Displaying 20 results from an estimated 73 matches for "3000011".
Did you mean:
3000001
2020 Oct 25
2
GPO fail and sysvol perm errors
GPO's fail to apply on Windows clients and sysvol permission errors are logged.
DC is Samba 4.13.0 created via a classic upgrade.
Logged sysvol errors (uid 5025 is the system I ran gpupdate on, don't
know what uid 3000011 refers to):
===================================
Oct 25 12:17:09 srvr01 smbd[3762]: [2020/10/25 12:17:09.695062, 0]
../../source3/smbd/service.c:169(chdir_current_service)
Oct 25 12:17:09 srvr01 smbd[3762]: chdir_current_service:
vfs_ChDir(/usr/local/samba/var/locks/sysvol) failed: Permission den...
2014 Jul 02
1
multiple DCs / rsync / sysvol / xattr acls
...with -X to sync xattr acls. I sed getfacl to compare the uids. I use sernet 4.1.9 but I think i had also this problem with 4.1.7. maybe its not a samba problem but ...
e.g.
dc1 (PDC)
# file: {31B2F340-016D-11D2-945F-00C04FB984F9}/
# owner: 3000005
# group: 3000005
user::rwx
user:3000003:rwx
user:3000011:r-x
user:3000018:rwx
user:3000019:r-x
group::rwx
group:3000003:rwx
group:3000005:rwx
group:3000011:r-x
group:3000018:rwx
group:3000019:r-x
mask::rwx
other::---
default:user::rwx
default:user:3000003:rwx
default:user:3000005:rwx
default:user:3000011:r-x
default:user:3000018:rwx
default:user:3000019:...
2020 Oct 25
2
GPO fail and sysvol perm errors
On Sun, Oct 25, 2020 at 2:38 PM Rowland penny via samba
<samba at lists.samba.org> wrote:
> So '5035' is a computer, but what is '3000011' ?
> You can find out by running this on the DC:
> ldbsearch -H /path/to/idmap.ldb '(&(objectClass=sidMap)(xidNumber=3000011))'
===================================
# ldbsearch -H /usr/local/samba/private/idmap.ldb
'(&(objectClass=sidMap)(xidNumber=3000011))'
# reco...
2017 Jan 13
1
Duplicate xidNumbers
Hello Samba team,
I have 3 production samba DCs version 4.5.1 serving the same domain (2
sites) and all are having the same problems, I believe based on two
duplicate xidNumbers described below.
xidNumbers 3000002 & 3000003 have two SIDs assigned while xidNumbers
3000011 & 3000012 have no SIDs assigned. Is fixing this as simple as
moving one of the duplicates to the empty xidNumber and if so how can I
safely accomplish the move?
Details below.
Thank you in advance for your assistance
Bob Thomas
Problem 1. Duplicate xidNumbers
3000002 dn: CN=S-1-5-21-97693...
2020 Oct 25
0
GPO fail and sysvol perm errors
On 25/10/2020 19:21, Sonic wrote:
> On Sun, Oct 25, 2020 at 2:38 PM Rowland penny via samba
> <samba at lists.samba.org> wrote:
>> So '5035' is a computer, but what is '3000011' ?
>> You can find out by running this on the DC:
>> ldbsearch -H /path/to/idmap.ldb '(&(objectClass=sidMap)(xidNumber=3000011))'
> ===================================
> # ldbsearch -H /usr/local/samba/private/idmap.ldb
> '(&(objectClass=sidMap)(xidNumbe...
2016 Oct 21
1
Problem Groups GID Mappings
> Apart from DC2 not having this line:
>
> idmap_ldb:use rfc2307 = yes
>
> Both smb.conf files look ok.
> Can you elaborate on your problem and show a few examples.
>
> Rowland
>
>
Surely the above line is required to obtain consistent UID, SID and name
mappings on all servers?
Can the OP try adding it to their DC2, restarting services, and check again?
I was
2017 Jan 13
3
Duplicate xidNumbers
...ailed to call wbcGetgrgid: WBC_ERR_DOMAIN_NOT_FOUND
>>>> No change in sysvolreset also.
>>>>
>>>> Second, I stopped samba, restored backup idmap.ldp and just edited:
>>>> 3000002 dn: CN=S-1-5-21-976934076-1976663741-3168181429-501 to
>>>> 3000011 3000003 dn:
>>>> CN=S-1-5-21-976934076-1976663741-3168181429-514 to 3000012
>>>>
>>>> Note all other idmap records are in the correct format, complete
>>>> and no SIDs are duplicated
>>>>
>>>> result wbinfo --gid-info was corr...
