Displaying 20 results from an estimated 20 matches for "nemuh".
2018 Jun 22
1
Proper sysvol permissions
...nfo.tdb
drwxrwx---+ 6 root 544 4096 Jun 1 16:38 sysvol
-rw------- 1 root root 32768 Jun 22 15:40 winbindd_cache.tdb
drwxr-x--- 2 root root 4096 Jun 22 15:40 winbindd_privileged
[root at ad1 etc]# ll /usr/local/samba.ad/var/locks/sysvol/
total 32
drwxrwx---+ 3 root 544 4096 May 17 08:21 ad.nemuh.cz
drwxrwx---+ 4 root 544 4096 Jun 1 16:22 nemuh.cz
drwxrwx---+ 4 root 544 4096 May 17 08:27 nspuh.cz
drwxrwx---+ 4 root 544 4096 Jun 1 16:33 uhn.cz
Ordinary user can not access these, but samba runs under root, so samba
itself can access these structures and can serve it to clients (if samba
wa...
2018 Jun 25
2
Proper sysvol permissions
...ill getting no mails from samba list)
Ad rights on samba directories:
# rm -rf /usr/local/samba.ad
# cd /usr/src/samba-4.8.2
# make install
(no dirs in /usr/local/samba.ad/var/locks/ at this point)
# /usr/local/samba.ad/sbin/samba-tool domain provision --use-rfc2307 --
interactive
realm: NEMUH.CZ
netbios: UHN
...
# ll /usr/local/samba.ad/var/locks/sysvol/nemuh.cz/
total 16
drwxrwx---+ 4 root 3000000 4096 Jun 25 12:01 Policies
drwxrwx---+ 2 root 3000000 4096 Jun 25 12:01 scripts
Is this normal behaviour?
Thanks, Michal
PS: installing into samba.ad directory for being sure it...
2018 Jul 04
5
classicupgrade questions
I am trying to do a classicupgrade. (This is not 1st try, I went through it
once time already; then I deleted all data and trying it again, with
questions now.)
Command
samba-tool domain classicupgrade --dbdir=/etc/samba.PDC/ --realm=ad.nemuh.cz
--dns-backend=BIND9_DLZ /etc/samba.PDC/smb.PDC.conf
Problem a)
...
init_sam_from_ldap: Entry found for user: pc0027$
init_sam_from_ldap: Failed to find Unix account for pc0027$
ldapsam_getsampwnam: init_sam_from_ldap failed for user 'pc0027$'!
ERROR(<class 'passdb.error'>)...
2018 Jul 09
1
Fwd: classicupgrade questions
...58:45
Předmět: [Samba] classicupgrade questions
"I am trying to do a classicupgrade. (This is not 1st try, I went through
it
once time already; then I deleted all data and trying it again, with
questions now.)
Command
samba-tool domain classicupgrade --dbdir=/etc/samba.PDC/ --realm=ad.nemuh.cz
--dns-backend=BIND9_DLZ /etc/samba.PDC/smb.PDC.conf
Problem a)
...
init_sam_from_ldap: Entry found for user: pc0027$
init_sam_from_ldap: Failed to find Unix account for pc0027$
ldapsam_getsampwnam: init_sam_from_ldap failed for user 'pc0027$'!
ERROR(<class 'passdb.error...
2018 Jun 22
1
Proper sysvol permissions
...gt;>><i>
</i>>><i> [<a href='https://lists.samba.org/mailman/listinfo/samba'>root at ad1</a> etc]# ll /usr/local/samba.ad/var/locks/sysvol/
</i>>><i> total 32
</i>>><i> drwxrwx---+ 3 root 544 4096 May 17 08:21 ad.nemuh.cz
</i>>><i> drwxrwx---+ 4 root 544 4096 Jun 1 16:22 nemuh.cz
</i>>><i> drwxrwx---+ 4 root 544 4096 May 17 08:27 nspuh.cz
</i>>><i> drwxrwx---+ 4 root 544 4096 Jun 1 16:33 uhn.cz
</i>
> Two questions, why do you have 4 directories und...
2018 Jul 10
0
classicupgrade questions
...is is not 1st try, I went
> through it once time already; then I deleted all data and trying it
> again, with questions now.)
Long Story. I will try to describe your problem as short as possible
> Command
>
> samba-tool domain classicupgrade --dbdir=/etc/samba.PDC/
> --realm=ad.nemuh.cz --dns-backend=BIND9_DLZ
> /etc/samba.PDC/smb.PDC.conf
>
> Problem a)
> ...
