search for: ous

Displaying 20 results from an estimated 143 matches for "ous".

Did you mean: os
2015 Feb 15
2
What options do I have to create OUs and ACLs in Samba4?
I need to create a couple of OUs under Users to separate my internal users from my external users that have LDAP backed accounts so I can put ACLs over the external users so I can limit what they can see on the tree. What options do I have to create the OUs and the ACLs in a Samba4 AD-DC domain?
2015 May 28
2
ACLs on OUs
Hi all, When created through RSAT OUs receive, by default, ACLs to refuse removal. When created through LDIF and ldbadd OUs do not receive these ACLs. Is there a way to create these ACLs using command line tools? Cheers, mathias
2019 Apr 29
0
Automating creation of OUs, security groups and GPOs, in Samba AD DC
...of or before. Greetz, Louis > -----Oorspronkelijk bericht----- > Van: samba [mailto:samba-bounces at lists.samba.org] Namens > Rowland Penny via samba > Verzonden: zaterdag 27 april 2019 10:46 > Aan: samba at lists.samba.org > Onderwerp: Re: [Samba] Automating creation of OUs, security > groups and GPOs, in Samba AD DC > > On Fri, 26 Apr 2019 17:36:47 -0700 > Mason Schmitt via samba <samba at lists.samba.org> wrote: > > > Hello, > > > > I'm trying to automate the creation of several small samba AD DCs, > > each with a...
2019 Apr 27
4
Automating creation of OUs, security groups and GPOs, in Samba AD DC
...creation of several small samba AD DCs, each with a different domain. Samba tool works fine for creating a brand new domain, but I haven't seen any functionality for manipulating the directory structure of a new domain. Specifically, I'd like to automate the creation of a standard set of OUs, security groups and GPOs. I'm wondering whether any/all of these three tasks can be accomplished by doing an LDIF export from an existing DC, changing the 'DC=' entries to match the new domain and then importing the LDIF? It has been well over 10 years since I last messed around with...
2015 Feb 15
3
What options do I have to create OUs and ACLs in Samba4?
On 15/02/15 18:27, Marc Muehlfeld wrote: > Hello John, > > Am 15.02.2015 um 18:56 schrieb John Lewis: >> I need to create a couple of OUs under Users to separate my internal >> users from my external users that have LDAP backed accounts so I can put >> ACLs over the external users so I can limit what they can see on the >> tree. What options do I have to create the OUs and the ACLs in a Samba4 >> AD-DC domain?...
2004 Nov 25
0
Samba 3.0, LDAP, OUs and how to add machine accounts
Hello, I have a Samba 3.0/LDAP setup with | ldap machine suffix = ou=Computers but as this is for a school, I decided to separate teachers and scholars computers into different sub-OUs for my own mental sanity. So in LDAP it looks like: | dn: uid=pc116$,ou=Schueler,ou=Computers,dc=lise-meitner,dc=at or | dn: uid=biblio1$,ou=Lehrer,ou=Computers,dc=lise-meitner,dc=at This works absolutely perfect and allows me to do nice things in terms of DHCP- and DNS-automization. The only t...
2019 May 01
2
Automating creation of OUs, security groups and GPOs, in Samba AD DC
...s > > >> -----Oorspronkelijk bericht----- >> Van: samba [mailto:samba-bounces at lists.samba.org] Namens >> Rowland Penny via samba >> Verzonden: zaterdag 27 april 2019 10:46 >> Aan: samba at lists.samba.org >> Onderwerp: Re: [Samba] Automating creation of OUs, security >> groups and GPOs, in Samba AD DC >> >> On Fri, 26 Apr 2019 17:36:47 -0700 >> Mason Schmitt via samba <samba at lists.samba.org> wrote: >> >>> Hello, >>> >>> I'm trying to automate the creation of several small samba AD...
2018 Aug 27
2
Is there a good web interface now to manage Samba?
I pretend not to use RSAT on Windows any more. I use Linux as workstation and I have to access a Wondows 7 Virtual Machine with RSAT in order to manage AD. Is there any web based project? I usually work with these topics: - Manage users and groups - Manage OUs - Manage GPOs - Manage DNS
2019 Apr 29
0
Automating creation of OUs, security groups and GPOs, in Samba AD DC
On Mon, 29 Apr 2019 11:21:55 -0700 Mason Schmitt <mason at ftlcomputing.com> wrote: > Thanks Rowland and Louis for your suggestions! > > I think I'll go with the samba-tool option, as presumably this will > keep up with schema changes as samba evolves. A few things that Louis didn't say about creating an OU with samba-tool, if it is an OU off the base DN, you only need
2015 Jun 01
5
32 bits limit?
Hi all, Still playing with a big database (120k users, 150k computers) I tried to split my users into a lot of OUs. This increased the database size and I was not able to finish to add users into the DB because database file has reached 4GB size which seems to be the limit. First: am I right to say file /var/lib/samba/private/sam.ldb.d/DC=example,DC=com.ldb has a maximum size of 4GB? Secondly: if I'm righ...
