search for: bilhaut

Displaying 20 results from an estimated 25 matches for "bilhaut".

2023 May 26
1
samba-tool : how to remove expiry date of an account
Hi Rowland and list, I allow myself to give a UP to my message in case someone has an idea. Thanks, --Oliver Le 2023-05-24 15:55, Olivier BILHAUT via samba a ?crit : > Hi Rowland, and many thanks for fast reply, > > When using --noexpiry, > the userAccountControl is set to 66048, which disable expiry for > password as well (in MS console, "password never expires" is now > checked). > > This means that t...
2023 May 24
1
samba-tool : how to remove expiry date of an account
...attribute without changing "userAccountControl" ? Otherwise : is there another value for "userAccountControl" that does not disable the password expiry in the same time ? Thanks, --OB Le 2023-05-24 12:30, Rowland Penny via samba a ?crit : > On 24/05/2023 10:56, Olivier BILHAUT via samba wrote: >> Hi list :) >> >> I am looking for the right command to achieve my goal. >> >> I >> would like to remove the account expiry date of an ACCOUNT with a >> samba-tool command (account never expires) >> >> Options of "samb...
2023 May 26
1
samba-tool : how to remove expiry date of an account
On 26/05/2023 14:44, Olivier BILHAUT wrote: > Thanks Rowland, > > I'll give a try to ldbmodify, even if I prefer to avoid modifying > directly ldb files. > > What do you think samba-tool does ? Using samba-tool to set expiry, ultimately does this: setexp = """ dn: %s changetype:...
2012 Sep 20
1
Samba4 new policy templates
...printer drivers without administrative rights. We use it to deploy printers to user accounts. Some post talk about updating the ADMX files on the AD, but I would like to have your advices first. Thanks in advance (and sorry for my english faults). Cheers -- ----------------------- *** Olivier BILHAUT *** Service Informatique *** Fondation de la Mis?ricorde *** Email : o.bilhaut at fondation-misericorde.fr *** Tel : 02.31.38.50.50 *** Fax : 02.31.38.50.00
2024 May 31
1
Place of functional levels in Samba4 roadmap
...#39;s the place in the roadmap ? Does it lack funds to implement it ? I couldn't find a really clear information about this in Samba wiki, and neither in the samba list history, even if I know that 4.20 seems to give a kickstart to the feature. Many thanks to all contributors. -- Olivier BILHAUT
2015 Feb 12
2
Samba4 kinit issue with principal and keytab file
Hi All ! Using Samba Version 4.1.12, updated from source from 4.0beta1 I've created a user, let say kerbuser, for a web server to authenticate with kerberos and provide SSO to the end-users. In my example, my domain is MYDOMAIN.LOCAL, the apache server is webserver.mydomain.local and the AD user is kerbuser I've added a principal on the user and exported everything in a keytab so
2015 Feb 09
2
Samba4 - Corrupted group caused stop of replication - "Object class violation"
...ups with the missing attribute... So we achieved to get a successfull replication after editing the "deleted objects" with ldbedit. We have deleted the two corrupted groups from this branch and it started to replicate again... Many thanks for your help anyway ! Cheers. -- Olivier BILHAUT Le 2015-02-08 20:00, samba-request at lists.samba.org a ?crit : > Send samba mailing list submissions to > samba at lists.samba.org > > To subscribe or unsubscribe via the World Wide Web, visit > https://lists.samba.org/mailman/listinfo/samba [4] > or, via email, send a messag...
2015 Feb 12
1
Samba4 kinit issue with principal and keytab file
Hi Rowland, Yes, I read this documentation carefully. I have two working Apache2 with kerberos authentication working. My question is more about troubleshooting a keytab. If I need to test manually a keytab file chalenging a specific principal, what's the prefered method ? I thougt that a kinit could be done using a principal name, but I am unable to kinit with somehting else than the
2018 Mar 18
0
Your advices regarding authentication methods compatible with S4
...his page might be helpful. I don't know how up to date it is, but the expectation seems to be that it should be able to work with alternative forms of authentication (with Kerberos PKINIT). https://wiki.samba.org/index.php/Samba_AD_Smart_Card_Login Cheers, Garming On 16/03/18 22:43, Olivier BILHAUT via samba wrote: > > > Hi to Samba list, dev, contributors and all the community. > > We are > samba users for a long time now, and S4 since the early alpha version. > We run now 5 DC for 700 users in our hospital and are very enthusiastic. > This is definitely a great pr...
