Displaying 20 results from an estimated 27 matches for "22h2".
Did you mean:
222
2025 Feb 14
2
Windows 11 24H2, Samba 4.21.3 AD DC and domain users cannot log in
I have been busy with other things lately and have not been able to
investigate issue more. But there were some issues before it got really
bad.
But strange thing is, that clean install of 22H2 had same issue after
successfully joining domain. And issue remained after upgrading to 23H2.
And 22H2 did not even have latest security updates available.
For me strangest part is, that after using "Nltest /DBFlag:2080FFFF" to
set netlogon service to provide debug logs (after that re...
2024 May 14
1
Win11 22H2 and Point'n'Print status...
I'm still using Point'n'Print, but now i'm introducing some Win11 22H2
computer, having many trouble.
After the last security patchs, installing drivers was a nightmare, so i'm
currently using other mean (normally, WPKG) to deploy printer driver to PC,
and using Point'n'Print for printer management and configuration.
But in windows 11 printers does not...
2023 Jan 26
1
samba 4.13.17 ubuntu 20.04
Hey Andre,?
Sure, we already on the latest Patch Level on Ubuntu with 2:4.13.17~dfsg-0ubuntu1.20.04.4 Installer, but the issue still exist.?
The only way to resolve the issue and to make a login possible again, was the workaround in my previous mail.?
The Windows clients are Windows 10 22H2 with all updates installed.
We also doesn't have any special settings in smb.conf.
If you have any ideas of things we can check, you are welcome.?
Best regards
Frank
Sent from Nine
________________________________
Von: Andrew Bartlett <abartlet at samba.org>
Gesendet: Donnerstag, 26....
2023 Mar 10
2
Missing features in RSAT Group Policy Manager (Debian as Samba PDC)
...Configuration / Policies / Windows Settings /
Security Settings*". This is also the case when using RSAT from a Windows
10 Pro machine.
These Policies do exist on the Windows 11 Pro machine itself when I open
*gpedit.msc*.
Not sure if this is relevant, but I did download and install the the 22H2
ADMX Templates for Windows 11 to the Samba AD. They exists in the SYSVOL
directory.
An example of a policy I'd like to set in the GPO is *"Interactive logon:
Message text for users attempting to log on"*.
P.S.: A suggestion made elsewhere was to upgrade samba to the
bullseye-backport...
2025 Jan 20
1
Time synchronization problem. Chrony, ntp
...setting up a test case with 4.19.3
> to verify. I did try starting up an old copy at one site but the systems
> wouldn't let me logon, most likely the secrets changed and I didn't want to
> mess anything up further.
Hi Sonic,
I have tested with Windows 7 Pro (SP1), Windows 10 Pro (22H2), and
Windows 11 Pro (24H2). All those clients report CMOS clock as time
source. I also suspect that something broke in Samba since I posted
about this problem on 9 August 2023. Then I was using Samba 4.17.9,
which worked when I switched from ntpsec to chrony.
Maybe I will try to set up a test...
2025 Feb 14
1
Windows 11 24H2, Samba 4.21.3 AD DC and domain users cannot log in
El 13/2/25 a les 22:53, Kacper Wirski via samba ha escrit:
> It's definately not that, i'm running local pki and CA is distributed to
> all station, new win 11 24h2 has the root CA is the proper store (one of
> the things I double checked), and samba ad dc servers use certificates
> issued by this CA.
>
> Do You have windows 11 24h2 in samba ad with no issues? Which
2023 Jan 26
1
samba 4.13.17 ubuntu 20.04
We have the same issue with Samba 4.13.17.
For Ubuntu 20.04 with Samba 4.13.17 there seems to be only a workaround to solve the login problem:
Modifying the Local Security Policy -> Local Policies -> Security Options -> Network security:
"Configure encryption types allowed for Kerberos" Check only DES_CBC_CRC, DES_CBC_MD5 and RC4_HMAC_MD5.
?
This worked for us to login again.
?
