Displaying 20 results from an estimated 50 matches for "guign".
2019 Jul 22
5
client min protocol = SMB2
...ocol does not affect existing
> connections unless you were to restart samba.
>
> Is the max protocol set to at least SMB2 ?????? I would have thought
> that Windows 7 and later would negotiate the highest mutually
> acceptable protocol.
>
>
> On 7/22/19 10:40 AM, Edouard Guign? via samba wrote:
>> Hello,
>>
>> I set client min protocol = SMB2 in my smb.cnf
>>
>> But I see some clients still connecting in NT1 (smbstatus) :
>>
>> smbstatus -p Mon Jul 22 11:39:36 2019
>> Samba version 4.8.3
>> PID???? Username???? Group...
2019 Jun 18
3
Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
On 18/06/2019 19:49, Edouard Guign? via samba wrote:
> ?gidNumber for 'Domain Users' is 513
>
> not in range? '10000-14999' of uidNumber
>
> Is it a problem ?
Oh yes, ALL user uidNumber's and Domain Users gidNumber MUST be inside
the DOMAIN range you set in smb.conf, if they aren't, all your...
2019 Jul 22
3
client min protocol = SMB2
...ver min protocol" ?
"server min protocol" is to use on a domain member
"client min protocol" is to use in which case ?
Should I also set client min protocol = SMB2 to SMB2_02 ?
EdG
Le 22/07/2019 ? 11:57, Rowland penny via samba a ?crit?:
> On 22/07/2019 15:51, Edouard Guign? via samba wrote:
>> I did not set max protocol to SMB2 in smb.cnf, I don't want to force
>> SMB2 selection if SMB3 can be used by a client.
>>
>> The machine is a Windows 7, so is SMB2 compliant.
>>
> If the Win 7 machine is connecting to a share on a Unix dom...
2019 Jun 18
2
Fwd: Re: Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
...l my gid are in range 500 to 600 and not in range
10000 - 14999
I thought? DOMAIN range 10000 - 14999 was reserved for DOMAIN users
-------- Message transf?r? --------
Sujet?: Re: [Samba] Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
Date?: Tue, 18 Jun 2019 16:25:39 -0300
De?: Edouard Guign? via samba <samba at lists.samba.org>
R?pondre ??: Edouard Guign? <eguigne at pasteur-cayenne.fr>
Pour?: samba at lists.samba.org
And What about Domain Admins gid ? Should also be in the DOMAIN range ?
Le 18/06/2019 ? 16:07, Rowland penny via samba a ?crit?:
> On 18/06/2019 19:...
2019 Jun 20
2
Samba winbind on redhat 7
...???? files sss winbind (or files winbind sss)
group:????? files sss winbind (or files winbind sss)
which gave poor result, very slow access to the share especially when
click on security tab on windows 7.
Le 20/06/2019 ? 13:32, Rowland penny via samba a ?crit?:
> On 20/06/2019 17:19, Edouard Guign? via samba wrote:
>> Hello,
>>
>> I am reading RHEL 7 docs concerning samba integration, and I found
>> https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html-single/windows_integration_guide/index#winbind
>>
>>
>> "4.2.4. Swit...
2019 Jun 20
2
Samba winbind on redhat 7
This way is so easier...
Thank you Rowland
Le 20/06/2019 ? 14:01, Rowland penny via samba a ?crit?:
> On 20/06/2019 17:54, Edouard Guign? via samba wrote:
>> My idea is to replace default "cifs_idmap_sss.so" plugin by
>> "idmapwb.so" winbind plugin, in order to SSSD becomes a client of
>> winbind.
>> To avoid to change nsswitch.conf :
>> passwd:???? files sss
>> shadow:???? f...
2019 Jun 18
7
Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
On 18/06/2019 17:24, Edouard Guign? via samba wrote:
> "winbind refresh tickets = yes" did not help for my case.
>
It always has for myself, I have never had to refresh any kerberos
machine tickets manually
Rowland
2019 Jun 19
2
Fwd: Re: Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
...ord for \\mysambaserver\groups"
(I am sure of the password)
What could be wrong ?
In my smb.cnf, I set valid users = @"utilisateurs du domaine at MYDOMAIN.LOCAL"
Can be the reason ?
Edouard
Le 18/06/2019 ? 17:06, Rowland penny via samba a ?crit?:
> On 18/06/2019 20:41, Edouard Guign? via samba wrote:
>> Is it possible to make start DOMAIN range from 500 instead of 10000 ?
> Classicupgrade ?
>>
>> I realized that all my gid are in range 500 to 600 and not in range
>> 10000 - 14999
> Looks like you are going to have to use 500 for your lower DOMAIN...
2019 Jun 18
2
Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
On 18/06/2019 16:01, Goetz, Patrick G via samba wrote:
> On 6/18/19 8:35 AM, Edouard Guign? via samba wrote:
>> I do not want to annoy anymore with my problem of a mixed configuration
>> SSSD / Winbindd ; but I would like to understand why this is working
>> only with SSSD and not with winbindd.
>> Maybe because I first join my linux station to the domain with SSS...
2019 Jun 18
3
Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
On 18/06/2019 19:02, Edouard Guign? via samba wrote:
> Hello,
>
> I mean that i added "winbind refresh tickets = yes" in smb.cnf, but
> does not seem to be link with my problem (Kerberos and NTLMv2
> authentication).
