Displaying 20 results from an estimated 246 matches for "040admins".
2015 Jun 17
3
samba tool and sysvol/gpo checks error/bugged? ( but it all works ok)
...difference : O:DAG:DAD:PAI?? <> ?O:DAG:DAD:P
?
the strange thing.? it complains about? something.else.tld\Policies\{EAF212FE-4718-4693-BD18-6B4FC8A0513A}
?
checked the rights.
getfacl \{EAF212FE-4718-4693-BD18-6B4FC8A0513A\}/
?
# file: {EAF212FE-4718-4693-BD18-6B4FC8A0513A}/
# owner: domain\040admins
# group: domain\040admins
user::rwx
user:3000002:rwx
user:3000003:r-x
user:enterprise\040admins:rwx
user:3000010:r-x
group::rwx
group:3000002:rwx
group:3000003:r-x
group:enterprise\040admins:rwx
group:domain\040admins:rwx
group:3000010:r-x
mask::rwx
other::---
default:user::rwx
default:user:3000002...
2009 Jul 02
2
Ubuntu Jaunty samba 3.3.2 print$ no write rights even though I do;-)
...eBackupPrivilege
SeRestorePrivilege
SeRemoteShutdownPrivilege
SePrintOperatorPrivilege
SeAddUsersPrivilege
SeDiskOperatorPrivilege
Here is the rights on the /var/lib/samba/printers directory
root@server01:/var/lib/samba# getfacl printers -R
# file: printers
# owner: root
# group: Domain\040Admins
user::rwx
group::r-x
group:Domain\040Admins:rwx
mask::rwx
other::r-x
default:user::rwx
default:group::r-x
default:group:Domain\040Admins:rwx
default:mask::rwx
default:other::r-x
# file: printers/W32X86
# owner: root
# group: Domain\040Admins
user::rwx
group::r-x
group:Domain\040Adm...
2015 Jun 17
0
samba tool and sysvol/gpo checks error/bugged? ( but it all works ok)
...range thing. it complains about
>something.else.tld\Policies\{EAF212FE-4718-4693-BD18-6B4FC8A0513A}
>>
>> checked the rights.
>> getfacl \{EAF212FE-4718-4693-BD18-6B4FC8A0513A\}/
>>
>> # file: {EAF212FE-4718-4693-BD18-6B4FC8A0513A}/
>> # owner: domain\040admins
>> # group: domain\040admins
>> user::rwx
>> user:3000002:rwx
>> user:3000003:r-x
>> user:enterprise\040admins:rwx
>> user:3000010:r-x
>> group::rwx
>> group:3000002:rwx
>> group:3000003:r-x
>> group:enterprise\040admins:rwx
>> group...
2024 Jan 30
2
Behavior of acl_xattr:ignore system acls = yes on a share
...for different
groups to different sub folders. So with acl_xattr:ignore system acls =
yes I create the sub folder Testfolder, set testgroup as owner, and
disabling inheritance. When checking the permissions on the folder with
getfacl I get:
# file: Testfolder
# owner: testgroup
# group: domain\040admins
user::rwx
user:root:rwx
user:domain\040admins:rwx
user:testgroup:r-x
group::r-x
group:NT\040Authority\\system:rwx
group:domain\040admins:rwx
group:testgroup:r-x
mask::rwx
other::---
default:user::rwx
default:user:root:rwx
default:user:domain\040admins:rwx
default:user:testgroup:r-x
default:group::r...
2024 Jan 31
1
Behavior of acl_xattr:ignore system acls = yes on a share
...ent sub folders. So with acl_xattr:ignore system acls
> = yes I create the sub folder Testfolder, set testgroup as owner, and
> disabling inheritance. When checking the permissions on the folder
> with getfacl I get:
>
> # file: Testfolder
> # owner: testgroup
> # group: domain\040admins
> user::rwx
> user:root:rwx
> user:domain\040admins:rwx
> user:testgroup:r-x
> group::r-x
> group:NT\040Authority\\system:rwx
> group:domain\040admins:rwx
> group:testgroup:r-x
> mask::rwx
> other::---
> default:user::rwx
> default:user:root:rwx
> default:user...
2019 Jul 03
4
cannot set filesystem permissions on shares
...nual.
> Good point, but you do not use one a Samba AD DC, for the reason given
> above ;-)
> Now after all changes Rowland suggested.
>
> Run this : getfacl /home/users
getfacl: Removing leading '/' from absolute path names
# file: home/users
# owner: root
# group: A\\domain\040admins
user::rwx
user:root:rwx
user:10512:rwx
group::rwx
group:A\\domain\040admins:rwx
mask::rwx
other::---
default:user::rwx
default:user:root:rwx
default:group::rwx
default:group:A\\domain\040admins:rwx
default:mask::rwx
default:other::---
>
> There are 5 things you need to think in.
> 1) The...
