search for: dcardon

Displaying 20 results from an estimated 134 matches for "dcardon".

Did you mean: cardon
2015 Feb 24
1
content of sam.ldb vs sam.ldb.d/DC=MYDOMAIN,DC=LAN
Hi everyone, I am wondering what is the difference between the content in sam.ldb and sam.ldb.d/DC=MYDOMAIN,DC=LAN. In the two file I have my user entry: # ldbsearch -H /usr/local/samba/private/sam.ldb.d/DC\=TRANQUILIT\,DC\=LOCAL.ldb | grep dn | grep CN=dcardon dn: CN=dcardon,CN=Users,DC=tranquilit,DC=local # ldbsearch -H /usr/local/samba/private/sam.ldb | grep dn | grep CN=dcardon dn: CN=dcardon,CN=Users,DC=tranquilit,DC=local Is it some kind of legacy? I though that the entries should be in the partition file into the sam.ldb.d directory, and sam.ldb...
2015 Feb 16
2
rodc and KRB_TGS_REQ forwarding to RWDC to access hub ressources
...d see if it gets any better. By the way, the issue can be reproduced on command line on the rodc (in the excerpt below, rodc-nantes is the rodc, srvads is the rwdc and everything works fine except this issue) : [root at rodc-nantes.tranq ~]# shorewall start [root at rodc-nantes.tranq ~]# kinit dcardon Password for dcardon at TRANQUILIT.LOCAL: [root at rodc-nantes.tranq ~]# shorewall clear [root at rodc-nantes.tranq ~]# klist Ticket cache: FILE:/tmp/krb5cc_0 Default principal: dcardon at TRANQUILIT.LOCAL Valid starting Expires Service principal 16/02/2015 11:22:47 16/02/20...
2015 Feb 22
1
rodc and KRB_TGS_REQ forwarding to RWDC to access hub ressources
...can be reproduced on >> command line on the rodc (in the excerpt below, rodc-nantes is the >> rodc, srvads is the rwdc and everything works fine except this issue) : >> >> [root at rodc-nantes.tranq ~]# shorewall start >> >> [root at rodc-nantes.tranq ~]# kinit dcardon >> Password for dcardon at TRANQUILIT.LOCAL: >> >> [root at rodc-nantes.tranq ~]# shorewall clear >> >> [root at rodc-nantes.tranq ~]# klist >> Ticket cache: FILE:/tmp/krb5cc_0 >> Default principal: dcardon at TRANQUILIT.LOCAL >> >> Valid start...
2018 Jan 19
1
User Permissions issue
...dministrator *International University of Namibia *Tel: 061-4336000 - E-mail: h.kukreja @ium.edu.na - Web: *http://www.ium.edu.na <http://www.ium.edu.na/>*Private Bag 14005,Bachbrech. 21-31 Hercules Street, Dorado Park, Windhoek, NAMIBIA On Wed, Jan 17, 2018 at 1:21 PM, Denis Cardon <dcardon at tranquil.it> wrote: > Hi Harsh, > > Thanks for the suggestion to trim the smb.conf after which the DC-1 is >> connecting to the Windows Server 2008 shared folder smbclient -k >> //IUMSVRAPP01/Pastel12 -d 9 >> and DC-2 is also connecting after using the DNS name of...
2015 Feb 16
0
rodc and KRB_TGS_REQ forwarding to RWDC to access hub ressources
.... By the way, the issue can be reproduced on command > line on the rodc (in the excerpt below, rodc-nantes is the rodc, > srvads is the rwdc and everything works fine except this issue) : > > [root at rodc-nantes.tranq ~]# shorewall start > > [root at rodc-nantes.tranq ~]# kinit dcardon > Password for dcardon at TRANQUILIT.LOCAL: > > [root at rodc-nantes.tranq ~]# shorewall clear > > [root at rodc-nantes.tranq ~]# klist > Ticket cache: FILE:/tmp/krb5cc_0 > Default principal: dcardon at TRANQUILIT.LOCAL > > Valid starting Expires Servi...