>
> After several test, without changing content of smb.conf (except for
> winbi...
2019 Jun 19
2
Fwd: Re: Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
...up MYDOMAIN\\"Utilisateurs du domaine"
MYDOMAIN\utilisateurs du domaine:x:14513:
I have to put "Utilisateurs du domaine" instead of Domain\ Users because
the Windows AD is a french AD.
Le 19/06/2019 ? 12:32, Rowland penny via samba a ?crit?:
> On 19/06/2019 16:16, Edouard Guign? via samba wrote:
>> So I re run the test with domain users gid 14513
>>
>> Still not working (sssd stopped, nsswitch.cnf with? "files winbind"
>> for passwd group, # net cache flush + restart winbindd smb)
>>
>> On the samba server :
>> # wbinfo...
2019 Jul 17
2
Name of the share in windows explorer
...ers
??? write list = root
??? create mask = 0664
??? directory mask = 0775
On an older samba share (version 3.5.6), only \\myserver was visible in
windows explorer for both [groups] and [homes]
Edouard
Le 17/07/2019 ? 12:52, Rowland penny via samba a ?crit?:
> On 17/07/2019 16:46, Edouard Guign? via samba wrote:
>> Dear Samba Users,
>>
>> I set 2 samba shares :
>> 1. with the name [groups]
>> /pathtomyshare/groups
>>
>> 2. for each domain users [homes]
>> /home
>>
>> In Windows, I can see with the windows explorer my shares :
>...
2019 Jun 17
3
Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
On 17/06/2019 17:45, Edouard Guign? via samba wrote:
> Hello,
>
> I do not know how should be nsswitch.conf configured.
> What should I change in it according to "/you either do not have the
> passwd, group and shadow lines or you have chosen not to show them/" ?
> Something like this? added to nsswitch....
2019 Jun 17
2
Fwd: Re: Kerberos and NTLMv2 authentication
On 17/06/2019 12:56, Edouard Guign? via samba wrote:
> Hello,
>
> May you answer me about my issue with kerberos ?
>
> About libpam-krb5 installed, I have on my system :
> yum list krb5-workstation pam_krb5
> krb5-workstation.x86_64 1.15.1-37.el7_6 @updates
> pam_krb5.x86_64 2.4.8-6.el7 @base
>
> Is pam...
2019 Jun 21
2
Samba winbind on redhat 7
On 21/06/2019 15:39, Edouard Guign? via samba wrote:
> Hello,
>
> I am facing 2 issues now.
> The first one is the more critical for me...
>
> 1. When I switch from sssd to winbind with :
> # authconfig --enablekrb5 --enablewinbind --enablewinbindauth
> --enablemkhomedir --update
>
> My sftp access did...
2019 Jun 21
0
Samba winbind on redhat 7
...ine:r-x*" are added ?
I was expected to not get these acls... concerning "domain users" but
the folder TESTIT have no default "Domain users" acls.
Don't want them...
Is there a way to remove this ??
Thank you for all your help,
Edouard
Le 20/06/2019 ? 14:16, Edouard Guign? via samba a ?crit?:
> This way is so easier...
>
> Thank you Rowland
>
> Le 20/06/2019 ? 14:01, Rowland penny via samba a ?crit?:
>> On 20/06/2019 17:54, Edouard Guign? via samba wrote:
>>> My idea is to replace default "cifs_idmap_sss.so" plugin by
>>...
2019 Jun 17
2
Fwd: Re: Kerberos and NTLMv2 authentication
On 17/06/2019 13:42, Edouard Guign? via samba wrote:
> Hello,
>
> Please find here the content of my smb.cnf :
>
> [global]
> ??????? security = ads
> ??????? realm = MYDOMAIN.LOCAL
> ??????? workgroup = MYDOMAIN
> ??????? kerberos method = secrets and keytab
> ??????? server signing = mandatory
> ??...
2020 Apr 28
3
Service Winbind stopped, what could be the reason ?
...Best Regards,
Ed
----- Mail original -----
De: "sambalist" <samba at lists.samba.org>
?: "sambalist" <samba at lists.samba.org>
Envoy?: Mardi 28 Avril 2020 12:08:44
Objet: Re: [Samba] Service Winbind stopped, what could be the reason ?
On 28/04/2020 15:35, Edouard Guign? via samba wrote:
> Hello dear Samba users,
>
> I recently faced an issue with samba (4.10.4) and winbind.
> The winbind service was stopped, so no user can acces to my samba share.
> I restart the winbind service, and all users can access to the share as usually...
> But I would...
2019 Jun 20
0
Samba winbind on redhat 7
On 20/06/2019 17:54, Edouard Guign? via samba wrote:
> My idea is to replace default "cifs_idmap_sss.so" plugin by
> "idmapwb.so" winbind plugin, in order to SSSD becomes a client of
> winbind.
> To avoid to change nsswitch.conf :
> passwd:???? files sss
> shadow:???? files sss
> group:????...
2019 Jul 22
2
client min protocol = SMB2
Hello,
I set client min protocol = SMB2 in my smb.cnf
But I see some clients still connecting in NT1 (smbstatus) :
smbstatus -p Mon Jul 22 11:39:36 2019
Samba version 4.8.3
PID???? Username???? Group Machine??????????????????????????????????
Protocol Version Encryption?????????? Signing