2016 Dec 06
2
?==?utf-8?q? unable to upload printer driver
...r:/bin/bash
# wbinfo --group-info=Domain\ admins
domain admins:x:512:
# wbinfo --group-info=Domain\ users
domain users:x:513:
# getfacl /srv/samba/Printer_drivers
getfacl: Removing leading '/' from absolute path names
# file: srv/samba/Printer_drivers
# owner: administrator
# group: domain\040admins
user::rwx
user:administrator:rwx
group::---
group:domain\040admins:---
group:300004:r-x
group:300005:rwx
mask::rwx
other::---
default:user::rwx
default:user:administrator:rwx
default:group::rwx
default:group:domain\040admins:rwx
default:group:300004:r-x
default:group:300005:rwx
default:mask::rwx
de...
2013 Oct 09
2
GPO Permissions _AGAIN_
...se the machine is unavailable or access has been denied.'
when accessing some 'gpt.ini' files.
For reference here is the getfacl output for the GPT.INI file in
question from the two servers:
TAINAN:
getfacl GPT.INI
# file: GPT.INI
# owner: SMC\134administrator
# group: SMC\134Domain\040Admins
user::rwx
user:SMC\134administrator:rwx
group::rwx
group:SMC\134Domain\040Admins:rwx
group:3000002:rwx
group:3000003:r-x
group:SMC\134Enterprise\040Admins:rwx
group:3000011:r-x
mask::rwx
other::---
AD-01:
getfacl GPT.INI
# file: GPT.INI
# owner: SMC\134administrator
# group: SMC\134Domain\040Admin...
2015 Nov 24
5
Permission Denied
...s I get "Permission Denied"
In Windows I am logged in as "administrator" who is a member of "Domain
Admins"
user at jupiter:~$ getfacl /srv/samba/home
getfacl: Removing leading '/' from absolute path names
# file: srv/samba/home
# owner: root
# group: domain\040admins
user::rwx
user:root:rwx
group::r-x
group:domain\040admins:r-x
mask::rwx
other::r-x
default:user::rwx
default:group::r-x
default:group:domain\040admins:rwx
default:mask::rwx
default:other::r-x
Domain Admins does have the correct privileges:
user at jupiter:~$ net rpc rights list accounts -U'A...
2016 Jul 09
4
Home Folder
...es
But even though there reported a process for User X does not access the
home of Y User, this is happening
root at fileserver:/srv/samba# getfacl home/
# file: home/
# owner: root
# group: root
user::rwx
user:root:rwx
user:administrator:rwx
group::r-x
group:root:r-x
group:5007:r-x
group:domain\040admins:rwx
group:5024:rwx
mask::rwx
other::---
default:user::rwx
default:user:root:rwx
default:user:administrator:rwx
default:group::r-x
default:group:root:r-x
default:group:domain\040admins:rwx
default:group:5024:rwx
default:mask::rwx
default:other::---
------------------
root at fileserver:/srv/samba/...
2017 Apr 14
2
Access denied to change share security staff
...Secutiry tab.
> In Share permissions tab yes.
>
> Now I get this:
>
>
> [root at gtmpve nagios]# getfacl /test/compartir/
> getfacl: Eliminando '/' inicial en nombres de ruta absolutos
> # file: test/compartir/
> # owner: root
> # group: ATGTM00\134domain\040admins
> user::rwx
> group::r-x
> other::r-x
>
> [root at gtmpve nagios]# ls -lda /test/compartir/
> drwxr-xr-x. 2 root ATGTM00\domain admins 6 abr 13
> 08:29 /test/compartir/
>
> The group ATGTM00\134domain\040admins have not permissions to write
> in this directory. Is t...
2017 Jun 06
2
unable to upload printer driver
.../lists.samba.org/archive/samba/2016-November/204773.html
did the chmod 2775
administrator is part of the PrintOperatorGroup
net rpc rights list privileges SePrintOperatorPrivilege -U "H955\administrator"
getfacl printerdrivers
# file: printerdrivers
# owner: root
# group: H955\134domain\040admins
# flags: -s-
user::rwx
user:root:rwx
user:3000003:r-x
user:H955\134domain\040admins:rwx
group::rwx
group:3000003:r-x
group:H955\134domain\040admins:rwx
mask::rwx
other::---
default:user::rwx
default:user:root:rwx
default:user:3000003:r-x
default:user:H955\134domain\040admins:rwx
default:group::---...
2024 Dec 18
1
shadow_copy2
...8. Dez 10:29
/glusterfs/admin-share/daten1/
root at cluster01:~# getfacl /glusterfs/admin-share/daten1/
getfacl: Entferne f?hrende '/' von absoluten Pfadnamen
# file: glusterfs/admin-share/daten1/
# owner: administrator
# group: domain\040users
user::rwx
user:administrator:rwx
user:domain\040admins:rwx
user:domain\040users:rwx
group::rwx
group:domain\040admins:rwx
group:domain\040users:rwx
mask::rwx
other::---
default:user::rwx
default:user:administrator:rwx
default:user:domain\040admins:rwx
default:user:domain\040users:rwx
default:group::---
default:group:domain\040admins:rwx
default:group:d...