2018 Feb 15
1
Is it possible to lower the domain and forest functional level
...'exploitation informatique +33 5 62 20 71 71 (Poste 503) Devinlec - Groupe Leclerc -------------------------------------------- ----- Mail original ----- De: "samba" <samba at lists.samba.org> Cc: "samba" <samba at lists.samba.org>, "Denis Cardon" <dcardon at tranquil.it> Envoyé: Mercredi 14 Février 2018 17:11:02 Objet: Re: [Samba] Is it possible to lower the domain and forest functional level Ok I did the test of joining a new samba 4.7.5 as a domain controller. Unfortunatly we have the exact same error using dcpromo ! So now I need help to &quo...
2018 Jan 17
3
User Permissions issue
...dministrator *International University of Namibia *Tel: 061-4336000 - E-mail: h.kukreja @ium.edu.na - Web: *http://www.ium.edu.na <http://www.ium.edu.na/>*Private Bag 14005,Bachbrech. 21-31 Hercules Street, Dorado Park, Windhoek, NAMIBIA On Tue, Jan 16, 2018 at 3:31 PM, Denis Cardon <dcardon at tranquil.it> wrote: > Hi Harsh, > >> >> Thanks for your advise I will not use these wordings here. >> > > thanks! > > Please check the result below when I run the command on the DC-1 when >> DC-2 is off or on >> smbclient -k //IUMSVRAPP01/Paste...
2018 Jan 16
1
Issue with LDAPS & Winbind
...n was done through LDAP. I'm not sure what led me to this belief/understanding. How can I confirm that indeed my Linux member server is authenticating with Kerberos, and that it is encrypted? Is Kerberos traffic always encrypted? Thanks, Tim On Mon, Jan 15, 2018 at 10:37 AM, Denis Cardon <dcardon at tranquil.it> wrote: > Hi Timothy, > > Rowland, hopefully this explains it. I am not a security expert by any >> means, so correct me if I am incorrect in these assumptions! >> >> My understanding is that standard LDAP authentication without any >> encryption...
2018 Jan 17
0
User Permissions issue
...ium.edu.na> - Web: _http://www.ium.edu.na > <http://www.ium.edu.na/> > _Private Bag 14005,Bachbrech. 21-31 Hercules Street, Dorado Park, > Windhoek, NAMIBIA > > ____ > > > > > > > > > > > On Tue, Jan 16, 2018 at 3:31 PM, Denis Cardon <dcardon at tranquil.it > <mailto:dcardon at tranquil.it>> wrote: > > Hi Harsh, > > > Thanks for your advise I will not use these wordings here. > > > thanks! > > Please check the result below when I run the command on the DC-1 > w...
2018 Jan 09
2
Replication Error
...Administrator *International University of Namibia *Tel: 061-4336000 - E-mail: h.kukreja @ium.edu.na - Web: *http://www.ium.edu.na <http://www.ium.edu.na/>*Private Bag 14005,Bachbrech. 21-31 Hercules Street, Dorado Park, Windhoek, NAMIBIA On Tue, Jan 9, 2018 at 1:22 PM, Denis Cardon <dcardon at tranquil.it> wrote: > Hi Harsh, > > I am running Server-1 Samba4 AD 4.6.10 with an additional Server-2 Samba4 >> AD 4.7.2 The Inbound replication on the Server-1 is failing with the error >> below: >> >> DC=iumnet,DC=edu,DC=na >> Default-First-S...
2018 May 25
1
weird messages in logs
Le Fri, 25 May 2018 19:01:53 +0200 Denis Cardon <dcardon at tranquil.it> écrivait: > It is not a bug per se, but I'd say it does not have the best default > parameter value. Try adding the following parameter in your [global] > section (the default value here is 100 on my Debian package) and > restart smbd: > > [global] >...
2015 Feb 10
2
rodc and KRB_TGS_REQ forwarding to RWDC to access hub ressources
Hi everyone, I would like to have some input on ressources access from a workstation logged on a RODC server that has to connect on hub site servers. After login in the remote windows workstation, I have LOGONSERVER environment variable set to the local RODC server (workstation and user credentials have been preloaded). Everything works fine on local server. However if I want to connect to
2018 Feb 14
2
Is it possible to lower the domain and forest functional level
...with another samba 4.7 dc. --------------------------------------------- Christophe Borivant Responsable d'exploitation informatique +33 5 62 20 71 71 (Poste 503) Devinlec - Groupe Leclerc -------------------------------------------- ----- Mail original ----- De: "Denis Cardon" <dcardon at tranquil.it> À: "Christophe BORIVANT" <cborivant at devinlec.com> Cc: "samba" <samba at lists.samba.org> Envoyé: Mercredi 14 Février 2018 12:52:04 Objet: Re: [Samba] Is it possible to lower the domain and forest functional level Hi Christophe, > I don'...
