search for: idmu

Displaying 20 results from an estimated 121 matches for "idmu".

2017 Oct 10
1
Opensolaris-ish joins but does not seem to be valid
.../E22471_01/html/820-4167/configuration__services__identity_mapping.html >> https://docs.oracle.com/cd/E19120-01/open.solaris/820-2429/configuredirbasedmapping/index.html >> > > If you provisioned the Samba AD DC with --use-rfc2307, then I think you > should have gone with the IDMU mapping, what we call around here > 'RFC2307'. By using this, you will doing something very similar to > using the winbind 'ad' backend and will be able to use RSAT on a WIN 7 > or 8.1 to admin it. > It has been awhile, but the last time I looked into IDMU mode I thoug...
2019 Aug 19
2
Problems with NIS Server on Samba 4
Hi, >Ah, I think I see the problem, If I remember correctly, you joined the >the Samba DC to a Windows DC and if you didn't have IDMU installed on >the Windows DC, you wouldn't get the required objects in AD created on >the Samba DC either. Really, IDMU was not installed. There is the file ypServ30.ldif ls /usr/share/samba/setup/ ... ypServ30.ldif But, I believe the extension is not enabled: ldbsearch -H /var/lib/...
2019 Aug 19
3
Problems with NIS Server on Samba 4
Hi, >How are you trying to create the Unix (RFC2307) attributes ? I am following the article: https://wiki.samba.org/index.php/Maintaining_Unix_Attributes_in_AD_using_ADUC Open ADUC. Right-click to a user account and choose properties. Navigate to the "UNIX Attributes" tab. >Also, what do you mean by 'it doesn't bother any NIS server' ? Sorry, Google translated it
2020 Jul 16
2
Adding users with ldif file
...ay that they're both available in the AD and in NIS. This obviously takes as requirement that RFC2307 was enabled during installation > > No it doesn't, first, all the RFC2307 attributes are available from the > standard AD schema, what isn't installed is the ldif required by IDMU. > Secondly, samba-tool can add the required RFC2307 attributes when you > create a user or group, you just need to add the required switches to > the command. See 'samba-tool user create --help' and 'samba-tool group > add --help' for more info and examples. > &...
2019 Dec 19
1
unix_primary_group and unix_nss_info for rfc2307 idmap backend
...osoft no longer allowing POSIX attributes to be replicated in the global catalog, I can't think of a way of besides an ldap proxy to pass along this information. > > > As far as I am aware, Microsoft still allows Posix attributes, they > are part of the standard schema, they stopped IDMU, which removed > the Unix attributes tab. You just have to maintain the rfc2307 > attributes in another way, which you must be doing, because you want > to use them. FYI, https://blogs.technet.microsoft.com/activedirectoryua/2016/02/09/identity-management-for-unix-idmu-is-deprecated-in-w...
2018 Nov 19
2
getenv does not return any AD DOMAIN users or groups - ?nsswitch is not setup for Samba?
>What is the AD DC ? Windows 2012 Server DC's >If it is a Windows DC, is 'IDMU' installed (also known as 'services for >Unix) ? No, Services for Unix are not installed, but I did install the NIS for Unix for the AD Users & Computers app and that all works fine. I did however find the Samba LDIF file for preparing a Directory Schema import file, and I did that....
2020 Jul 16
2
Adding users with ldif file
...y're both available in the AD and in NIS. This obviously takes as requirement that RFC2307 was enabled during installation > >> No it doesn't, first, all the RFC2307 attributes are available from the > >> standard AD schema, what isn't installed is the ldif required by IDMU. > >> Secondly, samba-tool can add the required RFC2307 attributes when you > >> create a user or group, you just need to add the required switches to > >> the command. See 'samba-tool user create --help' and 'samba-tool group > >> add --help' for...
2018 Nov 19
2
getenv does not return any AD DOMAIN users or groups - ?nsswitch is not setup for Samba?
>> >What is the AD DC ? >> >> Windows 2012 Server DC's > > >>If it is a Windows DC, is 'IDMU' installed (also known as 'services > >>for Unix) ? > > > >No, Services for Unix are not installed, but I did install the NIS for > <Unix for the AD Users & Computers app and that all works fine. > >You can stop looking for 'ldb' files. > &g...
2020 Nov 03
1
Get last uidNumber
...lines are returned by a query? >> Is there a attribute where the last number is stored? >> >> Best Regards >> > OK, I never told told you this, so keep it to your self ? > > How do you think the Unix attributes tabs worked in ADUC ? > > You had to to install IDMU with ADUC which installed an ldif that Samba > calls ypServ30.ldif. Amongst the objects that are installed in AD is one > with the DN: > > CN=<workgroup>,CN=ypservers,CN=ypServ30,CN=RpcServices,CN=System,DC=X > > Where <workgroup> is your Netbios domain name (aka wor...
2015 May 05
2
SAMBA not working as AD member server
Yes IDMU is installed.
