search for: gabben

Displaying 18 results from an estimated 18 matches for "gabben".

2020 Mar 14
4
Q: Samba AD, Pfsense, Windows 10, vpn
Your pfSense firewall has OpenVPN built into it already, and you can point pfSense authentication back to your samba AD. We support over 400 users in this model. The configuration file for OpenVPN is common to all users, and they authenticate with their AD credentials. > On Mar 14, 2020, at 7:21 AM, Michael Howard via samba <samba at lists.samba.org> wrote: > > On 14/03/2020
2020 Jun 14
5
Question about certificates on Samba AD/DC
Thanks Gabben and Andrew. I've understood but a new question emerged: Each DC server on my domain has a different pair cert/key and a different CA cert after deployment, correct? If so, is it a best practice to generate new cert for each DC server and sign them with a unique CA? OBS: Every DC servers belong...
2020 May 07
2
Azure AD Connect
G'Day Marcio and gabben, Douglas (CC'ed) is going to try and look into why this doesn't 'just work' with Samba. No promises, but at least a trained eye will look over the process. If you could help him get set up and understand what works and doesn't that will leave him more time for actual debuggin...
2020 May 04
4
Azure AD Connect
We joined one MS Windows 2012 R2 server to our Samba DC fleet and pointed the Azure AD sync tool to that new Windows AD server and Azure password sync is working well now. I don?t have any experience with distribution groups. Good Luck! > On May 4, 2020, at 10:21 AM, Marcio Merlone via samba <samba at lists.samba.org> wrote: > > So, testing samba 4.12 on a Debian buster I found
2019 Sep 13
2
inconsistent directory locations for dns.keytab
Hello, FYI note here... I?ve done several AD-DC installs recently using Louis?s packages on Ubuntu Bionic. I?ve seen this with 4.10.5 - 4.10.8 packages I noticed that the initial install puts dns.keytab in /var/lib/samba/private/ Then this command: samba_upgradedns --dns-backend=BIND9_DLZ will place a new dns.keytab file in /var/lib/samba/bind-dns The documentation on the samba wiki, and the
2020 Mar 15
2
Q: Samba AD, Pfsense, Windows 10, vpn
> Am 15.03.2020 um 08:21 schrieb S?rgio Basto via samba <samba at lists.samba.org>: > > ?On Sat, 2020-03-14 at 07:43 -0700, gabben via samba wrote: >> Your pfSense firewall has OpenVPN built into it already, and you can >> point pfSense authentication back to your samba AD. We support over >> 400 users in this model. The configuration file for OpenVPN is common >> to all users, and they authenticate wit...
2020 May 15
0
Azure AD Connect
Hello all, How can I support this effort? What can I provide to assist? Cheers > On May 7, 2020, at 3:18 AM, Andrew Bartlett <abartlet at samba.org> wrote: > > G'Day Marcio and gabben, > > Douglas (CC'ed) is going to try and look into why this doesn't 'just > work' with Samba. No promises, but at least a trained eye will look > over the process. If you could help him get set up and understand what > works and doesn't that will leave him more...
2020 Jun 14
3
Question about certificates on Samba AD/DC
Hi everyone, I have a question about certificates generated on Samba AD/DC deployment. After all server configuration, I notice that there are ca.pem, cert.pem and key.pem on /usr/local/samba/private/tls directory. I realize the ca.pem and cert.pem have 2 years validity. Will Samba AD/DC generate automatically new certs before this time over? Or, must I have to generate them manually? -- Igor
2019 Sep 13
0
inconsistent directory locations for dns.keytab
...org/index.php/Setting_up_a_BIND_DNS_Server Looks correct to me.. .. On which page did you look? https://wiki.samba.org/index.php/BIND9_DLZ_DNS_Back_End Also correct.. Greetz, Louis > -----Oorspronkelijk bericht----- > Van: samba [mailto:samba-bounces at lists.samba.org] Namens > gabben via samba > Verzonden: vrijdag 13 september 2019 16:48 > Aan: samba > Onderwerp: [Samba] inconsistent directory locations for dns.keytab > > Hello, > > FYI note here... > > I?ve done several AD-DC installs recently using Louis?s > packages on Ubuntu Bionic. I?ve se...
