Displaying 20 results from an estimated 29 matches for "ogdenradar".
2020 Feb 20
1
Recommended backup procedure for standalone samba file server configuration?
...here?
Or should I just carry on using my tar files manually as I have described?
Kind Regards
Stephen Ellwood--
Stephen Ellwood,
Embedded System Engineer,
Ogden Safety Systems Ltd,
Unit 6, Cliffe Park Way,
Bruntcliffe Road,
Morley,
Leeds,
LS27 0RY,
UK.
Tel: +44 (0)1937 835395
Email: stephen at ogdenradar.com
URL: www.ogdenradar.com
2019 Mar 22
0
Problems with Samba 4.5.16 - configuring a second failover AD DC and joining this to an existing domain SAMDOM
On Fri, 22 Mar 2019 16:37:23 +0000
Stephen <stephen at ogdenradar.com> wrote:
> Thanks for taking a look Roland, and I appreciate your comments
> regarding your scripts. I am not a professional sysadmin so there
> likely is stuff there that the grizzled unix veterans on this list
> will find a little odd :)
>
> I just restarted samba on a...
2019 Mar 22
4
Problems with Samba 4.5.16 - configuring a second failover AD DC and joining this to an existing domain SAMDOM
Hello I wonder if anyone here could possibly help me? I am using Samba
version 4.5.16-Debian (version information taken from sudo smbstatus) on
Raspbian and attempting to prototype some future network infrastructure
with a couple of Raspberry Pis.
So far I have sucessfully created a Samba 4 AD DC
ad1.samdom.example.com. I have successfully joined my Windows 10 dekstop
client to the SAMDOM
2019 Mar 26
0
Problem achieving manual synchronisation of idmap.ldb and the associated User and Group ID mappings between two Samba 4 AD DCs
Jonathon and Rowland, are you sure the command you are referring to
here is net cache clear for clearing the cache? I couldnt see this in
the manpage for net cache.
There is a 'net cache flush' command though?
Thanks
Stephen
On 26/03/2019 11:56, Rowland Penny via samba wrote:
> On Tue, 26 Mar 2019 07:37:54 -0400
> Jonathon Reinhart via samba <samba at lists.samba.org>
2019 Mar 26
0
Problem achieving manual synchronisation of idmap.ldb and the associated User and Group ID mappings between two Samba 4 AD DCs
Go on, I give in, what is wrong with the official Samba documentation?
Off the top of my head:
1) Your (ie Samba project) docs are structured a little poorly and
actually pretty hard to follow - eg a single article describes setting
up Samba both with SAMBA_INTERNAL and BIND which is confusing. Two
separate articles, one on each topic would be better!
2) Despite being the official
2019 Apr 05
2
wbinfo isn't working on domain member
Hi everyone, just tried executing wbinfo -u and wbinfo -g on a
particular Samba domain member that is acting as a file server in my setup.
Much to my surprise i did not see the list of users or groups that I
would normally expect to see outputted from these commands. Instead both
commands just exited and returned no output. I have already tried
restarting winbind, smbd, and nmbd on the domain
Disabling password expiry for a AD service account for accessing LDAPS, and security best practices.
2019 Apr 10
2
Disabling password expiry for a AD service account for accessing LDAPS, and security best practices.
Dear samba-list, please disregard my previous post.
Since posting I have found a way to avoid the need to create a dedicated
AD service account purely to allow Redmine to authenticate via LDAPS and
AD. This neatly circumvents my original issue and is much more secure to
boot.
For future Redmine users googling, refer to this document here:
Suggested change to Samba documentation - possible missing RFC2307 attribute prior to chown command?
2019 Apr 03
2
Suggested change to Samba documentation - possible missing RFC2307 attribute prior to chown command?
Hi everyone, i've just been following the instructions about setting up
a Samba domain member as a file shares. I am using Samba version
4.5.16-Debian (yes its old, but i'm stuck with it for now ;) ) and I
have been following the official Samba documentation found here:
https://wiki.samba.org/index.php/Setting_up_a_Share_Using_Windows_ACLs
I just wanted to give you a heads up, I am
2019 Apr 05
3
wbinfo isn't working on domain member
As always, posting your smb.conf might help.
Oops forgot, thanks Rowland:
pi at fs1:~ $ cat /etc/samba/smb.conf
[global]
username map = /etc/samba/user.map
workgroup = samdom
realm = samdom.example.com
netbios name = fs1
security = ADS
idmap config * : backend = tdb
idmap config *: range = 3000-7999
idmap config SAMDOM:backend = ad
idmap config
2019 May 03
2
Incorrect Example in Samba User Management Documentation
Hi Samba documentation admins, one of the the examples given on this
page https://wiki.samba.org/index.php/User_and_Group_management is
incorrect and probably should be updated.
The snippet of code in question:
$ samba-tool user add fbaggins
--random-password --use-username-as-cn
--surname="Baggins" --given-name="Frodo"
--initials=S --mail-address=fbaggins at
Disabling password expiry for a AD service account for accessing LDAPS, and security best practices.
2019 Apr 10
2
Disabling password expiry for a AD service account for accessing LDAPS, and security best practices.
To be honest, the 'Dynamic Bind' method doesn't seem that secure to me,
anybody could 'pretend' to be someone else.
