Displaying 20 results from an estimated 37 matches for "040authority".
2020 May 19
2
sysvolcheck and sysvolreset errors
...p Policy Management tool from Windows (which suggested that the acls were not correct and
offered to correct them by clicking OK), getfacl /var/lib/samba/sysvol produces this:
# file: var/lib/samba/sysvol
# owner: root
# group: root
user::rwx
user:root:rwx
user:BUILTIN\\administrators:rwx
user:NT\040AUTHORITY\\authenticated\040users:r-x
user:NT\040AUTHORITY\\system:rwx
user:BUILTIN\\server\040operators:r-x
group::rwx
group:BUILTIN\\administrators:rwx
group:NT\040AUTHORITY\\authenticated\040users:r-x
group:NT\040AUTHORITY\\system:rwx
group:BUILTIN\\server\040operators:r-x
mask::rwx
other::---
default:use...
2020 Oct 26
7
GPO fail and sysvol perm errors
...a/sysvol/$(hostname -d)/Policies/
getfacl: Removing leading '/' from absolute path names
# file: var/lib/samba/sysvol/my.domain.tld/Policies/
# owner: root
# group: BUILTIN\\administrators
user::rwx
user:root:rwx
user:BUILTIN\\administrators:rwx
user:BUILTIN\\server\040operators:r-x
user:NT\040AUTHORITY\\system:rwx
user:NT\040AUTHORITY\\authenticated\040users:r-x
user:ADDOM\\group\040policy\040creator\040owners:rwx
group::rwx
group:BUILTIN\\administrators:rwx
group:BUILTIN\\server\040operators:r-x
group:NT\040AUTHORITY\\system:rwx
group:NT\040AUTHORITY\\authenticated\040users:r-x
group:ADDOM\\grou...
2020 Oct 27
0
GPO fail and sysvol perm errors
...olute path names
> > # file: var/lib/samba/sysvol/my.domain.tld/Policies/
> > # owner: root
> > # group: BUILTIN\\administrators
> > user::rwx
> > user:root:rwx
> > user:BUILTIN\\administrators:rwx
> > user:BUILTIN\\server\040operators:r-x
> > user:NT\040AUTHORITY\\system:rwx
> > user:NT\040AUTHORITY\\authenticated\040users:r-x
> > user:ADDOM\\group\040policy\040creator\040owners:rwx
> > group::rwx
> > group:BUILTIN\\administrators:rwx
> > group:BUILTIN\\server\040operators:r-x
> > group:NT\040AUTHORITY\\system:rwx
> &g...
2020 May 19
0
sysvolcheck and sysvolreset errors
...hich suggested that the acls were not correct and
> offered to correct them by clicking OK), getfacl /var/lib/samba/sysvol produces this:
> # file: var/lib/samba/sysvol
> # owner: root
> # group: root
> user::rwx
> user:root:rwx
> user:BUILTIN\\administrators:rwx
> user:NT\040AUTHORITY\\authenticated\040users:r-x
> user:NT\040AUTHORITY\\system:rwx
> user:BUILTIN\\server\040operators:r-x
> group::rwx
> group:BUILTIN\\administrators:rwx
> group:NT\040AUTHORITY\\authenticated\040users:r-x
> group:NT\040AUTHORITY\\system:rwx
> group:BUILTIN\\server\040operators:r...
2018 Jun 14
4
Admin UID changed with upgrade to 4.8.2
On Thu, 14 Jun 2018 09:39:46 +0200
"L.P.H. van Belle via samba" <samba at lists.samba.org> wrote:
> And i did read the Comment to for Rowland below,
> On debian you need :
> libnss-winbind libpam-winbind to be installed.
> I think you miss one of these.
They are the glue that connects Samba to nsswitch and allows 'getent
passwd username' to work. Without
2018 Jun 23
0
Fixing sysvol permissions (SOLVED)
...f?
Here is the current facl list for sysvol:
# file: sysvol
# owner: root
# group: BUILTIN\134administrators
user::rwx
user:root:rwx
user:3000000:rwx
user:3000001:r-x
user:3000002:rwx
user:3000003:r-x
group::rwx
group:BUILTIN\134administrators:rwx
group:BUILTIN\134server\040operators:r-x
group:NT\040AUTHORITY\134system:rwx
group:NT\040AUTHORITY\134authenticated\040users:r-x
mask::rwx
other::---
default:user::rwx
default:user:root:rwx
default:user:3000000:rwx
default:user:3000001:r-x
default:user:3000002:rwx
default:user:3000003:r-x
default:group::---
default:group:BUILTIN\134administrators:rwx
default:g...
