Displaying 20 results from an estimated 2000 matches similar to: "dovecot with Active Directory problem"
2018 May 10
2
Samba, AD and devices compatibility...
Mandi! Andrew Bartlett via samba
In chel di` si favelave...
Ok, i coma back to an old thread, because vendor finally reply.
Little fast-rewind: i own some Konica-Minolta BizHub multifunction
printers/copiers, and i need to ''bind'' it to my new AD domain.
But authentication does not work, seems bacause that printer try to use
SASL over plain LDAP (no SSL nor TLS).
After
2015 Apr 23
3
RFC2307 attributes not being read by DC2 in 4.2.1
Hi all
On latest samba 4.2.1 I have provisioned a new domain on DC1 that
successfully reads RFC2307 attributes set on a user account through
ADUC.
wbinfo (correct uid gets resolved from sid)
wbinfo -n fsmith
S-1-5-21-1273750850-484487853-1026460749-1120 SID_USER (1)
wbinfo -S S-1-5-21-1273750850-484487853-1026460749-1120
1000006
ldbsearch
sudo ldbsearch -H
2014 Jun 07
3
Samba 4 / idmap / NIS / winbind
Hi,
how can i get work Samba 4 Sernet 4.1.7 correctly with NIS. Ist provisioned with rfc2307.
When i query a User withi get the following.
getent passwd testswi
SWI\testswi:*:10000:100:testswi:/home/SWI/testswi:/bin/false
I want to change /bin/false to a other value /bin/bash
I tried many things to change the value.
1. ldbedit -e vim -H /var/lib/samba/private/sam.ldb samaccountname=testswi
2015 Aug 25
0
Import USER and PASSWORD Samba3+OpenLadp TO Samba4
On 25/08/15 16:02, vinifa wrote:
> I am using AD DC. I already have a domain Samba3 + Openladp, I'm creating
> this new domain Samba4, but I want to import all users who have already
> registered in my base Openldap. If it was the same demesne I would use the
> migration tool, but it's a different domain.
>
>
>
> --
> View this message in context:
2017 Mar 21
0
Rename Samba 4 Users
On Tue, 21 Mar 2017 16:23:13 -0300
Edson Tadeu Almeida da Silveira <edson.tadeu at gmail.com> wrote:
> Hi Rowland.
>
> After change users name and properties i had a problem when searching
> them with windows administration tool.
>
> All users that i have changed i cant find with search tool.
>
> Do you known if there is something i can do?
>
> Thanks!!!
2015 Apr 23
0
RFC2307 attributes not being read by DC2 in 4.2.1
On 23/04/15 02:48, Fred Smith wrote:
> Hi all
>
> On latest samba 4.2.1 I have provisioned a new domain on DC1 that
> successfully reads RFC2307 attributes set on a user account through
> ADUC.
>
> wbinfo (correct uid gets resolved from sid)
>
> wbinfo -n fsmith
> S-1-5-21-1273750850-484487853-1026460749-1120 SID_USER (1)
> wbinfo -S
2014 Sep 11
1
Sync unixUserPassword from AD Password
Hello,
I am running a Samba 4.1.6 AD DC on Ubuntu 14.04. I provisioned with
--use-rfc2307 and have followed the instructions here to enable NIS Extensions:
https://wiki.samba.org/index.php/Using_RFC2307_on_a_Samba_DC#Configuring_RFC2307_and_NIS_Extensions_in_a_Samba_AD
I can see the UNIX Attributes tab in ADUC and have all of the attributes
populated. I am attempting to authenticate a Solaris
2016 Mar 24
2
Winbind doesn't honor rfc2307 data set in AD (Samba 4.3.6 on Debian jessie)
Hi all, I've just installed Samba 4.3.6 on Debian jessie amd64 (as
described in the wiki [1]) and everything seems to work properly
except for rfc2307 data that winbind doesn't retrieve from AD backend,
shell is always "/bin/false", homedir is always
"/home/DOMAIN/username" and "getent passwd" also lists user without
unix attributes.
I have configured idmap_ad
2018 May 11
4
Samba, AD and devices compatibility...
Mandi! Rowland Penny via samba
In chel di` si favelave...
> I think that is what Andrew is trying to tell you, the printer needs to
> support SASL over TLS/SSL or it will never work. I don't think there is
> anything you can do, but I am surprised that the print doesn't already
> support it, after all, it isn't something new ;-)
Mi confusion grow. ;-)
As stated in my
2017 Jun 19
2
New AD user cannot access file share from member server
On Mon, 19 Jun 2017 14:46:34 +0200
Viktor Trojanovic <viktor at troja.ch> wrote:
> On 19 June 2017 at 14:20, lingpanda101 via samba
> <samba at lists.samba.org> wrote:
>
> > On 6/19/2017 7:51 AM, Viktor Trojanovic via samba wrote:
> >
> >> That's correct, I don't have "Unix Attributes" but through the
> >> advanced view I have
2017 Jun 19
3
New AD user cannot access file share from member server
On Mon, 19 Jun 2017 12:38:09 +0200
Viktor Trojanovic <viktor at troja.ch> wrote:
> Here is the DC's smb.conf:
>
>
> [global]
> workgroup = SAMDOM
> realm = SAMDOM.EXAMPLE.COM
> netbios name = DC
> interfaces = lo br-lxc
> bind interfaces only = Yes
> server role = active directory domain controller
>
2016 Dec 08
2
winbind rfc2307 - wbinfo -i fails
I'm trying to get Samba 4 AD to work with rfc2307 extensions.
