin
Domain Users (S-1-5-21-3984604316-2900431957-2958281145-513) -> domuser
# net groupmap delete
2009 Nov 07
0
XP-machines cannot join Samba PDC with tdbsam
High there ...
I cannot join my Samba PDC any longer with my XP-machines, I mean I'm
not be able to create new machine accounts.
The existing machine-accounts in the tdb-database works properly, all
the existing XP-machines are joined without any problems. Only it isn't
possible to joint the Samba PCD with new machines...
My first Samba PDC-Configuration with this tdbsam as the passwd
2011 Mar 15
1
Upgraded to 3.5.8 local users unable to log in AD users can
Hi all,
Upgraded Samba on RHEL5 from 3.0.33 to 3.5.8 from an rpm. Have an issue where AD
users can connect to the linux box but local unix accounts cannot.
We are using PAM not kerberos.
After much looking and trail and error. I commented out this line in the
/etc/pam.d/system-auth file and it works. Why???
account required pam_unix.so broken_shadow
account sufficient
2003 Oct 20
7
domain groups
I have ACL's enabled and am getting a new error, in the Samba log (V
3.0.1Pre1, when attempting to set permissions on a file through Win2000:
get_domain_user_groups: primary gid of user [terry] is not a Domain
group !
get_domain_user_groups: You should fix it, NT doesn't like that
Do I need to create a group on the windows(2000) side? The entries in
the domaingroup.map
2007 Apr 26
0
Pdbedit -L: strange error looking up RID 513 by key RID_00000201
Samba 3.0.24 on Debian Etch 4 - PDC security=user
When I execute "pdbedit -L" then leaves a strange error. I stick underneath a copy here:
Linux:~# pdbedit -L
INFO: Current debug levels:
all: True/5
tdb: False/0
printdrivers: False/0
lanman: False/0
smb: False/0
rpc_parse: False/0
rpc_srv: False/0
rpc_cli: False/0
passdb: False/0
sam: False/0
auth: False/0
2003 Jul 31
1
Réf. : groupmember list fails with 3.0.0b3 and LDAP
Hi,
Same problem for me, any clue ?
Gana?l.
owen@isrl.uiuc.edu@lists.samba.org on 07/31/2003 01:42:21 AM
Envoy? par : samba-bounces+ganael.laplanche=edf.fr@lists.samba.org
Pour : samba@lists.samba.org
cc :
Objet : [Samba] groupmember list fails with 3.0.0b3 and LDAP
Hi all,
I've been working on a PDC with group mapping with Samba-3.0.0Beta3
with OpenLDAP-2.1.22. Things
2011 Jun 13
1
Lost performance between Samba 3.0.24 and 3.5.8 with high number of concurrent connections
Hi,
We are trying upgrade our roaming profile sever from Debian Etch to Debian
Squeeze. That's means a upgrade from Samba 3.0.24 to Samba 3.5.8. Our
production environment has above 600 concurrent users without problem. After
upgrade to Samba 3.5.8, server can't manage above 200 users. With
'smbclient', the output is:
Error [user] session setup failed: Call timed out: server did
2011 Mar 21
0
Debian users: which samba bugs fixed in 3.5.8 would you like to see fixed in Debian 6.0 "squeeze"?
Hello,
I'm one of the maintainers of samba packages in Debian.
As of now, Debian squeeze provides samba 3.5.6. As per Debian policy
wrt updates in the "stable" releases of the distribution, providing
3.5.8 (and later) is not an option we'll be considering for future
updates. The policy of our release team is indeed more conservative
than the policy of the Samba Team (no offense
2011 May 30
0
Quota Problem with Samba 3.5.8
Hello,
for some strange reason I can not get quota to work with Samba 3.5.8.
The quoata system itself works fine (using "repquota /mountpoint") and via
NFS, but Samba does not report the correct free space (df command in
smbclient).
Instead the real free space on the disk volume is shown to smb clients
(tested from Windows and smbclient).
The quotasystem in use is the new quota