search for: nemuh

Displaying 20 results from an estimated 20 matches for "nemuh".

2018 Jun 22
1
Proper sysvol permissions
...nfo.tdb drwxrwx---+ 6 root 544 4096 Jun 1 16:38 sysvol -rw------- 1 root root 32768 Jun 22 15:40 winbindd_cache.tdb drwxr-x--- 2 root root 4096 Jun 22 15:40 winbindd_privileged [root at ad1 etc]# ll /usr/local/samba.ad/var/locks/sysvol/ total 32 drwxrwx---+ 3 root 544 4096 May 17 08:21 ad.nemuh.cz drwxrwx---+ 4 root 544 4096 Jun 1 16:22 nemuh.cz drwxrwx---+ 4 root 544 4096 May 17 08:27 nspuh.cz drwxrwx---+ 4 root 544 4096 Jun 1 16:33 uhn.cz Ordinary user can not access these, but samba runs under root, so samba itself can access these structures and can serve it to clients (if samba wa...
2018 Jun 25
2
Proper sysvol permissions
...ill getting no mails from  samba list) Ad rights on samba directories: # rm -rf /usr/local/samba.ad # cd /usr/src/samba-4.8.2 # make install (no dirs in /usr/local/samba.ad/var/locks/ at this point) # /usr/local/samba.ad/sbin/samba-tool domain provision --use-rfc2307 -- interactive       realm: NEMUH.CZ       netbios: UHN    ... # ll /usr/local/samba.ad/var/locks/sysvol/nemuh.cz/ total 16 drwxrwx---+ 4 root 3000000 4096 Jun 25 12:01 Policies drwxrwx---+ 2 root 3000000 4096 Jun 25 12:01 scripts Is this normal behaviour? Thanks, Michal PS: installing into samba.ad directory for being sure it...
2018 Jul 04
5
classicupgrade questions
I am trying to do a classicupgrade.  (This is not 1st try, I went through it once time already; then I deleted all data and trying it again, with questions now.) Command samba-tool domain classicupgrade --dbdir=/etc/samba.PDC/ --realm=ad.nemuh.cz --dns-backend=BIND9_DLZ /etc/samba.PDC/smb.PDC.conf Problem a) ... init_sam_from_ldap: Entry found for user: pc0027$ init_sam_from_ldap: Failed to find Unix account for pc0027$ ldapsam_getsampwnam: init_sam_from_ldap failed for user 'pc0027$'! ERROR(<class 'passdb.error'>)...
2018 Jul 09
1
Fwd: classicupgrade questions
...58:45 Předmět: [Samba] classicupgrade questions "I am trying to do a classicupgrade.  (This is not 1st try, I went through it once time already; then I deleted all data and trying it again, with questions now.) Command samba-tool domain classicupgrade --dbdir=/etc/samba.PDC/ --realm=ad.nemuh.cz --dns-backend=BIND9_DLZ /etc/samba.PDC/smb.PDC.conf Problem a) ... init_sam_from_ldap: Entry found for user: pc0027$ init_sam_from_ldap: Failed to find Unix account for pc0027$ ldapsam_getsampwnam: init_sam_from_ldap failed for user 'pc0027$'! ERROR(<class 'passdb.error...
2018 Jun 22
1
Proper sysvol permissions
...gt;>><i> </i>>><i> [<a href='https://lists.samba.org/mailman/listinfo/samba'>root at ad1</a> etc]# ll /usr/local/samba.ad/var/locks/sysvol/ </i>>><i> total 32 </i>>><i> drwxrwx---+ 3 root 544 4096 May 17 08:21 ad.nemuh.cz </i>>><i> drwxrwx---+ 4 root 544 4096 Jun 1 16:22 nemuh.cz </i>>><i> drwxrwx---+ 4 root 544 4096 May 17 08:27 nspuh.cz </i>>><i> drwxrwx---+ 4 root 544 4096 Jun 1 16:33 uhn.cz </i> > Two questions, why do you have 4 directories und...
2018 Jul 10
0
classicupgrade questions
...is is not 1st try, I went > through it once time already; then I deleted all data and trying it > again, with questions now.) Long Story. I will try to describe your problem as short as possible > Command > > samba-tool domain classicupgrade --dbdir=/etc/samba.PDC/ > --realm=ad.nemuh.cz --dns-backend=BIND9_DLZ > /etc/samba.PDC/smb.PDC.conf > > Problem a) > ... > init_sam_from_ldap: Entry found for user: pc0027$ > init_sam_from_ldap: Failed to find Unix account for pc0027$ 1. Error > ldapsam_getsampwnam: init_sam_from_ldap failed for user 'pc0027$'...
