search for: infractory

Displaying 20 results from an estimated 516 matches for "infractory".

2017 Aug 31
3
file server: %U or %u?
On Thu, 31 Aug 2017 16:27:12 +0200 mathias dufresne <infractory at gmail.com> wrote: > PS: the short way to explain %u is adding domain/workgroup to > username is the fact we are using trust relationship? > Probably, what you have to get your head around is this: The users 'fred', 'DOMAINA\fred' and 'DOMAINB\fred' are all...
2017 Aug 30
2
Shares not accessible when using FQDN
2017-08-30 16:15 GMT+02:00 mathias dufresne <infractory at gmail.com>: > > > 2017-08-30 16:05 GMT+02:00 Rowland Penny via samba <samba at lists.samba.org> > : > >> On Wed, 30 Aug 2017 15:01:05 +0200 >> "L.P.H. van Belle via samba" <samba at lists.samba.org> wrote: >> >> > Small addition...
2016 Oct 19
2
NS records for a new AD DC
2016-10-19 8:56 GMT+02:00 Rowland Penny via samba <samba at lists.samba.org>: > On Wed, 19 Oct 2016 08:47:25 +0200 > mathias dufresne <infractory at gmail.com> wrote: > > > > > > > > > The domain member will ask its nameserver (which should be an AD > > > DC), > > > > > > > The client send request to its resolver, which can be an AD DC but not > > necessarily (we don't use...
2016 Jun 30
2
DNS Suddenly breaking
...>> >> I'm able to ping it without issues, jut not able to >> resolve >> anything >> externally. >> >> On Thu, Jun 30, 2016 at 9:09 AM, mathias dufresne >> <infractory at gmail.com <mailto:infractory at gmail.com> >> <mailto:infractory at gmail.com <mailto:infractory at gmail.com>>> >> wrote: >> >> To get recursion working with internal DNS you >> only need >...
2016 Jun 30
2
DNS Suddenly breaking
...t;> >> Yes, it's set up with 8.8.8.8 >> >> I'm able to ping it without issues, jut not able to resolve >> anything >> externally. >> >> On Thu, Jun 30, 2016 at 9:09 AM, mathias dufresne >> <infractory at gmail.com <mailto:infractory at gmail.com>> >> wrote: >> >> To get recursion working with internal DNS you only need >> to set up: >> dns forwarder = <IP of your main DNS> >> >> Is it...
2018 Nov 08
1
joining a Centos7 to MS AD
Hi, After more investigations I'm now believing that we have some issue on our AD site declaration. I'll be back once I would have get more information. Best regards, M. Le jeu. 8 nov. 2018 à 11:22, mathias dufresne <infractory at gmail.com> a écrit : > Hi all, > > AD version is MS 2008R2. > > smb.conf is : > [global] > workgroup = AD > security = ADS > realm = AD.DOMAIN.TLD > > dedicated keytab file = /etc/krb5.keytab > kerberos method = secrets and keytab > server string = Samb...
2016 Jul 06
2
[samba as AD] Scripting GPO creation
PS: I could share information about what should be modified to modify the very same GPO, I didn't yet as I'm not sure anyone there would be interested and because that would work only for that kind of GPO. 2016-07-06 17:08 GMT+02:00 mathias dufresne <infractory at gmail.com>: > Context: several teams have to manage only a a bunch of the company's > computers, so these team must not being able to manage other computers. > Firstly we split our computers into several OU, one by team. > Secondly we created one group per team. > Next ste...
2016 Apr 21
2
Winbind idmap question
...Hi, > > Does "wbinfo -i <user>" work, and return the same results, on all the DCs? > > Are the DCs running the distribution & versions (e.g. CentOS, Debian, > whatever) or are there differences there, also? > > On 21 April 2016 at 11:16, mathias dufresne <infractory at gmail.com> wrote: > > > Hi Jonathan, > > > > Thank you for that, that solved the issue. > > > > Unfortunately I get another issue: on one DC id <user> gives "no such > > user". > > Adding domain (id ad.domain\\<user>) does not...
2016 Jul 12
3
Option configure
On Tue, Jul 12, 2016 at 10:13 AM, mathias dufresne <infractory at gmail.com> wrote: > Could you simply try to modify type=forking to type=notify and test again? > Perhaps your old has disappeared (they do sometimes, not often enough)... Seems to work for starting smbd and nmbd (although Type=forking has been running flawlessly for many months) on my...
2016 Oct 13
1
samba with customized ldap backend
2016-10-12 15:26 GMT+02:00 Rowland Penny via samba <samba at lists.samba.org>: > On Wed, 12 Oct 2016 15:06:08 +0200 > mathias dufresne <infractory at gmail.com> wrote: > > > As SSSD seems to work with others tools (SSH, SMTP auth...), as the OP > > doesn't described his error very clearly, I do think you can't say the > > error is SSSD for sure. You can expect the error is from SSSD, you > > can even be s...
2016 Jun 30
0
DNS Suddenly breaking
...30 IN A 172.217.0.46 ;; Query time: 4 msec ;; SERVER: 192.168.1.235#53(192.168.1.235) ;; WHEN: Thu Jun 30 14:55:20 EDT 2016 ;; MSG SIZE rcvd: 55 ---------- It looks like it's failing at the first dig, but my resolv looks good... On Thu, Jun 30, 2016 at 10:11 AM, mathias dufresne <infractory at gmail.com> wrote: > from both DC: > dig google.com > dig @8.8.8.8 google.com > > First dig will use resolvers declared into /etc/resolv.conf. > Second dig forces usage of 8.8.8.8. > > Both commands should reply the same things, on all DC. > > 2016-06-30 15:58 GM...
