similar to: Samba 3.0.0 -- ACLs are unusable due to UID/SID mapping weirdness :(

Displaying 20 results from an estimated 9000 matches similar to: "Samba 3.0.0 -- ACLs are unusable due to UID/SID mapping weirdness :("

2003 Oct 23
0
Samba 3.0.0 -- ACLs are unusable due to UID/SID mappingweirdness :(
I also need to get centralised mapping configured if I am to deploy Samba, although we're planning to deploy an LDAP server also so this isn't an additional overhead for me. Two comments, to avoid the additional overhead of implementing a seperate LDAP infrastructure could future versions of Samba support storing the idmap mapping date in Active Directory? When using idmap = ldap in the
2003 Oct 09
1
[Bug 740] Sun's pam_ldap account management is not working
http://bugzilla.mindrot.org/show_bug.cgi?id=740 Summary: Sun's pam_ldap account management is not working Product: Portable OpenSSH Version: 3.7.1p1 Platform: UltraSparc OS/Version: Solaris Status: NEW Severity: major Priority: P2 Component: PAM support AssignedTo: openssh-bugs at mindrot.org
2014 Mar 27
0
FreeBSD winbind UID/GID mapping weirdness
Quick summary: On FreeBSD 10, Winbind is giving me locally mapped UIDs & GIDS, rather than the ones specified in AD. I have two test member servers set up. A CentOS server running Sernet Samba 4.1.6 and a FreeBSD server running Samba 4.1.6 built from source. On CentOS, "getent group {group name}" gives me the correct GID assigned in AD. On FreeBSD I am given a value from the
2003 Nov 20
2
[Bug 740] Sun's pam_ldap account management is not working
http://bugzilla.mindrot.org/show_bug.cgi?id=740 ------- Additional Comments From dtucker at zip.com.au 2003-11-19 23:20 ------- According to the man page, pam_ldap doesn't support account management. $ man pam_ldap [snip] The pam_ldap.so.1 module supports two components: the Authentication component and the Password management com- ponent. ------- You are
2013 Mar 25
1
downgrading to R 2.15.1-4 from sid beta 3.0.0
Hi, I'm using sid, and this morning I carelessly upgraded R core packages, which are currently at the beta 3.0.0 version. I hadn't read that packages need to be re-built to be used with this beta version. I'd happily do that locally (via 'install.packages') for those that haven't yet been re-built in Debian, but some just don't allow that, notably nlme which has a
2011 Jan 02
3
Bug#608715: Recent hardware components render the xen-hyervisor unusable, fails completeley to boot due to kernel panic
Package: xen-hypervisor-4.0-amd64 Version: 4.0.1-1 Severity: grave Tags: squeeze upstream Some newer hardware components (it is unclear what exactly causes the issue) render xen-hyervisor unusable as it crashes immediately after boot for the Debian out-of-box configuration. This results in a system rebooting all over again if the hypervisor is choosen as default stanza to be booted by grub
2013 Mar 04
0
winbind: how to fix uid/SID mapping following migration to a new DC
Did you ever get a resolution to your issue with UIDs not matching? I have the same problem and I cannot for the life of me get my UIDs to come from Active Directory. If you did solve it with using the idmap config DOMAIN : backend = ad would you be so kind as to share? I am only able to get idmap config * : backend = tdb to work. I have never been able to get UIDs for particular domain
2006 Sep 16
0
Samba SID/RID, UID/GID Best Practices?
I have a new Samba 3 domain backed by LDAP. I am using Fedora-DS for LDAP component, so I have relied on a blend of tools to get up and running including Fedora-DS console and phpLDAPAdmin and (momentarily!) sambaldap-tools. I am generally following the great IDEALX How-To but having to adapt it somewhat. Standards for well-know Samba groups like "Domain Admins" were easy to
2006 Apr 30
0
prepopulate winbind db with certain uid <-> SID mappings?
Hi, when migrating a big linux/samba fileserver with several hundred local users/uids and more than a million files to a winbind/Windows AD setup, it's not desirable to have new uids assigned for all the users from a uid range by winbindd, because the file ownerships are messed up then. Is it possible to keep the original local uids for already existing users with winbind even after
2006 Oct 18
0
mapping SID - UID, GID with SFU 3.5
I have: linux 2.6.18-1.2200.fc5 samba-3.0.23c-1.fc5 W2000 AD with SFU 3.5 uid and gid in SFU linux configured to use AD with ldap client for mapping users, groups and authentication winbind not configured Everyting works fine except ACL in the linux filesystem: I receive this error when I want to add an user access to a file: [2006/10/18 09:38:28, 0]
2011 Apr 06
0
help needed about SID to UID/GID mapping
Dear all I need some advise with respect to SID/UID/GID mapping. The server runs Samba 3.5.8 as a member of an AD (w2k8) domain. Our UNIX UIDs are taken from the 1000-60000 range with about 10000 allocated accounts. 99% of user IDs exist in AD with the same name. For that reason we rely on the "nss" idmap backend which is non-allocating. The problem comes with the group mappings.
