I've parsed a whole year's worth of postings in this group and didn't find any previous reference to the problem. Since I've updated McAfee to version 8 many applications which open file chooser dialogs report "Access denied" when trying to open a Samba share, including the users's own home directory. At installation one can choose to exclude some apps from the shield, e.g. Lotus Notes, but if I have to exclude MS Internet Explorer, which is the app for many web apps, then the very purpose of a virus shield is defeated. Is there some better way to configure such problems out?
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Try excluding the samba shares from McAfee, and run clam antivirus with the samba-vscan vfs module local to the samba boxen. Clam AV is up to par with McAfee as far as novel vx/malware sigs. You can find that here: http://www.clamav.net http://www.openantivirus.org/projects.php Hope this helps. Dragan Krnic wrote:> I've parsed a whole year's worth of postings in this group > and didn't find any previous reference to the problem. > > Since I've updated McAfee to version 8 many applications > which open file chooser dialogs report "Access denied" > when trying to open a Samba share, including the users's > own home directory. > > At installation one can choose to exclude some apps from > the shield, e.g. Lotus Notes, but if I have to exclude > MS Internet Explorer, which is the app for many web apps, > then the very purpose of a virus shield is defeated. > > Is there some better way to configure such problems out?-----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.1 (GNU/Linux) Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org iD8DBQFCxKDkKgGND9z3oKwRAo3ZAJ4t+k/H8AgUQqj13TgchtXp9LEipQCfRBI3 pA2uqX/wy0J++GBhS1GydZU=dBOj -----END PGP SIGNATURE-----
wel , dont have this problem, I use Mcafee 8.00 enterprise (patchkit 10), before without patch kit als on samba 3.0.14a and i DONT have this problems at all. and i have a very tight config for mcafee. check my config i posted yesterday, im sure its a problem in your samba config. Louis>-----Oorspronkelijk bericht----- >Van: samba-bounces+louis=van-belle.nl@lists.samba.org >[mailto:samba-bounces+louis=van-belle.nl@lists.samba.org] >Namens Dragan Krnic >Verzonden: vrijdag 1 juli 2005 0:11 >Aan: samba@lists.samba.org >Onderwerp: [Samba] McAfee 8 incompatible with Samba > >I've parsed a whole year's worth of postings in this group >and didn't find any previous reference to the problem. > >Since I've updated McAfee to version 8 many applications >which open file chooser dialogs report "Access denied" >when trying to open a Samba share, including the users's >own home directory. > >At installation one can choose to exclude some apps from >the shield, e.g. Lotus Notes, but if I have to exclude >MS Internet Explorer, which is the app for many web apps, >then the very purpose of a virus shield is defeated. > >Is there some better way to configure such problems out? >-- >To unsubscribe from this list go to the following URL and read the >instructions: https://lists.samba.org/mailman/listinfo/samba >
Dragan Krnic wrote:> I've parsed a whole year's worth of postings in this group > and didn't find any previous reference to the problem. > > Since I've updated McAfee to version 8 many applications > which open file chooser dialogs report "Access denied" > when trying to open a Samba share, including the users's > own home directory.We use McAffe8 against samba shares for ages, and have never seen this. -- Rex
>> I've parsed a whole year's worth of postings in this group >> and didn't find any previous reference to the problem. >> >> Since I've updated McAfee to version 8 many applications >> which open file chooser dialogs report "Access denied" >> when trying to open a Samba share, including the users's >> own home directory. > > We use McAffe8 against samba shares for ages, and have never seen this.Yes, likewise I've been using a previous version of McAfee and never seen this. But, where have you looked? If you use Windows Explorer all's fine. But if you happen to have Lotus Notes and try to save an attachment or attach a file and you open the file chooser dialog, it brings the error immediately. At install time there is an option to leave Lotus Notes alone. In that case there is no problem. But then there is a webapp we use, which lets you download the on-screen reports in different formats, e.g. PDF or Excel, whatever, and when you try to open the samba share, bang, access denied, and there's nothing in the logs to suggest that anything went wrong. Should I tell McAfee it should leave Internet Explorer alone because it's safe`?
> -----Original Message----- > From: Dragan Krnic [mailto:dkrnic@lycos.com]> Since I've updated McAfee to version 8 many applications > which open file chooser dialogs report "Access denied" > when trying to open a Samba share, including the users's > own home directory.Is this the version of McAfee that includes a Windows firewall program? I find it's necessary to tell it to trust the local subnet (or, at very least, the PDC and any fileservers) to get anything to work right in a domain setting. It took me forever to figure this out the first time I tried to join a McAfee-infested machine to our domain.
>> Since I've updated McAfee to version 8 many applications >> which open file chooser dialogs report "Access denied" >> when trying to open a Samba share, including the users's >> own home directory. > > Is this the version of McAfee that includes a Windows firewall program? I > find it's necessary to tell it to trust the local subnet (or, at very least, > the PDC and any fileservers) to get anything to work right in a domain > setting. It took me forever to figure this out the first time I tried to > join a McAfee-infested machine to our domain.A very good hint, David. Stil, I don't install the firewall explicitly because all of the boxes are behind a firewall anyway. This "Access denied" error comes up even if all of the components of McAfee are disabled. Only a deinstall helps. But perhaps I should go with the flow and let the firewall install with the rest and then configure it as you suggested. I'll keep you posted.