Displaying 20 results from an estimated 40 matches for "dsdb_transaction_json_audit".
2018 Sep 14
2
kpasswd_samdb_set_password: domain\user (S-...) is changing password of user@domain
...1 auth:1 winbind:1 vfs:1 idmap:1 quota:1 acls:1
locking:1 msdfs:1 dmapi:1 registry:1 scavenger:1 dns:1 ldb:1 tevent:1
auth_audit:5 auth_json_audit:5 kerberos:1 drs_repl:1 smb2:1 smb2_credits:1
dsdb_audit:5 dsdb_json_audit:5 dsdb_password_audit:5
dsdb_password_json_audit:5 dsdb_transaction_audit:5
dsdb_transaction_json_audit:5 dsdb_group_audit:5 dsdb_group_json_audit:5
On Fri, Sep 14, 2018 at 1:17 PM Andrew Bartlett <abartlet at samba.org> wrote:
> On Fri, 2018-09-14 at 13:00 -0400, Bill Baird via samba wrote:
> > I have dsdb_password_audit:5 & dsdb_password_json_audit:5 enabled,
> > but I...
2019 Mar 08
1
samba-tool domain provision stuck when using python3
...s: 7 idmap: 7 quota: 7 acls: 7 locking: 7 msdfs: 7 dmapi: 7 registry: 7 scavenger: 7 dns: 7 ldb: 7 tevent: 7 auth_audit: 7 auth_json_audit: 7 kerberos: 7 drs_repl: 7 smb2: 7 smb2_credits: 7 dsdb_audit: 7 dsdb_json_audit: 7 dsdb_password_audit: 7 dsdb_password_json_audit: 7 dsdb_transaction_audit: 7 dsdb_transaction_json_audit: 7 dsdb_group_audit: 7 dsdb_group_json_audit: 7
and it didn't go on.
here's my step to complile samba 4.10rc4.
1 install some packages from repos with epel enabled.
yum install attr bind-utils docbook-style-xsl gcc gdb krb5-workstation \
libxslt perl perl-ExtUtils-MakeMaker lmdb-devel li...
2023 Mar 27
1
clients not connecting to samba shares
...: 5
?msdfs: 5
?dmapi: 5
?registry: 5
?scavenger: 5
?dns: 5
?ldb: 5
?tevent: 5
?auth_audit: 5
?auth_json_audit: 5
?kerberos: 5
?drs_repl: 5
?smb2: 5
?smb2_credits: 5
?dsdb_audit: 5
?dsdb_json_audit: 5
?dsdb_password_audit: 5
?dsdb_password_json_audit: 5
?dsdb_transaction_audit: 5
?dsdb_transaction_json_audit: 5
?dsdb_group_audit: 5
?dsdb_group_json_audit: 5
lp_load_ex: refreshing parameters
Initialising global parameters
rlimit_max: increasing rlimit_max (1024) to minimum Windows limit (16384)
INFO: Current debug levels:
?all: 5
?tdb: 5
?printdrivers: 5
?lanman: 5
?smb: 5
?rpc_parse: 5
?rpc_sr...
2018 Dec 01
2
Setup a Samba AD DC as an additional DC
...: 8
msdfs: 8
dmapi: 8
registry: 8
scavenger: 8
dns: 8
ldb: 8
tevent: 8
auth_audit: 8
auth_json_audit: 8
kerberos: 8
drs_repl: 8
smb2: 8
smb2_credits: 8
dsdb_audit: 8
dsdb_json_audit: 8
dsdb_password_audit: 8
dsdb_password_json_audit: 8
dsdb_transaction_audit: 8
dsdb_transaction_json_audit: 8
dsdb_group_audit: 8
dsdb_group_json_audit: 8
Processing section "[netlogon]"
Processing section "[sysvol]"
pm_process() returned Yes
ldb_wrap open of secrets.ldb
Could not find machine account in secrets database: Failed to fetch machine account password for DOMAIN from b...
2020 May 20
4
smbclient oddness
Are there any logs on the client or server at a higher log level?
Andrew Bartlett
On Wed, 2020-05-20 at 12:39 +1200, Grant Petersen via samba wrote:
> I forgot to mention that using the smbclient option
>
> -A /etc/cred/authfile
>
> behaves the same way as attempting to manually enter the password on
> the command line; failing in 4.12.2 and working in 4.11.0
>
>
2019 Dec 11
0
security = ads parameter not working in samba 4.9.5
...: 6
msdfs: 6
dmapi: 6
registry: 6
scavenger: 6
dns: 6
ldb: 6
tevent: 6
auth_audit: 6
auth_json_audit: 6
kerberos: 6
drs_repl: 6
smb2: 6
smb2_credits: 6
dsdb_audit: 6
dsdb_json_audit: 6
dsdb_password_audit: 6
dsdb_password_json_audit: 6
dsdb_transaction_audit: 6
dsdb_transaction_json_audit: 6
dsdb_group_audit: 6
dsdb_group_json_audit: 6
lp_load_ex: refreshing parameters
Initialising global parameters
INFO: Current debug levels:
all: 6
tdb: 6
printdrivers: 6
lanman: 6
smb: 6
rpc_parse: 6
rpc_srv: 6
rpc_cli: 6
passdb: 6
sam: 6
auth: 6
winbind: 6
vfs: 6
i...