2018 Jul 24
3
Force set group id on samba domain member
...-9999' range. > I forgot we have gid 20 :-( > > Do you have users & groups in AD and in /etc/passwd & /etc/group ? > > What is the OS > What is the Active directory DC ? > > It is linux, samba 4.8.3: [global] netbios name = AD1 realm = UHN.NEMUH.CZ server role = active directory domain controller server services = s3fs, rpc, nbt, wrepl, ldap, cldap, kdc, drepl, winbindd, ntp_signd, kcc, dnsupdate workgroup = NIS idmap_ldb:use rfc2307 = yes [netlogon] path = /usr/local/samba.ad/var/locks/sysvol/uhn.n...
2018 Jun 25
1
Proper sysvol permissions
...a directories: > > # rm -rf /usr/local/samba.ad > # cd /usr/src/samba-4.8.2 > # make install > > (no dirs in /usr/local/samba.ad/var/locks/ at this point) > > # /usr/local/samba.ad/sbin/samba-tool domain provision --use-rfc2307 > -- interactive >       realm: NEMUH.CZ >       netbios: UHN >    ... > > # ll /usr/local/samba.ad/var/locks/sysvol/nemuh.cz/ > total 16 > drwxrwx---+ 4 root 3000000 4096 Jun 25 12:01 Policies > drwxrwx---+ 2 root 3000000 4096 Jun 25 12:01 scripts > > Is this normal behaviour? I wish all questions...
2018 Jul 03
1
Classicup
Command: samba-tool domain classicupgrade --dbdir=/etc/samba.PDC/ --realm=nemuh.cz -- dns-backend=BIND9_DLZ /etc/samba.PDC/smb.PDC.conf ...a lot of lines... and: Following names are both user names and group names:    radix    lekarna    vema    dss    vydejzp    nagios    doprava    audio ERROR(<class 'samba.provision.ProvisioningError'>): uncaught exception -...
2018 Jul 10
0
classicupgrade questions
...ays: 5 > OXGroupID: 500 > OXTaskDays: 5 > OXTimeZone:: RXVyb3BlL3ByYWd1ZSA= > loginShell: /usr/bin/ksh > uidNumber: 270 > gidNumber: 20 > homeDirectory: /home/anger > sambaSID: S-1-5-21-......-1540 > employeeNumber: 114 > sambaPwdLastSet: 1344931739 > mail: anger at nemuh.cz > mailDomain: nemuh.cz > o: UHN a.s. > description:: WmRlbsSbayBBbmdlcg== > givenName:: WmRlbsSbaw== > sn: ANGER > gecos: MUDr. Zdenek Anger > ou: - > > Why is imported/upgraded account locked? I do not know, maybe the "OX..." attributes, maybe the base64...
2018 Jul 24
5
Force set group id on samba domain member
...1 NIS\test1 NIS\domain users 7 Jul 24 12:35 test1file2 there is "NIS\\domain users" group instead of expected and needed "NIS\\audio" group. Where can be the problem? Thanks, Michal smb.conf on samba4 DM: [global] security = ADS workgroup = NIS realm = uhn.nemuh.cz winbind offline logon = yes winbind enum users = yes winbind enum groups = yes .. log file = /var/log/samba/%m.log log level = 1 idmap config * : backend = tdb idmap config * : range = 10000-19999 idmap config ad # idmap config for the NIS domain idmap config NIS:backend =...
2018 Jul 25
2
Fwd: Force set group id on samba domain member
...are identical OS. in a fact, I > created both of them from template in our vmware and I did not bother > what Centos version it is. I did not think it might matter. > > > > > > > > [global] > > > netbios name = AD1 > > > realm = UHN.NEMUH.CZ > > > server role = active directory domain controller > > > server services = s3fs, rpc, nbt, wrepl, ldap, cldap, kdc, > > > drepl, winbindd, ntp_signd, kcc, dnsupdate > > > workgroup = NIS > > > idmap_ldb:use rfc2307...