2016 Mar 29
2
Permission denied on GPT.ini (Event ID 1058)
...ut my nsswitch.conf is configured to use winbind:
grep win /etc/nsswitch.conf
passwd: files winbind
shadow: files winbind
group: files winbind
And that works:
For users:
id administrator
uid=0(root) gid=0(root) groupes=0(root)
For computers:
id dc200$
uid=3000025(AD.DGFIP\dc200$) gid=3000011(AD.DGFIP\domain controllers)
groupes=3000011(AD.DGFIP\domain
controllers),3000025(AD.DGFIP\dc200$),3000002(AD.DGFIP\denied rodc password
replication group)
So idmapping seems to be enabled by default as there are no UID/GID
declared on DC200 computer:
ldbsearch -H $sam cn=dc200 | egrep -i 'uid...
2017 Jan 13
3
Fwd: Re: Duplicate xidNumbers
Rowland,
Thank you for the quick response.
I have just run net cache flush no change in problem. I have dumped the
idmap.ldp using ldbsearch -H /var/lib/samba/private/idmap.ldb >
idmap.txt and did some sorting, that is how I found the duplicates.
On 1/13/2017 11:09 AM, Rowland Penny via samba wrote:
> samba-tool ntacl
> >sysvolreset
2016 Mar 29
3
Permission denied on GPT.ini (Event ID 1058)
...files winbind
>> shadow: files winbind
>> group: files winbind
>>
>> And that works:
>> For users:
>> id administrator
>> uid=0(root) gid=0(root) groupes=0(root)
>> For computers:
>> id dc200$
>> uid=3000025(AD.DGFIP\dc200$) gid=3000011(AD.DGFIP\domain controllers)
>> groupes=3000011(AD.DGFIP\domain
>> controllers),3000025(AD.DGFIP\dc200$),3000002(AD.DGFIP\denied rodc
>> password
>> replication group)
>>
>> So idmapping seems to be enabled by default as there are no UID/GID
>> declared on...
2015 Feb 26
3
Back with my UID problems
...to set
'idmap_ldb:use rfc2307 = Yes' to use those attributes for
XID/SID-mapping. User 'wynkoop' created successfully
root at prd2:/usr/local/etc # cd /archive/test root at prd2:/archive/test #
ls -l total 3
- -rw-r--r-- 1 3000014 wheel 6148 Feb 22 03:37 .DS_Store
- -rw-r--r-- 1 3000011 wheel 381 Feb 26 18:18 profile
root at prd2:/archive/test #
Needless to say where it says 3000011 I expect it to see wynkoop since
I am in the local password file on that system with UID 34.
- -Brett
- --
wynkoop at wynn.com http://prd4.wynn.com/wynkoop/pgp-keys.txt
917-642-6...
2015 Apr 28
4
samba 4.2.1 copy idmap...and problems with bi-directional sysvolsync.
...t),100(users),3000004(group policy creator owners),3000006(enterprise admins),
3000008(domain admins),3000007(schema admins),3000005(denied rodc password replication group),3000009(BUILTIN\users),
3000000(BUILTIN\administrators)
id administrator
uid=0(root) gid=100(users) groups=0(root),100(users),3000011(group policy creator owners),3000010(enterprise admins),
3000007(domain admins),3000009(schema admins),3000008(denied rodc password replication group),3000001(BUILTIN\users),
3000000(BUILTIN\administrators)
see the differences here..
?
What am i missing..
Because of this the bi-directional sysvo...
2015 Feb 26
6
Back with my UID problems
On Wed, 25 Feb 2015 19:48:07 +0000
Rowland Penny <rowlandpenny at googlemail.com> wrote:
> As for creating users & groups, samba 4 comes with 'samba-tool' for
> more info on this, run 'samba-tool --help' or 'samba-tool user add
> --help', you can also run 'man samba-tool'
>
> Rowland
>
Nothing in the samba-tool man page speaks to
2017 Jan 13
2
Duplicate xidNumbers
...N_NOT_FOUND
>>>>>> No change in sysvolreset also.
>>>>>>
>>>>>> Second, I stopped samba, restored backup idmap.ldp and just
>>>>>> edited: 3000002 dn:
>>>>>> CN=S-1-5-21-976934076-1976663741-3168181429-501 to 3000011
>>>>>> 3000003 dn: CN=S-1-5-21-976934076-1976663741-3168181429-514 to
>>>>>> 3000012
>>>>>>
>>>>>> Note all other idmap records are in the correct format, complete
>>>>>> and no SIDs are duplicated
>>&g...