2025 Jan 20
2
Time synchronization problem. Chrony, ntp
On 20 January 2025 15:18 Luis Peromarta wrote:
>
> I hope to be able to do the same kind of tests,
> On 20 Jan 2025 at 15:10 +0000, Peter Milesson <miles at atmos.eu>, wrote:
> >
> > I have tested with Windows 7 Pro (SP1), Windows 10 Pro (22H2), and
> > Windows 11 Pro (24H2). All those clients report CMOS clock as time
> > source. I also suspect that something broke in Samba since I posted
> > about this problem on 9 August 2023. Then I was using Samba 4.17.9,
> > which worked when I switched from ntpsec to chrony...
2025 Jan 20
1
Time synchronization problem. Chrony, ntp
I hope to be able to do the same kind of tests,
On 20 Jan 2025 at 15:10 +0000, Peter Milesson <miles at atmos.eu>, wrote:
>
> I have tested with Windows 7 Pro (SP1), Windows 10 Pro (22H2), and
> Windows 11 Pro (24H2). All those clients report CMOS clock as time
> source. I also suspect that something broke in Samba since I posted
> about this problem on 9 August 2023. Then I was using Samba 4.17.9,
> which worked when I switched from ntpsec to chrony.
>
> Maybe I...
2023 Mar 10
1
Missing features in RSAT Group Policy Manager (Debian as Samba PDC)
...>>> Windows
>>> 10 Pro machine.
>>>
>>> These Policies do exist on the Windows 11 Pro machine itself when I
>>> open
>>> *gpedit.msc*.
>>>
>>> Not sure if this is relevant, but I did download and install the the
>>> 22H2
>>> ADMX Templates for Windows 11 to the Samba AD. They exists in the
>>> SYSVOL
>>> directory.
>>>
>>> An example of a policy I'd like to set in the GPO is *"Interactive
>>> logon:
>>> Message text for users attempting to lo...
2023 Aug 26
1
Domain password policy with Samba AD DC
...ME (logged in as domain\administrator), got me absolutely
nowhere. Setting the policies using samba-tool worked. Reading through
previous posts on the Samba list, the only way seems to be using
samba-tool, unless I missed something essential. The ADMX templates both
for Samba and for Windows 10 22H2 have been loaded.
What I'm trying to point out, is that there isn't one word about setting
GPOs in the Wiki page with instructions for setting up a AD DC. The book
in the link definitely deserves to be mentioned on that page.
I'm going to study the book, and see if I get it working...
2023 Aug 26
1
Domain password policy with Samba AD DC
...domain\administrator), got me
> absolutely nowhere. Setting the policies using samba-tool worked.
> Reading through previous posts on the Samba list, the only way seems
> to be using samba-tool, unless I missed something essential. The ADMX
> templates both for Samba and for Windows 10 22H2 have been loaded.
>
> What I'm trying to point out, is that there isn't one word about
> setting GPOs in the Wiki page with instructions for setting up a AD
> DC. The book in the link definitely deserves to be mentioned on that
> page.
>
> I'm going to study the b...
2024 Mar 04
2
Almost all print driver uploads fail
...uploads well. It's 100%
reproducible.
Increased logging produces tons of logs, but no decodable error messages
in them, at least for me.
Server side: Debian 12 (bookworm) with stock 4.17.x and
bookworm-backports (4.19.4), but tried with old SLES 12 server with 4.6.x
Client side: Windows 10 22H2 x64 and Windows 11 23H2 x64, "Print
Management" with app.
See my smb.conf below.
Do you have any ideas? Is print driver uploading known to be broken? Is
these Canon and HP drivers are known to be broken?
Do you have working print servers with print drivers uploaded? What
drivers are y...
2025 Jan 30
1
Windows 11 24H2, Samba 4.21.3 AD DC and domain users cannot log in
...o be any additional patches by Samba to it
either.
> Have you tried adding '-d10' to the 'samba-tool domain join' command to
> see if any further error messages are printed ?
>
Joining to domain is not and issue. At least I was able to join Windows
11 24H2 test-vm and 22H2 test-vm to domain. But I cannot log in with
domain account to either of those... So the actual problem is not tied
to Windows 11 24H2. Something about my DC must be wrong.
