Displaying 20 results from an estimated 9000 matches similar to: "Samba 3.0.0 -- ACLs are unusable due to UID/SID mapping weirdness :("
2003 Oct 23
0
Samba 3.0.0 -- ACLs are unusable due to UID/SID mappingweirdness :(
I also need to get centralised mapping configured if I am to deploy Samba, although we're planning to deploy an LDAP server also so this isn't an additional overhead for me.
Two comments, to avoid the additional overhead of implementing a seperate LDAP infrastructure could future versions of Samba support storing the idmap mapping date in Active Directory?
When using idmap = ldap in the
2003 Oct 09
1
[Bug 740] Sun's pam_ldap account management is not working
http://bugzilla.mindrot.org/show_bug.cgi?id=740
Summary: Sun's pam_ldap account management is not working
Product: Portable OpenSSH
Version: 3.7.1p1
Platform: UltraSparc
OS/Version: Solaris
Status: NEW
Severity: major
Priority: P2
Component: PAM support
AssignedTo: openssh-bugs at mindrot.org
2014 Mar 27
0
FreeBSD winbind UID/GID mapping weirdness
Quick summary: On FreeBSD 10, Winbind is giving me locally mapped UIDs &
GIDS, rather than the ones specified in AD.
I have two test member servers set up. A CentOS server running Sernet
Samba 4.1.6 and a FreeBSD server running Samba 4.1.6 built from source.
On CentOS, "getent group {group name}" gives me the correct GID assigned in
AD. On FreeBSD I am given a value from the
2003 Nov 20
2
[Bug 740] Sun's pam_ldap account management is not working
http://bugzilla.mindrot.org/show_bug.cgi?id=740
------- Additional Comments From dtucker at zip.com.au 2003-11-19 23:20 -------
According to the man page, pam_ldap doesn't support account management.
$ man pam_ldap
[snip]
The pam_ldap.so.1 module supports two components: the
Authentication component and the Password management com-
ponent.
------- You are
2013 Mar 25
1
downgrading to R 2.15.1-4 from sid beta 3.0.0
Hi,
I'm using sid, and this morning I carelessly upgraded R core packages,
which are currently at the beta 3.0.0 version. I hadn't read that
packages need to be re-built to be used with this beta version. I'd
happily do that locally (via 'install.packages') for those that haven't
yet been re-built in Debian, but some just don't allow that, notably
nlme which has a
2011 Jan 02
3
Bug#608715: Recent hardware components render the xen-hyervisor unusable, fails completeley to boot due to kernel panic
Package: xen-hypervisor-4.0-amd64
Version: 4.0.1-1
Severity: grave
Tags: squeeze upstream
Some newer hardware components (it is unclear what exactly causes the issue) render xen-hyervisor unusable as it
crashes immediately after boot for the Debian out-of-box configuration. This results in a system rebooting all over
again if the hypervisor is choosen as default stanza to be booted by grub
2013 Mar 04
0
winbind: how to fix uid/SID mapping following migration to a new DC
Did you ever get a resolution to your issue with UIDs not matching?
I have the same problem and I cannot for the life of me get my UIDs to
come from Active Directory.
If you did solve it with using the
idmap config DOMAIN : backend = ad
would you be so kind as to share? I am only able to get
idmap config * : backend = tdb
to work. I have never been able to get UIDs for particular domain
2006 Sep 16
0
Samba SID/RID, UID/GID Best Practices?
I have a new Samba 3 domain backed by LDAP. I am using Fedora-DS for
LDAP component, so I have relied on a blend of tools to get up and
running including Fedora-DS console and phpLDAPAdmin and (momentarily!)
sambaldap-tools. I am generally following the great IDEALX How-To but
having to adapt it somewhat.
Standards for well-know Samba groups like "Domain Admins" were easy to
2006 Apr 30
0
prepopulate winbind db with certain uid <-> SID mappings?
Hi,
when migrating a big linux/samba fileserver with several hundred local
users/uids and more than a million files to a winbind/Windows AD setup,
it's not desirable to have new uids assigned for all the users from a
uid range by winbindd, because the file ownerships are messed up then.
Is it possible to keep the original local uids for already existing
users with winbind even after
2006 Oct 18
0
mapping SID - UID, GID with SFU 3.5
I have:
linux 2.6.18-1.2200.fc5
samba-3.0.23c-1.fc5
W2000 AD with SFU 3.5
uid and gid in SFU
linux configured to use AD with ldap client for mapping users, groups and
authentication
winbind not configured
Everyting works fine except ACL in the linux filesystem: I receive this
error when I want to add an user access to a file:
[2006/10/18 09:38:28, 0]
2011 Apr 06
0
help needed about SID to UID/GID mapping
Dear all
I need some advise with respect to SID/UID/GID mapping.
