Displaying 20 results from an estimated 28 matches for "lxcerruti".
2018 Oct 26
3
classicupgrade
...tps://wiki.samba.org/index.php/Migrating_a_Samba_NT4_Domain_to_Samba_AD_(Classic_Upgrade)
to migrated my old samba 3, i created a dc and a member file server, but
on member i can't see id for usernames and groups.
This is my smb.conf on dc
[global]
netbios name = DC1
realm = LXCERRUTI.COM
server role = active directory domain controller
workgroup = LXCERRUTI
idmap_ldb:use rfc2307 = yes
idmap config DOMAIN : unix_nss_info = yes
ntlm auth = yes
winbind use default domain = yes
[netlogon]
path = /usr/local/samba/var/l...
2019 Feb 26
3
Joining_a_Samba_DC_to_an_Existing_Active_Directory
...directory, but it fails with this error:
[root at dc1 etc]# samba-tool drs showrepl
Default-First-Site-Name\DC1
DSA Options: 0x00000001
DSA object GUID: 8ba457e4-815d-4bd3-a748-8b5ddb53fd5f
DSA invocationId: 834770f4-c5a7-48c7-bc77-66e2cf37e557
==== INBOUND NEIGHBORS ====
DC=ForestDnsZones,DC=lxcerruti,DC=com
Default-First-Site-Name\DC2 via RPC
DSA object GUID: 2c8db74e-548c-43db-996a-a5287c6aa557
Last attempt @ Tue Feb 26 14:28:28 2019 CET failed,
result 1232 (WERR_HOST_UNREACHABLE)
31 consecutive failure(s).
Last succ...
2018 Nov 05
2
classicupgrade
...line 'winbind use default domain =
> > Yes', it does nothing on a DC.
> > I would also add 'idmap_ldb:use rfc2307 = yes'
> ok, i did it
> > When you run 'getent passwd username' does it produce output ?
> [root at dc1 etc]# getent passwd massaro
> LXCERRUTI\massaro:*:3000027:513::/home/LXCERRUTI/massaro:/bin/false
>
> > If so, does it produce the output you expect ?
> yes
Is 'massaro' one of your existing users carried over by the
classicupgrade ?
If it is, then you are not getting the expected output.
The number '3000027'...
2019 Feb 26
0
Joining_a_Samba_DC_to_an_Existing_Active_Directory
...directory, but it fails with this error:
[root at dc1 etc]# samba-tool drs showrepl
Default-First-Site-Name\DC1
DSA Options: 0x00000001
DSA object GUID: 8ba457e4-815d-4bd3-a748-8b5ddb53fd5f
DSA invocationId: 834770f4-c5a7-48c7-bc77-66e2cf37e557
==== INBOUND NEIGHBORS ====
DC=ForestDnsZones,DC=lxcerruti,DC=com
Default-First-Site-Name\DC2 via RPC
DSA object GUID: 2c8db74e-548c-43db-996a-a5287c6aa557
Last attempt @ Tue Feb 26 14:28:28 2019 CET failed,
result 1232 (WERR_HOST_UNREACHABLE)
31 consecutive failure(s).
Last succ...
2018 Oct 26
2
classicupgrade
Hello Rowland and thanks for fast answer
according with your suggestion i modified my smb.conf like this:
[global]
lanman auth = Yes
log file = /var/log/samba/%m.log
ntlm auth = ntlmv1-permitted
realm = LXCERRUTI.COM
security = ADS
winbind offline logon = Yes
winbind use default domain = Yes
workgroup = LXCERRUTI
idmap config lxcerruti : unix_nss_info = yes
idmap config lxcerruti : schema_mode = rfc2307
idmap config lxcerruti : range = 3000-7999...
2018 Oct 26
5
classicupgrade
Il 26/10/2018 13:45, Rowland Penny via samba ha scritto:
> ldbsearch -Hldap://$(hostname -s) -k yes -P '(&(samaccountname=Domain
> Users)(gidNumber=*))' gidNumber | grep gidNumber | awk '{print $NF}'
sorry but nothing happen
[root at dc1 ~]# ldbsearch -H ldap://$(hostname -s) -k yes -P
'(&(samaccountname=Domain Users)(gidNumber=*))' gidNumber | grep
2018 Oct 26
0
classicupgrade
...rating_a_Samba_NT4_Domain_to_Samba_AD_(Classic_Upgrade)
> to migrated my old samba 3, i created a dc and a member file server,
> but on member i can't see id for usernames and groups.