> init_sam_from_ldap: Entry found for user: pc0027$
> init_sam_from_ldap: Failed to find Unix account for pc0027$
1. Error
> ldapsam_getsampwnam: init_sam_from_ldap failed for user 'pc0027$'...
2018 Jul 24
3
Force set group id on samba domain member
...-9999' range.
>
I forgot we have gid 20 :-(
>
> Do you have users & groups in AD and in /etc/passwd & /etc/group ?
>
> What is the OS
> What is the Active directory DC ?
>
>
It is linux, samba 4.8.3:
[global]
netbios name = AD1
realm = UHN.NEMUH.CZ
server role = active directory domain controller
server services = s3fs, rpc, nbt, wrepl, ldap, cldap, kdc, drepl,
winbindd, ntp_signd, kcc, dnsupdate
workgroup = NIS
idmap_ldb:use rfc2307 = yes
[netlogon]
path = /usr/local/samba.ad/var/locks/sysvol/uhn.n...
2018 Jun 25
1
Proper sysvol permissions
...a directories:
>
> # rm -rf /usr/local/samba.ad
> # cd /usr/src/samba-4.8.2
> # make install
>
> (no dirs in /usr/local/samba.ad/var/locks/ at this point)
>
> # /usr/local/samba.ad/sbin/samba-tool domain provision --use-rfc2307
> -- interactive
> realm: NEMUH.CZ
> netbios: UHN
> ...
>
> # ll /usr/local/samba.ad/var/locks/sysvol/nemuh.cz/
> total 16
> drwxrwx---+ 4 root 3000000 4096 Jun 25 12:01 Policies
> drwxrwx---+ 2 root 3000000 4096 Jun 25 12:01 scripts
>
> Is this normal behaviour?
I wish all questions...
2018 Jul 03
1
Classicup
Command:
samba-tool domain classicupgrade --dbdir=/etc/samba.PDC/ --realm=nemuh.cz --
dns-backend=BIND9_DLZ /etc/samba.PDC/smb.PDC.conf
...a lot of lines... and:
Following names are both user names and group names:
radix
lekarna
vema
dss
vydejzp
nagios
doprava
audio
ERROR(<class 'samba.provision.ProvisioningError'>): uncaught exception -...
2018 Jul 10
0
classicupgrade questions
...ays: 5
> OXGroupID: 500
> OXTaskDays: 5
> OXTimeZone:: RXVyb3BlL3ByYWd1ZSA=
> loginShell: /usr/bin/ksh
> uidNumber: 270
> gidNumber: 20
> homeDirectory: /home/anger
> sambaSID: S-1-5-21-......-1540
> employeeNumber: 114
> sambaPwdLastSet: 1344931739
> mail: anger at nemuh.cz
> mailDomain: nemuh.cz
> o: UHN a.s.
> description:: WmRlbsSbayBBbmdlcg==
> givenName:: WmRlbsSbaw==
> sn: ANGER
> gecos: MUDr. Zdenek Anger
> ou: -
>
> Why is imported/upgraded account locked?
I do not know, maybe the "OX..." attributes, maybe the base64...
2018 Jul 24
5
Force set group id on samba domain member
...1 NIS\test1 NIS\domain users 7 Jul 24 12:35 test1file2
there is "NIS\\domain users" group instead of expected and needed
"NIS\\audio" group.
Where can be the problem?
Thanks, Michal
smb.conf on samba4 DM:
[global]
security = ADS
workgroup = NIS
realm = uhn.nemuh.cz
winbind offline logon = yes
winbind enum users = yes
winbind enum groups = yes
..
log file = /var/log/samba/%m.log
log level = 1
idmap config * : backend = tdb
idmap config * : range = 10000-19999
idmap config ad
# idmap config for the NIS domain
idmap config NIS:backend =...
2018 Jul 25
2
Fwd: Force set group id on samba domain member
...are identical OS. in a fact, I
> created both of them from template in our vmware and I did not bother
> what Centos version it is. I did not think it might matter.
>
>
> > >
> > > [global]
> > > netbios name = AD1
> > > realm = UHN.NEMUH.CZ
> > > server role = active directory domain controller
> > > server services = s3fs, rpc, nbt, wrepl, ldap, cldap, kdc,
> > > drepl, winbindd, ntp_signd, kcc, dnsupdate
> > > workgroup = NIS
> > > idmap_ldb:use rfc2307...
2018 Jul 25
0
Fwd: Force set group id on samba domain member
...(Core)
Both AD DC (ad1) and DM (samba4) are identical OS. in a fact, I created
both of them from template in our vmware and I did not bother what Centos
version it is. I did not think it might matter.
