Displaying 20 results from an estimated 112 matches for "domadmin".
2008 Jul 30
2
unable to map windows to unix groups
Hello.
After fresh install.
Samba and ldap seems to run normally ( I can join win2k workstation to linux
samba pdc ).
Using yast I create a system group named domadmin
But I am unable to map "Domain Admins" to domadmin
I am unable to map "Domain Admins" to existing ntadmin group
I am unable to mofify mapping "Domain Admins" to domadmin group
Thank you for helping.
LINUX-SRV: # net groupmap add ntgroup="Domain Admins" un...
2004 Jan 08
4
Add a preamble to documentation
...t only for
account management, but for _all_ tasks, eg. also for accessing shares,
creating files and so on.
These users thus should not be used for day to day work, but only for
domain administration purposes.
But it could be mixed with the "Domain Admins" group (mapped to Unix
group domadmin or ntadmin), just by specifying "admin users = root
@ntadmin @domadmin" in smb.conf.
This will allow paradigms similar to the one found in NT4 domain
administration, but with the downside cited below.
What should should be done is to have two separate groups, say domadmin
for domain a...
2003 Nov 14
1
net group question
I groupapped the domadmins group in linux to ntgroup="Domain Admins" but instead of mapping to the SID number ending in 512 it's creating a new SID number endind in 2025 mapped to domadmins...
Does anybody knows why??? It worked in the previous server.
This is the command I execute
net groupmap add ntgroup=...
2004 Mar 25
1
domain admins and Samba 3.0.2
Hi
I've been running Samba 2.x for years but decided to move up to 3.0.2. I've set
up a new samba server with a workgroup NEWBIOSS and netbios name PARETO.
Im having problems setting up my domain admins.
I used
'net groupmap modify "Domain Admins" unixgroup=domadmin'
my 'net groupmap list' shows :
System Operators (S-1-5-32-549) -> -1
Replicators (S-1-5-32-552) -> -1
Guests (S-1-5-32-546) -> -1
Domain Users (S-1-5-21-1375496003-1846269575-2512961765-513) -> -1
Power Users (S-1-5-32-547) -> -1
Print Operators (S-1-5-32-550) -> -1...
2003 Jul 31
1
Réf. : groupmember list fails with 3.0.0b3 and LDAP
...are mostly working, however I don't seem
to be able to retrieve a list of users in a group, nor am I able to
grant ACL's based on group membership. Here's what I did.
1. Created an LDAP posixGroup account
2. net groupmap add rid=512 ntgroup="Domain Admins" unixgroup="domadmin"
The resulting LDIF shows up as follows:
# domadmin, Group, GSLIS
dn: cn=domadmin,ou=Group,dc=GSLIS
objectClass: posixGroup
objectClass: sambaGroupMapping
cn: domadmin
gidNumber: 512
memberUid: admin
sambaSID: S-1-5-21-3469007649-3513637358-4254120478-512
sambaGroupType: 2
displayName: Domai...
2009 Nov 07
0
XP-machines cannot join Samba PDC with tdbsam
...he answer "The following error occurred attempting to
join the domain "MYDOMAIN, the specified domain either does not exist or
could not be contacted". But the Domain exists, this is a fact, all the
old XP-Machines, which are members of the domain MYDOMAIN work properly.
The user domadmin and the password are really correct, when I try login
on a XP-Workstation, which is an old member of the domain, then it works
properly, I can without problems login.
Have a look at my Domain-Administator rights:
===============================
/etc/passwd: domadmin:x:500:512:Domain Administrato...
2023 May 22
3
vfs_shadow_copy2 cannot read/find snapshots
...enter the .snaps
subdirectory, in there I can see:
root at XXX:~# cd /srv/glvol_samba/admin/projects/.snaps
root at XXX:/srv/glvol_samba/admin/projects/.snaps# ls -ld
drwxr-xr-x 2 root root 4096? 1. Jan 1970? .
root at XXX:/srv/glvol_samba/admin/projects/.snaps# ls -l
insgesamt 28
drwxrwx---+ 3 domadmin.sn dom?nen-benutzer 4096 16. Mai 16:31
snap_GMT-2023.05.16-19.14.01
drwxrwx---+ 3 domadmin.sn dom?nen-benutzer 4096 16. Mai 16:31
snap_GMT-2023.05.17-19.14.01
drwxrwx---+ 3 domadmin.sn dom?nen-benutzer 4096 16. Mai 16:31
snap_GMT-2023.05.18-19.14.01
drwxrwx---+ 3 domadmin.sn dom?nen-benutzer 409...
