Displaying 18 results from an estimated 18 matches for "mattiasz".
Did you mean:
mattias
2015 Dec 09
2
Adding an AD group to /etc/sudoers?
...at AUTH_SYS?
Seems I have 28 groups now as my user
I tried created a test user with much less groups
but it turns out it is on all those other groups.
As such I tried
winbind nested groups=no
but this doesn't seem to change anything.
On Tue, Dec 8, 2015 at 5:05 PM, Mattias Zhabinskiy <
mattiasz at thinklogical.com> wrote:
> Jeff,
>
>
> To find out maximum number of groups allowed per user run:
>
> cat /proc/sys/kernel/ngroups_max
> or
> sysctl kernel.ngroups_max
> but AFAIK AUTH_SYS has a limit of 16, so I would try to either create a
> test account, add...
2015 Dec 09
0
Adding an AD group to /etc/sudoers?
...k at AUTH_SYS?
Seems I have 28 groups now as my user
I tried created a test user with much less groups
but it turns out it is on all those other groups.
As such I tried
winbind nested groups=no
but this doesn't seem to change anything.
On Tue, Dec 8, 2015 at 5:05 PM, Mattias Zhabinskiy <mattiasz at thinklogical.com<mailto:mattiasz at thinklogical.com>> wrote:
Jeff,
To find out maximum number of groups allowed per user run:
cat /proc/sys/kernel/ngroups_max
or
sysctl kernel.ngroups_max
but AFAIK AUTH_SYS has a limit of 16, so I would try to either create a test account, add it t...
2015 Dec 09
1
Adding an AD group to /etc/sudoers?
...st I can run commands using sudo
back to my other user who I also added to sudoer
I still can not run commands using sudo
but as you suggested I do the "newgrp it" or "newgrp sudoer"
and then I can run commands using sudo
On Wed, Dec 9, 2015 at 8:20 AM, Mattias Zhabinskiy <
mattiasz at thinklogical.com> wrote:
> Jeff,
>
>
> After ssh try to run:
>
>
> newgrp it
>
>
> and then sudo. See if it will work, then you'll have to figure out what's
> going on with the users groups membership.
>
>
> Regards,
>
> Matt
>
>...
2015 Dec 08
2
Adding an AD group to /etc/sudoers?
...ssions with
>> user as root and it as the group
>>
>> as for
>> %it ALL=(ALL) ALL
>> instead of:
>> %it ALL=(ALL:ALL) ALL
>>
>> seems to work the same
>>
>>
>>
>> On Tue, Dec 8, 2015 at 1:29 PM, Mattias Zhabinskiy <
>> mattiasz at thinklogical.com> wrote:
>>
>>> Jeff,
>>>
>>> After the ssh did you run "id" command to verify that your account
>>> belongs to the "it" group on the remote system?
>>>
>>> Did you try:
>>> %it ALL=(ALL)...
2015 Dec 08
2
Adding an AD group to /etc/sudoers?
...d alone give different results?
which is odd because
as my username I can get into a folder that has 0760 permissions with user
as root and it as the group
as for
%it ALL=(ALL) ALL
instead of:
%it ALL=(ALL:ALL) ALL
seems to work the same
On Tue, Dec 8, 2015 at 1:29 PM, Mattias Zhabinskiy <
mattiasz at thinklogical.com> wrote:
> Jeff,
>
> After the ssh did you run "id" command to verify that your account belongs
> to the "it" group on the remote system?
>
> Did you try:
> %it ALL=(ALL) ALL
> instead of:
> %it ALL=(ALL:ALL) ALL
>
> Regard...
2015 Dec 09
0
Adding an AD group to /etc/sudoers?
...id alone give different results?
which is odd because
as my username I can get into a folder that has 0760 permissions with user as root and it as the group
as for
%it ALL=(ALL) ALL
instead of:
%it ALL=(ALL:ALL) ALL
seems to work the same
On Tue, Dec 8, 2015 at 1:29 PM, Mattias Zhabinskiy <mattiasz at thinklogical.com<mailto:mattiasz at thinklogical.com>> wrote:
Jeff,
After the ssh did you run "id" command to verify that your account belongs to the "it" group on the remote system?