I did do one thing in wrong order. I used
samba-tool domain level
to raise domain level before schema upgrades. In original...
2024 Jun 04
2
Classicupgrade FL 2012_R2 NTLM/Kerberos logon
Hi samba list,
I work on an classicupgrade of our NT4/ldap domain.
On my tests (DC and filer are on FreeBSD and zfs file system, client is
a Windows 10 22H2):
-> I'm able to do this classicupgrade and keep all users able to connect
on computers with their domain account.
-> In a second step I configure samba DC to improve security and by the
way I upgrade our FL to 2012_R2, schema to 69 and ad dc FL to 2016
(commented line below are unco...
2022 Dec 15
1
[Announce] Samba 4.17.4, 4.16.8 and 4.15.13 Security Releases are available for Download
...n at samba.org>
?? * BUG 15237: CVE-2022-37966.
?? * BUG 15243: %U for include directive doesn't work for share listing
???? (netshareenum).
?? * BUG 15257: Stack smashing in net offlinejoin requestodj.
o? Joseph Sutton <josephsutton at catalyst.net.nz>
?? * BUG 15197: Windows 11 22H2 and Samba-AD 4.15 Kerberos login issue.
?? * BUG 15219: Heimdal session key selection in AS-REQ examines wrong
entry.
?? * BUG 15231: CVE-2022-37967.
?? * BUG 15237: CVE-2022-37966.
o? Nicolas Williams <nico at twosigma.com>
?? * BUG 14929: CVE-2022-44640 [SECURITY] Upstream Heimdal fre...
2022 Dec 15
1
[Announce] Samba 4.17.4, 4.16.8 and 4.15.13 Security Releases are available for Download
...n at samba.org>
?? * BUG 15237: CVE-2022-37966.
?? * BUG 15243: %U for include directive doesn't work for share listing
???? (netshareenum).
?? * BUG 15257: Stack smashing in net offlinejoin requestodj.
o? Joseph Sutton <josephsutton at catalyst.net.nz>
?? * BUG 15197: Windows 11 22H2 and Samba-AD 4.15 Kerberos login issue.
?? * BUG 15219: Heimdal session key selection in AS-REQ examines wrong
entry.
?? * BUG 15231: CVE-2022-37967.
?? * BUG 15237: CVE-2022-37966.
o? Nicolas Williams <nico at twosigma.com>
?? * BUG 14929: CVE-2022-44640 [SECURITY] Upstream Heimdal fre...
2025 Jan 31
1
Windows 11 24H2, Samba 4.21.3 AD DC and domain users cannot log in
...Windows 11
Enterprise (it is Pro). And re-enabling Core Protection did change
anything (had this disabled, because Smart Card reader drived does not
work with 24H2 otherwise).
And just changing algorithms allowed for Kerberos had no effect.
Strange thing was, that when I tested it Windows 11 22H2 test machine
(that I today upgraded to 23H2) and enabled debug log on Windows
NETLOGON service, then in that log it complained:
01/30 15:28:23 [ERROR] [1320] NlpStoreKeyInDS: Unable to get computer DN: 5
01/30 15:28:23 [ERROR] [1320] NlProvisionMachineAuthKey: Unable to store
auth key in DS: 5
0...
2023 Aug 10
1
KB5029244...
On Thu, 2023-08-10 at 20:56 +0200, Fabio Muzzi via samba wrote:
> On 10/08/2023 17.52, Philippe LeCavalier via samba wrote:
>
> > The solution is to update Samba to (security update to 4.17) so
> > that 166
> > (and possible 244) work from the client side. If you rely on a
> > client side
> > solution you will likely continuously revisit this issue.
>
>
2023 Aug 26
1
Domain password policy with Samba AD DC
On Sat, 26 Aug 2023 18:02:44 +0200
Peter Milesson via samba <samba at lists.samba.org> wrote:
> Hi Anantha,
Why do I get the feeling I missed something here ?
>
> I now know (the hard way) that it's possible to manage the password
> policies with samba-tool. But through my futile trials and
> information on different web sites (very little documentation in the
>