2020 May 05
0
Azure AD Connect
Em 04/05/2020 14:25, gabben escreveu: > We joined one MS Windows 2012 R2 server to our Samba DC fleet and pointed the Azure AD sync tool to that new Windows AD server and Azure password sync is working well now. Good to know. > I don?t have any experience with distribution groups. There was this *one* test group whi...
2020 Jun 14
0
Question about certificates on Samba AD/DC
That would make a lot of sense. Andrew Bartlett On Sun, 2020-06-14 at 17:15 -0300, Igor Sousa wrote: > Thanks Gabben and Andrew. I've understood but a new question emerged: > Each DC server on my domain has a different pair cert/key and a > different CA cert after deployment, correct? > > If so, is it a best practice to generate new cert for each DC server > and sign them with a unique CA? OB...
2020 Mar 16
0
Q: Samba AD, Pfsense, Windows 10, vpn
Am 15.03.20 um 10:46 schrieb Christian Naumer via samba: > > >> Am 15.03.2020 um 08:21 schrieb S?rgio Basto via samba <samba at lists.samba.org>: >> >> ?On Sat, 2020-03-14 at 07:43 -0700, gabben via samba wrote: >>> Your pfSense firewall has OpenVPN built into it already, and you can >>> point pfSense authentication back to your samba AD. We support over >>> 400 users in this model. The configuration file for OpenVPN is common >>> to all users, and they...
2020 Nov 17
1
Turning one DC down for a day
You?ll need to manage your DHCP cluster carefully. There a time out windows in the cluster failure modes and the DHCP server that is on will likely stop serving lease renewals for the downed partner after 30 minutes (or whatever is configured in your conf). > On Nov 17, 2020, at 2:08 AM, Stefan G. Weichinger via samba <samba at lists.samba.org> wrote: > > Am 16.11.20 um 19:42
2019 Jun 20
2
pfSense DHCP integration with Samba AD DDNS
That's helpful. About half of our DHCP clients are Unixes. Maybe I'll find a way to make pfSense perform a Kerberos handshake with Samba for the sake of updating DNS. If not, I'll just install isc-dhcp-server on the Debian container running Samba AD. On 20/06/19 13:25, Rowland penny via samba wrote: > The problem is that Windows machines can update their own records in > AD,
2020 Jun 14
0
Question about certificates on Samba AD/DC
...ity you need to engage in depends on the size and needs of your environment. If you have simple needs in a smaller environment, take a look at OpenVPN project?s ?easy-rsa? Good luck. > On Jun 14, 2020, at 1:15 PM, Igor Sousa via samba <samba at lists.samba.org> wrote: > > Thanks Gabben and Andrew. I've understood but a new question emerged: Each > DC server on my domain has a different pair cert/key and a different CA > cert after deployment, correct? > > If so, is it a best practice to generate new cert for each DC server and > sign them with a unique CA? OBS...
2020 Mar 16
2
Q: Samba AD, Pfsense, Windows 10, vpn
...3:50, Stefan G. Weichinger via samba (samba at lists.samba.org) wrote: Am 15.03.20 um 10:46 schrieb Christian Naumer via samba: > > >> Am 15.03.2020 um 08:21 schrieb S?rgio Basto via samba <samba at lists.samba.org>: >> >> ?On Sat, 2020-03-14 at 07:43 -0700, gabben via samba wrote: >>> Your pfSense firewall has OpenVPN built into it already, and you can >>> point pfSense authentication back to your samba AD. We support over >>> 400 users in this model. The configuration file for OpenVPN is common >>> to all users, a...
2019 Jun 20
0
pfSense DHCP integration with Samba AD DDNS
> On Jun 20, 2019, at 5:37 AM, Adam Weremczuk via samba <samba at lists.samba.org> wrote: > > That's helpful. > About half of our DHCP clients are Unixes. > Maybe I'll find a way to make pfSense perform a Kerberos handshake with Samba for the sake of updating DNS. > If not, I'll just install isc-dhcp-server on the Debian container running Samba AD. I run
2020 Feb 25
0
Replication failing with Win 2012 R2 (maybe)
Hello All, WIndows DC reports (not for the entire directory, just a portion. See outputs below). "The replication operation failed because of a schema mismatch between the servers involved.? I suspect the error is a red herring. Running several Samba DCs at multiple sites. Version 4.11.6-Debian from Louis?s repo (on Ubuntu 18) ?vdcw00? is the Windows 2012 R2 server ?cdcx15? is the Samba