similar to: Several PDCs with one LDAP

Displaying 20 results from an estimated 10000 matches similar to: "Several PDCs with one LDAP"

2005 Jul 26
1
trust relationship
hi i want to create Enterprise wide domain trust relationships between samba domains / domain controllers. And with that i want to achieve 1- complete directory replication, (like Additional domain controller) 2- user account migration between domains, 3- policy enforcement on all the domains from a single domain, 4- delegated administration of domains So how should i do all this .... PS.
2005 Jul 26
1
SMB Network design guidelines
Hi: Can anybody point me to some guidelines about SMB network design or give some advice? Samba HOWTOs are very detailed recipes, but I need some general tips, like if we are serving fish or pasta tonight :-) This is the situation: a WAN with 20 offices with 2 to 30 people in each, plus a headquarter with 50 people, plus the databases and central file servers. The organization grew up on a NT4
2011 Aug 29
1
Why using several Samba4 servers?
Hi! We're trying to figure out the best way to use samba4 in our environment and after testing back and forth we are now left with a question; why would we want to have several samba4 servers? The environment is one HQ with multiple branch offices where each branch office as a network connection to HQ with at least a 2Mbit DSL. The initial idea was to put a samba4 DC in every branch
2010 Jan 08
1
How SMB client recognizes when to use PDC or BDC
Hi, Maybe this was asked many time (although can't find it on google). Let's assume 2 scenarios: 1) I've got local network where PDC and BDC are set up. PDC is working fine so the BDC is. When it's possible for any XP client to use BDC instead of PDC? I read in samba docs that if PDC is slow client can use BDC - but what does it mean slow for the client? How the client knows
2016 Sep 22
2
Samba Member NT_STATUS_NETWORK_SESSION_EXPIRED
Hi Jermey, I have checked now (when member look work fine) so i get this informations: klist -k /etc/krb5.keytab Keytab name: FILE:/etc/krb5.keytab KVNO Principal ---- -------------------------------------------------------------------------- 1 host/pl0024.hq.kontrast at HQ.KONTRAST 1 host/pl0024.hq.kontrast at HQ.KONTRAST 1 host/pl0024.hq.kontrast at HQ.KONTRAST 1
2014 Sep 10
1
Unable to join new domain controller to Samba4 domain
Hi folks, Everything is working great and I am not having any issues with the three domain controllers that I currently have set up. We are migrating from Puppet to Ansible for configuration management, and I decided to create a playbook that will do all the things necessary to set up a DC and join the domain. I have found that in the domain joining process, an error stops replication from
2005 Mar 08
2
Trying to get ADS authentication working.
I have been trying in vain to get ADS domain authentication working. I can't figure out what is wrong and have read the docs and looked through the mailing lists. I'm not sure why better documentation hasn't been written on the web site for the ADS feature since it's pretty spectacular to be able join a Samba server natively to an AD domain. I have successfully joined the samba
2016 May 25
4
Upgrading Samba 3 to Samba 4 with Active Directory at many sites
First, background information. We are a large (geographically local) organization with 50 sites, including our HQ. Each site has a Debian Server running Samba in NT-Domain Controller mode. Each site is independant of the next, but are all named <SITE>.example.com. The workstations are connected, and working fine in our sites with the single servers. We had a recent network upgrade that now
2010 Jan 24
1
Problem authenticating from standalone servers via Samba 3.0.34 domain member servers to Samba 3.2.5 domain controller
We recently upgraded our PDC from Debian 4 to Debian 5. That entailed an upgrade of Samba from 3.0.24 to 3.2.5. Since the upgrade we've had a very specific problem connecting to shares on a commercial NAS running Samba 3.0.34. The problem happens when users try to connect to shares from standalone servers--e.g., Windows XP Pro boxes that we use for testing. From those boxes users should be
2010 Jul 09
6
two PDCs
Hello, I have a PDC with master ldap backend and a BDC with slave ldap backend (both are SaMBa 3.2 on Debian Lenny). I want to install an additional SaMBa server on an another site (on Debian Squeeze). The two sites is connected with VPN (on not so reliable ADSL lines). I read an interesting network scenario in the Samba Guide chapter 6: theoretically it is possible to install one PDC on both