2015 Apr 30
1
FW: [Bug 11241] different ids even when idmap.ldb copied. not abug..
...:3000008:administrator
>
> wbinfo --user-info "DOMAIN\domain admins"
> domain admins:*:3000008:3000008::/home/BAZRTD/domain admins:/bin/false
>
>
> getfacl \{31B2F340-016D-11D2-945F-00C04FB984F9\}/
> # file: {31B2F340-016D-11D2-945F-00C04FB984F9}/
> # owner: domain\040admins
> # group: domain\040admins
> user::rwx
> group::rwx
> group:3000002:rwx
> group:3000003:r-x
> group:enterprise\040admins:rwx
> group:domain\040admins:rwx
> group:3000010:r-x
> mask::rwx
> other::---
> default:user::rwx
> default:user:domain\040admins:rwx
> de...
2024 Dec 18
1
shadow_copy2
Hi Stefan
On 12/18/24 5:40 PM, Stefan Kania via samba wrote:
> skania at cluster01:~$ ls -ld /glusterfs/admin-share/daten1/.snaps
> drwxr-xr-x 2 root root 4096? 1. Jan 1970 /glusterfs/admin-share/
> daten1/.snaps
what are the permissions of *each* path component
# ls -ld /
# ls -ld /glusterfs
# ls -ld /glusterfs/admin-share/
# ls -ld /glusterfs/admin-share/daten1/
--
SerNet Samba
2018 Feb 20
2
using AD groups in "username map"
...' should be able to write
to the share. NOTE: I use Unix Admins instead of Domain Admins
Well they couldn't ;-)
I traced this to:
getfacl /home/testdata
Which produced this:
getfacl: Removing leading '/' from absolute path names
# file: home/testdata
# owner: root
# group: unix\040admins
user::rwx
user:root:rwx
user:rowland:r-x
group::---
group:root:---
group:2004:r-x
group:2005:rwx
group:unix\040admins:---
........
According to getfacl 'unix admins' has NO permissions
To fix this, I ran:
setfacl -m g:'unix admins':rwx /home/testdata
Refreshed the computer in wi...
2017 Jun 06
2
unable to upload printer driver
...2775
>> administrator is part of the PrintOperatorGroup
>> net rpc rights list privileges SePrintOperatorPrivilege -U
>> "H955\administrator"
>>
>> getfacl printerdrivers
>> # file: printerdrivers
>> # owner: root
>> # group: H955\134domain\040admins
>> # flags: -s-
>> user::rwx
>> user:root:rwx
>> user:3000003:r-x
>> user:H955\134domain\040admins:rwx
>> group::rwx
>> group:3000003:r-x
>> group:H955\134domain\040admins:rwx
>> mask::rwx
>> other::---
>> default:user::rwx
>>...
2024 Dec 20
1
Access Denied to share
...total 60
drwxrwx---+ 4 yearbook domain admins 4096 Dec 10 10:54 .
drwxr-xr-x 14 root root 4096 Sep 9 13:00 ..
# getfacl /usr/local/share/Yearbook/
getfacl: Removing leading '/' from absolute path names
# file: usr/local/share/Yearbook/
# owner: yearbook
# group: domain\040admins
user::rwx
user:domain\040admins:rwx
user:yearbookstudents:rwx
group::rwx
group:domain\040admins:rwx
group:yearbook:rwx
group:yearbookstudents:rwx
mask::rwx
other::---
default:user::rwx
default:user:domain\040admins:rwx
default:user:yearbook:rwx
default:user:yearbookstudents:rwx
default:group::rwx
d...
2023 Mar 28
1
windows acls
...;> Rowland
>>
> root at filesvr:~# ls -l /
> drwxr-xr-x? 16 root root?????? 4096 Dec 20 13:01 data
>
> root at filesvr:~# getfacl /data/test
> getfacl: Removing leading '/' from absolute path names
> # file: data/test
> # owner: root
> # group: SDCP\\domain\040admins
> user::rwx
> user:root:rwx
> user:SDCP\\domain\040admins:rwx
> user:SDCP\\domain\040users:rwx
> group::rwx
> group:SDCP\\domain\040admins:rwx
> group:SDCP\\domain\040users:rwx
> mask::rwx
> other::---
> default:user::rwx
> default:user:root:rwx
> default:user:SD...
2017 Apr 23
2
Setting up a Share Using Windows ACLs
...aphrodite:~# chown root:Domain\ Admins /srv/samba/data/Testing/
root at aphrodite:~# chmod 0770 /srv/samba/data/Testing/
root at aphrodite:~# getfacl /srv/samba/data/Testing
getfacl: Removing leading '/' from absolute path names
# file: srv/samba/data/Testing
# owner: root
# group: domain\040admins
user::rwx
group::rwx
other::---
After this I was able to access the security tab and add "Domain Admins"
as per the guide without any errors however after that I am locked out
again. Looking at the unix permissions I see they have now changed to
the following and now I can't remov...