2016 Oct 05
2
getent group [groupname] do not show users
...fault.com/questions/625416/samba-4-group-members-not-shown-in-getent-group > a proposal to use samba-tool as a replacement but samba-tool is not > available on member servers which make that workaround not usable in > most cases... > > 2016-10-05 11:40 GMT+02:00 mathias dufresne <infractory at gmail.com>: > > > Hi all, > > > > With Samba 4.4.5, on member servers (I did not tried yet on DCs), > > using "getent group" with or without specifying a group name groups > > are shown but they are shown as empty groups, no user name is > > d...
2015 Nov 04
3
Using samba-python to query AD? Status of API?
On Wed, Nov 4, 2015 at 11:09 AM, mathias dufresne <infractory at gmail.com> wrote: > Hi, > > Once you have installed Samba to be able to run it as Active Directory you > would have samba-tool available. > > # which samba-tool > /usr/bin/samba-tool > # file /usr/bin/samba-tool > /usr/bin/samba-tool: Python script, ASCII text execu...
2016 Apr 21
2
Winbind idmap question
...rations as the two working DC. I'm puzzled. 2016-04-21 11:52 GMT+02:00 Jonathan Hunter <jmhunter1 at gmail.com>: > You can try "net cache flush" (if you want to inspect the cache, use "net > cache list") > > On 21 April 2016 at 10:40, mathias dufresne <infractory at gmail.com> wrote: > > > Hi all, > > > > Back on playing winbind I first configure PAM and NSS then tried id > > <my_user_name> without setting for that user uidNumber. > > > > This user get UID from idmap. > > > > I set up uidNumber int...
2016 Jun 30
0
DNS Suddenly breaking
...es, it's set up with 8.8.8.8 > > I'm able to ping it without issues, jut not able to > resolve > anything > externally. > > On Thu, Jun 30, 2016 at 9:09 AM, mathias dufresne > <infractory at gmail.com <mailto:infractory at gmail.com> > <mailto:infractory at gmail.com <mailto:infractory at gmail.com>>> > wrote: > > To get recursion working with internal DNS you > only need >...
2015 Dec 24
2
Authentication to Secondary Domain Controller initially fails when PDC is offline
...thing to create needed entries (these needed entries should be the same or almost as for Default-First-Site-Name, anyway tcpdump could help to find which entries are requested by clients). Best regards, wishing you all a merry Christmas : ) mathias 2015-12-23 20:37 GMT+01:00 mathias dufresne <infractory at gmail.com>: > Hi James, > > First thanks for you detailed answer and the tests you did to be able to > write this. > > Before reading your mail I was believing MS Windows keeps only one > credentials, those for last connected account. This is why I did not pushed > to...
2016 Jan 27
2
NT_STATUS_CONNECTION_REFUSED
On 27 January 2016 at 17:40, mathias dufresne <infractory at gmail.com> wrote: > Hi, > > Samba DC generates a krb5.conf into private directory, where the database > is hold. > > Its content should be that: > [libdefaults] > default_realm = SAMBA.DOMAIN.TLD > dns_lookup_realm = false > dns_lookup_kd...
2016 Oct 12
2
samba with customized ldap backend
...o sure? For 'we do not know, ask sssd' I'm not included in that "we". When I don't know, most generally I try to learn. 2016-10-12 14:34 GMT+02:00 Rowland Penny via samba <samba at lists.samba.org>: > On Wed, 12 Oct 2016 14:16:12 +0200 > mathias dufresne <infractory at gmail.com> wrote: > > > As he wrote that SSH and SMTP auth and others stuffs are working, I > > would say SSSD should work. > > As he wrote there is an issue with Samba, I'd like to understand how > > he is using Samba, what is the exact error and what he's...
2015 Dec 07
2
Fwd: Functionality of Nmbd at Active Directory mode of Samba4 !
...> respect to whom can help you It is preferrable to say it to yourself firstly, because your posts didn' t bring any progress in getting working one. As a result, if you want to join you are wellcome, otherwise, I stop duscussion with you. 2015-12-07 12:30 GMT+03:00 mathias dufresne <infractory at gmail.com>: > > > 2015-12-05 21:38 GMT+01:00 CpServiceSPb . <cpservicespb at gmail.com>: > >> > net:\\server >> > Sometimes, you have to read documentation. >> >> Oh, no. >> It have to do users, who use Far. :) >> I remembered just...
2016 Aug 05
2
Samba4 with external bind - best practices?
...non-DC DNS server. Hoping this is clear enough... Cheers, mathias 2016-08-04 21:34 GMT+02:00 Elias Pereira <empbilly at gmail.com>: > Guys, > > In the clients dns settings I configure the Samba4 or external DNS IP? > > On Thu, Jul 28, 2016 at 5:57 AM, mathias dufresne <infractory at gmail.com> > wrote: > >> Here we (the DNS team of our company, not me ;) chose the zone type >> forward >> as it is the way DNS works (one resolver on client system, this resolver >> will forward requests to others DNS server to get answer) and also because >&...