2018 Feb 08
3
RFC2307: Recommendations for mapping Administrator account
...ext, Administrator account > should not be used alltogether, since it does not map to a physical > named person. If you follow this thinking, then quite a few AD accounts should be removed. > > The best thing is to disable that account altogether, and have named > accounts like dcardon-adm part of "domain admins" for specific tasks > needing "domain admins" rights. But even in this case, except for > joining a new DC (and a few non frequent other things like changing > the schema), you shouldn't need "domain admins" level privileges. Y...
2018 Jan 09
0
Replication Error
...t ium.edu.na> - Web: _http://www.ium.edu.na > <http://www.ium.edu.na/> > _Private Bag 14005,Bachbrech. 21-31 Hercules Street, Dorado Park, > Windhoek, NAMIBIA > > ____ > > > > > > > > > > > On Tue, Jan 9, 2018 at 1:22 PM, Denis Cardon <dcardon at tranquil.it > <mailto:dcardon at tranquil.it>> wrote: > > Hi Harsh, > > I am running Server-1 Samba4 AD 4.6.10 with an additional > Server-2 Samba4 > AD 4.7.2 The Inbound replication on the Server-1 is failing with > the error...
2018 Jul 25
1
smb.conf root preexec ?
> Subject: > Re: [Samba] Samba AD domain member and home directory creation > From: > Denis Cardon <dcardon at tranquil.it> > Date: > 09/02/2017 19:07 > To: > Dario Lesca <d.lesca at solinos.it>, Samba List <samba at lists.samba.org> > > Hi Dario, > > > On a Centos 7 minimal fresh install I have follow this howto: > > > > http://www.hexblot.com/blog/c...
2017 Nov 03
3
dns module not found
...y") File "/usr/lib/python2.7/dist-packages/samba/__init__.py", line 344, in import_bundled_package "%s.%s" % (namespace, modulename), fromlist=[namespace]) ImportError: No module named dns root at samba01:~# -----Ursprüngliche Nachricht----- Von: Denis Cardon [mailto:dcardon at tranquil.it] Gesendet: Freitag, 3. November 2017 12:50 An: Dirk Laurenz <samba at laurenz.ws>; samba at lists.samba.org Betreff: Re: [Samba] dns module not found Hi Dirk, > i have three samba dc's each running with Version 4.7 on raspbian > strech > > > > On one...
2018 Feb 07
3
RFC2307: Recommendations for mapping Administrator account
Hi, I provisioned a new domain with "--use-rfc2307" as I want to use the "ad" idmap backend on my domain members. I am thinking of mapping the "Administrator" account to UID 10000 (this is where my UID range for the domain will be starting), as the account must be known to the domain members (otherwise I got funny behavior).It seems a lot of people are mapping that
2018 Feb 14
0
Is it possible to lower the domain and forest functional level
...------------------- Christophe Borivant Responsable d'exploitation informatique +33 5 62 20 71 71 (Poste 503) Devinlec - Groupe Leclerc -------------------------------------------- ----- Mail original ----- De: "samba" <samba at lists.samba.org> À: "Denis Cardon" <dcardon at tranquil.it> Cc: "samba" <samba at lists.samba.org> Envoyé: Mercredi 14 Février 2018 14:11:53 Objet: Re: [Samba] Is it possible to lower the domain and forest functional level Hi Denis, We are using the latest version of sharepoint. samba-tool domain level show : Domain and...
2018 May 02
2
Using samba AD in mixed OS environment
...cally because of the users we tend to choose the easiest possible way for them to access the needed resources. I guess pam-script module mounting is exactly for this purpose, but I'll to research more since I'm not familiar with it. Thanks On Wed, May 2, 2018 at 9:00 AM, Denis Cardon <dcardon at tranquil.it> wrote: > Hi Zdravko, > > > I've got working samba AD server. It is playing nicely with Windows 10 and >> also successfully authenticating Linux machines with SSSD. >> On the Windows machines I have our EMC storage smb mounted via group >> policy...