2023 Mar 28
1
clients not connecting to samba shares
...> ??kerberos: 5
>>> ??drs_repl: 5
>>> ??smb2: 5
>>> ??smb2_credits: 5
>>> ??dsdb_audit: 5
>>> ??dsdb_json_audit: 5
>>> ??dsdb_password_audit: 5
>>> ??dsdb_password_json_audit: 5
>>> ??dsdb_transaction_audit: 5
>>> ??dsdb_transaction_json_audit: 5
>>> ??dsdb_group_audit: 5
>>> ??dsdb_group_json_audit: 5
>>> lp_load_ex: refreshing parameters
>>> Initialising global parameters
>>> rlimit_max: increasing rlimit_max (1024) to minimum Windows limit
>>> (16384)
>>> INFO: Current de...
2020 Jul 13
10
Problem with network browsing
...dmapi: 10
registry: 10
scavenger: 10
dns: 10
ldb: 10
tevent: 10
auth_audit: 10
auth_json_audit: 10
kerberos: 10
drs_repl: 10
smb2: 10
smb2_credits: 10
dsdb_audit: 10
dsdb_json_audit: 10
dsdb_password_audit: 10
dsdb_password_json_audit: 10
dsdb_transaction_audit: 10
dsdb_transaction_json_audit: 10
dsdb_group_audit: 10
dsdb_group_json_audit: 10
lp_load_ex: refreshing parameters
Initialising global parameters
rlimit_max: increasing rlimit_max (1024) to minimum Windows limit (16384)
INFO: Current debug levels:
all: 10
tdb: 10
printdrivers: 10
lanman: 10
smb: 10
rpc_parse: 10...
2019 Dec 10
6
security = ads parameter not working in samba 4.9.5
I've re-read this thread but its a bit confusing due to 2 persons with the same probem in one thread.
Im thinking here, how is samba started, since winbind is not running.
Im suspecting samba-addc or samba is starting. Not smbd nmbd winbind.
I suggest to run this:
Disable that all again.
systemctl disable samba-addc samba smbd nmbd winbind
systemctl mask samba-addc samba smbd nmbd
2020 Jul 13
0
Problem with network browsing
...0
> auth_audit: 10
> auth_json_audit: 10
> kerberos: 10
> drs_repl: 10
> smb2: 10
> smb2_credits: 10
> dsdb_audit: 10
> dsdb_json_audit: 10
> dsdb_password_audit: 10
> dsdb_password_json_audit: 10
> dsdb_transaction_audit: 10
> dsdb_transaction_json_audit: 10
> dsdb_group_audit: 10
> dsdb_group_json_audit: 10
> lp_load_ex: refreshing parameters
> Initialising global parameters
> rlimit_max: increasing rlimit_max (1024) to minimum Windows limit (16384)
> INFO: Current debug levels:
> all: 10
> tdb: 10
> print...
2020 Jul 13
0
Problem with network browsing
...tevent: 10
> auth_audit: 10
> auth_json_audit: 10
> kerberos: 10
> drs_repl: 10
> smb2: 10
> smb2_credits: 10
> dsdb_audit: 10
> dsdb_json_audit: 10
> dsdb_password_audit: 10
> dsdb_password_json_audit: 10
> dsdb_transaction_audit: 10
> dsdb_transaction_json_audit: 10
> dsdb_group_audit: 10
> dsdb_group_json_audit: 10
> lp_load_ex: refreshing parameters
> Initialising global parameters
> rlimit_max: increasing rlimit_max (1024) to minimum Windows
> limit (16384)
> INFO: Current debug levels:
> all: 10
> tdb: 10
> prin...
2018 Sep 14
0
kpasswd_samdb_set_password: domain\user (S-...) is changing password of user@domain
...idmap:1
> quota:1 acls:1 locking:1 msdfs:1 dmapi:1 registry:1 scavenger:1
> dns:1 ldb:1 tevent:1 auth_audit:5 auth_json_audit:5 kerberos:1
> drs_repl:1 smb2:1 smb2_credits:1 dsdb_audit:5 dsdb_json_audit:5
> dsdb_password_audit:5 dsdb_password_json_audit:5
> dsdb_transaction_audit:5 dsdb_transaction_json_audit:5
> dsdb_group_audit:5 dsdb_group_json_audit:5
The message you were looking at won't show all password resets, only
some that are via kerberos. That is why we added the new logs.
Andrew Bartlett
--
Andrew Bartlett http://samba.org/~abartlet/
Authentication Develope...
2023 Jul 14
1
dsdb audit in JSON to journald
Hi,
I want see all dsdb events write to systemd (json format).