2004 May 11
0
cant convert SID to UID...
I am running a redhat 7.3 server with the 2.4.26 kernel. I am using Samba 3.0.0beta2 to allow Windows AD Users to access our sendmail mailserver with their windows logins/passwords. Things have gone very smoothly for quite some time until I recently went to add new users. If i try to convert the SID's of users i added a while ago, it still works.. but for any new users i try to add, it does
2003 Jun 27
1
What's happend when the UID/SID mapping changes for a computer account ?
Hi, Could you please tell me, what's happend when the UID/SID mapping changes for a computer account ? In my previous mail, I explain that suddenly every computers of my domain was unable to connect to our samba logon server. Before this problem, a 'net rpc vampire' was done to resynchronize the samba ldap-sam with the NT4 PDC, and samba has been restarted, I suspect that after
2004 Jan 13
0
SID <-> UID mappings
Hello! I've been running a custom hacked samba 3.0rc1 to get winbindd to bind every SID simply to what getpwent returns as the UID. The newest versions of samba seem to support the possibility to have winbindd to use /etc/passwd and /etc/group as the storage backend. So basically what I need is that each time samba wants to know the SID of the username "joe" it would just query
2004 Apr 13
0
sid to uid/gid conversion problem
Hi there! I'm experiencing the following weird problem: pokeball:# wbinfo -n VTB+jimenezju S-1-5-21-776561741-1450060922-1644491937-1249 1 pokeball:# wbinfo -Y S-1-5-21-776561741-1450060922-1644491937-1249 1 11771 pokeball:# wbinfo -Y S-1-5-21-776561741-1450060922-1644491937-1249 1 11772 pokeball:# wbinfo -S S-1-5-21-776561741-1450060922-1644491937-1249 1 10140 pokeball:# wbinfo -S
2005 Nov 02
0
(part 2) Can samba map between existing Windows (SID) users and existing unix (UID) users
I have had a few replies and it looks that I am on a no win solution. I either set up LDAP and delete local UID on our UNIX boxes and let samba convert SID to UID, or just leave thinks as they are. I still don't under stand why it is so difficult to do what I want when all the information seems to be at hand. 1) User changes security of a file on a samba share to allow DCSNT\andrew access.
2010 Apr 09
0
SID to UID conversion problem
Hi folks! I have a problem with SID to UID translation on one of my domainmember servers since I use a newer version of samba (3.4.0). The PDC is running samba 3.0.28 and uses LDAP. On the domainmember everything is working as expected (login with domain user, wbinfo -u, wbinfo -g) but when it comes to convert the SID to UID it fails: $ wbinfo -S S-1-5-21-2106500839-766785134-2740805053-6093002
2018 May 25
0
syscolcheck error / Could not convert sid S-1-5-32-544 to uid
On Fri, 25 May 2018 15:37:10 +0200 Henry Jensen via samba <samba at lists.samba.org> wrote: > Hello, > > this is a Samba AD Domain upgraded from Samba 3.x with > classicupgrade. > > Debian 9.4 > Samba: 4.7.6 (packages from tranquil.it) > > # samba-tool ntacl sysvolcheck > ERROR(<class 'samba.provision.ProvisioningError'>): uncaught >
2018 May 25
0
syscolcheck error / Could not convert sid S-1-5-32-544 to uid
On Fri, 25 May 2018 16:39:22 +0200 Henry Jensen <hjensen at mailbox.org> wrote: > > OK, maybe this is something which should be mentioned in the wiki. The > reason I got to this was that I wanted to try sysvol replication. The > wiki mentions at > https://wiki.samba.org/index.php/Joining_a_Samba_DC_to_an_Existing_Active_Directory > you should i.e. copy idmap.ldb from the
2023 May 29
1
Failed to convert SID to a UID
Hello, After upgrading a Samba domain member from 4.16.4 to 4.17.5 our shares stopped working. This is from Rocky Linux 8.7 to 8.8. The AD domain controller server is running 4.16.2. Only error message I see is : check_account: Failed to convert SID S-1-5-21-..... to a UID (dom_user[DOMAIN\username] wbinfo --domain-users returns a list of all the users wbinfo --user-info username