Displaying 20 results from an estimated 52 matches for "dmulder".
Did you mean:
mulder
2023 Jan 06
2
Group Policy Settings Missing/Not Applying
...----------------------
> [ PermitRootLogon ] = yes
> -------------------------------------------------------------------------------------
> -------------------------------------------------------------------------------------
See chapter 18 in the Group Policy book:
https://dmulder.github.io/group-policy-book/openssh.html#client-side-extension-13
It should be creating the file in /etc/ssh/sshd_config.d/, but the
contents of the cache will tell you exactly where.
Have you configured automatic refresh, or manually applied the settings?
https://dmulder.github.io/group-policy...
2023 Jan 12
2
No Chrome RSOP
Hi again,
Looking at setting group policy for Linux desktops's chrome installs. Reading through the group policy book (https://dmulder.github.io/group-policy-book/chrome.html#server-side-extension-10) it says I should have some RSOP's for chrome when I've set a policy except Im not seeing these set. I have a policy that is supposed to be setting the home url under 'recommended' policies. Just wanting to see if ther...
2023 Apr 18
2
gpo client linux sssd does not apply
...sed to
> join the samba AD was sssd.
>
> The 22.04 ubuntu client has joined and everything is working fine except
> for the GPOs for linux clients.
>
> I compiled and installed oddjob-gpupdate and also installed oddbjob as
> recommended by the samba documentation (
> https://dmulder.github.io/group-policy-book/)
>
> I also installed samba version 4.15.3 with the command samba-gpupdate, when
> I run the command samba-gpupdate --rsop with sssd working it reports these
> errors:
>
> Traceback (most recent call last):
> File "/usr/sbin/samba-gpupdate&...
2023 Jan 06
1
Group Policy Settings Missing/Not Applying
Hi, Im attempting to apply a few group policy settings but they dont seem to be applying on the machine in question, or some settings I cannot see in the GPME.
1. Settings applied to openssh dont seem to create the required config files in /etc/ssh/sshd_config.d/ for ssh to actually pick up on these changes. Is there a different location its applying these to that I can verify with? Below is
2023 Apr 14
4
gpo client linux sssd does not apply
...nts version 22.04 and the software I used to
join the samba AD was sssd.
The 22.04 ubuntu client has joined and everything is working fine except
for the GPOs for linux clients.
I compiled and installed oddjob-gpupdate and also installed oddbjob as
recommended by the samba documentation (
https://dmulder.github.io/group-policy-book/)
I also installed samba version 4.15.3 with the command samba-gpupdate, when
I run the command samba-gpupdate --rsop with sssd working it reports these
errors:
Traceback (most recent call last):
File "/usr/sbin/samba-gpupdate", line 117, in <module>...
2023 Apr 14
1
gpo client linux sssd does not apply
On 14/04/2023 15:51, Anderson Sampaio Mello via samba wrote:
> Thanks everyone for the reply.
>
> But actually the samba documentation:
>
> https://wiki.samba.org/index.php/Group_Policy#SSSD
>
> and from David Mulder(dmulder):
>
> https://dmulder.github.io/group-policy-book/policy-refresh.html#sssd-refresh
>
> It makes it clear that sssd does support samba AD GPOs and to work it needs
> oddjob-gpupdate and samba-gpupdate (command installed with samba).
>
> As I don't know the cause of the pr...
2023 Apr 18
1
gpo client linux sssd does not apply
On 18/04/2023 18:15, David Mulder via samba wrote:
> I was able to get it to work by setting up a simple smb.conf, and doing
> a `net ads join`. SSSD is still the auth provider.
>
> My simple smb.conf looks like this:
>
> dmulder at dmm-tw:~> cat /etc/samba/smb.conf
> [global]
> ?? ?idmap config * : backend = tdb
> ?? ?idmap config * : range = 10000-20000
> ?? ?idmap config dmm : backend = rid
> ?? ?idmap config dmm : range = 20001-99999
> ?? ?kerberos method = secrets and keytab
> ?? ?security...
2023 Aug 08
1
SAMBA gpo startup scripts from user
Hello. Is there a way to start Gpo startup scripts using logged user? i can
see that startup scripts working from root, yes there is option run_as
(which somehow dont work) but this is not what i need, i dont want to
create GPO for every user. i need gpo that will start script from user that
just logged it, not root.
2024 Jan 26
1
Azure AD (Entra ID) join specification
...ut any blob in the
TransportKey field, and doesn't perform any validation on it. This only
becomes obvious when future responses from Azure are garbled nonsense.
--
David Mulder
Labs Software Engineer, Samba
SUSE
1221 S Valley Grove Way, Suite 500
Pleasant Grove, UT 84062
(P)+1 385.208.2989
dmulder at suse.com
http://www.suse.com
2023 Aug 26
1
Domain password policy with Samba AD DC
...exing for a
> user that does not know Samba AD DC configuration extremely well.
>
> If you have got a workaround, allowing the use of the RSAT Group
> Policy Manager, I, and probably many other, would be happy to get
> some information how this is done.
Have you read this:
https://dmulder.github.io/group-policy-book/sec.html
Rowland
2023 Apr 17
1
gpo client linux sssd does not apply
...sed to
> join the samba AD was sssd.