2018 Jul 25
0
Fwd: Force set group id on samba domain member
...(Core) Both AD DC (ad1) and DM (samba4) are identical OS. in a fact, I created both of them from template in our vmware and I did not bother what Centos version it is. I did not think it might matter. > > > > [global] > > netbios name = AD1 > > realm = UHN.NEMUH.CZ > > server role = active directory domain controller > > server services = s3fs, rpc, nbt, wrepl, ldap, cldap, kdc, > > drepl, winbindd, ntp_signd, kcc, dnsupdate > > workgroup = NIS > > idmap_ldb:use rfc2307 = yes > > > >...
2018 Jul 24
3
Force set group id on samba domain member
2018-07-24 16:53 GMT+02:00 Rowland Penny via samba <samba at lists.samba.org>: > On Tue, 24 Jul 2018 15:57:46 +0200 > Michal <Michal67M at seznam.cz> wrote: > > > For being honest, in my previous tests this user's (user test1) new > > files was created with NIS\audio group as extected; but other user's > > files (user amistest) was created with
2018 Jul 25
0
Fwd: Force set group id on samba domain member
...gt; created both of them from template in our vmware and I did not bother > > what Centos version it is. I did not think it might matter. > > > > > > > > > > > > [global] > > > > netbios name = AD1 > > > > realm = UHN.NEMUH.CZ > > > > server role = active directory domain controller > > > > server services = s3fs, rpc, nbt, wrepl, ldap, cldap, kdc, > > > > drepl, winbindd, ntp_signd, kcc, dnsupdate > > > > workgroup = NIS > > > >...
2018 Jul 10
0
My terrible fail - started AD together with NT4 domain. Help needed
...ved this will prevent problems with running AD on the same network). I did not change domain SIDs in LDAP data (I thought changing domain name will be enough).  - I installed samba 4.8.2 on ad1 (into /usr/local/samba.ad) and run  samba-tool domain classicupgrade --dbdir=/etc/samba.PDC/ --realm=ad.nemuh. cz --dns-backend=BIND9_DLZ /etc/samba.PDC/smb.PDC.conf After correction of numerous errors in LDAP data this command succeded. Then I run  /usr/local/samba.ad/sbin/samba -i -M single -d 3 I repeated about 5 times the cycle of deleting all LDAP data, removing /usr/ local/samba.ad, running sam...
2018 Jul 24
0
Force set group id on samba domain member
...uot; group instead of expected and needed > "NIS\\audio" group. This is to be expected with your smb.conf > > Where can be the problem? > > Thanks, Michal > > smb.conf on samba4 DM: > [global] > security = ADS > workgroup = NIS > realm = uhn.nemuh.cz > winbind offline logon = yes > winbind enum users = yes > winbind enum groups = yes > .. > log file = /var/log/samba/%m.log > log level = 1 > > idmap config * : backend = tdb > idmap config * : range = 10000-19999 > idmap config ad > > # i...
2018 Jun 27
2
AD LDAP
> This is problem. We used to be able get "public" data from ldap "> without authentification (password attributes can not be read without > user bind, of course). Is there any way how to do it? Yes, but before I tell you, why do you feel you need to do this, what are you searching for ? "     We use GroupOffice and it is configured to use LDAP; it is looking up
2018 Jul 24
0
Force set group id on samba domain member
...IS\\audio" group. > > Where can be the problem? Maybe their is no problem? Check the extented acls: getfacl /home4/group/audio{test1dir2,test1file2} > Thanks, Michal > > smb.conf on samba4 DM: > [global] > security = ADS > workgroup = NIS > realm = uhn.nemuh.cz > winbind offline logon = yes > winbind enum users = yes > winbind enum groups = yes > .. > log file = /var/log/samba/%m.log > log level = 1 > > idmap config * : backend = tdb > idmap config * : range = 10000-19999 > idmap config ad > > # i...
2018 Jul 24
2
Force set group id on samba domain member
...dio" group. > > This is to be expected with your smb.conf > > > > > Where can be the problem? > > > > Thanks, Michal > > > > smb.conf on samba4 DM: > > [global] > > security = ADS > > workgroup = NIS > > realm = uhn.nemuh.cz > > winbind offline logon = yes > > winbind enum users = yes > > winbind enum groups = yes > > .. > > log file = /var/log/samba/%m.log > > log level = 1 > > > > idmap config * : backend = tdb > > idmap config * : range = 10000-1...