search for: guign

Displaying 20 results from an estimated 50 matches for "guign".

2019 Jul 22
5
client min protocol = SMB2
...ocol does not affect existing > connections unless you were to restart samba. > > Is the max protocol set to at least SMB2 ?????? I would have thought > that Windows 7 and later would negotiate the highest mutually > acceptable protocol. > > > On 7/22/19 10:40 AM, Edouard Guign? via samba wrote: >> Hello, >> >> I set client min protocol = SMB2 in my smb.cnf >> >> But I see some clients still connecting in NT1 (smbstatus) : >> >> smbstatus -p Mon Jul 22 11:39:36 2019 >> Samba version 4.8.3 >> PID???? Username???? Group...
2019 Jun 18
3
Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
On 18/06/2019 19:49, Edouard Guign? via samba wrote: > ?gidNumber for 'Domain Users' is 513 > > not in range? '10000-14999' of uidNumber > > Is it a problem ? Oh yes, ALL user uidNumber's and Domain Users gidNumber MUST be inside the DOMAIN range you set in smb.conf, if they aren't, all your...
2019 Jul 22
3
client min protocol = SMB2
...ver min protocol" ? "server min protocol" is to use on a domain member "client min protocol" is to use in which case ? Should I also set client min protocol = SMB2 to SMB2_02 ? EdG Le 22/07/2019 ? 11:57, Rowland penny via samba a ?crit?: > On 22/07/2019 15:51, Edouard Guign? via samba wrote: >> I did not set max protocol to SMB2 in smb.cnf, I don't want to force >> SMB2 selection if SMB3 can be used by a client. >> >> The machine is a Windows 7, so is SMB2 compliant. >> > If the Win 7 machine is connecting to a share on a Unix dom...
2019 Jun 18
2
Fwd: Re: Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
...l my gid are in range 500 to 600 and not in range 10000 - 14999 I thought? DOMAIN range 10000 - 14999 was reserved for DOMAIN users -------- Message transf?r? -------- Sujet?: Re: [Samba] Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication Date?: Tue, 18 Jun 2019 16:25:39 -0300 De?: Edouard Guign? via samba <samba at lists.samba.org> R?pondre ??: Edouard Guign? <eguigne at pasteur-cayenne.fr> Pour?: samba at lists.samba.org And What about Domain Admins gid ? Should also be in the DOMAIN range ? Le 18/06/2019 ? 16:07, Rowland penny via samba a ?crit?: > On 18/06/2019 19:...
2019 Jun 20
2
Samba winbind on redhat 7
...???? files sss winbind (or files winbind sss) group:????? files sss winbind (or files winbind sss) which gave poor result, very slow access to the share especially when click on security tab on windows 7. Le 20/06/2019 ? 13:32, Rowland penny via samba a ?crit?: > On 20/06/2019 17:19, Edouard Guign? via samba wrote: >> Hello, >> >> I am reading RHEL 7 docs concerning samba integration, and I found >> https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html-single/windows_integration_guide/index#winbind >> >> >> "4.2.4. Swit...
2019 Jun 20
2
Samba winbind on redhat 7
This way is so easier... Thank you Rowland Le 20/06/2019 ? 14:01, Rowland penny via samba a ?crit?: > On 20/06/2019 17:54, Edouard Guign? via samba wrote: >> My idea is to replace default "cifs_idmap_sss.so" plugin by >> "idmapwb.so" winbind plugin, in order to SSSD becomes a client of >> winbind. >> To avoid to change nsswitch.conf : >> passwd:???? files sss >> shadow:???? f...
2019 Jun 18
7
Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
On 18/06/2019 17:24, Edouard Guign? via samba wrote: > "winbind refresh tickets = yes" did not help for my case. > It always has for myself, I have never had to refresh any kerberos machine tickets manually Rowland
2019 Jun 19
2
Fwd: Re: Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
...ord for \\mysambaserver\groups" (I am sure of the password) What could be wrong ? In my smb.cnf, I set valid users = @"utilisateurs du domaine at MYDOMAIN.LOCAL" Can be the reason ? Edouard Le 18/06/2019 ? 17:06, Rowland penny via samba a ?crit?: > On 18/06/2019 20:41, Edouard Guign? via samba wrote: >> Is it possible to make start DOMAIN range from 500 instead of 10000 ? > Classicupgrade ? >> >> I realized that all my gid are in range 500 to 600 and not in range >> 10000 - 14999 > Looks like you are going to have to use 500 for your lower DOMAIN...
2019 Jun 18
2
Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
On 18/06/2019 16:01, Goetz, Patrick G via samba wrote: > On 6/18/19 8:35 AM, Edouard Guign? via samba wrote: >> I do not want to annoy anymore with my problem of a mixed configuration >> SSSD / Winbindd ; but I would like to understand why this is working >> only with SSSD and not with winbindd. >> Maybe because I first join my linux station to the domain with SSS...
2019 Jun 18
3
Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
On 18/06/2019 19:02, Edouard Guign? via samba wrote: > Hello, > > I mean that i added "winbind refresh tickets = yes" in smb.cnf, but > does not seem to be link with my problem (Kerberos and NTLMv2 > authentication). > > After several test, without changing content of smb.conf (except for > winbi...