2004 Sep 08
4
machine account with w2k
...s,
only that I log in as Administrator into the Windows-machine and give in
the domainname an,
then the client answers, without password-asking, I should reboot and
the client joined successfully.
When I try to do the same, I get an asking for an password. Ok, for that
I created the user "domadmin" on the Samba as a member of the "Domain
Adminstrators", but this user is not accepted from the W2K-Client. I can
not understand why not. Normally it should going on.
Please have a look of my documentation about this:
--
Heinz Allerberger
Systemadministrator
Zentrum Neurologie
U...
2023 May 22
1
vfs_shadow_copy2 cannot read/find snapshots
...I can see:
>
> root at XXX:~# cd /srv/glvol_samba/admin/projects/.snaps
>
> root at XXX:/srv/glvol_samba/admin/projects/.snaps# ls -ld
> drwxr-xr-x 2 root root 4096 1. Jan 1970 .
>
> root at XXX:/srv/glvol_samba/admin/projects/.snaps# ls -l
> insgesamt 28
> drwxrwx---+ 3 domadmin.sn dom?nen-benutzer 4096 16. Mai 16:31
> snap_GMT-2023.05.16-19.14.01
> drwxrwx---+ 3 domadmin.sn dom?nen-benutzer 4096 16. Mai 16:31
> snap_GMT-2023.05.17-19.14.01
> drwxrwx---+ 3 domadmin.sn dom?nen-benutzer 4096 16. Mai 16:31
> snap_GMT-2023.05.18-19.14.01
> drwxrwx---+ 3 domad...
2006 Apr 30
0
access denied to printer after changing the dns-domain
...= yes
mangled names = yes
preserve case = yes
short preserve case = yes
#
# PDC-Stuff
#
add user script = /usr/sbin/useradd -d /dev/null -g smbpc -c 'Maschinenkonto' -s /bin/false -M %m$
domain admin group = domadmin @domadmin
domain logons = Yes
domain master = Yes
logon drive = H:
logon home = \\%L\%U
logon path = \\%L\Profiles\%m-%U
logon script = %U.cmd
logon script = %m.cm...
2006 Apr 25
0
access denied to printer auf change of dns-domain
...= yes
mangled names = yes
preserve case = yes
short preserve case = yes
#
# PDC-Stuff
#
add user script = /usr/sbin/useradd -d /dev/null -g smbpc -c 'Maschinenkonto' -s /bin/false -M %m$
domain admin group = domadmin @domadmin
domain logons = Yes
domain master = Yes
logon drive = H:
logon home = \\%L\%U
logon path = \\%L\Profiles\%m-%U
logon script = %U.cmd
logon script = %m.cm...
2005 Nov 21
1
does a pdc need to be in the domain itself?
...ter to
join the pdc itself to the domain then?
The standard domain groups having the SID part of the first "net
getlocalsid"
map to no unix group but they are also not used:
> net groupmap list
> [...]
> Domain Users (S-1-5-21-4166838278-3756557259-2095403906-513) -> -1
> domadmins (S-1-5-21-2018781741-1218799122-1862565094-512) -> admin
> domguests (S-1-5-21-2018781741-1218799122-1862565094-514) -> nobody
> Domain Guests (S-1-5-21-4166838278-3756557259-2095403906-514) -> -1
> Domain Admins (S-1-5-21-4166838278-3756557259-2095403906-512) -> -1
> domus...
2005 Nov 24
1
Group mapping: different SIDs
...OMAIN
I get
>SID for domain DOMAIN is: S-1-5-21-2018781741-1218799122-1862565094
The group mapping shows
> net groupmap list
> Domain Users (S-1-5-21-4166838278-3756557259-2095403906-513) -> -1
> Domain Admins (S-1-5-21-4166838278-3756557259-2095403906-512) -> -1
> [...]
> domadmins (S-1-5-21-2018781741-1218799122-1862565094-512) -> ntadmin
> domusers (S-1-5-21-2018781741-1218799122-1862565094-513) -> users
> [...]
Does this mean that
- the pdc itself is not in the domain (because of the different sid from
the domain sid)?
- the mapping relating of the self-defin...
2006 Aug 15
0
printer-access not possible after change of dns-name
...es
comment = Eigene Dateien (Netzwerk)
create mask = 0600
directory mask = 0700
hide dot files = yes
public = no
writeable = yes
[netlogon]
admin users = domadmin @domadmin
comment = Network Logon Service
path = /server/netlogon
read only = no
writeable = yes
[Profiles]
admin users = domadmin @domadmin
browseable = No
c...
2011 Feb 19
0
Samba ACLs and NFS ACLs:Differing results
...'s the rub. First
some details:
Samba server is running Fedora 14, Samba 3.5.6 as PDC, OpenLDAP backend,
NFS4.
