Displaying 20 results from an estimated 11000 matches similar to: "Where to go next; Winbind/LDAP/ID mapping"
2005 May 12
3
New ADS infrastructure with winbind - Which is the best ID-mapping: IDMAP_RID or IDMAP LDAP with ADS + SFU schema ?
A question for the best winbind SID-UID/GID mapping in our situation:
I'm building a new infrastructure with Windows 2003SP1 ADS
Domaincontrollers and some Debian Servers (File: Samba+NFS; Mail; Web;
....) and varios XP and Debian Clients.
After reading Chapter 12. (Identity Mapping) in the Samba-HOWTO is
IDMAP_RID in couple with winbind an easy way to solve the problem with
syncr.
2006 Nov 06
1
Samba with AD
I am stuck with Samba -Active Directory communication. Trying to bring my SUSE 10.0 to speak with AD Domain.
net rpc testjoin - brings a unable to find suitable server message
net join - kerberos_kinit_password preauthentication failed and ads_connect preauthentication failed
wbinfo -u works fine
wbinfo -t works fine
getent passwd/group works too
smb is running
nmb is running
winbindd is
2010 Oct 29
2
migrating users to openldap
I noticed that when I migrated my users with the migrate_passwd.pl
tool from PADL it didn't migrate the actual passwords (just the rest
of the posixAccount info). I think I need to set the EXTENDED_SCHEMA
variable and then try running the tool again. does anyone know what
this should be?
I actually thought there might be a migrate_shadow.pl tool that could
accomplish this, but there
2008 Aug 27
3
Solaris nss_ldap vs PADL nss_ldap
Hi All,
Any thoughts on why, while everything seems ok at the OS level
(getent , id -a ) Samba
doesn't pickup any supplementary groups when Solaris is configured with
'group: files ldap' in
nsswitch.conf and using it's own native nss_ldap.so.1 but does when
using PADL's nss_ldap?
Everything else is equal.
Do they use/accept different calls or could it be an
2005 Apr 07
1
Samba and slapd.conf's TLSVerifyClient
I have Samba 3.0.13 and LDAP 2.2.24 installed. I have placed the following
directive in my slapd.conf file.
TLSVerifyClient demand
I have the PADL stuff configured and working fine.
ldapsearch with -ZZ works fine.
I even have the Idealx smbldap-tools working fine.
Samba won't work though unless I set
TLSVerifyClient try
According to the slapd.conf man page, "try" causes a
2003 Mar 29
2
SIP Retransmission Patch
I've also noticed that my SIP phones (snom [12]00) seem to deregister
themselves after some time, and not be able to re-register until
Asterisk is restarted. This problem only manifested with the latest
CVS.
-- Luke
--
Luke Howard | PADL Software Pty Ltd | www.padl.com
2009 May 11
8
Users can't login on Samba+Ldap
Hi,
I've migrated from an old samba installation (Samba as PDC) that used TDB
backend for password.
I've setup a box with ubuntu and samba 3 + ldap and I imported the old
users.
Old users works fine.
I have problems with new users and machines.
Old users works but they don't show up with smbldap-usershow command and
I've problem in changing their passwords. If I check the ldap
2003 Dec 22
2
OpenSSH + PADL pam_ldap.so + password aging
First, my config:
Solaris 8
PADL pam_ldap v165 and pam_nss v211
OpenSSH 3.7.1.p2
All compiled with gcc 2.95.3 that ships with the Sun companion CD
LDAP PAM authentication is working well with OpenSSH, privsep is disabled,
challenge-response authentication is enabled. I would like to turn on
password aging, which seems to be well supported by pam_ldap. Logins going
through /bin/login correctly
2003 Mar 03
3
iconnecthere 480 error: is there a workaround?
I am going to have to find a fix for this problem or I'm going to have
to quit using iconnect.
About one call in 10 or so, iconnect's gateway gives me an error
(console output appended below).
So upon receiving the error, which as a 4XX error means, "Fatal,"
asterisk gives up and drops the call. But not iconnect!! The phone at
the other end starts ringing, and rings
2009 Mar 18
2
Directory server import
Hi list
Does anyone know if there is a simple way to import standard linux users
into the directory server? I have found some but they don't seem to be so
flexible since I have to import from several servers into different ou's
Regards
Per Qvindesland
2005 Mar 11
2
Practical guide to migrate from tdbsam to ldapsam
Hello people!
