I'm creating a deploy plan, for strict client policies (to comply to ISO standards and security) For mixed win 7 enterprise and win 10 enterprise on a Samba Active Directory. On the lookout if Samba would be any different towards client policies. I did some googling, and got pointed to old samba articles of 2007: https://wiki.samba.org/index.php/Implementing_System_Policies_with_Samba Saying that samba allows only for poledit.exe (not the mmc variants?) Is this still the case ? And why?, as there is a policy editor mmc on a win 10 pro client. And even non win 10 pro clients have ways to get it. -----Original message-----> From: samba-request at lists.samba.org <samba-request at lists.samba.org> > Sent: Tuesday 20th October 2020 14:00 > To: samba at lists.samba.org > Subject: samba Digest, Vol 214, Issue 19 > > Send samba mailing list submissions to > samba at lists.samba.org > > To subscribe or unsubscribe via the World Wide Web, visit > https://lists.samba.org/mailman/listinfo/samba > or, via email, send a message with subject or body 'help' to > samba-request at lists.samba.org > > You can reach the person managing the list at > samba-owner at lists.samba.org > > When replying, please edit your Subject line so it is more specific > than "Re: Contents of samba digest..." > Today's Topics: > > 1. Re: Samba AD with multiple DC and multiple NICs (Rowland penny) > 2. DNS Records (Nico B) > 3. Re: DNS Records (Rowland penny) > 4. Re: DNS Records (Jon Gerdes) > 5. Re: Samba AD with multiple DC and multiple NICs (Stefano Vargiu) > 6. Re: Samba AD with multiple DC and multiple NICs (Stefano Vargiu) > 7. Replication issues / local DRS authentication failure > (Derek Lambert) > 8. Re: Replication issues / local DRS authentication failure > (Rowland penny) > 9. Re: Replication issues / local DRS authentication failure > (Rowland penny) > _______________________________________________ > samba mailing list > samba at lists.samba.org > https://lists.samba.org/mailman/listinfo/samba >
L. van Belle
2020-Oct-21 08:41 UTC
[Samba] Policies for AD clients (still poledit only ?).
Just setup you GPO as you normaly would do on any Active Directory server. This is what i recently implemented. https://docs.microsoft.com/en-us/windows-server/storage/folder-redirection/f older-redirection-rup-overview Poledit? Wow you found an old link in the wiki.. Really old. But your deploying an strict client policies (to comply to ISO standards and security) And your using win 7 enterprise ? Thats a bit strange in my opinion. You never will hit the standards, unless you bought extended support on win7Ent. ;-) Greetz, Louis> -----Oorspronkelijk bericht----- > Van: samba [mailto:samba-bounces at lists.samba.org] Namens > Peter Boos via samba > Verzonden: woensdag 21 oktober 2020 10:31 > Aan: samba at lists.samba.org > Onderwerp: [Samba] Policies for AD clients (still poledit only ?). > > I'm creating a deploy plan, for strict client policies (to > comply to ISO standards and security) > For mixed win 7 enterprise and win 10 enterprise on a Samba > Active Directory. > > On the lookout if Samba would be any different towards client > policies. > I did some googling, and got pointed to old samba articles of 2007: > > > https://wiki.samba.org/index.php/Implementing_System_Policies_ > with_Samba > > Saying that samba allows only for poledit.exe (not the mmc variants?) > Is this still the case ? > And why?, as there is a policy editor mmc on a win 10 pro client. > And even non win 10 pro clients have ways to get it. > > > > > > > > -----Original message----- > > From: samba-request at lists.samba.org <samba-request at lists.samba.org> > > Sent: Tuesday 20th October 2020 14:00 > > To: samba at lists.samba.org > > Subject: samba Digest, Vol 214, Issue 19 > > > > Send samba mailing list submissions to > > samba at lists.samba.org > > > > To subscribe or unsubscribe via the World Wide Web, visit > > https://lists.samba.org/mailman/listinfo/samba > > or, via email, send a message with subject or body 'help' to > > samba-request