wbinfo -i fails
root at m1:~# wbinfo -i SAMDOM\\demo01
failed to call wbcGetpwnam: WBC_ERR_DOMAIN_NOT_FOUND
winbindd.log it here: http://pastebin.com/X0rEaLt2
Pretty much everything else seems to work:
root at m1:~# wbinfo --ping-dc
checking the NETLOGON for domain[SAMDOM] dc connection to "dc1.samdom.example.com"
2014 Apr 07
2
Dovecot LDAP issue
Dovecot version: 2.0.19
-------------------------------------------------------
grep -v '^ *\(#.*\)\?$' /etc/dovecot/dovecot-ldap.conf
hosts = server.domain.tld:389
ldap_version = 3
auth_bind = yes
dn = vmail at domain.tld
dnpass = somepassword
base = ou=testou,dc=domain,dc=tld
scope = subtree
deref = never
2017 Jun 19
0
New AD user cannot access file share from member server
On 19 June 2017 at 14:20, lingpanda101 via samba <samba at lists.samba.org>
wrote:
> On 6/19/2017 7:51 AM, Viktor Trojanovic via samba wrote:
>
>> That's correct, I don't have "Unix Attributes" but through the advanced
>> view I have access to all attributes.
>>
>> The ldbsearch command is not returning anything in my case, it gives me 0
2019 Jan 24
0
`getent passwd` not working with ad backend
> Did you assing uid/gid's to the user/groups?
> https://wiki.samba.org/index.php/Maintaining_Unix_Attributes_in_AD_using_ADU
> C
I added uid/gid to the new users and groups. I dont have access to ADUC so can't check atm.
Here's how I added new group:
`samba-tool group add lag --gid-number 16000 --nis-domain SAMDOM`
Here's how I added new user:
`samba-tool user
2014 Mar 10
1
LDAP Queries
Guys
needing some help with LDAP queries against samba4
this command works against MS AD's LDAP
(&(objectCategory=person)(objectClass=user)(mail=*)(!(userAccountControl:1.2.840.113556.1.4.803:=2)))
but
with samba4 I get
C:\Users\Administrator>dsquery * --filter
(&(objectCategory=person)(objectClass=user)(mail=*)(!(userAccountControl:1.2.840.113556.1.4.803:=2)))
I get the
2018 Dec 04
2
Samba AD, Attribute Editor, unixUserPassword
Am 04.12.18 um 10:17 schrieb Rowland Penny via samba:
> On Tue, 4 Dec 2018 09:54:05 +0100
> basti via samba <samba at lists.samba.org> wrote:
>
>> Hello,
>>
>> I have a samba 4 AD Domain, now I see in the Attribute Editor that the
>> field "unixUserPassword" is plain text. This is also Plaintext in LDAP
>> (seen via ldapvi).
>>
>>
2017 Jun 19
0
New AD user cannot access file share from member server
On 19 June 2017 at 14:56, Rowland Penny via samba <samba at lists.samba.org>
wrote:
> On Mon, 19 Jun 2017 14:46:34 +0200
> Viktor Trojanovic <viktor at troja.ch> wrote:
>
> > On 19 June 2017 at 14:20, lingpanda101 via samba
> > <samba at lists.samba.org> wrote:
> >
> > > On 6/19/2017 7:51 AM, Viktor Trojanovic via samba wrote:
> > >
2010 May 23
1
Problems with W2K8R2 <-> S4 replication
Hello!
I'm trying to get Samba4 working as an additional AD DC. bin/net vampire
reports no errors, but when I start sbin/samba I got the following in my
var/samba.log:
--------------------
[Sun May 23 03:58:08 2010 MSD, 0
../smbd/server.c:373:binary_smbd_main()] samba version
4.0.0alpha12-GIT-UNKNOWN started. Copyright Andrew Tridgell and the
Samba Team 1992-2010 [Sun May 23 03:58:08
2018 Mar 14
2
Samba, AD and devices compatibility...
Mandi! Andrew Bartlett via samba
In chel di` si favelave...
> > This mean that the printer try to auth in LDAP 'plain' (no SSL, no
> > TLS), and so samba refuse that?
> No, it means that Samba is refusing to accept a NTLM or Kerberos
> authenticated connection without SIGN or SEAL negotiated, as an
> attacker could take over an unprotected network connection and do