> This is my smb.conf on dc
>
> [global]
> netbios name = DC1
> realm = LXCERRUTI.COM
> server role = active directory domain controller
> workgroup = LXCERRUTI
> idmap_ldb:use rfc2307 = yes
> idmap config DOMAIN : unix_nss_info = yes
>
> ntlm auth = yes
> winbind use default domain = yes
>
> [net...
2018 Oct 26
0
classicupgrade
Hai,
I see : ldap://lxcerruti.com
So its setup with a top level domain internaly. Correct ?
Check if resolv.conf contains:
search lxcerruti.com
nameserver IP-OF_THE_DC1
And make very sure you DNS request dont goto the internet.
Monitor you gateway and outgoing dns traffic. Just a warning about this.
> > > Wha...
2018 Nov 05
0
classicupgrade
Il 05/11/2018 12:09, Rowland Penny via samba ha scritto:
> Is 'massaro' one of your existing users carried over by the
> classicupgrade ?
yes it is, i checked also other users but id is correct :
[root at dc1 var]# getent passwd cerr2012
LXCERRUTI\cerr2012:*:570:513::/home/LXCERRUTI/cerr2012:/bin/false
[root at dc1 var]# getent passwd dado
LXCERRUTI\dado:*:500:513::/home/LXCERRUTI/dado:/bin/false
[root at dc1 var]# getent passwd magfilati
LXCERRUTI\magfilati:*:597:513::/home/LXCERRUTI/magfilati:/bin/false
[root at dc1 var]# getent passwd giu...
2018 Nov 05
2
classicupgrade
...>
>
> Il 05/11/2018 12:09, Rowland Penny via samba ha scritto:
> > Is 'massaro' one of your existing users carried over by the
> > classicupgrade ?
> yes it is, i checked also other users but id is correct :
>
> [root at dc1 var]# getent passwd cerr2012
> LXCERRUTI\cerr2012:*:570:513::/home/LXCERRUTI/cerr2012:/bin/false
> [root at dc1 var]# getent passwd dado
> LXCERRUTI\dado:*:500:513::/home/LXCERRUTI/dado:/bin/false
> [root at dc1 var]# getent passwd magfilati
> LXCERRUTI\magfilati:*:597:513::/home/LXCERRUTI/magfilati:/bin/false
> [root at dc...
2018 Oct 26
2
classicupgrade
On Fri, 26 Oct 2018 16:47:52 +0200
Corrado Ravinetto via samba <samba at lists.samba.org> wrote:
> thank you for your comprehension
>
> Il 26/10/2018 16:40, Rowland Penny via samba ha scritto:
> > OK, two further ldbsearches:
> >
> > ldbsearch -Hldap://$(hostname -s) -k yes -P
> > '(&(samaccountname=*)(uidNumber=*))' uidNumber | grep uidNumber
2018 Oct 26
0
classicupgrade
...sts.samba.org> wrote:
> Hello Rowland and thanks for fast answer
> according with your suggestion i modified my smb.conf like this:
> [global]
> lanman auth = Yes
> log file = /var/log/samba/%m.log
> ntlm auth = ntlmv1-permitted
> realm = LXCERRUTI.COM
> security = ADS
> winbind offline logon = Yes
> winbind use default domain = Yes
> workgroup = LXCERRUTI
> idmap config lxcerruti : unix_nss_info = yes
> idmap config lxcerruti : schema_mode = rfc2307
> idmap c...
2018 Nov 05
2
classicupgrade
...you are using Samba Packages, which ones did you install ?
> > If you compiled Samba yourself, did you create the libnss_winbind
> > links ?
