Displaying 20 results from an estimated 200 matches similar to: "Winbind - how to map ADS group to Unix group"
2007 Jan 15
1
Winbind caching group membership issue
Hi All,
I am using samba-common-3.0.10-1.4E.9 on a RHEL4_U4 x86 machine. The
ADS server is WS03 sp1 running in Windows Server 2003 interim mode. In
general thing are working well. However, when winbind caching is
enabled (default), group membership does not appear to update, i.e.
"wbinfo -r bob" and "groups bob" don't reflect changes in ADS group
membership.
2007 Feb 06
3
CentOS samba upgrade
Centos samba version is 3.0.10 which is the package that comes with the
disto - is the only way to upgrade to the latest samba 3.0.24 is to
recompile the samba source? I have tried "yum update samba" however it says
3.0.10 is the latest so i downloaded 3.0.24 and tried rpm -Uvh or yum
localinstall but i get the following dependency errors
to # yum install
2007 Apr 04
1
Issue with pam_winbind for MS AD authentication and moduleoptions
Hello!
passwd, shadow and group looks as follows in nsswitch.conf:
passwd: files winbind
shadow: files
group: files group
What really confuses me is that when my AD server is up and running,
root or any local user logs in with no problem.
And even when AD server is down, after trying a zillion times, root and
other local users login, and then if I log them out and try again a few
minutes
2007 Feb 06
3
ntuser.dat
What are the implications of locking the ntuser.dat file on the user's
server profile? That is, if I make the ntuser.dat file read-only, what
affects will that have on the client?
2008 May 19
4
adding users to group with net rpc
section 13.3.2 of the HOWTO shows that i can add a user to a group with the
following command:
root# net rpc group addmem "MIDEARTH\Engineers" ajt -Uroot
when i execute this command (replaced with my server specific values, of
course), i get a NT_STATUS_NO_SUCH_USER error.
i can verify that my user DOES exist and that he belongs to the posix group
account. i can also verify that the
2005 May 11
2
Group Nesting
Hey all,
Is there a comprehensive how-to on the new group nesting features? I've
found a little bit of info, but nothing that paints a clear picture of
the process. If anyone has any insight or can point me to a tutorial it
would be much appreciated.
I created the local groups and mapped them. Wbinfo and getent all seem
to be working.
I've been trying to do the 'net rpc group addmem
2009 Apr 16
2
Question about BUILTIN\Administrators and BUILTIN\Users nested groups in 3.3.3
Sorry about the dumb question:
Are the "BUILTIN\Administrators" and "BUILTIN\Users" local (nested) groups
supposed to be populated with DOMAINNAME\Domain Administrators and
DOMAINNAME\Domain Users (respectively) by default? If I download the Redhat
Samba package, they are populated. Not so with a compiled version.
I've had a helluva time populating BUILTIN\Administrators
2005 Sep 20
1
Embedding a "Domain Group" in "Domain Administrators" ???
hi list,
is it possible with samba v3 and ldap backend to embedd a normal group
like "normalgroup" in the group "Domain Administrators" to give members
of the group "normalgroup" full administrative rights on workstations?
i tried with "net groupmap addmem sid-of-normalgroup
sid-of-domain-admins" and "net groupmap addmem sid-of-domain-admins
2013 Dec 06
1
adding AD domain users in local Linux group for acces to share
Hello,
It seems that domain user can access share when they are specified in "valid list" but not when
"valid list" use local group definition.
First if added the domain user "duser" to the group "lgroup" in /etc/group
Then i defined a samba share and add the domain user "duser in the "valid list"
[lgroup]
comment =
2006 Feb 23
2
Confused about groups and access
Hello,
My nt admin made a group for my samba server called
Share_Dfsroot_pvcs-cdw_C and added me as a member. I made a nested
group on my side with
net rpc group add ntcdw -L -Uxxxxx
I then added the Share_Dfsroot... with
net rpc group addmem ntcdw "DOMAIN+Share_Dfsroot..." -Uxxxxx
net rpc group members ntcdw -Uxxxx shows:
DOMAIN\Share_Dfsroot... so all looks good.
I
2007 May 21
1
Samba 3.0.22 error with domain accounts
I have compiled Samba 3.0.22 on Solaris 10 (sparc.) It has been
configured as a PDC with a domain of, say, "SAMBADOMAIN." It has
some predefined group mappings for the Administrators and "Domain
Admins" group. These mappings were dropped in later versions of Samba.
