search for: datacontrolsystem

Displaying 20 results from an estimated 48 matches for "datacontrolsystem".

Did you mean: datacontrolsystems
2016 Jun 09
1
FW: Problem with Active Directory authentication
...after about a minute. > > I mentioned the possibility of creating a symbolic link to the bash shell > in my previous e-mail, > could that be part of the solution? > > Thanks. > > > ------------------------------ > *From:* Data Control Systems - Mike Elkevizth [mike at datacontrolsystems.com > ] > *Sent:* Thursday, June 09, 2016 1:11 PM > *To:* Kaplan, Andrew H. > *Cc:* samba-technical at lists.samba.org; samba at lists.samba.org > *Subject:* Re: FW: [Samba] Problem with Active Directory authentication > > Hi, > > Try using the format <domainname>&...
2016 Jun 13
2
Problem with Active Directory authentication
...nsions feature. To facilitate matters, would it be better for our either setting up the current system as a samba domain contoller, or establishing a separate computer that functions exclusively in that capacity? ________________________________ From: Data Control Systems - Mike Elkevizth [mike at datacontrolsystems.com] Sent: Friday, June 10, 2016 4:35 PM To: Kaplan, Andrew H. Cc: samba at lists.samba.org; Rowland penny Subject: Re: [Samba] Problem with Active Directory authentication Hi, I'm not 100% sure about this, but that might mean that the NIS Extensions are not installed in your AD directory....
2016 Jun 09
2
FW: Problem with Active Directory authentication
...Hello -- > > The output of the getent passwd command was the following: > > > <username>@<domainname>:*:##########:##########::/PHShome/<username>:/bin/PHSshell > > > ------------------------------ > *From:* Data Control Systems - Mike Elkevizth [mike at datacontrolsystems.com > ] > *Sent:* Wednesday, June 08, 2016 6:12 PM > *To:* Kaplan, Andrew H. > *Cc:* samba-technical at lists.samba.org; samba at lists.samba.org > *Subject:* Re: [Samba] Problem with Active Directory authentication > > What does "getent passwd <username>@<domain...
2016 Jun 09
0
FW: Problem with Active Directory authentication
.... The connection simply closed, or timed out, after about a minute. I mentioned the possibility of creating a symbolic link to the bash shell in my previous e-mail, could that be part of the solution? Thanks. ________________________________ From: Data Control Systems - Mike Elkevizth [mike at datacontrolsystems.com] Sent: Thursday, June 09, 2016 1:11 PM To: Kaplan, Andrew H. Cc: samba-technical at lists.samba.org; samba at lists.samba.org Subject: Re: FW: [Samba] Problem with Active Directory authentication Hi, Try using the format <domainname><winbind separator><username> to login in...
2016 Jun 10
2
Problem with Active Directory authentication
The problem that I am now facing is the fact there is no NIS domain that can be selected from the dropdown menu, which, in turn, prevents the login shell from being modified. ________________________________ From: Data Control Systems - Mike Elkevizth [mike at datacontrolsystems.com] Sent: Friday, June 10, 2016 3:14 PM To: Kaplan, Andrew H. Cc: samba at lists.samba.org; Rowland penny Subject: Re: [Samba] Problem with Active Directory authentication Hi, You need to make sure that the user has the rfc2307 "loginShell:" attribute set. See https://wiki.samba.org/...
2017 Apr 24
1
samba, sssd, Active Directory, NT_STATUS_NO_LOGON_SERVERS, NT_STATUS_ACCESS_DENIED
> On Apr 23, 2017, at 10:15 PM, Data Control Systems - Mike Elkevizth <mike at datacontrolsystems.com> wrote: > > What exactly are you trying to accomplish? Based on the smb.conf that you posted, it looks like you only want to be able to authenticate using the active directory server (i.e. I don't see any shares). I did not include the share as I didn’t think it was relevant....
