Displaying 10 results from an estimated 10 matches for "uf_trusted_for_delegation".
2019 Jul 25
1
Trusted for delegation?
I ran samba-tool delegation show administrator and got this:
athena:~# samba-tool delegation show administrator
Account-DN: CN=Administrator,CN=Users,DC=edm-inc,DC=com
UF_TRUSTED_FOR_DELEGATION: False
UF_TRUSTED_TO_AUTHENTICATE_FOR_DELEGATION: False
Is this legit?? Shouldn't the domain administrator be true for these?
--
Bob Wooldridge
EDM Incorporated
2018 Apr 02
4
Unable to rejoin domain, LDAP error 50
...is domain
realm is domain.net.pl
Adding CN=KONC-SERWER,OU=Domain Controllers,DC=domain,DC=net,DC=pl
Join failed - cleaning up
ERROR(ldb): uncaught exception - LDAP error 50 LDAP_INSUFFICIENT_ACCESS_RIGHTS - <Failed to add CN=KONC-SERWER,OU=Domain Controllers,DC=domain,DC=net,DC=pl: Updating the UF_TRUSTED_FOR_DELEGATION bit in userAccountControl is not permitted without the SeEnableDelegationPrivilege> <>
File "/usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/__init__.py", line 176, in _run
return self.run(*args, **kwargs)
File "/usr/local/samba/lib64/python2.6/site-packa...
2018 Apr 02
2
Unable to rejoin domain, LDAP error 50
...is domain.net.pl
> Adding CN=KONC-SERWER,OU=Domain Controllers,DC=domain,DC=net,DC=pl
> Join failed - cleaning up
> ERROR(ldb): uncaught exception - LDAP error 50 LDAP_INSUFFICIENT_ACCESS_RIGHTS - <Failed to add CN=KONC-SERWER,OU=Domain Controllers,DC=domain,DC=net,DC=pl: Updating the UF_TRUSTED_FOR_DELEGATION bit in userAccountControl is not permitted without the SeEnableDelegationPrivilege> <>
> File "/usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/__init__.py", line 176, in _run
> return self.run(*args, **kwargs)
> File "/usr/local/samba/lib64/py...
2018 Mar 29
2
Unable to rejoin to domain as AD DC
...g looked fine. Server vanished from
controllers and DNS. Unfortunately the joining process has failed:
Join failed - cleaning up
ERROR(ldb): uncaught exception - LDAP error 50
LDAP_INSUFFICIENT_ACCESS_RIGHTS - <Failed to add CN=BACKUP1,OU=Domain
Controllers,DC=luxmed,DC=net,DC=pl: Updating the UF_TRUSTED_FOR_DELEGATION
bit in
File
"/usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/__init__.py",
line 176, in _run
return self.run(*args, **kwargs)
File
"/usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/domain.py",
line 661, in run
machinepass=machinepass, use_ntvfs...
2018 Apr 02
0
Unable to rejoin domain, LDAP error 50
...is domain.net.pl
> Adding CN=KONC-SERWER,OU=Domain Controllers,DC=domain,DC=net,DC=pl
> Join failed - cleaning up
> ERROR(ldb): uncaught exception - LDAP error 50 LDAP_INSUFFICIENT_ACCESS_RIGHTS - <Failed to add CN=KONC-SERWER,OU=Domain Controllers,DC=domain,DC=net,DC=pl: Updating the UF_TRUSTED_FOR_DELEGATION bit in userAccountControl is not permitted without the SeEnableDelegationPrivilege> <>
> File "/usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/__init__.py", line 176, in _run
> return self.run(*args, **kwargs)
> File "/usr/local/samba/lib64/py...
2018 Dec 12
5
GSSAPI/Kerberos authenticate with Dovecot
Hello,
I try to setup Dovecot with Kerberos/GSSAPI and use this howto:
https://wiki.samba.org/index.php/Authenticating_Dovecot_against_Active_Directory#Create_the_Dovecot_user_and_keytab
I also try https://wiki.dovecot.org/Authentication/Kerberos
I can login as windows user on win7 and access shares.
When I open Thunderbird I get the message:
"kerberos/gssapi ticket was not accepted"
2018 Apr 03
0
Unable to rejoin domain, LDAP error 50
...et.pl
>> Adding CN=KONC-SERWER,OU=Domain Controllers,DC=domain,DC=net,DC=pl
>> Join failed - cleaning up
>> ERROR(ldb): uncaught exception - LDAP error 50 LDAP_INSUFFICIENT_ACCESS_RIGHTS - <Failed to add CN=KONC-SERWER,OU=Domain Controllers,DC=domain,DC=net,DC=pl: Updating the UF_TRUSTED_FOR_DELEGATION bit in userAccountControl is not permitted without the SeEnableDelegationPrivilege> <>
>> File "/usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/__init__.py", line 176, in _run
>> return self.run(*args, **kwargs)
>> File "/usr/local...
2018 Dec 12
1
GSSAPI/Kerberos authenticate with Dovecot
...rzonden: woensdag 12 december 2018 16:02
> Aan: samba at lists.samba.org
> Onderwerp: Re: [Samba] GSSAPI/Kerberos authenticate with Dovecot
>
> I have try.
>
> root at dc1:~# samba-tool delegation show dovecot\$
> Account-DN: CN=DOVECOT,CN=Computers,DC=MY,DC=FQDN,DC=COM
> UF_TRUSTED_FOR_DELEGATION: True
> UF_TRUSTED_TO_AUTHENTICATE_FOR_DELEGATION: False
> root at dc1:~#
>
> The error is the same.
>
> On 12.12.18 15:51, L.P.H. van Belle via samba wrote:
> > Whats set for the server in its delegation?
> >
> > sudo samba-tool delegation show dovecot\$
>...
2018 Mar 29
0
Unable to rejoin to domain as AD DC
...> controllers and DNS. Unfortunately the joining process has failed:
>
> Join failed - cleaning up
> ERROR(ldb): uncaught exception - LDAP error 50
> LDAP_INSUFFICIENT_ACCESS_RIGHTS - <Failed to add CN=BACKUP1,OU=Domain
> Controllers,DC=luxmed,DC=net,DC=pl: Updating the
> UF_TRUSTED_FOR_DELEGATION
> bit in
> File
> "/usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/_
> _init__.py",
> line 176, in _run
> return self.run(*args, **kwargs)
> File
> "/usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/d
> omain.py",
> lin...
2018 Apr 03
2
Unable to rejoin domain, LDAP error 50
...et.pl
>> Adding CN=KONC-SERWER,OU=Domain Controllers,DC=domain,DC=net,DC=pl
>> Join failed - cleaning up
>> ERROR(ldb): uncaught exception - LDAP error 50 LDAP_INSUFFICIENT_ACCESS_RIGHTS - <Failed to add CN=KONC-SERWER,OU=Domain Controllers,DC=domain,DC=net,DC=pl: Updating the UF_TRUSTED_FOR_DELEGATION bit in userAccountControl is not permitted without the SeEnableDelegationPrivilege> <>
>> File "/usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/__init__.py", line 176, in _run
>> return self.run(*args, **kwargs)
>> File "/usr/local...