Rowland
True! I agree with you Rowland that is a weakness. Unfortunately that is
a universal weakness shared by all password-based authentication
methods. I guess you would have to go with SSH-style encryption keys and
certificates to circumvent that problem
2019 Apr 05
1
wbinfo isn't working on domain member
Can you post the following files:
/etc/resolv.conf
/etc/hostname
/etc/hosts
/etc/krb5.conf
pi at fs1:/var/log/apache2 $ cat /etc/resolv.conf
# Generated by resolvconf
search samdom.example.com
nameserver 192.168.1.229
nameserver 192.168.1.228
nameserver X.X.X.X
nameserver X.X.X.X
nameserver 8.8.8.8
pi at fs1:/var/log/apache2 $ cat /etc/hostname
fs1
pi at fs1:/var/log/apache2 $ cat /etc/hosts
2019 Mar 26
1
Problem achieving manual synchronisation of idmap.ldb and the associated User and Group ID mappings between two Samba 4 AD DCs
Hi Rowland!
No, I haven't synced my SysVol yet. I was following the official
tutorial here,
https://wiki.samba.org/index.php/Joining_a_Samba_DC_to_an_Existing_Active_Directory.
This tutorial appears to suggest that idmap.ldb files should be
synchronised first prior to setting up any rsync SysVol synchronisation.
Thanks
Stephen
On 26/03/2019 10:59, Rowland Penny via samba wrote:
> On
2019 Mar 26
0
Problem achieving manual synchronisation of idmap.ldb and the associated User and Group ID mappings between two Samba 4 AD DCs
On 26/03/2019 13:39, Rowland Penny via samba wrote
>> Go on, I give in, what is wrong with the official Samba documentation?
>>
>> Off the top of my head:
>> 1) Your (ie Samba project) docs are structured a little poorly and
>> actually pretty hard to follow - eg a single article describes
>> setting up Samba both with SAMBA_INTERNAL and BIND which is
>>
2019 Mar 26
3
Problem achieving manual synchronisation of idmap.ldb and the associated User and Group ID mappings between two Samba 4 AD DCs
Cheers Louis, i just ran the diagnostic snippet you sent me:
pi at ad1:/var/lib/samba/private $ sudo ls -al $(samba -b | grep STATEDIR |
awk {' print $NF '})/sysvol
total 20
drwxrwx---+ 3 root 3000000 4096 Mar 25 16:36 .
drwxr-xr-x 8 root root 4096 Mar 25 17:31 ..
drwxrwx---+ 4 root 3000000 4096 Mar 25 16:36 samdom.example.com
pi at ad2:/var/lib/samba/private $ sudo ls -al $(samba
Disabling password expiry for a AD service account for accessing LDAPS, and security best practices.
2019 Apr 10
2
Disabling password expiry for a AD service account for accessing LDAPS, and security best practices.
Hi all, I have a couple of Samba 4 DCs on my network and I created a new
service account LDAPReader on my DCs that my non-Samba third-party
services such as Redmine successfully use to access AD via the LDAPS
protocol.
I have a couple of questions that relate to having service account of
this nature implemented in Samba and I wondered if the group could
possibly provide some advice?
1)
2019 Apr 05
2
wbinfo isn't working on domain member
Hi Rowland, I made the change you suggested to auto refresh kerberos. It
didn't seem to fix the issue unfortunately, even after a machine
restart. Following your line of reasoning that it is a Kerberos issue, I
then tried to grab a new kerberos ticket on the server in question which
appears to fail though. Perhaps this gives some further insight?
pi at fs1:~ $ kinit administrator at
2019 Apr 16
2
samba-backup.sh problems - is the /var/lib/samba/etc folder essential in a Samba installation?
Hi everyone, I am running Samba 4.5.16-Debian on Raspbian OS and I am
currently attempting to deploy the provided samba-backup.sh script
within my existing SAMBA installation to implement disaster recovery on
my AD DC servers.
Following the documentation provided here
https://wiki.samba.org/index.php/Using_the_samba_backup_script I have so
far managed a partial success on my backup:
pi at
2019 Mar 22
1
Problems with Samba 4.5.16 - configuring a second failover AD DC and joining this to an existing domain SAMDOM
Rowland - good news - the instructions in that document you suggested
appear to have made all the difference!
Now I find that if I do:
pi at ad2:~ $ sudo systemctl restart samba-ad-dc
pi at ad2:~ $ sudo samba-tool drs showrepl
Default-First-Site-Name\AD2
DSA Options: 0x00000001
DSA object GUID: e676dfc3-670d-46bb-b1f7-756bae990a30
DSA invocationId: b7fb9a73-a5c5-4672-9d0f-83e0323f9f3b
====
2019 Apr 16
3
The wisdom - or otherwise - of replacing outright rather than merely appending to the example smb.conf file shipped with SAMBA during new server commissioning?
I have a general question regarding smb.conf and I was hoping that some
of the rather more knowledgeable and experienced people here could
please comment please?
I am currently setting my various SAMBA systems up via some
shell-scripts. Within these scripts, I remove the stock smb.conf shipped
with Samba and replace this with an empty smb.conf file to which I add
my own configuration options