Displaying 20 results from an estimated 500 matches similar to: "Net rpc vampire : NT_STATUS_ACCESS_DENIED"
2005 Feb 08
3
Ldapscripts v1.0 !
Hi all,
I've been working on shell scripts that allow to manage ldap accounts (users,
groups, machines). They are similar to the smbldap-tools but do not need PERL to
work (and so on...) and are *very* simple to configure - they may be a good
alternative. The only tools you need are standard ldap client commands (ldapadd,
ldapdelete, ldapmodify, ldapsearch).
The scripts can be used as
2017 Mar 16
1
LDAP locking problems - home related
Hi list,
# dovecot --version
2.2.13
We use Dovecot LDA and I've discovered lots of messages stating that lock
files cannot be written:
Mar 16 12:02:03 mailhost dovecot: lda(someuser): Error:
file_dotlock_open(/home/sg/someuser/.dovecot.lda-dupes) failed: No such file
or directory
That user's home directory is fetched from LDAP and does not exist locally on
our 'mailhost'
2020 May 17
2
GSSAPI authentication issue with samba as AD DC.
Hello,
I am running samba 4.11.8 as Active Directory DC and a member server.
I wanted to authenticate cyrus-imapd by GSSAPI, and found this
mailhttps://lists.samba.org/archive/samba-technical/2013-April/091429.html
I tried to run the cyrus-imap server on a member server, which has
successfuly 'net ads join'ed and authenticate user with winbindd
without problems.
I followed the method
2003 Sep 02
0
Réf. : Re: Net rpc vampire : NT_STATUS_ACCESS_DENIED
Hi all,
Thank you for your help, and sorry for my late answer.
Everything works fine by now !
Yes, you have to become a BDC to vampire the accounts ! This is why I was
getting an "Access denied" error :
I thought my Samba was a BDC, but I forgot to add "domain logon = Yes" in
my smb.conf, so Samba was a simple share server.
Here is the steps I followed to suck the accounts :
2003 Aug 04
1
Réf. : Re: R?f. : system users and smbpasswd users
Hi :)
As I'd say in French "de rien !" (you're welcome :))
Yes, you can use PAM to redirect the system authentication calls to your
LDAP directory, but in reality samba
will continue to use two types of accounts : the "posixAccount"s (same as
/etc/passwd) and the "sambaSamAccount"s.
Everything will be stored in you LDAP directory, but Samba still needs two
2003 Jul 31
1
Réf. : groupmember list fails with 3.0.0b3 and LDAP
Hi,
Same problem for me, any clue ?
Gana?l.
owen@isrl.uiuc.edu@lists.samba.org on 07/31/2003 01:42:21 AM
Envoy? par : samba-bounces+ganael.laplanche=edf.fr@lists.samba.org
Pour : samba@lists.samba.org
cc :
Objet : [Samba] groupmember list fails with 3.0.0b3 and LDAP
Hi all,
I've been working on a PDC with group mapping with Samba-3.0.0Beta3
with OpenLDAP-2.1.22. Things
2003 Sep 03
1
Backing up NT4 shares - migration from NT4 to Samba
Hi all,
I'm trying to mygrate my NT4 PDC to a Samba v3rc2 PDC. Everything worked
well during accounts migration (vampire).
I'm now trying to back-up the shares (homes, profiles, netlogon), in order
to fully migrate the accounts. Unfortunately, I'm facing a stupid problem :
each home directory (or profile directory) can only be read from its
creator, NOT from the Administrator of the
2004 Jan 27
1
Group mapping bugs + PATCH
Hi all !
I've been using group mapping for a few weeks and found some bugs... For
three of them, I tried to develop a small patch. I don't know Samba code
very well and this is my first patch, so there could be errors :-p I hope
my investigations will be useful :)
* Platform :
Here is what I used :
Debian 3.0r1, Samba 3.0.2rc1 - PDC, OpenLDAP 2.1.23 as backend
smb.conf extract :
2009 Nov 26
0
smb w/ldap get joined to nt4 but net rpc vampire fails with NT_STATUS_ACCESS_DENIED
I am trying to migrate our Windows NT 4 Domain to Samba 3.4.3 and got
the error message below when I run the command:
"net join -S myPDC -I 172.30.1.1 -U administrator%mypasswd"
worked ok
"net rpc vampire -S myPDC -U administrator%mypasswd"
Fetching DOMAIN database Failed to fetch domain database:
NT_STATUS_ACCESS_DENIED
What I want to accomplish is to remove Windows NT 4.0
2003 Aug 04
1
Group mapping... static ???
Hi all,
I'm testing group mapping, wondering how It works exactly...