2016 Jun 10
2
Problem with Active Directory authentication
...the smb.conf file, and restarted the samba and winbind daemons. Unfortunately, the getent passwd command indicated the /bin/false shell was still the default. What else do I need to do in order to correct this? ________________________________ From: Data Control Systems - Mike Elkevizth [mike at datacontrolsystems.com] Sent: Friday, June 10, 2016 1:40 PM To: Kaplan, Andrew H.; samba at lists.samba.org Cc: Rowland penny Subject: Re: [Samba] Problem with Active Directory authentication Hi, What version of Samba are you running (samba --version)? Some of the smb.conf parameters have changed in more recent v...
2016 May 27
2
Winbind on AD DC not honoring rfc2307 gid entries
...omain controllers:x:3000035: ... # getent group 2001 (on DC3) DCS\domain users:x:2001: # getent group 2001 (on DC1 and DC2) <---- So somehow, winbind knows the 2001 rfc2307 entry, but maps it incorrectly DCS\domain users:x:100: # testparm [global] workgroup = DCS realm = DCS.DATACONTROLSYSTEMS.COM interfaces = 192.168.8.5 127.0.0.1 bind interfaces only = Yes server role = active directory domain controller passdb backend = samba_dsdb printcap name = /dev/null template shell = /bin/bash winbind enum users = Yes winbind enum groups =...
2016 Jun 09
2
Problem with Active Directory authentication
Hello -- The output of the getent passwd command was the following: <username>@<domainname>:*:##########:##########::/PHShome/<username>:/bin/PHSshell ________________________________ From: Data Control Systems - Mike Elkevizth [mike at datacontrolsystems.com] Sent: Wednesday, June 08, 2016 6:12 PM To: Kaplan, Andrew H. Cc: samba-technical at lists.samba.org; samba at lists.samba.org Subject: Re: [Samba] Problem with Active Directory authentication What does "getent passwd <username>@<domainname>" return on the server for th...
2016 Jun 10
0
Problem with Active Directory authentication
...e: > The problem that I am now facing is the fact there is no NIS domain that > can be selected from the dropdown menu, > which, in turn, prevents the login shell from being modified. > > > ------------------------------ > *From:* Data Control Systems - Mike Elkevizth [mike at datacontrolsystems.com > ] > *Sent:* Friday, June 10, 2016 3:14 PM > *To:* Kaplan, Andrew H. > *Cc:* samba at lists.samba.org; Rowland penny > > *Subject:* Re: [Samba] Problem with Active Directory authentication > Hi, > > You need to make sure that the user has the rfc2307 "loginShel...
2016 Sep 16
1
samba-tool user create - how to get next available uid from active directory
You can check the wiki page https://wiki.samba.org/index.php/Administer_Unix_Attributes_in_AD_via_ADUC#Defining_the_next_UID.2FGID_to_use which describes how to manually get / change the value. Mike E. On Fri, Sep 16, 2016 at 10:56 AM, Rowland Penny via samba < samba at lists.samba.org> wrote: > On Fri, 16 Sep 2016 15:32:52 +0100 > niya levi via samba <samba at
2017 May 25
2
CVE-2017-7494 in SAMBA-AD 4.3.11-ubuntu
Hi We have the one server SAMBA 4.3.11-ubuntu in Active Directory mode with some Windows Clients The Ubuntu repository not update samba package (last version is 4.3.11). Please, how am i can fix the CVE-2017-7494 (Remote code execution from a writable share) in my SAMBA server? Should option 'nt pipe support = no' will influence how SAMBA_AD works? Anderson Hoffmann
2017 Apr 23
2
samba, sssd, Active Directory, NT_STATUS_NO_LOGON_SERVERS, NT_STATUS_ACCESS_DENIED
> Now go and ask your question on the sssd-users mailing list, this > has nothing to do with Samba. Thank you for the response. Why do you say this has nothing to do with samba? The samba logs indicate the problem is with samba. The sssd logs show everything working except for samba. I changed my smb.conf to default setting and setting that should not be there (as explained in your
2016 Nov 04
2
smbclient and Kerberos
...tual box for a writeup I'm doing, hence the nonstandard suffixes. Kevin Ratcliffe Sent from [ProtonMail](https://protonmail.ch) -------- Original Message -------- Subject: Re: [Samba] smbclient and Kerberos Local Time: 4 November 2016 9:11 PM UTC Time: 4 November 2016 21:11 From: mike at datacontrolsystems.com To: Kevr <kevr at protonmail.com> samba at lists.samba.org The defaults for dns_lookup_realm and dns_lookup_kdc should be false and true respectively, but the samba team recommends using them explicitly, so that's what I do. My /etc/krb5.conf file doesn't include any of the sto...