Did you try:
%it ALL=(ALL) ALL
instead of:
%it ALL=(ALL:ALL) ALL
Regards,
Matt
_...
2017 Dec 28
3
string_to_sid: SI is not in a valid format
...arse_endp)
string_to_sid: SID msavin is not in a valid format
msavin is my user name:
# wbinfo -n msavin
S-1-5-21-508332004-1178028025-157424832-1273 SID_USER (1)
# wbinfo --lookup-sids S-1-5-21-508332004-1178028025-157424832-1273
S-1-5-21-508332004-1178028025-157424832-1273 -> <none>\mattiasz 1
>From smb.conf:
winbind use default domain = true
winbind offline logon = false
disable netbios = yes
winbind trusted domains only = no
allow trusted domains = no
Any reason?
Thank you,
Matt
2014 Dec 19
3
setfacl: Option -m: Invalid argument near character 3
...' should show the domain group.
If you are running samba4 in AD mode, then you are running winbind,
though you may not be **using** it.
Can you post what OS & samba packages you are using.
Rowland
>
> Rich.
>
> -----Original Message-----
> From: Mattias Zhabinskiy [mailto:mattiasz at thinklogical.com]
> Sent: Friday, December 19, 2014 12:15 AM
> To: Rich Webb
> Subject: Re: [Samba] setfacl: Option -m: Invalid argument near character
> 3
>
> Hello Rich,
>
> First of all remove space in front of the group name "users":
>
> setfacl -R -m...
2014 Dec 19
2
setfacl: Option -m: Invalid argument near character 3
...it and not have to use the \ and the space.
>
>The problem is getent group only is listing local unix groups. I think
>that is why setfacl is not able to add active directory groups to the
>acl.
>
>Rich.
>
>-----Original Message-----
>From: Mattias Zhabinskiy [mailto:mattiasz at thinklogical.com]
>Sent: Friday, December 19, 2014 12:15 AM
>To: Rich Webb
>Subject: Re: [Samba] setfacl: Option -m: Invalid argument near
>character
>3
>
>Hello Rich,
>
>First of all remove space in front of the group name "users":
>
>setfacl -R -m g:...
2015 Dec 08
0
Adding an AD group to /etc/sudoers?
...username I can get into a folder that has 0760 permissions with user
> as root and it as the group
>
> as for
> %it ALL=(ALL) ALL
> instead of:
> %it ALL=(ALL:ALL) ALL
>
> seems to work the same
>
>
>
> On Tue, Dec 8, 2015 at 1:29 PM, Mattias Zhabinskiy <
> mattiasz at thinklogical.com> wrote:
>
>> Jeff,
>>
>> After the ssh did you run "id" command to verify that your account
>> belongs to the "it" group on the remote system?
>>
>> Did you try:
>> %it ALL=(ALL) ALL
>> instead of:
>>...
2014 Dec 19
3
setfacl: Option -m: Invalid argument near character 3
...you are running samba4 in AD mode, then you are running winbind,
>though you may not be **using** it.
>
>Can you post what OS & samba packages you are using.
>
>Rowland
>>
>> Rich.
>>
>> -----Original Message-----
>> From: Mattias Zhabinskiy [mailto:mattiasz at thinklogical.com]
>> Sent: Friday, December 19, 2014 12:15 AM
>> To: Rich Webb
>> Subject: Re: [Samba] setfacl: Option -m: Invalid argument near
>> character
>> 3
>>
>> Hello Rich,
>>
>> First of all remove space in front of the group name &...
2014 Dec 18
6
setfacl: Option -m: Invalid argument near character 3
I just tried that and I got the same error. I think there is some
extended acl support that I'm missing somewhere.