I'd like to know about a practical guide which helps to migrate users
from a perfect working Samba PDC running with tdbsam backend to a new
backend to LDAP. Does "pdbedit -i xxx -e xxx" make all the job? My
network is growing and I need a directory service to help find people so
I'd like to see a LDAP server running well with Samba without rebuild my
user
2015 May 05
4
ldap host attribute is ignored
On 05/05/2015 06:47 PM, Gordon Messmer wrote:
> On 05/05/2015 03:02 AM, Ulrich Hiller wrote:
>> /etc/openldap/ldap.conf contains the line:
>> ------------------------------------------
>> pam_check_host_attr yes
>
> /etc/openldap/ldap.conf is the configuration file for openldap clients.
> It is not used for system authentication or name service.
>
>>
2004 Aug 30
2
start tls problem
I'm having trouble getting tls working. It used to work
until I changed the smb.conf file to to poing to a different
host. I think I have tracked it down to ldap servers ssl
cert issuer(CA).
I keep getting errors like "self signed certificate in
certificate chain" while using openssl commands or a
ldapsearch w/ tls and debug mode.
So my question is... Where can I put a
2004 Apr 19
1
Migrate Samba 3.0x tdb to Samba-3.0.2a ldapsam
Hi guys/girls,
How are you ?
I'm looking at migrating my Samba-3.0.1 server which has the standard tdb
backend to Samba-3.0.2a with an LDAP backend.
I plan to use nss_ldap too.
What would be the best way of doing this ? Any assistance would be greatly
appreciated.
Kindest regards
David Wilson
D c D a t a
Tel +27 33 342 7003
Fax +27 33 345 4155
Cell +27 83 267 7500
http://www.dcdata.co.za
2008 Aug 26
4
Samba write performance in kernel
hi,
I would like to know is it possible to make writing file to samba completely in kernel?
I'm using a slow CPU (FA526) , and the memory copy is even slower. The reading performance is over 7 MB/s, with mmap and sendfile enabled, while writing is only 4-5 MB/s. Without mmap and sendfile, reading from samba is also about 4-5 MB/s. I use Oprofile to profile writing file to samba and found
2006 Dec 22
1
Ferret - Job help.
Hi there.
We are currently using ferret in our project, and have hit a crossroads
with development and are looking to expand. So more positions have
opened up and we would like to ramp up our search features.
We are looking for anyone interested in a job! I''m not sure if this is
the right place to post this or if it is appropriate (my apologies if it
is not).
Requirements : ruby /
1996 Dec 06
1
Stupid passwd tricks: User with blank GECOS can''t change passwd
I have discovered that a user who has a blank GECOS field in the passwd file
under RedHat 4.0 (Colgate) is unable to change passwords. Running the passwd
command goes like this:
[user@host user]$ passwd
Password: [entry of old passwd]
New password: [entry of new passwd]
[user@host user]$ echo $!
1
[user@host user]$
Setting the name field in the GECOS seems to solve this problem.
[mod: While
2003 Apr 07
1
regarding the new tdm?0b cards (another newbie question)
hi everybody and thanks for replying to my previous posts!
i have some questions about the new cards announced on digium's website:
these cards are 1-4 fxs interfaces, meaning i can take 4 analog phone handsets
w/standard rj11's and plug them in to dial via *, right? not until fxo is
implemented (is it going to be? when?) can i plug analog phone lines in? if
the ports are made fxo/fxs
2003 May 27
1
Incoming calls using iconnecthere
Hi All,
I can only seem to get iconnecthere working with incoming calls
intermittently. One minute it seems to work, and the next it doesn't.
I am not aware of anything being changed in the config files. Outgoing
calls work ok all the time.
The Asterisk box is behind NAT so that does complicate things slightly.
However, the Iconnecthere PCPhone client software works perfectly for
2005 Feb 21
1
AD function without AD
I'm very interesting in attempting to get the control over my windows
machines that AD offers, without actually have AD.
I know samba 3 can be a AD member server.. Are there any other
projects that integrate samba, ldap, kerberos to make a active
directory like system?
Note that I said AD like. My goals include
1) single sign on through kerb
2) access control through ldap groups
3)