Displaying 20 results from an estimated 101 matches for "2012_r2".
2019 Jul 29
3
Samba 4.11.0RC1 replication with Windows2012R2 ?
Hello Folks,
There seems to be contradicting sentences in the release notes for
4.11.0RC1:
Default schema updated to 2012_R2
---------------------------------
Default AD schema changed from 2008_R2 to 2012_R2. 2012_R2 functional level
is not yet available. Older schemas can be used by provisioning with the
'--base-schema' argument. Existing installations can be updated with the
samba-tool command "domain...
2024 May 03
1
Clarification on Samba AD functional levels
Hello all,
Does Samba properly support 2012_R2 domains? If so, what is the earliest
version of Samba AD that supports it? I see that the most recent
versions support ad dc functional level = 2012_R2 in smb.conf but I am
unsure if I can safely run 2012_R2 functional level on older versions of
Samba.
A little background:
In my test environ...
2019 Jun 13
2
Raise Domain functional level to 2012_R2
Hi,
I am trying to raise the Domain functional level to 2012_R2 from 2008 R2
using samba-too domain raise --domain-level=DOMAIN_LEVEL command. But I
am receiving the error "ERROR: Domain function level can't be higher
than the lowest function level of a DC!". How do we actually raise the
lowest functional level to change the functional & f...
2017 Feb 04
3
Server 2012 functional level for Samba v4.6?
...ain level show
ldb_wrap open of secrets.ldb
Domain and forest function level for domain 'DC=facility,DC=local'
Forest function level: (Windows) 2008 R2
Domain function level: (Windows) 2008 R2
Lowest function level of a DC: (Windows) 2008 R2
# samba-tool domain level raise --domain-level 2012_R2
ldb_wrap open of secrets.ldb
ERROR: Domain function level can't be higher than the lowest function level
of a DC!
# samba-tool domain level raise --forest-level 2012_R2
ldb_wrap open of secrets.ldb
ERROR: Forest function level can't be higher than the domain function
level(s). Please raise...
2024 Mar 20
3
Raise Domain Level, Forest Level and Schema for Bitlocker integration
...e have running 4.15.13 on Ubuntu 22.04 LTS.
>
> The DC has been around a while and is currently on Schema version 47 and Domain level 2008_R2.
>
> Can I confirm that the procedure to upgrade the three DCs is as follows:-
>
> 1) backup
> 2) upgrade domain and forest to latest 2012_R2
> 3) upgrade the schema to latest 2012_R2
>
> Also, in what order of DCs should I perform these changes?
>
> DC5 (FSMO Role)
> DC6
> DC7
Did anyone have a comment on this please?
--
Paul Littlefield
2019 Jun 13
2
Raise Domain functional level to 2012_R2
...eks before, maybe a entry in the
samba wiki would help ;)
Regards from Germany
Dirk
Am 13.06.19 um 18:55 schrieb Andrew Bartlett via samba:
> On Thu, 2019-06-13 at 20:48 +0530, Anantha Raghava via samba wrote:
>> Hi,
>>
>> I am trying to raise the Domain functional level to 2012_R2 from 2008
>> R2
>> using samba-too domain raise --domain-level=DOMAIN_LEVEL command. But
>> I
>> am receiving the error "ERROR: Domain function level can't be higher
>> than the lowest function level of a DC!". How do we actually raise
>> the
&g...
2018 Apr 12
1
Raising Domain Level
G'day All,
We are trying to raise the level of our test samba4 DCs. Our windows
dude wants the Domain level to be 2012_R2.
I am referencing:
https://wiki.samba.org/index.php/Raising_the_Functional_Levels#Supported_Functional_Levels
We managed to get both domain and forest levels to 2008 R2 - forest was
2003.
However, when we try to raise further, we are getting what seems to be
a chicken and egg issue.
# sam...
2019 Jun 13
0
Raise Domain functional level to 2012_R2
...ld help ;)
>
> Regards from Germany
>
> Dirk
>
>
> Am 13.06.19 um 18:55 schrieb Andrew Bartlett via samba:
>> On Thu, 2019-06-13 at 20:48 +0530, Anantha Raghava via samba wrote:
>>> Hi,
>>>
>>> I am trying to raise the Domain functional level to 2012_R2 from 2008
>>> R2
>>> using samba-too domain raise --domain-level=DOMAIN_LEVEL command. But
>>> I
>>> am receiving the error "ERROR: Domain function level can't be higher
>>> than the lowest function level of a DC!". How do we actually ra...
2024 Jun 04
2
Classicupgrade FL 2012_R2 NTLM/Kerberos logon
...and filer are on FreeBSD and zfs file system, client is
a Windows 10 22H2):
-> I'm able to do this classicupgrade and keep all users able to connect
on computers with their domain account.
-> In a second step I configure samba DC to improve security and by the
way I upgrade our FL to 2012_R2, schema to 69 and ad dc FL to 2016
(commented line below are uncommented at this step):
smb.conf :
[global]
netbios name = <DC NAME>
realm = <realm>
server role = active directory domain controller
workgroup = <workgroup>
idmap_ldb:use rfc2307 = yes
dns forwarder =...
2024 Jun 19
1
Classicupgrade FL 2012_R2 NTLM/Kerberos logon
Mandi! Havany via samba
In chel di` si favelave...
>> It sounds like you are still using the old, deprecated (by Windows)
>> roaming profiles, instead of Folder redirection.