2019 Aug 19
0
Problems with NIS Server on Samba 4
On 19/08/2019 21:45, Marcio Demetrio Bacci wrote: > Hi, > > >Ah, I think I see the problem, If I remember correctly, you joined the > >the Samba DC to a Windows DC and if you didn't have IDMU installed on > >the Windows DC, you wouldn't get the required objects in AD created on > >the Samba DC either. > > Really, IDMU was not installed. > > > There is the file ypServ30.ldif > ls /usr/share/samba/setup/ > ... > ?ypServ30.ldif > > But, I belie...
2019 Dec 19
3
unix_primary_group and unix_nss_info for rfc2307 idmap backend
Hi, In winbind, are there any plans to add the idmap_ad options "unix_primary_group" and "unix_nss_info" to the idmap_rfc2307 backend? I am using an ldap proxy to preserve the UNIX uids and gids between two domains, and it would be nice to also share the shell setting and the UNIX primary group as well.
2019 Aug 19
0
Problems with NIS Server on Samba 4
...e the Unix (RFC2307) attributes ? > I am following the article: > https://wiki.samba.org/index.php/Maintaining_Unix_Attributes_in_AD_using_ADUC > > Open ADUC. > Right-click to a user account and choose properties. > Navigate to the "UNIX Attributes" tab. Do you have the IDMU server installed on the Windows DC ? > > >Also, what do you mean by 'it doesn't bother any NIS server' ? > Sorry, Google translated it wrong. > Did you mean: Not appear the domain name to select in the NIS Domain > field. > > >Do you mean that the RFC2307 att...
2017 Mar 13
4
Best way to integrate Unix with AD.
Hi all, I know this is a little off topic (although it might not be because I'm sure there's a solution involving Samba!)... but I hope one of you fine people can advise me on the best approach to achieving an integrated directory supporting Unix/Linux as a first class citizen, storing autofs maps, as well as uid, gid and home folders for each user... and how would that be managed. I see
2020 Jul 21
3
Migrate mail aliases to AD ypServ30
...0 18:24:15 +0100 Rowland penny via samba <samba at lists.samba.org>: > > > > No, it wouldn't, basically all that adding '--rfc-2307' to the provision > > command does, is to add the ypServ30 ldif to AD. This ldif is what > > Microsoft added if you installed IDMU. Adding the ldif makes Samba > > compatible with ADUC. > > > > What you are adding is a corner case, so it would be a large amount of > > work to update samba-tool for a very few users, or perhaps only you. > > However, if you feel this should in samba-tool, patches ar...
2020 Sep 21
2
WERR_BAD_NET_RESP on replication
...e: 5702 != 5703 > > * DNs found only in ldap://DC4: > > CN=BYDEFAULTS,CN=NETGROUP,CN=YPSERV30,CN=RPCSERVICES,CN=SYSTEM,DC=CAMPUS,DC=COMPANY,DC=BR > * Objects to be compared: 5702 That DN is part of 'ypServ30.ldif', so if you provisioned with '--use-rfc2307' or added IDMU to a windows domain, you should have that CN in AD on all your DC's. The question has to be, why do you only have it on one DC ? Rowland
2015 Jun 22
2
nsswitch/libnss_winbind.so.2
...sers a gidNumber > attribute and have you given 'Domain Users' (at least) a gidNumber > attribute ? These numbers need to be inside the range set in your > smb.conf '10000-99999', anything outside these numbers will be ignored. > > If it is a windows AD DC, then is IDMU installed, if it is, then > uidNumbers, gidNumbers as above. > > Rowland Server is MS Windows 2000 What is IDMU ? We have made sure NIS Extension is installed and that "tunix" uid/gid have been set to 10000/10000. But others users (groups) have not been set, especially &quot...
2016 Jun 14
3
Samba4 Domain Member Server "Getent show diferents UID"
...nd MEMBER SERVER. > > Im using Win10, And Win7 > > > OK, if you are running RSAT on a windows 10 machine, can I suggest you use a windows 7 machine instead, it is my understanding that win10 no longer has the Unix attributes tab. If you use ADUC on a win7 machine, you can install IDMU, this will get you the Unix attributes tabs, when you add a UID to a windows user, it will also add these attributes: unixUserPassword uid msSFU30Name msSFU30NisDomain uidNumber unixHomeDirectory loginShell Domain Users also needs to have a gidNumber attribute If everything is setup correctly,...
2015 Feb 09
3
Domain users can't browse or access shares
> From: Rowland Penny <rowlandpenny at googlemail.com> > To: samba at lists.samba.org > Date: 09.02.2015 16:09 > OK, Does 'getent passwd sktest' show anything ? > > I am willing to bet it doesn't. You're bet is correct, wbinfo -u and wbinfo -g give expected results though.
2020 Jul 16
2
Adding users with ldif file
Thu, 16 Jul 2020 10:56:58 +0100 Rowland penny via samba <samba at lists.samba.org>: > On 16/07/2020 10:39, RhineDevil wrote: > > Thu, 16 Jul 2020 10:31:04 +0100 Rowland penny via samba <samba at lists.samba.org>: > >> On 16/07/2020 10:14, RhineDevil via samba wrote: > >>> How could I add users and groups using ldif files without interacting with