> yes i have created link,
> my smb.conf from testparm :
>
> [global]
> passdb backend = samba_dsdb
> realm = LXCERRUTI.COM
> server role = active directory domain controller
> winbind use default domain = Yes
> workgroup = LXCERRUTI
> rpc_server:tcpip = no
> rpc_daemon:spoolssd = embedded
> rpc_server:spoolss = embedded
> rpc_server...
2018 Oct 26
4
classicupgrade
...6/10/2018 10:48, Rowland Penny via samba ha scritto:
> I am willing to lay money that the gidNumber attribute for Domain Users
> contains '513', if so, your ranges are not compatible
are yuo a wizard ?? :-)
>
> What does 'wbinfo --group-info Domain\ Users' return ?
on dc
LXCERRUTI\domain users:x:100:
:-(
on member , after i added
idmap config LXCERRUTI : backend = ad
Could not get info for group Domain Users
> Have you run 'net cache flush' on the Unix domain member ?
yes
--
*Corrado Ravinetto *
Sistemi informativi
corrado.ravinetto at lanificiocerrut...
2018 Oct 31
2
classicupgrade
Il 31/10/2018 16:14, Rowland Penny via samba ha scritto:
> Can you post your smb.conf.
[global]
netbios name = DC1
realm = LXCERRUTI.COM
server role = active directory domain controller
workgroup = LXCERRUTI
idmap_ldb:use rfc2307 = yes
idmap config DOMAIN : unix_nss_info = yes
ntlm auth = yes
winbind use default domain = yes
log level = 1
[netlogon]
path...
2018 Oct 26
2
classicupgrade
...ber: 513
> [root at dc1 ~]# ldbsearch -Hldap://$(hostname -s) -k yes -P
> '(&(samaccountname=Domain Users)(gidNumber=*))' gidNumber | grep
> gidNumber | awk '{print $NF}'
> 513
>
> gid number is ok
> but on member with testparm
> idmap config lxcerruti : unix_nss_info = yes
> idmap config lxcerruti : schema_mode = rfc2307
> idmap config lxcerruti : range = 500-7999
> idmap config lxcerruti : backend = ad
> idmap config * : range = 9000-17999
> idmap config * : backend = tdb
>
> af...
2018 Nov 05
2
classicupgrade
On Mon, 5 Nov 2018 10:28:31 +0100
Corrado Ravinetto via samba <samba at lists.samba.org> wrote:
> Hello
>
> Il 31/10/2018 17:35, Corrado Ravinetto via samba ha scritto:
> > ok, sorry, are all AD users
> i taked out id map in smb.conf, but when i connect with a client in
> log.smbd:
>
> [2018/11/05 10:20:29.489762, 0]
>
2018 Nov 06
3
classicupgrade
....P.H. van Belle via samba ha scritto:
> > This is one time settings.
> > En yes, for each policy you need to klik on these once. (
> in the gpo policy objects in GPO editor )
> ok
> > Can you post smb.conf
> [global]
> netbios name = DC1
> realm = LXCERRUTI.COM
> server role = active directory domain controller
> workgroup = LXCERRUTI
> idmap_ldb:use rfc2307 = yes
> log level = 1
>
> [netlogon]
> path =
> /usr/local/samba/var/locks/sysvol/lxcerruti.com/scripts
> read on...
2018 Nov 06
3
classicupgrade
...t;>> En yes, for each policy you need to klik on these once. (
>>>> in the gpo policy objects in GPO editor )
>>>> ok
>>>>> Can you post smb.conf
>>>> [global]
>>>> netbios name = DC1
>>>> realm = LXCERRUTI.COM
>>>> server role = active directory domain controller
>>>> workgroup = LXCERRUTI
>>>> idmap_ldb:use rfc2307 = yes
>>>> log level = 1
>>>>
>>>> [netlogon]
>>>> ...
2018 Oct 31
2
classicupgrade
Hello at all
after a classicupgrade from samba 3.6 to samba 4.9.1
at first tests i found many error in log.smbd like these :
[2018/10/31 15:26:51.317398, 0]
../source3/smbd/uid.c:386(change_to_user_internal)
change_to_user_internal: chdir_current_service() failed!
[2018/10/31 15:26:51.317567, 0]
../source3/smbd/process.c:1627(switch_message)
Error: Could not change to user. Removing