The filesystem is mounted on the service with options: acl and
user_xattr.
The Samba share is:
[Work]
comment = Share for Work
path = /home/work
valid users = +domadmins, +Accounting
write list = +domadmins, +Accounting
inherit permissions = yes
inherit acls = yes
map acl inherit = yes
acl group control = yes
ea support = yes
vfs object = acl_xattr recycle
store dos attributes = yes
map archiv...
2009 Feb 22
1
Can't add machines to domain after Debian-Update
...ply_sesssetup_and_X_spnego(1173)
Doing spnego session setup
[2009/02/21 11:50:00, 3] smbd/sesssetup.c:reply_sesssetup_and_X_spnego(1208)
NativeOS=[Windows 2000 2195] NativeLanMan=[Windows 2000 5.0] PrimaryDomain=[]
[2009/02/21 11:50:00, 3] libsmb/ntlmssp.c:ntlmssp_server_auth(745)
Got user=[domadmin] domain=[wuerggrub] workstation=[TESTPC] len1=24 len2=24
[2009/02/21 11:50:00, 3] auth/auth.c:check_ntlm_password(220)
check_ntlm_password: Checking password for unmapped user [wuerggrub]\[domadmin]@[TESTPC] with the new password interface
[2009/02/21 11:50:00, 3] auth/auth.c:check_ntlm_passwo...
2006 Sep 09
1
access denied to printer after changing the dns-domain
...= yes
mangled names = yes
preserve case = yes
short preserve case = yes
#
# PDC-Stuff
#
add user script = /usr/sbin/useradd -d /dev/null -g smbpc -c 'Maschinenkonto' -s /bin/false -M %m$
domain admin group = domadmin @domadmin
domain logons = Yes
domain master = Yes
logon drive = H:
logon home = \\%L\%U
logon path = \\%L\Profiles\%m-%U
logon script = %U.cmd
logon script = %m.cm...
2023 May 22
1
vfs_shadow_copy2 cannot read/find snapshots
...can see:
>
> root at XXX:~# cd /srv/glvol_samba/admin/projects/.snaps
>
> root at XXX:/srv/glvol_samba/admin/projects/.snaps# ls -ld
> drwxr-xr-x 2 root root 4096? 1. Jan 1970? .
>
> root at XXX:/srv/glvol_samba/admin/projects/.snaps# ls -l
> insgesamt 28
> drwxrwx---+ 3 domadmin.sn dom?nen-benutzer 4096 16. Mai 16:31
> snap_GMT-2023.05.16-19.14.01
> drwxrwx---+ 3 domadmin.sn dom?nen-benutzer 4096 16. Mai 16:31
> snap_GMT-2023.05.17-19.14.01
> drwxrwx---+ 3 domadmin.sn dom?nen-benutzer 4096 16. Mai 16:31
> snap_GMT-2023.05.18-19.14.01
> drwxrwx---+ 3 do...
2005 May 13
2
losing access to profile when user becomes domain user instead domain admin
...= yes
create mask = 0700
directory mask = 0770
browsable = no
valid users = @domusers root
force user = %U
profile acls = yes
[root@jupiter Eigene Dateien]# net groupmap list
Domain Admins (S-1-5-21-2187243289-1530508873-3638611354-512) -> domadmins
System Operators (S-1-5-32-549) -> -1
Domain Guests (S-1-5-21-2187243289-1530508873-3638611354-514) -> -1
Replicators (S-1-5-32-552) -> -1
Guests (S-1-5-32-546) -> -1
Power Users (S-1-5-32-547) -> -1
Print Operators (S-1-5-32-550) -> -1
Administrators (S-1-5-32-544) -> -1
Doma...
2023 May 22
2
vfs_shadow_copy2 cannot read/find snapshots
...root at XXX:~# cd /srv/glvol_samba/admin/projects/.snaps
>
> root at XXX:/srv/glvol_samba/admin/projects/.snaps# ls -ld
> drwxr-xr-x 2 root root 4096? 1. Jan 1970? .
>
> root at XXX:/srv/glvol_samba/admin/projects/.snaps# ls -l
> insgesamt 28
> drwxrwx---+ 3 domadmin.sn dom?nen-benutzer 4096 16. Mai 16:31
> snap_GMT-2023.05.16-19.14.01
> drwxrwx---+ 3 domadmin.sn dom?nen-benutzer 4096 16. Mai 16:31
> snap_GMT-2023.05.17-19.14.01
> drwxrwx---+ 3 domadmin.sn dom?nen-benutzer 4096 16. Mai 16:31
> snap_GMT-2023.05.18-19.14.01
>...