My global section
...
logging = systemd
log level = 1 passdb:5 auth:5 winbind:1 auth_json_audit:3 dsdb_json_audit:5 dsdb_password_json_audit:5 dsdb_group_audit:5 dsdb_group_json_audit:5 dsdb_transaction_json_audit:5
...
systemctl restart samba
journalctl -f
Then,
[root at dc ~]# samba-tool group add testgroup1
{"timestamp": "2023-07-14T09:53:30.595295+0500", "type": "dsdbChange", "dsdbChange": {"version": {"major": 1, "minor"...
2020 Jul 13
1
Problem with network browsing
...10
> > kerberos: 10
> > drs_repl: 10
> > smb2: 10
> > smb2_credits: 10
> > dsdb_audit: 10
> > dsdb_json_audit: 10
> > dsdb_password_audit: 10
> > dsdb_password_json_audit: 10
> > dsdb_transaction_audit: 10
> > dsdb_transaction_json_audit: 10
> > dsdb_group_audit: 10
> > dsdb_group_json_audit: 10
> > lp_load_ex: refreshing parameters
> > Initialising global parameters
> > rlimit_max: increasing rlimit_max (1024) to minimum Windows limit
> > (16384)
> > INFO: Current debug levels:
>...
2019 Nov 07
1
net ads join explication ?
...dmapi: 5
? registry: 5
? scavenger: 5
? dns: 5
? ldb: 5
? tevent: 5
? auth_audit: 5
? auth_json_audit: 5
? kerberos: 5
? drs_repl: 5
? smb2: 5
? smb2_credits: 5
? dsdb_audit: 5
? dsdb_json_audit: 5
? dsdb_password_audit: 5
? dsdb_password_json_audit: 5
? dsdb_transaction_audit: 5
? dsdb_transaction_json_audit: 5
? dsdb_group_audit: 5
? dsdb_group_json_audit: 5
Processing section "[global]"
doing parameter security = ADS
doing parameter realm = SAMBADOM.CALAIS.FR
doing parameter workgroup = SAMBADOM
doing parameter netbios name = clientblues2
doing parameter winbind separator = /
doing parame...
2019 Nov 18
1
logging of ldap queries
Hi everyone,
I am looking at a way to easily trace ldap queries to easily single out computers that have buggy software that download the whole AD (like a getent passwd with winbind enum users = yes for example). Increasing the debug level to 5 gives me the result I am looking for, however it is very very talkative and it fills up the log partition way too fast. I wanted to try to single out one
2019 Jul 04
3
Error samba backup 4.10.5
...: 5
msdfs: 5
dmapi: 5
registry: 5
scavenger: 5
dns: 5
ldb: 5
tevent: 5
auth_audit: 5
auth_json_audit: 5
kerberos: 5
drs_repl: 5
smb2: 5
smb2_credits: 5
dsdb_audit: 5
dsdb_json_audit: 5
dsdb_password_audit: 5
dsdb_password_json_audit: 5
dsdb_transaction_audit: 5
dsdb_transaction_json_audit: 5
dsdb_group_audit: 5
dsdb_group_json_audit: 5
Processing section "[netlogon]"
Processing section "[sysvol]"
pm_process() returned Yes
schema_fsmo_init: we are master[yes] updates allowed[no]
schema_fsmo_init: we are master[yes] updates allowed[no]
running backup on dirs: /...
2019 May 31
0
Inconsistency with LANMAN1 and Samba 4.9
...stry: 10
scavenger: 10
dns: 10
ldb: 10
tevent: 10
auth_audit: 10
auth_json_audit: 10
kerberos: 10
drs_repl: 10
smb2: 10
smb2_credits: 10
dsdb_audit: 10
dsdb_json_audit: 10
dsdb_password_audit: 10
dsdb_password_json_audit: 10
dsdb_transaction_audit: 10
dsdb_transaction_json_audit: 10
dsdb_group_audit: 10
dsdb_group_json_audit: 10
lp_load_ex: refreshing parameters
Initialising global parameters
rlimit_max: increasing rlimit_max (1024) to minimum Windows limit (16384)
INFO: Current debug levels:
all: 10
tdb: 10
printdrivers: 10
lanman: 10
smb: 10
rpc_p...
2018 Sep 14
2
kpasswd_samdb_set_password: domain\user (S-...) is changing password of user@domain
I have dsdb_password_audit:5 & dsdb_password_json_audit:5 enabled, but I
don't get the message I included.
I instead get an audit log that a password was changed...but not by who.
Was hoping to get more info in a single log entry, so I can track who on my
staff is doing password resets and setup email alerts via my logging system.
On Fri, Sep 14, 2018 at 12:49 PM Andrew Bartlett
2019 May 31
2
Inconsistency with LANMAN1 and Samba 4.9
On Fri, 2019-05-31 at 11:40 -0700, Jeremy Allison via samba wrote:
> On Fri, May 31, 2019 at 07:09:44PM +0200, Andreas Reichel wrote:
> > > > When adding me as the user with 'smbpasswd -a andreas', and entering a password,
> > > > no LANMAN hash is generated. The generated smbpasswd entry always contains 32 X as the first hash.
> > > >
> > >