search for: rynhart

Displaying 12 results from an estimated 12 matches for "rynhart".

2009 May 11
2
secrets.tdb and Samba 3.0.28 -> 3.3.4 migration
Hi all, When moving between Samba 3.0.X revisions, I have been able to copy the secrets.tdb file and the trust relationships with foreign domains remain established. However, this does not appear to work when moving directly from 3.0.X to the 3.3.X branch. Is there a tool available that allows us to migrate - or can tdbdump (or similar) be used to dump out data from the 3.0.X format and then be
2007 Jul 05
1
Problem with Everyone SID (S-1-1-0)
Hi, I'm running Samba 3.0.25b as a PDC. In log.smbd (at Debug level 10) I have noticed: log.smbd: Could not convert SID S-1-1-0 to gid, ignoring it This problem occurs in function sid_to_gid in lookup_sid.c. An attempt is made for winbind to then resolve the group, but this results in log.winbindd: Could not find domain for sid S-1-1-0 log.winbindd: sid2gid_lookupsid_recv: Could not
2009 Dec 30
2
Users from trusted domains get "Your Password expires today" in 3.4.3
Hello everyone! We've got a Samba domain that trusts another Samba domain and a Windows Server 2008 domain. We recently upgraded both Samba DCs from 3.0.x to 3.4.3 After that, whenever a user logs on a workstation in the trusting domain with an account from one of the trusted domains, he gets this message: Your Password expires today. Do you want to change it? Of course, the password
2009 Nov 02
1
Samba 3.4.2 Trusted Domain Logon gives: "Conflicting domain portions are not supported for NETLOGON calls"
Hi, I'm specifically have a problem with idmap entries not being created in my LDAP backend for trusted domain logons - Local accounts appear to be fine. I have installed the Sernet enterprise packages from: http://ftp.sernet.de/pub/samba/experimental/rhel/5/i386/ I'm preparing the server as follows: 1. smbpasswd -w '<password>' 2. net rpc trustdom establish SANDBOX
2007 Nov 27
4
Windows clients losing connection to Samba 3.0.27 PDC on FC7 i386
Hello all... I have a site of about 50 pcs connected to a Samba domain controller. The domain has been running flawlessly for several years through several upgrades, and the last one (From Fedora Core 4/ Samba 3.0.23a to FC7/ Samba 3.0.27) seems to have caused something to come unglued. The Workstations are periodically booting up in the morning and being unable to contact the domain controller.
2006 Jul 16
1
Restricting "join domain" account
Is it possible to restrict the account with UID 0 so that it can join the domain but cannot be used for an interactive logon/session ? (I'm wanting something like the "Unable to log you on because of an account restriction" message.) If so, how ? Regards, Patrick
2007 Dec 24
0
Changing Domain name and NT trust relationships
Our department is changing its name which means that our Samba 3 domain name has to change accordingly. I have a trust relationship with a foreign Windows domain using "net join rpc" which (I believe) means that Windows is the trusted domain and Samba is the trusting domain. If I change the NetBIOS name, and use 'net setlocalsid' to set the SID of the new domain name to that of
2009 Oct 09
0
How do I get Samba to probe for my ldap module ?
I'm compiling Samba 3.4.1 with ./configure --with-pam --with-ldap --with-shared-modules=idmap_ldap This produces an ldap.so module which I have copied into /lib (and run ldconfig -v). However, following this log.winbind-idmap is not created (only log.smbd and log.winbindd) and Samba does not appear to probe for the ldap module (I have compared my case to another which is creating this log
2007 May 23
1
Samba 3.0.25, trusted domains and winbindd
I have a Samba PDC in a one way trust relationship with a Windows Server 2003 DC such that Samba is the Trusting Domain. With Samba 3.0.23d I always used to leave winbindd running during a restart of smbd/nmbd. With 3.0.25, I have found that the domain "breaks" if I do this. Denote the Samba domain by SAMBA and the (trusted) Windows domain WINDOWS. When the domain "breaks",
2008 Jan 01
0
idmap_nss: Default domain not being used
...0 seconds ahead) sid [S-1-5-21-15318837-110984162-118601546-6958] not mapped to an uid [2,1,2683630] Storing response for pid 3021, len 3240 Destroying timed event 99b8b28 "async_request_timeout" Retrieving response for pid 3021 sid2uid returned an error Could not query uid for user IIST\prynhart On the existing (working) server I get: --------------------------------------- idmap_sid_to_uid: sid = [S-1-5-21-15318837-110984162-118601546-6958] Cache entry with key = IDMAP/SID/S-1-5-21-15318837-110984162-118601546-6958 couldn't be found Query backends to map sids->ids SID S-1-5-21-15...
2008 Jan 02
0
winbind initialization: GetDC got invalid response type 21
...fall back to another method to connect. Could anyone please advise how this problem can be fixed ? I have created debug level 10 logs of winbind (with debug hires timestamp). As the logs are too large for the mailing list (with a 64 kb limit) I have uploaded them here: http://www.massey.ac.nz/~prynhart/log.winbindd_20080103.tgz http://www.massey.ac.nz/~prynhart/log.seat-dc1_20080103.tgz http://www.massey.ac.nz/~prynhart/log.130.123.64.84_20080103.tgz The problem is not the initial connection but when winbind needs to reconnect to the domain after a period of inactivity. NSS will then hang and X...
2009 Oct 11
1
idmap LDAP branch never populates with Samba 3.4.1 - how do I debug ?
I've followed the instructions at http://wiki.samba.org/index.php/Ldapsam_Editposix which concerns how to setup idmap correctly with Samba > 3.0.25. I have a trusted domain which has been successfully established. However, no SID entries populate beneath ou=idmap and any logon to the trusted domain will result in: netr_LogonSamLogon: user SANDBOX\Administrator has user sid