2015 Feb 27
0
Back with my UID problems
...rfc2307 = Yes' to use those attributes for
> XID/SID-mapping. User 'wynkoop' created successfully
> root at prd2:/usr/local/etc # cd /archive/test root at prd2:/archive/test #
> ls -l total 3
> - -rw-r--r-- 1 3000014 wheel 6148 Feb 22 03:37 .DS_Store
> - -rw-r--r-- 1 3000011 wheel 381 Feb 26 18:18 profile
> root at prd2:/archive/test #
>
> Needless to say where it says 3000011 I expect it to see wynkoop since
> I am in the local password file on that system with UID 34.
>
> - -Brett
>
> - --
>
> wynkoop at wynn.com http:/...
2017 Jan 13
0
Duplicate xidNumbers
...nfo failed for the new xids:
>> failed to call wbcGetgrgid: WBC_ERR_DOMAIN_NOT_FOUND
>> No change in sysvolreset also.
>>
>> Second, I stopped samba, restored backup idmap.ldp and just edited:
>> 3000002 dn: CN=S-1-5-21-976934076-1976663741-3168181429-501 to
>> 3000011 3000003 dn: CN=S-1-5-21-976934076-1976663741-3168181429-514
>> to 3000012
>>
>> Note all other idmap records are in the correct format, complete and
>> no SIDs are duplicated
>>
>> result wbinfo --gid-info was correct for 3000011 & 3000012 but still
>>...
2024 Nov 11
1
Very strange: Samba is unable to access one of its own files
...5:18 ceres winbindd[32025]:?? Copyright Andrew Tridgell and
the Samba Team 1992-2023
Nov 11 17:05:30 ceres smbd[32069]:?? chdir_current_service:
vfs_ChDir(/var/lib/samba/sysvol) failed: Permission denied. Current
token: uid=3000021, gid=3000016, 9 groups: 3000021 3000016 3000019
3000020 3000010 3000011 3000013 3000006 3000014
Nov 11 17:05:40 ceres smbd[32069]: [2024/11/11 17:05:40.355505, 0]
../../source3/smbd/smb2_service.c:117(chdir_current_service)
Nov 11 17:05:40 ceres smbd[32069]:?? chdir_current_service:
vfs_ChDir(/var/lib/samba/sysvol) failed: Permission denied. Current
token: uid=30000...
2024 Jun 22
1
primary group for AD accounts
Hi
I've just recreated whole environment and after DC provision
?group "domain users" has gid 100
getent passwd
OFFICE\administrator:*:0:100::/home/OFFICE/administrator:/bin/bash
OFFICE\guest:*:3000011:3000012::/home/OFFICE/guest:/bin/bash
OFFICE\krbtgt:*:3000015:100::/home/OFFICE/krbtgt:/bin/bash
OFFICE\dhcpduser:*:3000016:100::/home/OFFICE/dhcpduser:/bin/bash
getent group
...
BUILTIN\administrators:x:3000000:
BUILTIN\users:x:3000001:
BUILTIN\guests:x:3000002:
BUILTIN\account operators:x:300000...
2017 Jan 13
0
Duplicate xidNumbers
...: WBC_ERR_DOMAIN_NOT_FOUND
> >>>> No change in sysvolreset also.
> >>>>
> >>>> Second, I stopped samba, restored backup idmap.ldp and just
> >>>> edited: 3000002 dn:
> >>>> CN=S-1-5-21-976934076-1976663741-3168181429-501 to 3000011
> >>>> 3000003 dn: CN=S-1-5-21-976934076-1976663741-3168181429-514 to
> >>>> 3000012
> >>>>
> >>>> Note all other idmap records are in the correct format, complete
> >>>> and no SIDs are duplicated
> >>>>
>...
2016 Mar 29
0
Permission denied on GPT.ini (Event ID 1058)
...p win /etc/nsswitch.conf
> passwd: files winbind
> shadow: files winbind
> group: files winbind
>
> And that works:
> For users:
> id administrator
> uid=0(root) gid=0(root) groupes=0(root)
> For computers:
> id dc200$
> uid=3000025(AD.DGFIP\dc200$) gid=3000011(AD.DGFIP\domain controllers)
> groupes=3000011(AD.DGFIP\domain
> controllers),3000025(AD.DGFIP\dc200$),3000002(AD.DGFIP\denied rodc password
> replication group)
>
> So idmapping seems to be enabled by default as there are no UID/GID
> declared on DC200 computer:
> ldbsearch -H...