Displaying 7 results from an estimated 7 matches for "ralfgro".
2007 Jan 22
2
winbind - timeouts in domain with >100000 domain users
...nd getent programs. The
server is domain member and running debin etch (x86_64) with
samba-3.0.23d.
idmap uid = 70000-300000
idmap gid = 70000-300000
winbind enum users = yes
winbind enum groups = yes
winbind use default domain = yes
template shell = /bin/false
security = domain
$ wbinfo -i emea\\ralfgro
ralfgro:*:70000:70000:Gross, Ralf:/home/EMEA/ralfgro:/bin/false
$ wbinfo -t
checking the trust secret via RPC calls succeeded
$ id -a ralfgro
...long timeout
$ getent passwd
[local unix users]
...long timeout
Sometimes I get back the list of domain users, but this happens only
rarely. During...
2007 Apr 18
3
file permissions with inherit permission + ACL's
Hi,
I have a share (testshare) where different unix groups (testgroup1,
testgroup2) should have access to. But I want that new files are only
created with 660 permissions.
Here are the ACL's of testshare:
# file: testshare
# owner: ralfgro
# group: ve
user::rwx
group::rwx
group:testgroup1:rwx
group:testgroup2:rwx
mask::rwx
other::---
default:user::rwx
default:group::---
default:group:testgroup1:rwx
default:group:testgroup2:rwx
default:mask::rwx
default:other::---
I created a new directory and a new file in this share.
drwxrws---+ 2...
2005 Jan 14
1
security = server, username map, different domain -> no login
...here
each local unix user has a valid account- mapping of some unix accounts via username map
Extract of the smb.conf
[global]
workgroup = ERS
netbios name = SAMBASERVER
encrypt passwords = Yes
username map = /etc/samba/smbusers
security = server
password server = PASSWORDSERVER
smbusers file
rg=ralfgro
This worked without a problem till 2.2.12. Since 3.0.10 (tried 3.0.11.pre1
too) the 'wrong' domain/workgroup is passed to the password server for
authentification.
I tried
smbclient //sambaserver/ralfgro -U RALFGRO -W EMEA
part of the smbd debug output:
...
Requested protocol [PC NETWORK...
2005 Jan 12
0
Log on problems since update from 2.2.12 to 3.0.10
...tment.
Authentication happens against the EMEA password server with the
UID/PASS users have in the EMEA domain. Mapping between the unix UIDs
and domain UIDs is done with the option 'username map'. This worked fine
with 2.2.12.
I did the tests on the linux system (both client and server!).
ralfgro is my EMEA domain account, rg the local unix account.
smbclient //sambaserver/ralfgro -U ralfgro -W emea
[2005/01/11 09:14:57, 3] smbd/sesssetup.c:reply_sesssetup_and_X(789)
Domain=[EMEA] NativeOS=[Unix] NativeLanMan=[Samba] PrimaryDomain=[]
[2005/01/11 09:14:57, 3] smbd/sesssetup.c:reply_sess...
2007 Jan 25
1
domain/unix groups and valid users parameter
...Server=[Samba 3.0.23d]
tree connect failed: NT_STATUS_ACCESS_DENIED
And in the samba log:
[2007/01/25 13:14:49, 3] lib/util_sid.c:string_to_sid(223)
string_to_sid: Sid +ve does not start with 'S-'.
[...]
[2007/01/25 13:14:49, 2] smbd/service.c:make_connection_snum(580)
user 'EMEA\ralfgro' (from session setup) not permitted to access this share (foo)
I tried differnt settings for 'valid users' that I found in the list archives.
No change.
+"Unix Group"\ve
+"Unix Group\ve"
+"BUILTIN"\ve
...
Then I mapped the Unix group ve to a SID (net gr...
2006 Jul 21
1
3.0.23 - different errors on solaris 8 (Error in dskattr...)
...4:36:09, 4] smbd/vfs.c:vfs_ChDir(741)
vfs_ChDir to /export/home/rg
[2006/07/21 14:36:09, 3] smbd/trans2.c:call_trans2qfilepathinfo(2908)
call_trans2qfilepathinfo: TRANSACT2_QPATHINFO: level = 257
[2006/07/21 14:36:09, 5] smbd/filename.c:unix_convert(108)
unix_convert called on file "bang/ralfgro"
[2006/07/21 14:36:09, 5] smbd/filename.c:unix_convert(185)
unix_convert begin: name = bang/ralfgro, dirpath = , start = bang/ralfgro
[2006/07/21 14:36:09, 1] modules/vfs_extd_audit.c:audit_opendir(164)
vfs_extd_audit: opendir .
[2006/07/21 14:36:09, 5] smbd/filename.c:unix_convert(295)...
2008 Feb 11
1
dos filemode (security concern)
Hi,
I've a question about the 'dos filemode' option (samba 3.0.24, debian etch). I
want to use this option to allow group members with write access to add/change
permissions.
man smb.conf:
dos filemode (S)
only the owner of a file/directory is able to change the permissions on it.
However, this behavior is often confusing to DOS/Windows users. Enabling
this parameter allows a