?! Some more clue, Rowland? I use roaming profiles *AND* folder redirection,
usually... ;-)
> So, I think I will use the "classicupgrade" method. I will wait a few
> days to make sure
2024 Jun 05
1
Classicupgrade FL 2012_R2 NTLM/Kerberos logon
Hello Havany,
I am just going to jump into this discussion.
> We try 2 scenarios : - A "Big bang" migration to an new domain made from scratch : but we need to migrate all users, computers, laptops, filers without loosing profiles, files server access... In a short time (1-2 weeks maximum) - A "classicupgrade" migration, but it need several steps to improve security. And at
2024 Jun 07
1
Classicupgrade FL 2012_R2 NTLM/Kerberos logon
Hello,
Le 06/06/2024 ? 15:40, Rowland Penny via samba a ?crit?:
> On Thu, 6 Jun 2024 13:33:04 +0200
> Havany via samba <samba at lists.samba.org> wrote:
>
>
>> - Classisupgrade is destructive for the NT4 Domain, but we can keep
>> data of the old NT4 Domain and we can rollback to this with ours
>> Ansible playbooks. We will loose all change between migration
2017 Feb 05
2
Server 2012 functional level for Samba v4.6?
...day, February 4, 2017 7:57 PM
To: barış tombul <bbtombul at gmail.com>; samba <samba at lists.samba.org>
Subject: Re: [Samba] Server 2012 functional level for Samba v4.6?
Hello,
Am 04.02.2017 um 17:32 schrieb barış tombul via samba:
> # samba-tool domain level raise --domain-level 2012_R2 ldb_wrap open
> of secrets.ldb
> ERROR: Domain function level can't be higher than the lowest function
> level of a DC!
>
> # samba-tool domain level raise --forest-level 2012_R2 ldb_wrap open
> of secrets.ldb
> ERROR: Forest function level can't be higher than the...
2024 Jun 06
1
Classicupgrade FL 2012_R2 NTLM/Kerberos logon
On Thu, 6 Jun 2024 13:33:04 +0200
Havany via samba <samba at lists.samba.org> wrote:
> - Classisupgrade is destructive for the NT4 Domain, but we can keep
> data of the old NT4 Domain and we can rollback to this with ours
> Ansible playbooks. We will loose all change between migration and
> rollback and we will improve a possible long downtime.
>
> - With "Big
2024 Jun 06
2
Classicupgrade FL 2012_R2 NTLM/Kerberos logon
...same
time on the ldap and samba4 (tested too)
> I think a 2008_R2
> domain level should not be much of an issue. From a security aspect you
> can do a few things like only using SMB3 and strong encryption.
Given everything that has been said previously, I will wait before
moving to FL 2012_R2 at least until Samba 4.20 is released on FreeBSD
(currently only 4.19 is available), regardless of the migration method
we choose. I will replay the classicupgrade today after adapting my
Ansible playbooks accordingly.
>
> https://wiki.samba.org/index.php/Hardening_Samba_as_an_AD_DC
>...
2018 May 22
4
Functional Levels
HI!!
I have one question, in samba 4.8.2 , --forest-level and --domain-level
is worked 2012/2012 R2 ?
samba-tool domain level --help
--forest-level=FOREST_LEVEL
The forest function level (2003 | 2008 | 2008_R2 |
2012 | 2012_R2)
--domain-level=DOMAIN_LEVEL
The domain function level (2003 | 2008 | 2008_R2 |
2012 | 2012_R2)
I see in wiki https://wiki.samba.org/index.php/Raising_the_Functional_Levels
but dont understan....
* Functional level is included for use against...
2019 Jul 29
0
Samba 4.11.0RC1 replication with Windows2012R2 ?
On 29/07/2019 15:59, Luc Lalonde via samba wrote:
> Hello Folks,
>
> There seems to be contradicting sentences in the release notes for
> 4.11.0RC1:
>
> Default schema updated to 2012_R2
> ---------------------------------
>
> Default AD schema changed from 2008_R2 to 2012_R2. 2012_R2 functional level
> is not yet available. Older schemas can be used by provisioning with the
> '--base-schema' argument. Existing installations can be updated with the
> sa...
2024 Mar 25
1
SaMBa functional level
Hi,
I would like to connect our AD to the Azure AD. As I see, it needs 2012_R2
functional level. I don't have any Windows AD DC. Is it safe to raise the
functional level to 2012_R2 in production environment? I read that 4.19 has
initial support for 2019 schema, and for the 2016 functional level, but the
2012 support is still not complete.
Thanks,
Tamas Pisch
2018 May 22
1
Functional Levels
...uestion, in samba 4.8.2 , --forest-level and
>> --domain-level is worked 2012/2012 R2 ?
>>
>> samba-tool domain level --help
>>
>>
>> --forest-level=FOREST_LEVEL
>> The forest function level (2003 | 2008 |
>> 2008_R2 | 2012 | 2012_R2)
>> --domain-level=DOMAIN_LEVEL
>> The domain function level (2003 | 2008 |
>> 2008_R2 | 2012 | 2012_R2)
>>
>> I see in wiki
>> https://wiki.samba.org/index.php/Raising_the_Functional_Levels
>>
>> but dont understan....
&...
2024 Jun 20
2
Classicupgrade FL 2012_R2 NTLM/Kerberos logon
On 20.06.2024 9:28, Rowland Penny via samba wrote:
> On Wed, 19 Jun 2024 19:16:51 +0200
> Marco Gaiarin via samba <samba at lists.samba.org> wrote:
>
>> Mandi! Havany via samba
>> In chel di` si favelave...
>>
>>>> It sounds like you are still using the old, deprecated (by Windows)
>>>> roaming profiles, instead of Folder redirection.