(I have been working with 3.0.24 as well. Unfortunately it doesn't seem
to play nice with
2012 Nov 26
2
Local Administrator access
Hi,
I have a windows 7 machine withouth local administrator account.
I need to create such an account. I can log in to the machine with a user
on my samba domain.
What do I need to do in order to get administrator access, or access to
create an local administrator account?
I have tried to do this:
[root at float samba]# net rpc group addmem "Administrators" 'DOMAIN\username'
2020 Jul 13
2
net rpc rights grant fail to connect 127.0.0.1
On Mon, Jul 13, 2020 at 1:26 PM Rowland penny via samba <
samba at lists.samba.org> wrote:
> On 13/07/2020 18:18, Douglas G. Oechsler wrote:
> >
> > Hello!
> >
> > Ok! I switch the IP inside Member AD
> > > 127.0.0.1 localhost
> > *> 10.1.1.16 * E-PLANO.ad.mydomain.br <http://E-PLANO.ad.mydomain.br>
> > e-plano
> >
> >
2008 Aug 25
1
net rpc group addmem returns NT_STATUS_ACCESS_DENIED
Hi All,
I'm trying to add a user to a group using
/usr/local/samba/bin/net rpc group addmem room11 dunk -Uroot%password
The user is added to the group as far as I can tell but the command
returns NT_STATUS_ACCESS_DENIED
This is on Solaris 10 (Sparc) and Samba 3.2.1, OS and Samba are both
configured to lookup users and groups in LDAP.
/usr/local/samba/bin/net rpc group members
2006 May 08
1
checking trust secret failed for interdomain trust
Hi samba members,
I've searched through google, the archives and RTFM but I can't figure this out.
I've got a setup of two different offices with both their own samba PDC, wins, etc. Via OpenVPN i've set up an interdomain trust between the two domains (for now one way, but this will become two ways).
One domain is called PSW with bluemoon as PDC, the other PSWINDWG with redmoon as
2013 Sep 19
1
Samba4 as AD member & local rights problem...
Hi all,
have a samba4 server as AD member (security =ADS). I have no account
with "Domain Admin" rights, only a normal account with delegated
privilege to managing GPO and for domain join.
I can not manage the printserver resp. upload the win drivers. The
smb.conf option 'printer admin' is gone with v4.
I asked already in irc on #samba and got the advice to "make any
2009 Aug 20
1
Script to Auto-add Domain Users to Workstation Power Users Group doesn't work
Ubuntu 8.04 Server 64-bit Edition
Samba 3.0.28a configured as PDC
WinXP - SP2 clients
I am following the instructions in
http://www.samba.org/samba/docs/man/...#magicnetlogon to add domain
users to the winxp clients Power Users group.
Code: autopoweruser.sh
#!/bin/bash
/usr/bin/net rpc group addmem "Power Users" "DOMAIN_NAME\$1" \
-UAdministrator%secret
2017 May 29
2
samba-tool cannot add or remove group members
Hi
samba-tool group addmembers stage user
ERROR(exception): Failed to add members "user" to group "stage" - Unable to find "user". Operation cancelled.
File "/usr/lib/python2.7/dist-packages/samba/netcmd/group.py", line 227, in run
add_members_operation=True)
File "/usr/lib/python2.7/dist-packages/samba/samdb.py", line 274, in
2016 Nov 16
2
Unable to add AD users to local groups
Greetings,
I have Samba 4.4.7 running on several Sparc boxes running Solaris 9 as
member servers in an Active Directory environment. (I do not control
the AD configuration)
I am able to connect to the servers using windows clients and smbclient
- the problem I have run into is when I try to add domain users to local
groups on the Samba servers I am told the users do not exist.
As these
2010 Nov 19
1
After host name change: Failed to add user ... with error: The account's primary group is invalid
Hi,
I've got Samba 3.5.6 (SerNet packages) running on Debian Lenny. User information is stored in LDAP via ldapsam:editposix. I changed both the host name and the workgroup name as I had to move the host to a new internal subnet.
I noticed that a new sambaDomainName entry was created (containing a new sambaSID). Unfortunately, the Administrator user still contains both the old sambaSID and