2020 Sep 01
2
using %d as a variable in the ldap search base
I'm trying to use auth bind to avoid having a plain text password in a config file. With %u instead of %n, the @domain part of the login ends up in the uid field of the search filter. As I said, my OUs have overlapping users, so I have configured things such that the users are logging in with user at domain, and need to get the domain component into the search base as you cannot filter on an Organizational Unit in an ldap filter. If I have a single search base, it will return multiple users for...
2020 Aug 31
2
using %d as a variable in the ldap search base
Hi, I'm trying to configure dovecot to use LDAP authentication directly, and I'm having a bit of trouble. I have a somewhat unusual setup, in that I have an LDAP directory that has 3 OUs each of which have their own set of users, some of which overlap. As I was trying to figure things out, I was setting the search base in my /etc/dovecot/dovecot-ldap.conf.ext file which is referenced by /etc/dovecot/conf.d/auth-ldap.conf.ext file to base = ou=%d,dc=thecrazyguys,dc=net however,...
2015 Nov 03
2
Cannot create OrganizationalUnit under ou=Users
Am 03.11.2015 um 16:43 schrieb James: > Not possible. It's a container and not a OU. Right. However Roel, you can create an OU for your users/computers and redirect the standard to them: https://support.microsoft.com/en-us/kb/324949 Then you can have sub-OUs, link GPOs to them, etc. and ignore cn=Users/cn=Computer. Regards, Marc
2006 Feb 01
1
Questions about Samba
...ss my interest in Samba. However, while I'm familiar with Microsoft servers and OS, my knowledge of SMB and CIFS is limited. To converse bandwidth and improve user request/response times we would like to have all authentication done locally, even though we may only have one domain and many OUs or subdomains. Having looked and researched your website and reading about your latest release (two days old), it does seem like Samba is working hard to incorporate the AD technology. Since we are not in an immediate hurry at this time we have no experimented with 4.0.0, since you clearly sta...
2023 Nov 06
1
LDAP_MATCHING_RULE_IN_CHAIN no longer working after upgrade?
...because I had and have no issues > whatsoever with this functionality. Thanks, it's good to know that it does work for others, at least. There is undoubtedly something about my configuration that is different from others; I don't know if it's having members of groups from different OUs across the domain, or perhaps permissions that have been set over the years delegating ownership of different OUs, etc.. but it's interesting that I am seeing different behaviour between ldbsearch and ldapsearch now. (Andrew - I'm wondering if I can script startup of samba in docker contai...
2015 Jun 01
3
32 bits limit?
...sing Samba 4 above a 32 bits system. 2015-06-01 14:34 GMT+02:00 Reindl Harald <h.reindl at thelounge.net>: > > Am 01.06.2015 um 14:09 schrieb mathias dufresne: > >> Still playing with a big database (120k users, 150k computers) I tried to >> split my users into a lot of OUs. This increased the database size and I >> was not able to finish to add users into the DB because database file has >> reached 4GB size which seems to be the limit. >> >> First: am I right to say file >> /var/lib/samba/private/sam.ldb.d/DC=example,DC=com.ldb has a max...
2004 Dec 08
3
Samba printer name != cups printer name
I recently added a printer to cups and the samba name is wrong. Anyone know how I can fix it? Environment: OS: Red Hat Enterprise Linux ES release 3 (Taroon Update 3) Uname: Linux stilton.ulticom.com 2.4.21-20.EL #1 Wed Aug 18 20:58:25 EDT 2004 i686 i686 i386 GNU/Linux Samba: samba-client-3.0.4-6.3E samba-common-3.0.4-6.3E samba-3.0.4-6.3E Cups: cups-libs-1.1.17-13.3.16
2020 Jun 26
2
Active Directory List Object Mode
...ot;List Object Mode" as an option. Is this supposed to work with Samba AD? I was able to enable it, but it doesn't seem to have any effect when I follow the recipes for hiding objects. When using the other option (deny "List contents") I had the problem that objects in child OUs where still visible in subtree searches. I'm new to AD, maybe it's my fault, but I would be glad for some advice. thanks Matthias
2015 Feb 02
4
Can't create users with RSAT - "An error occurred. Contact you system administrator"
...Then I join a Windows 8.1 Enterprise running in as VM to the domain and login as administrator of the domain. When I install the RSAT and try to create a domain user I'm getting the error "An error occurred. Contact you system administrator". But I'm able to create groups and OUs. Under Linux the user creating is working. If I set the UNIX attributes for the group, I'm getting the hint "Execution denied" (translated from German). I tried every hint that I found on google. - Try with a different account with domain admin rights. - Delete the admin local prof...
2018 Feb 06
2
GPOs not Working!
...this is a test domain) Using the default > filter for a new GPO, "Authenticated users", creating a new group for > the test clients and using that as the filter, checking it have the > right permissions (apply), checking every guide about applying GPO to > computers. Using OUs and using domain level GPOs. > > What I find weird is that gpresult doesn't list the computer as a > member of groups I create, only a few predefined ones: > > NULL SID > NT AUTHORITY\NETWORK, > This company, > and something like "mandatory level of no...