> >
> > [global]
> > netbios name = AD1
> > realm = UHN.NEMUH.CZ
> > server role = active directory domain controller
> > server services = s3fs, rpc, nbt, wrepl, ldap, cldap, kdc,
> > drepl, winbindd, ntp_signd, kcc, dnsupdate
> > workgroup = NIS
> > idmap_ldb:use rfc2307 = yes
> >
> >...
2018 Jul 24
3
Force set group id on samba domain member
2018-07-24 16:53 GMT+02:00 Rowland Penny via samba <samba at lists.samba.org>:
> On Tue, 24 Jul 2018 15:57:46 +0200
> Michal <Michal67M at seznam.cz> wrote:
>
> > For being honest, in my previous tests this user's (user test1) new
> > files was created with NIS\audio group as extected; but other user's
> > files (user amistest) was created with
2018 Jul 25
0
Fwd: Force set group id on samba domain member
...gt; created both of them from template in our vmware and I did not bother
> > what Centos version it is. I did not think it might matter.
> >
> >
> > > >
> > > > [global]
> > > > netbios name = AD1
> > > > realm = UHN.NEMUH.CZ
> > > > server role = active directory domain controller
> > > > server services = s3fs, rpc, nbt, wrepl, ldap, cldap, kdc,
> > > > drepl, winbindd, ntp_signd, kcc, dnsupdate
> > > > workgroup = NIS
> > > >...
2018 Jul 10
0
My terrible fail - started AD together with NT4 domain. Help needed
...ved this will prevent problems with running AD on the same network). I
did not change domain SIDs in LDAP data (I thought changing domain name will
be enough).
- I installed samba 4.8.2 on ad1 (into /usr/local/samba.ad) and run
samba-tool domain classicupgrade --dbdir=/etc/samba.PDC/ --realm=ad.nemuh.
cz --dns-backend=BIND9_DLZ
/etc/samba.PDC/smb.PDC.conf
After correction of numerous errors in LDAP data this command succeded.
Then I run
/usr/local/samba.ad/sbin/samba -i -M single -d 3
I repeated about 5 times the cycle of deleting all LDAP data, removing /usr/
local/samba.ad, running sam...
2018 Jul 24
0
Force set group id on samba domain member
...uot; group instead of expected and needed
> "NIS\\audio" group.
This is to be expected with your smb.conf
>
> Where can be the problem?
>
> Thanks, Michal
>
> smb.conf on samba4 DM:
> [global]
> security = ADS
> workgroup = NIS
> realm = uhn.nemuh.cz
> winbind offline logon = yes
> winbind enum users = yes
> winbind enum groups = yes
> ..
> log file = /var/log/samba/%m.log
> log level = 1
>
> idmap config * : backend = tdb
> idmap config * : range = 10000-19999
> idmap config ad
>
> # i...
2018 Jun 27
2
AD LDAP
> This is problem. We used to be able get "public" data from ldap
"> without authentification (password attributes can not be read without
> user bind, of course). Is there any way how to do it?
Yes, but before I tell you, why do you feel you need to do this, what
are you searching for ?
"
We use GroupOffice and it is configured to use LDAP; it is looking up
2018 Jul 24
0
Force set group id on samba domain member
...IS\\audio" group.
>
> Where can be the problem?
Maybe their is no problem? Check the extented acls:
getfacl /home4/group/audio{test1dir2,test1file2}
> Thanks, Michal
>
> smb.conf on samba4 DM:
> [global]
> security = ADS
> workgroup = NIS
> realm = uhn.nemuh.cz
> winbind offline logon = yes
> winbind enum users = yes
> winbind enum groups = yes
> ..
> log file = /var/log/samba/%m.log
> log level = 1
>
> idmap config * : backend = tdb
> idmap config * : range = 10000-19999
> idmap config ad
>
> # i...
2018 Jul 24
2
Force set group id on samba domain member
...dio" group.
>
> This is to be expected with your smb.conf
>
> >
> > Where can be the problem?
> >
> > Thanks, Michal
> >
> > smb.conf on samba4 DM:
> > [global]
> > security = ADS
> > workgroup = NIS
> > realm = uhn.nemuh.cz
> > winbind offline logon = yes
> > winbind enum users = yes
> > winbind enum groups = yes
> > ..
> > log file = /var/log/samba/%m.log
> > log level = 1
> >
> > idmap config * : backend = tdb
> > idmap config * : range = 10000-1...