2020 May 19
2
sysvolcheck and sysvolreset errors
I have a samba DC based on Debian Buster running samba 4.12.2 from Louis' repo. A second DC on Raspbian buster is running samba
4.12.0. I have sysvol replication working using rsync/unison as per the WiKi. I wasn't having any issues until I tried to edit
a GPO and found that all the acl settings had disappeared. This may have happened when I upgraded the DCs from 4.11.x to 4.12.x
2018 Jun 15
0
Admin UID changed with upgrade to 4.8.2
...#39;/' from absolute path names
> # file: var/lib/samba/sysvol
> # owner: root
> # group: BUILTIN\134administrators
> user::rwx
> user:root:rwx
> user:3000000:rwx
> user:3000002:rwx
> user:3000003:rwx
> group::rwx
> group:BUILTIN\134administrators:rwx
> group:NT\040AUTHORITY\134system:rwx
> group:NT\040AUTHORITY\134authenticated\040users:rwx
> mask::rwx
> other::r--
> default:user::rwx
> default:user:root:rwx
> default:user:3000000:rwx
> default:user:3000002:rwx
> default:user:3000003:rwx
> default:group::r-x
> default:group:BUILTIN\134adm...
2018 Jun 14
0
Admin UID changed with upgrade to 4.8.2
...tfacl /var/lib/samba/sysvol
getfacl: Removing leading '/' from absolute path names
# file: var/lib/samba/sysvol
# owner: root
# group: BUILTIN\134administrators
user::rwx
user:root:rwx
user:3000000:rwx
user:3000002:rwx
user:3000003:rwx
group::rwx
group:BUILTIN\134administrators:rwx
group:NT\040AUTHORITY\134system:rwx
group:NT\040AUTHORITY\134authenticated\040users:rwx
mask::rwx
other::r--
default:user::rwx
default:user:root:rwx
default:user:3000000:rwx
default:user:3000002:rwx
default:user:3000003:rwx
default:group::r-x
default:group:BUILTIN\134administrators:rwx
default:group:NT\040AUTHORITY\134s...
2019 Jul 03
2
cannot set filesystem permissions on shares
..., something like this. :
getfacl /home/users/
getfacl: Removing leading '/' from absolute path names
# file: home/samba/
# owner: root
# group: BUILTIN\134administrators
user::rwx
user:root:rwx
group::rwx
group:BUILTIN\134administrators:rwx
group:BUILTIN\134server\040operators:r-x
group:NT\040AUTHORITY\134system:rwx
group:NT\040AUTHORITY\134authenticated\040users:r-x
mask::rwx
other::r-x
default:user::rwx
default:user:root:rwx
default:group::---
default:group:BUILTIN\134administrators:rwx
default:group:BUILTIN\134server\040operators:r-x
default:group:NT\040AUTHORITY\134system:rwx
default:group:NT...
2024 Jan 30
2
Behavior of acl_xattr:ignore system acls = yes on a share
...e the sub folder Testfolder, set testgroup as owner, and
disabling inheritance. When checking the permissions on the folder with
getfacl I get:
# file: Testfolder
# owner: testgroup
# group: domain\040admins
user::rwx
user:root:rwx
user:domain\040admins:rwx
user:testgroup:r-x
group::r-x
group:NT\040Authority\\system:rwx
group:domain\040admins:rwx
group:testgroup:r-x
mask::rwx
other::---
default:user::rwx
default:user:root:rwx
default:user:domain\040admins:rwx
default:user:testgroup:r-x
default:group::r-x
default:group:NT\040Authority\\system:rwx
default:group:domain\040admins:rwx
default:group:testgrou...
2024 Jan 31
1
Behavior of acl_xattr:ignore system acls = yes on a share
...> disabling inheritance. When checking the permissions on the folder
> with getfacl I get:
>
> # file: Testfolder
> # owner: testgroup
> # group: domain\040admins
> user::rwx
> user:root:rwx
> user:domain\040admins:rwx
> user:testgroup:r-x
> group::r-x
> group:NT\040Authority\\system:rwx
> group:domain\040admins:rwx
> group:testgroup:r-x
> mask::rwx
> other::---
> default:user::rwx
> default:user:root:rwx
> default:user:domain\040admins:rwx
> default:user:testgroup:r-x
> default:group::r-x
> default:group:NT\040Authority\\system:rwx
> de...
2020 Oct 25
3
GPO fail and sysvol perm errors
On 25/10/2020 20:37, Sonic wrote:
> The reset allowed the current GPO to take effect, but right after
> adding a new GPO (just named it, no editing, or linking) the
> sysvolcheck fails:
> # samba-tool ntacl sysvolcheck
> ERROR(<class 'samba.provision.ProvisioningError'>): uncaught exception
> - ProvisioningError: DB ACL on GPO directory
>
2018 Jul 28
2
GPO fail to apply for Computers
...# file:
var/lib/samba/sysvol/my.domain.tld/Policies/{EE5E503C-4CB9-4B95-ABD5-705EFE4E088A}/
# owner: 3000007
# group: MYDOMAIN\134domain\040admins
user::rwx
user:root:rwx
user:3000000:r-x
user:3000001:rwx
user:3000002:rwx
user:3000030:r-x
group::rwx
group:BUILTIN\134server\040operators:r-x
group:NT\040AUTHORITY\134system:rwx
group:BUILTIN\134administrators:rwx
group:NT\040AUTHORITY\134authenticated\040users:r-x
mask::rwx
other::---
default:user::rwx
default:user:root:rwx
default:user:3000000:r-x
default:user:3000001:rwx
default:user:3000002:rwx
default:user:3000030:r-x
default:group::---
default:group:BUI...