2016 Oct 04
1
Samba Member NT_STATUS_NETWORK_SESSION_EXPIRED
so i add the pam yesterday and now after 10 hours no connection to member is possible. :( Same errors in logs i send yesterday OLIVER WERNER Systemadministrator > Am 03.10.2016 um 18:54 schrieb Rowland Penny via samba <samba at lists.samba.org>: > > On Mon, 3 Oct 2016 17:56:07 +0200 > Oliver Werner <oliver.werner at kontrast.de <mailto:oliver.werner at
2016 Oct 03
3
Samba Member NT_STATUS_NETWORK_SESSION_EXPIRED
hey, now after observe last changes on the weekend… i have also the issue. After 10 hours i can’t connect to the shares on my member server. On Log of DC i found this: [2016/10/02 20:35:45.601265, 3] ../source4/auth/kerberos/krb5_init_context.c:80(smb_krb5_debug_wrapper) Kerberos: AS-REQ PL0024$@HQ.KONTRAST from ipv4:<member-ip>:55578 for krbtgt/HQ.KONTRAST at HQ.KONTRAST [2016/10/02
2016 Mar 11
5
Problem with Winbind and Windows Clients
Hi, i have a permanent problem with my samba members. there lost after some times his connections to DCs and i need to restart winbind. Also same problem with winds client that running 24x7. After few days i can not logged in. i think thats a problem with kerberos tickets. i have checks samba logs and found that samba member and windows client ask for new tickets and get new expiration. in my
2016 Mar 03
1
Mac/Win Login after sleep mode, Sync Problem for Access Control List between DCs, AccountLock
Hi, i have three problems in my AD. i have three DCs, four samba members and some Mac and Windows clients. first problem After some times my Windows and Mac clients can not login with the account cendentials. So i need to reboot the system and works fine. When the problem exists i got on my DC following log: [2016/03/03 12:39:10.029089, 3] ../lib/ldb-samba/ldb_wrap.c:320(ldb_wrap_connect)
2019 Mar 20
2
virsh snapshot-create-as: change umask on snapshots
I scripted the creation of snapshots and it works fine. Now I'd like to run the script as non-root. virsh snapshot-create-as --domain hq-live-v01 \      --name snappy \      --diskspec vda,file=/var/lib/libvirt/images/hq-live-v01.snappy,snapshot=external \      --diskspec vdb,file=/var/lib/libvirt/images/hq-live-storage.snappy,snapshot=external \      --disk-only --quiesce --atomic This
2007 Sep 07
1
how to DUNDi branch office with area code?
hi: i am new to asterisk and dundi. we have some branch office which will use asterisk in the future. they will form a full-mesh structure so every site can contact each other directly. i want to try setup dundi, then we don't need to modify every pbx when a new site add in the cloud. thanks to the great dundi document "caveman can do it" and other resource in the
2018 Mar 20
1
Issue when adding an user to group
Hello everybody, we have an issue with our samba instance of ad member as fileserver when i add an user to a group it will adding the user without problems. i can verify on our two domain controller that the user is in the group with wbinfo -r <user> Now when i will check it on the member (fileserver) the user will not in the group. Anyone has an idea what we’ve misconfigured? Our
2016 Feb 12
3
AD Group lost from Winbind
Hello, the last two days i have problems with my AD group which is defined in share setting valid users Winbind looks to lost mapping of this group and so no user can connect to this share anymore. When restart winbind service mapping works again until mapping lost again. ls -lsa shows me in issue this: 2 4 drwxr-x--- 63 root 12001
2016 Sep 30
4
Samba Member NT_STATUS_NETWORK_SESSION_EXPIRED
Hai Oliver,   Yes, thats ook pretty standard. On this questiosn. >thats the only one kerberos cache file in /tmp right now. >looks like kerberos does not renew the ticket :(? Do you have something like :  ( look in /var/tmp )   These are the tickes generated by the server. -rw-------  1 root  root   488 Sep 27 10:05 host_0 -rw-------  1 proxy proxy 9646 Sep 30 09:05 HTTP_13
2016 Feb 22
3
AD Group lost from Winbind
yeah > /var/lib/samba/sysvol/hq.kontrast/scripts was i typo hq.internal was correct. uidNumber and gidNumber is set for our own users and group, but not Administrator or Administrators. Today it was an issue again on a member so i test command wbinfo --group-info=group_intern and got the error failed to call wbcGetgrnam: WBC_ERR_DOMAIN_NOT_FOUND Could not get info for group