It's like the setfacl command is not recognizing the AD groups as valid
groups.
I should also add the following information:
This server is built up on CentOS 6.6 Minimal using the Sernet-Samba
Enterprise packages.
It looks like the binary that is running is
2014 Dec 19
3
setfacl: Option -m: Invalid argument near character 3
...gt; If you are running samba4 in AD mode, then you are running winbind,
> though you may not be **using** it.
>
> Can you post what OS & samba packages you are using.
>
> Rowland
>> Rich.
>>
>> -----Original Message-----
>> From: Mattias Zhabinskiy [mailto:mattiasz at thinklogical.com]
>> Sent: Friday, December 19, 2014 12:15 AM
>> To: Rich Webb
>> Subject: Re: [Samba] setfacl: Option -m: Invalid argument near
>> character
>> 3
>>
>> Hello Rich,
>>
>> First of all remove space in front of the group name &q...
2014 Dec 19
0
setfacl: Option -m: Invalid argument near character 3
...think I could also
put quotes around it and not have to use the \ and the space.
The problem is getent group only is listing local unix groups. I think
that is why setfacl is not able to add active directory groups to the
acl.
Rich.
-----Original Message-----
From: Mattias Zhabinskiy [mailto:mattiasz at thinklogical.com]
Sent: Friday, December 19, 2014 12:15 AM
To: Rich Webb
Subject: Re: [Samba] setfacl: Option -m: Invalid argument near character
3
Hello Rich,
First of all remove space in front of the group name "users":
setfacl -R -m g:MYDOM\\domain\users:rwx ./shared
For exampl...
2014 Dec 19
0
setfacl: Option -m: Invalid argument near character 3
...;' should show the domain group.
If you are running samba4 in AD mode, then you are running winbind,
though you may not be **using** it.
Can you post what OS & samba packages you are using.
Rowland
>
> Rich.
>
> -----Original Message-----
> From: Mattias Zhabinskiy [mailto:mattiasz at thinklogical.com]
> Sent: Friday, December 19, 2014 12:15 AM
> To: Rich Webb
> Subject: Re: [Samba] setfacl: Option -m: Invalid argument near
> character
> 3
>
> Hello Rich,
>
> First of all remove space in front of the group name "users":
>
> setfacl...
2014 Dec 20
0
setfacl: Option -m: Invalid argument near character 3
...the
>space.
>
> The problem is getent group only is listing local unix
>groups. I think
> that is why setfacl is not able to add active directory
>groups to the
> acl.
>
> Rich.
>
> -----Original Message-----
> From: Mattias Zhabinskiy
>[mailto:mattiasz at thinklogical.com]
> Sent: Friday, December 19, 2014 12:15 AM
> To: Rich Webb
> Subject: Re: [Samba] setfacl: Option -m: Invalid
>argument near
> character
> 3
>
> Hello Rich,
>
> First of all remove space in front of the group name
>"users":...
2014 Dec 19
0
setfacl: Option -m: Invalid argument near character 3
...you are running samba4 in AD mode, then you are running winbind,
>though you may not be **using** it.
>
>Can you post what OS & samba packages you are using.
>
>Rowland
>>
>> Rich.
>>
>> -----Original Message-----
>> From: Mattias Zhabinskiy [mailto:mattiasz at thinklogical.com]
>> Sent: Friday, December 19, 2014 12:15 AM
>> To: Rich Webb
>> Subject: Re: [Samba] setfacl: Option -m: Invalid argument near
>> character
>> 3
>>
>> Hello Rich,
>>
>> First of all remove space in front of the group name &...
2016 Feb 29
0
Slow file listing : Debian Wheezy, Samba Version 3.6.6
Hello Richard,
Not sure if it applies to your particular case, but I would try following. In windows explorer please right click on the mapped drive, select Properties, click on Customize tab and make sure that option "Optimize this folder for:" is set to "General Items", otherwise select it, check "Also apply this template to all subfolders" and click Apply.
Also,