>
> The 22.04 ubuntu client has joined and everything is working fine except
> for the GPOs for linux clients.
>
> I compiled and installed oddjob-gpupdate and also installed oddbjob as
> recommended by the samba documentation (
> https://dmulder.github.io/group-policy-book/)
>
> I also installed samba version 4.15.3 with the command samba-gpupdate, when
> I run the command samba-gpupdate --rsop with sssd working it reports these
> errors:
>
> Traceback (most recent call last):
> File "/usr/sbin/samba-gpupdate&...
2023 Apr 14
2
gpo client linux sssd does not apply
On 14/04/2023 09:23, Anderson Sampaio Mello via samba wrote:
> Hello Samba Team, how are you?
>
> I'm joining linux clients in the company's environment and I would like to
> apply GPOs to linux clients, I'm in the testing phase.
>
> I'm testing with ubuntu clients version 22.04 and the software I used to
> join the samba AD was sssd.
>
Samba does not
2023 Aug 26
1
Domain password policy with Samba AD DC
...oes not know Samba AD DC configuration extremely well.
>>
>> If you have got a workaround, allowing the use of the RSAT Group
>> Policy Manager, I, and probably many other, would be happy to get
>> some information how this is done.
> Have you read this:
>
> https://dmulder.github.io/group-policy-book/sec.html
>
> Rowland
>
Hi Rowland,
Thanks for the link. I will study it with interest.
However, I'm setting up a Windows only test domain, the only Linux box
is the Samba DC, and I will try using the RSAT tool suite as far as
possible. Trying to set the...
2024 Jun 29
1
Looking for Python docs/examples to modify DNS via keytab
...-tool:
https://gitlab.com/samba-team/samba/-/blob/master/python/samba/netcmd/dns.py?ref_type=heads
This is probably a more appropriate approach, but a bit more work.
--
David Mulder
Labs Software Engineer, Samba
SUSE
1221 S Valley Grove Way, Suite 500
Pleasant Grove, UT 84062
(P)+1 385.208.2989
dmulder at suse.com
http://www.suse.com
2023 Mar 10
2
Missing features in RSAT Group Policy Manager (Debian as Samba PDC)
I have been testing a Debian 11 (i386) server with samba
2:4.13.13+dfsg-1~deb11u5 running as an Active Directory Controller. This is
a stand-alone DC, meant for user authentication for a small business
network. I use RSAT Features on Windows 11 Pro to manage Users, Groups,
Machines etc., which works fine.
I would like create a new GPO using the RSAT Group Policy Manager to change
Security
2023 Aug 26
1
Domain password policy with Samba AD DC
...gt; extremely well.
> >>
> >> If you have got a workaround, allowing the use of the RSAT Group
> >> Policy Manager, I, and probably many other, would be happy to get
> >> some information how this is done.
> > Have you read this:
> >
> > https://dmulder.github.io/group-policy-book/sec.html
> >
> > Rowland
> >
> Hi Rowland,
>
> Thanks for the link. I will study it with interest.
>
> However, I'm setting up a Windows only test domain, the only Linux
> box is the Samba DC, and I will try using the RSAT tool s...
2023 Apr 18
1
gpo client linux sssd does not apply
...D was sssd.
>>
>> The 22.04 ubuntu client has joined and everything is working fine except
>> for the GPOs for linux clients.
>>
>> I compiled and installed oddjob-gpupdate and also installed oddbjob as
>> recommended by the samba documentation (
>> https://dmulder.github.io/group-policy-book/)
>>
>> I also installed samba version 4.15.3 with the command samba-gpupdate,
>> when
>> I run the command samba-gpupdate --rsop with sssd working it reports
>> these
>> errors:
>>
>> Traceback (most recent call last):
&...
2023 Jan 12
0
Samba-tool Error creating new GPO
...uccessfully create the GPO.
`samba-tool ntacl sysvolcheck` fails when I do this, but after a
`samba-tool ntacl sysvolreset` all is well.
Anyone have any ideas here?
--
David Mulder
Labs Software Engineer, Samba
SUSE
1221 S Valley Grove Way, Suite 500
Pleasant Grove, UT 84062
(P)+1 385.208.2989
dmulder at suse.com
http://www.suse.com
2023 Mar 13
1
Fwd: samba-gpupdate nsswitch error
On 13/03/2023 17:05, David Mulder via samba wrote:
>
> On 3/13/23 10:54 AM, Rowland Penny via samba wrote:
>> Glad it isn't just myself having problems understanding that code, it
>> is horrible :-D
>>
>> If it is a machine, why is it trying to look up a uid ? I traced where
>> the error message is coming from, but couldn't understand what was
2023 Mar 13
1
Fwd: samba-gpupdate nsswitch error
On 13/03/2023 17:19, David Mulder via samba wrote:
>
> On 3/13/23 11:14 AM, Rowland Penny via samba wrote:
>> I was referring to:
>> add_local_groups: SID S-1-5-21-2112549936-2540803609-4198596461-1600
>> -> getpwuid(3000148) failed, is nsswitch configured?
>>
>> Which is coming from source3/auth/token_util.c
>>
> That's not part of the