2023 May 24
1
samba-tool : how to remove expiry date of an account
Hi list :) I am looking for the right command to achieve my goal. I would like to remove the account expiry date of an ACCOUNT with a samba-tool command (account never expires) Options of "samba-tool user setexpiry" are : --filter=FILTER LDAP Filter to set password on --days=DAYS Days to expiry --noexpiry Unfortunately, the "noexpiry" parameter just set another option
2024 May 16
1
Security descriptors options of Group Policies
On 16-05-2024 18:46, Rowland Penny via samba wrote: > On Thu, 16 May 2024 17:40:45 +0200 > Olivier BILHAUT <obilhaut at fondation-misericorde.fr> wrote: > >> Thanks Rowland for once again, an analysis that looks good. >> >> To you, >> is there a workaround at this stage ? > Not from myself,it has been years since I looked into this and only > really got has far as...
2012 Jun 13
0
Samba4 (S4) [homes] special share availability
...ith the s3fs file system now allow to use the [homes] "special" share. Are we now allowed to use it in smb.conf, and does it works like in S3, as the home share of the user is converted by it's username? Sorry for my approximate english. Cheers. Thank you for your work. Good luck. O.Bilhaut
2017 Aug 10
0
Blank printers names while browsing remote printers
...t:resource Spelling correction lsa over netlogon New (deprecated) no rpc server port New 0 Greetz, Louis > -----Oorspronkelijk bericht----- > Van: samba [mailto:samba-bounces at lists.samba.org] Namens > Olivier BILHAUT via samba > Verzonden: donderdag 10 augustus 2017 15:42 > Aan: samba at lists.samba.org > Onderwerp: Re: [Samba] Blank printers names while browsing > remote printers > > > > Hi Louis, > > Thanks for your fast reply. > > I tried kinit method with > no...
2015 Feb 13
1
Samba4 kinit issue with principal and keytab file
Hi Rowland, Hi looks like the "-c" option is optional. My problem is not really the kerberos cache file, but the "principal" linked to the user kerbuser. The principal is HTTP/webserver.MYDOMAIN.LOCAL at MYDOMAIN.LOCAL I would like to use kinit and give this principal as parameter. something like : > kinit -k -t /root/my.keytab HTTP/webserver.MYDOMAIN.LOCAL at
2024 May 16
1
Security descriptors options of Group Policies
Hi Samba List, hope you're doing well all. We have realized a security audit of our Samba4 Active Directory. It returns that the security descriptors options of all our GPO objects are wrong. They should be : SE_DACL_AUTO_INHERITED SE_DACL_PRESENT instead of this, the options are by default : SE_DACL_PROTECTED SE_DACL_PRESENT We can change the options, but the "sysvolreset"
2017 Aug 10
1
Blank printers names while browsing remote printers from windows
Hi friends. This morning waking up is painfull. We've got a great CUPS+Samba+Winbind print server sharing 30+ printers to our windows clients. Until this morning no issue, used on production for a couple of weeks. Today, the printer shares became unbrowsable from windows. We can see the printers names from samba share : "\printserver", but when we click on the "Show
2013 Apr 09
1
(D)DNS Updates with GNU/Linux clients in a samba 4 AD environment (BIND_DLZ)
Hi ! I bounce on the Mr Sloop's post ([Samba] DDNS / DHCPd && Internal DNS or BIND_DLZ) to ask what's the easiest way to allow Linux clients to update themself their DNS record in the Samba4 AD server (with BIND_DLZ Dns server). It works well with windows clients, but with Linux clients joined to the domain, with a valid Kerberos ticket, the client receive a error
2018 Mar 16
2
Your advices regarding authentication methods compatible with S4
Hi to Samba list, dev, contributors and all the community. We are samba users for a long time now, and S4 since the early alpha version. We run now 5 DC for 700 users in our hospital and are very enthusiastic. This is definitely a great project. But now, we face a new challenge. We look over a new authentication method rather than the old user/password. Because we have many users switching
2015 Feb 04
1
Samba4 - Corrupted group caused stop of replication - "Object class violation"
Hi Samba List! We are using Samba Version 4.1.12 on two master DC. We've noticed that a corrupted group has been created, we tried to delete it, and since then, the replication fail between the two DC. The result of the command : "samba-tool drs showrepl" is the following : On the first DC, INBOUND NEIGHBORS : Last attempt @ Wed Feb 4 11:26:41 2015 CET failed, result 58
2018 Mar 19
2
Your advices regarding authentication methods compatible with S4
On Mon, 2018-03-19 at 11:55 +1300, Garming Sam via samba wrote: > Hi, > > Maybe this page might be helpful. I don't know how up to date it is, but > the expectation seems to be that it should be able to work with > alternative forms of authentication (with Kerberos PKINIT). > > https://wiki.samba.org/index.php/Samba_AD_Smart_Card_Login Yeah, I think something that