The server runs Samba 3.5.8 as a member of an AD (w2k8)
domain. Our UNIX UIDs are taken from the 1000-60000 range
with about 10000 allocated accounts. 99% of user IDs
exist in AD with the same name. For that reason we rely
on the "nss" idmap backend which is non-allocating.
The problem comes with the group mappings.
2004 May 11
0
cant convert SID to UID...
I am running a redhat 7.3 server with the 2.4.26 kernel. I am using Samba
3.0.0beta2 to allow Windows AD Users to access our sendmail mailserver
with their windows logins/passwords. Things have gone very smoothly for
quite some time until I recently went to add new users.
If i try to convert the SID's of users i added a while ago, it still
works.. but for any new users i try to add, it does
2003 Jun 27
1
What's happend when the UID/SID mapping changes for a computer account ?
Hi,
Could you please tell me, what's happend when the UID/SID mapping
changes for a computer account ?
In my previous mail, I explain that suddenly every computers of my
domain was unable to connect to our samba logon server.
Before this problem, a 'net rpc vampire' was done to resynchronize the
samba ldap-sam with the NT4 PDC, and samba has been restarted, I suspect
that after
2004 Jan 13
0
SID <-> UID mappings
Hello!
I've been running a custom hacked samba 3.0rc1 to get winbindd to bind every SID
simply to what getpwent returns as the UID.
The newest versions of samba seem to support the possibility to have
winbindd to use /etc/passwd and /etc/group as the storage backend.
So basically what I need is that each time samba wants to know the SID of the
username "joe" it would just query
2004 Apr 13
0
sid to uid/gid conversion problem
Hi there!
I'm experiencing the following weird problem:
pokeball:# wbinfo -n VTB+jimenezju
S-1-5-21-776561741-1450060922-1644491937-1249 1
pokeball:# wbinfo -Y S-1-5-21-776561741-1450060922-1644491937-1249 1
11771
pokeball:# wbinfo -Y S-1-5-21-776561741-1450060922-1644491937-1249 1
11772
pokeball:# wbinfo -S S-1-5-21-776561741-1450060922-1644491937-1249 1
10140
pokeball:# wbinfo -S
2005 Nov 02
0
(part 2) Can samba map between existing Windows (SID) users and existing unix (UID) users
I have had a few replies and it looks that I am on a no win solution.
I either set up LDAP and delete local UID on our UNIX boxes and let samba
convert SID to UID, or just leave thinks as they are.
I still don't under stand why it is so difficult to do what I want when all the
information seems to be at hand.
1) User changes security of a file on a samba share to allow DCSNT\andrew access.
2010 Apr 09
0
SID to UID conversion problem
Hi folks!
I have a problem with SID to UID translation on one of my domainmember servers
since I use a newer version of samba (3.4.0). The PDC is running samba 3.0.28
and uses LDAP.
On the domainmember everything is working as expected (login with domain user,
wbinfo -u, wbinfo -g) but when it comes to convert the SID to UID it fails:
$ wbinfo -S S-1-5-21-2106500839-766785134-2740805053-6093002
2018 May 25
0
syscolcheck error / Could not convert sid S-1-5-32-544 to uid
On Fri, 25 May 2018 15:37:10 +0200
Henry Jensen via samba <samba at lists.samba.org> wrote:
> Hello,
>
> this is a Samba AD Domain upgraded from Samba 3.x with
> classicupgrade.
>
> Debian 9.4
> Samba: 4.7.6 (packages from tranquil.it)
>
> # samba-tool ntacl sysvolcheck
> ERROR(<class 'samba.provision.ProvisioningError'>): uncaught
>
2018 May 25
0
syscolcheck error / Could not convert sid S-1-5-32-544 to uid
On Fri, 25 May 2018 16:39:22 +0200
Henry Jensen <hjensen at mailbox.org> wrote:
>
> OK, maybe this is something which should be mentioned in the wiki. The
> reason I got to this was that I wanted to try sysvol replication. The
> wiki mentions at
> https://wiki.samba.org/index.php/Joining_a_Samba_DC_to_an_Existing_Active_Directory
> you should i.e. copy idmap.ldb from the
2023 May 29
1
Failed to convert SID to a UID
Hello,
After upgrading a Samba domain member from 4.16.4 to 4.17.5 our shares
stopped working. This is from Rocky Linux 8.7 to 8.8. The AD domain
controller server is running 4.16.2. Only error message I see is :
check_account: Failed to convert SID S-1-5-21-..... to a UID
(dom_user[DOMAIN\username]
wbinfo --domain-users
returns a list of all the users
wbinfo --user-info username