2019 Jun 19
2
Fwd: Re: Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
...up MYDOMAIN\\"Utilisateurs du domaine" MYDOMAIN\utilisateurs du domaine:x:14513: I have to put "Utilisateurs du domaine" instead of Domain\ Users because the Windows AD is a french AD. Le 19/06/2019 ? 12:32, Rowland penny via samba a ?crit?: > On 19/06/2019 16:16, Edouard Guign? via samba wrote: >> So I re run the test with domain users gid 14513 >> >> Still not working (sssd stopped, nsswitch.cnf with? "files winbind" >> for passwd group, # net cache flush + restart winbindd smb) >> >> On the samba server : >> # wbinfo...
2019 Jul 17
2
Name of the share in windows explorer
...ers ??? write list = root ??? create mask = 0664 ??? directory mask = 0775 On an older samba share (version 3.5.6), only \\myserver was visible in windows explorer for both [groups] and [homes] Edouard Le 17/07/2019 ? 12:52, Rowland penny via samba a ?crit?: > On 17/07/2019 16:46, Edouard Guign? via samba wrote: >> Dear Samba Users, >> >> I set 2 samba shares : >> 1. with the name [groups] >> /pathtomyshare/groups >> >> 2. for each domain users [homes] >> /home >> >> In Windows, I can see with the windows explorer my shares : &gt...
2019 Jun 17
3
Fwd: Re: Fwd: Re: Kerberos and NTLMv2 authentication
On 17/06/2019 17:45, Edouard Guign? via samba wrote: > Hello, > > I do not know how should be nsswitch.conf configured. > What should I change in it according to "/you either do not have the > passwd, group and shadow lines or you have chosen not to show them/" ? > Something like this? added to nsswitch....
2019 Jun 17
2
Fwd: Re: Kerberos and NTLMv2 authentication
On 17/06/2019 12:56, Edouard Guign? via samba wrote: > Hello, > > May you answer me about my issue with kerberos ? > > About libpam-krb5 installed, I have on my system : > yum list krb5-workstation pam_krb5 > krb5-workstation.x86_64 1.15.1-37.el7_6 @updates > pam_krb5.x86_64 2.4.8-6.el7 @base > > Is pam...
2019 Jun 21
2
Samba winbind on redhat 7
On 21/06/2019 15:39, Edouard Guign? via samba wrote: > Hello, > > I am facing 2 issues now. > The first one is the more critical for me... > > 1. When I switch from sssd to winbind with : > # authconfig --enablekrb5 --enablewinbind --enablewinbindauth > --enablemkhomedir --update > > My sftp access did...
2019 Jun 21
0
Samba winbind on redhat 7
...ine:r-x*" are added ? I was expected to not get these acls... concerning "domain users" but the folder TESTIT have no default "Domain users" acls. Don't want them... Is there a way to remove this ?? Thank you for all your help, Edouard Le 20/06/2019 ? 14:16, Edouard Guign? via samba a ?crit?: > This way is so easier... > > Thank you Rowland > > Le 20/06/2019 ? 14:01, Rowland penny via samba a ?crit?: >> On 20/06/2019 17:54, Edouard Guign? via samba wrote: >>> My idea is to replace default "cifs_idmap_sss.so" plugin by >&gt...
2019 Jun 17
2
Fwd: Re: Kerberos and NTLMv2 authentication
On 17/06/2019 13:42, Edouard Guign? via samba wrote: > Hello, > > Please find here the content of my smb.cnf : > > [global] > ??????? security = ads > ??????? realm = MYDOMAIN.LOCAL > ??????? workgroup = MYDOMAIN > ??????? kerberos method = secrets and keytab > ??????? server signing = mandatory > ??...
2020 Apr 28
3
Service Winbind stopped, what could be the reason ?
...Best Regards, Ed ----- Mail original ----- De: "sambalist" <samba at lists.samba.org> ?: "sambalist" <samba at lists.samba.org> Envoy?: Mardi 28 Avril 2020 12:08:44 Objet: Re: [Samba] Service Winbind stopped, what could be the reason ? On 28/04/2020 15:35, Edouard Guign? via samba wrote: > Hello dear Samba users, > > I recently faced an issue with samba (4.10.4) and winbind. > The winbind service was stopped, so no user can acces to my samba share. > I restart the winbind service, and all users can access to the share as usually... > But I would...
2019 Jun 20
0
Samba winbind on redhat 7
On 20/06/2019 17:54, Edouard Guign? via samba wrote: > My idea is to replace default "cifs_idmap_sss.so" plugin by > "idmapwb.so" winbind plugin, in order to SSSD becomes a client of > winbind. > To avoid to change nsswitch.conf : > passwd:???? files sss > shadow:???? files sss > group:????...
2019 Jul 22
2
client min protocol = SMB2
Hello, I set client min protocol = SMB2 in my smb.cnf But I see some clients still connecting in NT1 (smbstatus) : smbstatus -p Mon Jul 22 11:39:36 2019 Samba version 4.8.3 PID???? Username???? Group Machine?????????????????????????????????? Protocol Version Encryption?????????? Signing