I thought Samba was storing a mapping table allowing to retreive infos on
Unix/Windows groups in a DYNAMIC way. Unfortunately, group mapping seems to
be static, here is what I did :
[I'm using Samba b3v3 + LDAP, WITHOUT nss-ldap/pam-ldap/winbind ->
everything is stored in my /etc/passwd and /etc/group + in LDAP for
2004 Mar 15
2
Group Mapping Problems with Samba 3.0.2a & OpenLDAP 2.2.6
Hello all,
I am attempting to setup a Samba 3.0.2a based PDC using OpenLDAP 2.2.6 for
my user/group authentication backend. So far everything seems to be working
properly, I can join the domain from a Win2k PC, login via an account
created with smbldap-useradd.pl, map my home directory, run the proper login
script, etc. However, with all of that working I'm still having
difficulties getting
2020 May 17
0
GSSAPI authentication issue with samba as AD DC.
On Sun, 2020-05-17 at 09:09 +0900, Hiroo Ono (????) via samba wrote:
> Hello,
>
> I am running samba 4.11.8 as Active Directory DC and a member server.
>
> I wanted to authenticate cyrus-imapd by GSSAPI, and found this
> mail
> https://lists.samba.org/archive/samba-technical/2013-April/091429.html
>
> I tried to run the cyrus-imap server on a member server, which has
2003 Dec 02
5
Good Admin tool ?
Hi all,
Just wondering what Samba administration tool is the most frequently used ?
What tool do admins use daily ? I've tried Cmd line / Samba tools, Swat,
Webmin, LAM... and still haven't found a full-featured one and
*user-friendly* one...
Many Thanks :)
Ganael.
2007 Oct 05
2
World of Warcraft - ATi 8.41.7
Hi, I was playing around on my laptop last night and installed the
8.41.7drivers from ATi, my laptop has an X1400 in it, not the HD2400
that the
drivers were designed for so I understand some things may not function
correctly and will cover the observations:
1. Pixels shaders+Vertex shaders - I have to disable these or I get missing
elements from the screen, once tunred off it all renders ok
2.
2002 Jan 16
3
Samba-LDAP HOWTO
Hello,
Concerning the upcoming 2.2.3 release of Samba with LDAP support.
Question 1:
Is it possible that you define multiple ldap servers in the option "ldap
server ="?
In the event that one LDAP server is down, the next LDAP server defined can
take over.
If not, no authentication is possible if the LDAP server is not available?
Question 2:
Is there any fallback possible to a
2003 Aug 08
2
Can a user belong to two groups in Samba ???
Hi,
I'm using samba 3b3 (+ldapsam) and have created a user belonging to two
groups :
- his primary group is mapped to the "Domain Users" Windows group,
- his secondary one is mapped to the "Domain Admins" Windows group.
Unfortunately, only the first group seems to be known by Samba, since the
user doesn't become a "Domain Admin" at all (but he is a
2018 Sep 12
5
FEDORA 28 + SAMBA 4.8.5 --must-change-at-next-login don't work
Hello,
if anybody would kindly have anything to advice, please, please - do :-)
SETUP:
Fedora 28 + Samba 4.8.5 AD (testing environment consisting of 1 Samba
server and 1 joined windows machine and 1 account) :-)
PROBLEM:
the "--must-change-at-next-login" is the problematic part
after creating user, with this attribute the user is authenticated OK
during FIRST Logon BUT!! when
2004 Jun 07
2
Password trouble with LDAP (eDirectory)
Hi All,
I have a strange problem with passwords, stored in LDAP.
When i try to logon as a user with the correct password, access is
denied and the log says
check_ntlm_password: Authentication for user [administrator] ->
[administrator] FAILED with error NT_STATUS_NO_SUCH_USER
When i try to logon a user with incorrect password, access is (of
course) denied, but the log now says
2019 May 16
0
File-dictionary based quotas and SETQUOTA
Hello,
I am trying to set up file-dictionary based quotas while supporting the
SETQUOTA IMAP command.
I am using the following configuration :
----
plugin {
quota = dict:User quota::file:%h/Maildir/dovecot-quota
quota_set = dict:file:%h/Maildir/dovecot-quota
}
----
which enables correct quota accounting + setting through SETQUOTA.
A user's dovecot-quota file ends with the following
2003 Aug 04
0
Réf. : Réf. : trash can on samba
Mateus, here is a more complex (working !) example :
vfs objects = recycle
recycle:name = .recycle
; max-size (in bytes) of files allowed in the recycle bin
recycle:maxsize = 2000000
; keep directory trees ?
recycle_keeptree = True
; files to exclude from the bin
recycle:exclude = *.tmp *.temp *.swp
; root dirs to exclude from the bin
recycle:exclude_dir = tmp
; include file versionning in the