Displaying 10 results from an estimated 10 matches for "hardenedpaths".
2016 Apr 14
2
samba 3 domain and win10 logon scripts
On 13/04/16 21:32, Marc Muehlfeld wrote:
> Hello,
>
> Am 13.04.2016 um 13:20 schrieb lejeczek:
>> I have a win10 which is (from what I see) a good member of samba domain
>> except for one thing - it does not seem to a few simply things from a
>> logon.bat, or does not do anything with it.
>> would you share your thoughts?
> We can't, if you don't share
2020 Aug 26
4
Win10 and NT mode: netlogon script seems does not run anymore.
...BUT netlogon script (defined in smb.conf with:
logon script = startup.bat
) simply seems does not run. No log event in windows, no logs on samba
(or seems nothing relevant to me).
I've just enabled this registry key:
reg add "HKLM\SOFTWARE\Policies\Microsoft\Windows\NetworkProvider\HardenedPaths" /f /v "\\*\NETLOGON" /t REG_SZ /d "RequireMutualAuthentication=0"
reboot, but nothing changed. I'm googleing around, but i've not found
some clue...
Thanks.
--
dott. Marco Gaiarin GNUPG Key ID: 240A3D66
Associazione ``La Nostra Famiglia''...
2016 Feb 05
2
Samba 3.2 and Windows 10
Hi,
in a small office an old server is running Samba 3.2.15 on Debian Lenny.
It is used for domain authentication and file sharing, and all Windows
clients - currently up to Windows 7 - work perfectly fine with that.
Now my question, to which I cannot easily find an answer on Google, is:
if a client is upgraded to Windows 10, will it still work with that old
Samba version?
A server upgrade is
2016 Apr 18
0
samba 3 domain and win10 logon scripts
...You are using Samba 3, I'm using Samba 4.
Anyway:
In my experiments I also had to set an additional regpatch for Win10 and
a Samba 4.3.x NT4-style domain for logon scripts - otherwise the logon
scripts are not running:
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\NetworkProvider\HardenedPaths]
"\\\\*\\netlogon"="RequireMutualAuthentication=0,RequireIntegrity=0,RequirePrivacy=0"
Complete regpatch:
############################################################################
Windows Registry Editor Version 5.00
;
; windows10_join_enable.reg
;
; This registry keys are...
2020 Aug 27
0
Win10 and NT mode: netlogon script seems does not run anymore.
...al.dom.tld>\<Share> -
As shown in Advanced configuration examples..
Now only somewhere in 2018 MS is pushing to the need of,
the use of FQDN names in the internal (lan) side and Internet Side.
So, dont use this.
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\NetworkProvider\HardenedPaths]
"\\\\*\\NETLOGON"="RequireMutualAuthentication=0, RequireIntegrity=0,RequirePrivacy=0"
"\\\\*\\SYSVOL"="RequireMutualAuthentication=0, RequireIntegrity=0,RequirePrivacy=0"
"\\\\{MyWindowsDomainName}\\netlogon"="RequireMutualAuthentication=0, R...
2016 Mar 31
5
Windows 10
Hello
We have a problem with our Windows 10 Clients.
Installed on a SLES12 Server is samba v4.4
I can bind the clients to the domain without any problem. Afterwards I want to login in the domain, I get the error,
no logonserver available
I can change in the smb conf max protocol to NT1 -> now it is possible to login with user xxx in the domain
We don't want to use our samba server
2016 Jul 21
3
Win10 to Samba as NT- PDC needs 3 settings
Upgrading Win7-32 (connected to Samba as NT-PDC) to Win10 requires
- disable HardenedUncPaths (MutualAuth & Integrity)
- install NTVDM
- enable LegacyConsole
otherwise the logon-script in Netlogon does not run,
even if samba.cnf contains "server max level = NT1"
Is Samba as NT-PDC supposed to handle HardenedUncPaths?
Did I miss that I should have enabled that somehow in smb.conf?
2023 Feb 22
1
Logon Script is not executed: STATUS_ACCESS_DENIED
...ipts are not executed for domain users. It works a 100% for domain admins and 0% for non admin users and we have no idea why.
We tried the various settings without success:
1. setting various registry entries on Windows like: DomainCompatibilityMode, DNSNameResolutionRequired, RunLogonScriptSync, HardenedPaths
2. setting server max protocol = NT1
Our smb.conf of the netlogon looks like this:
[netlogon]
comment = Netlogon Scripts
path = /server/data/samba/netlogon
read only = No
inherit acls = Yes
browseable = yes
guest ok = yes
printable = no
map archive = no
map read only = no
store dos attributes =...
2017 Apr 21
4
Domain DFS on new share
Since past the beta-times of samba 4 (and it worked in former times!!) it never worked like this: \\yourdomain\share or \\yourdomain \dfs-share.
The only thing working along witch your domain is: \\yourdomain\netlogon.
I had another thread open on this case some times ago.
Greetings
Daniel
EDV Daniel Müller
Leitung EDV
Tropenklinik Paul-Lechler-Krankenhaus
Paul-Lechler-Str. 24
72076 Tübingen
2020 Jan 09
2
smbclient can access sysvol Windows clients cannot
Hi everyone,
I have two domains with a two way trust (DomA and DomB).
When users from DomA (on a DomB Linux PC) access sysvol on DomB's DC using smbclient everything works:
# smbclient //DomB /sysvol -Udoma\\user -c 'ls' -k
. D 0 Thu Jan 9 13:53:03 2020
.. D 0 Thu Jan 9 14:28:29 2020
domb