2018 Nov 06
3
classicupgrade
...is is what i expected.
getfacl /home/samba/
getfacl: Removing leading '/' from absolute path names
# file: home/samba/
# owner: root
# group: BUILTIN\134administrators
user::rwx
user:root:rwx
group::rwx
group:BUILTIN\134administrators:rwx
group:BUILTIN\134server\040operators:r-x
group:NT\040AUTHORITY\134system:rwx
group:NT\040AUTHORITY\134authenticated\040users:r-x
mask::rwx
other::r-x
default:user::rwx
default:user:root:rwx
default:group::---
default:group:BUILTIN\134administrators:rwx
default:group:BUILTIN\134server\040operators:r-x
default:group:NT\040AUTHORITY\134system:rwx
default:group:NT...
2019 Sep 25
2
Unable to use BUILTIN AD groups on a domain member
...acl = yes
In the meantime I have used Domain Admins. getfacl shows:
getfacl /srv/samba/images
getfacl: Removing leading '/' from absolute path names
# file: srv/samba/images
# owner: root
# group: domain\040admins
user::rwx
user:root:rwx
user:10512:rwx
user:10513:r-x
group::rwx
group:NT\040Authority\\system:rwx
group:domain\040admins:rwx
group:domain\040users:r-x
mask::rwx
other::---
default:user::rwx
default:user:root:rwx
default:user:10513:r-x
default:group::---
default:group:NT\040Authority\\system:rwx
default:group:domain\040admins:---
default:group:domain\040users:r-x
default:mask::rwx
de...
2018 Nov 06
3
classicupgrade
...;> # file: home/samba/
>>> # owner: root
>>> # group: BUILTIN\134administrators
>>> user::rwx
>>> user:root:rwx
>>> group::rwx
>>> group:BUILTIN\134administrators:rwx
>>> group:BUILTIN\134server\040operators:r-x
>>> group:NT\040AUTHORITY\134system:rwx
>>> group:NT\040AUTHORITY\134authenticated\040users:r-x
>>> mask::rwx
>>> other::r-x
>>> default:user::rwx
>>> default:user:root:rwx
>>> default:group::---
>>> default:group:BUILTIN\134administrators:rwx
>>> defau...
2018 Aug 27
0
samba_gpoupdate: TypeError: 'NoneType' object is not iterable
.../locks/sysvol/office.samba4test.net/Policies
# owner: root
# group: BUILTIN\134administrators
user::rwx
user:root:rwx
user:3000000:rwx
user:3000001:r-x
user:3000002:rwx
user:3000003:r-x
user:3000008:rwx
group::rwx
group:BUILTIN\134administrators:rwx
group:BUILTIN\134server\040operators:r-x
group:NT\040AUTHORITY\134system:rwx
group:NT\040AUTHORITY\134authenticated\040users:r-x
group:OFFICE\134group\040policy\040creator\040owners:rwx
mask::rwx
other::---
default:user::rwx
default:user:root:rwx
default:user:3000000:rwx
default:user:3000001:r-x
default:user:3000002:rwx
default:user:3000003:r-x
default:user:30...
2019 Sep 25
1
Unable to use BUILTIN AD groups on a domain member
...t; > getfacl: Removing leading '/' from absolute path names
> > # file: srv/samba/images
> > # owner: root
> > # group: domain\040admins
> > user::rwx
> > user:root:rwx
> > user:10512:rwx
> > user:10513:r-x
> > group::rwx
> > group:NT\040Authority\\system:rwx
> > group:domain\040admins:rwx
> > group:domain\040users:r-x
> > mask::rwx
> > other::---
> > default:user::rwx
> > default:user:root:rwx
> > default:user:10513:r-x
> > default:group::---
> > default:group:NT\040Authority\\system:rwx...
2018 Nov 06
0
classicupgrade
...absolute path names
> > # file: home/samba/
> > # owner: root
> > # group: BUILTIN\134administrators
> > user::rwx
> > user:root:rwx
> > group::rwx
> > group:BUILTIN\134administrators:rwx
> > group:BUILTIN\134server\040operators:r-x
> > group:NT\040AUTHORITY\134system:rwx
> > group:NT\040AUTHORITY\134authenticated\040users:r-x
> > mask::rwx
> > other::r-x
> > default:user::rwx
> > default:user:root:rwx
> > default:group::---
> > default:group:BUILTIN\134administrators:rwx
> > default:group:BUILTIN\134serv...