at lists.samba.org > > > > You can reach the person managing the list at > > samba-owner at lists.samba.org > > > > When replying, please edit your Subject line so it is more specific > > than "Re: Contents of samba digest..." > > Today's Topics: > > > > 1. Re: Samba AD with multiple DC and multiple NICs > (Rowland penny) > > 2. DNS Records (Nico B) > > 3. Re: DNS Records (Rowland penny) > > 4. Re: DNS Records (Jon Gerdes) > > 5. Re: Samba AD with multiple DC and multiple NICs > (Stefano Vargiu) > > 6. Re: Samba AD with multiple DC and multiple NICs > (Stefano Vargiu) > > 7. Replication issues / local DRS authentication failure > > (Derek Lambert) > > 8. Re: Replication issues / local DRS authentication failure > > (Rowland penny) > > 9. Re: Replication issues / local DRS authentication failure > > (Rowland penny) > > _______________________________________________ > > samba mailing list > > samba at lists.samba.org > > https://lists.samba.org/mailman/listinfo/samba > > > > -- > To unsubscribe from this list go to the following URL and read the > instructions: https://lists.samba.org/mailman/options/samba > >
Viktor Trojanovic
2020-Oct-21 09:14 UTC
[Samba] Policies for AD clients (still poledit only ?).
In the article you provided you'll find the following paragraph: ::: Currently Samba, the Free Software SMB Server, does not implement Active Directory functionality when using it as a Primary Domain Controller. If you deploy any Samba PDCs you will want to master System Policies using the SPE. So this article will cover the basics of Microsoft's older System Policy Editor, how to obtain it, use it and implement it's policies. ::: So this is specifically not about an AD setup and therefore not relevant for you IMHO. Viktor On October 21, 2020 10:32:32 Peter Boos via samba <samba at lists.samba.org> wrote:> I'm creating a deploy plan, for strict client policies (to comply to ISO > standards and security) > For mixed win 7 enterprise and win 10 enterprise on a Samba Active Directory. > > On the lookout if Samba would be any different towards client policies. > I did some googling, and got pointed to old samba articles of 2007: > > https://wiki.samba.org/index.php/Implementing_System_Policies_with_Samba > > Saying that samba allows only for poledit.exe (not the mmc variants?) > Is this still the case ? > And why?, as there is a policy editor mmc on a win 10 pro client. > And even non win 10 pro clients have ways to get it. > > > > > > > > -----Original message----- >> From: samba-request at lists.samba.org <samba-request at lists.samba.org> >> Sent: Tuesday 20th October 2020 14:00 >> To: samba at lists.samba.org >> Subject: samba Digest, Vol 214, Issue 19 >> >> Send samba mailing list submissions to >> samba at lists.samba.org >> >> To subscribe or unsubscribe via the World Wide Web, visit >> https://lists.samba.org/mailman/listinfo/samba >> or, via email, send a message with subject or body 'help' to >> samba-request at lists.samba.org >> >> You can reach the person managing the list at >> samba-owner at lists.samba.org >> >> When replying, please edit your Subject line so it is more specific >> than "Re: Contents of samba digest..." >> Today's Topics: >> >> 1. Re: Samba AD with multiple DC and multiple NICs (Rowland penny) >> 2. DNS Records (Nico B) >> 3. Re: DNS Records (Rowland penny) >> 4. Re: DNS Records (Jon Gerdes) >> 5. Re: Samba AD with multiple DC and multiple NICs (Stefano Vargiu) >> 6. Re: Samba AD with multiple DC and multiple NICs (Stefano Vargiu) >> 7. Replication issues / local DRS authentication failure >> (Derek Lambert) >> 8. Re: Replication issues / local DRS authentication failure >> (Rowland penny) >> 9. Re: Replication issues / local DRS authentication failure >> (Rowland penny) >> _______________________________________________ >> samba mailing list >> samba at lists.samba.org >> https://lists.samba.org/mailman/listinfo/samba > > -- > To unsubscribe from this list go to the following URL and read the > instructions: https://lists.samba.org/mailman/options/samba