2016 May 27
0
Winbind on AD DC not honoring rfc2307 gid entries
...001 (on DC3) > DCS\domain users:x:2001: > > # getent group 2001 (on DC1 and DC2) <---- So somehow, winbind knows > the 2001 rfc2307 entry, but maps it incorrectly > DCS\domain users:x:100: > > # testparm > [global] > workgroup = DCS > realm = DCS.DATACONTROLSYSTEMS.COM > interfaces = 192.168.8.5 127.0.0.1 > bind interfaces only = Yes > server role = active directory domain controller > passdb backend = samba_dsdb > printcap name = /dev/null > template shell = /bin/bash > winbind enu...
2016 Jun 09
0
FW: Problem with Active Directory authentication
...em with Active Directory authentication Hello -- The output of the getent passwd command was the following: <username>@<domainname>:*:##########:##########::/PHShome/<username>:/bin/PHSshell ________________________________ From: Data Control Systems - Mike Elkevizth [mike at datacontrolsystems.com] Sent: Wednesday, June 08, 2016 6:12 PM To: Kaplan, Andrew H. Cc: samba-technical at lists.samba.org; samba at lists.samba.org Subject: Re: [Samba] Problem with Active Directory authentication What does "getent passwd <username>@<domainname>" return on the server for th...
2016 Jul 25
3
sendmail getting domain\user as email userId
...e some reason the DC essentially ignores the "winbind use default domain = yes" and returns DOMAIN\username? It would seem to me that sendmail would not be the only program stumbling on this. --Mark -----Original Message----- > From: Data Control Systems - Mike Elkevizth <mike at datacontrolsystems.com> > Date: Thu, 21 Jul 2016 12:30:19 -0400 > Subject: Re: [Samba] sendmail getting domain\user as email userId [formerly: > How to GSSAPI/Kerberos authenticate with Dovecot] > To: Mark Foley <mfoley at ohprs.org>, samba at lists.samba.org > > Hi Mark, > > I'...
2016 Jul 21
3
sendmail getting domain\user as email userId [formerly: How to GSSAPI/Kerberos authenticate with Dovecot]
Hi Mark, I've had the same trouble with the DOMAIN\user on my DCs, and as Rowland has already pointed out, the "winbind use default domain = yes" configure option is not honored on a DC. My guess is that is because a Samba DC can only be a DC for one domain, so that is why it isn't honored. If I do "getent passwd username" on my DCs, they all return
2016 Jun 10
0
Problem with Active Directory authentication
...samba and winbind daemons. > Unfortunately, the getent passwd command indicated the /bin/false shell > was still the default. > > What else do I need to do in order to correct this? > > > ------------------------------ > *From:* Data Control Systems - Mike Elkevizth [mike at datacontrolsystems.com > ] > *Sent:* Friday, June 10, 2016 1:40 PM > *To:* Kaplan, Andrew H.; samba at lists.samba.org > *Cc:* Rowland penny > *Subject:* Re: [Samba] Problem with Active Directory authentication > > Hi, > > What version of Samba are you running (samba --version)? Some of t...
2016 Jun 10
3
Problem with Active Directory authentication
...ommand indicated the following were enabled: Unix authentication Winbind NT/Active Directory authentication Register user sessions in the systemd control group hierarchy Inheritable Capabilities Management ________________________________ From: Data Control Systems - Mike Elkevizth [mike at datacontrolsystems.com] Sent: Friday, June 10, 2016 10:45 AM To: Kaplan, Andrew H.; samba at lists.samba.org Cc: Rowland penny Subject: Re: [Samba] Problem with Active Directory authentication Hi, I have a feeling that Rowland is correct that all the different authentication methods are interfering with one anothe...