Displaying 20 results from an estimated 170 matches similar to: "Allowing Domain Admins root access"
2006 Feb 14
3
Question about updates again
Presumably, the CentOS 4.3 update is not far away. I have CentOS on
several servers now and am doing automatic updates. What can I excpect
when the actual update gets pushed? Is there an inclrease in the number
of patches? Does it happen all in one day? And if so, how much notice
do I have?
Although I asked on the list a while back, I got some answers that
implied said that at update
2001 Oct 26
1
PAM session cleanup on Sol8 with v2.9.9p2
In do_pam_cleanup_proc(), there are 3 calls to PAM:
1) pam_close_session() - do lastlog stuff
2) pam_setcred(PAM_DELETE_CRED) - delete credentials
3) pam_end() - close PAM
It appears that pam_setcred() always fails with the error PAM_PERM_DENIED.
This is due to a check done pam_unix.so to not allow a caller with euid 0
to even try to delete their SECURE_RPC credentials. When sshd calls
2016 Apr 05
0
chgrp "Domain Admins" on folder return invalid group "Domain Admins"
Hi Jules,
> I am trying to deploy Samba4 as a domain controller and a file server and
> having some issues.*
>
> The domain have been well provisioned with option --use-rfc2307
>
> I am then trying to create share by following this samba wiki
> https://wiki.samba.org/index.php/Shares_with_Windows_ACLs
>
> The problem is that i cannot succeed to change the group owner of
2016 Apr 05
0
chgrp "Domain Admins" on folder return invalid group "Domain Admins"
On 05/04/16 13:46, Jules Houantonon wrote:
> Dear all,
>
> thank you for your previous mails. It realy help me.
>
> Denis, Following your mail and thanks to the link i configure my
> /etc/nsswitch.conf file by adding windbind to user and group line and
> execute winbindd command.
>
> As i install samba4 from sernet package, init script are created for
> starting
2016 Apr 05
0
chgrp "Domain Admins" on folder return invalid group "Domain Admins"
On 05/04/16 14:32, Jules Houantonon wrote:
> Thank you Rowland for your mail.
>
> My aim is to create a fileserver with samba4 and with acl supported.
> Users most logon through their windows that are in domain to access
> their shares.
>
> Samba how to and your explanations open my eyes on the interaction
> between samba users and group with the Linux OS.
>
> From
2016 Oct 20
0
3.6.23-25.el6_7 and 4.2.10 and "Domain Admins" are/not Admins?
hi
It can be so help
[global]
>---admin users = @nt_admins
if not then I need
1. root at pdc:~# testparm
2. root at pdc:~# ldapsearch -xLLL -H ldapi:/// -b
ou=groups,ou=arkhangelsk,dc=rugion,dc=ru
ldap suffix = ou=arkhangelsk,dc=rugion,dc=ru
ldap group suffix = ou=groups
3. try
log level = 10
max log size = 1000
and go through the authorization in windows pc
2016 Apr 05
1
chgrp "Domain Admins" on folder return invalid group "Domain Admins" #Solved#
OK thank you very much.
Regards
On Tue, Apr 5, 2016 at 3:36 PM, Rowland penny <rpenny at samba.org> wrote:
> On 05/04/16 15:26, Jules Houantonon wrote:
>
>> Please, strangely
>>
>> In AD the user demo have /bin/sh as its shell and with getent we have
>> /bin/false.
>>
>> Is it normal ?
>>
>>
>>
> Yes, it is normal on a DC,
2016 Apr 05
0
chgrp "Domain Admins" on folder return invalid group "Domain Admins"
Please, strangely
In AD the user demo have /bin/sh as its shell and with getent we have
/bin/false.
Is it normal ?
On Tue, Apr 5, 2016 at 3:22 PM, Jules Houantonon <juleshoueto at gmail.com>
wrote:
> Thank you Rowland,
>
> I do not change my existing configuration as far i have already indicate
> winbind value on both passwd and group lines in nsswitch.conf.
>
>
2016 Oct 19
2
3.6.23-25.el6_7 and 4.2.10 and "Domain Admins" are/not Admins?
hi all
I have two different Samba versions as PDC and BDC and
depending on which one is "domain master" users which are
domain admins are not recognized as such.
Everything seems normal with 3.6.23-25.el6_7 as "domain
master" but when I configure them so 4.2.10 is the master
then I login to Win7 fine but Windows tells me that the user
is not an Admin and I need to supply
2016 Apr 05
2
chgrp "Domain Admins" on folder return invalid group "Domain Admins"
Hi Denis,
Thank you for your mail.
I assigned the GID 10000 to the domain admins group through ADUC, and
wbinfo --info-group "domain admins" display the correct output.
But i am still not able to execute succesfuly #chgrp "Domain Admins"
/home/demo
And when i go to ADUC and try to open the Unix Attribute of domain admins
group, i have the error "Unable to
2016 Apr 05
2
chgrp "Domain Admins" on folder return invalid group "Domain Admins"
Dear all,
thank you for your previous mails. It realy help me.
Denis, Following your mail and thanks to the link i configure my
/etc/nsswitch.conf file by adding windbind to user and group line and
execute winbindd command.
As i install samba4 from sernet package, init script are created for
starting AD, smbd, nmbd and winbindd. But i read that smbd, nmd and
winbindd should be disable to
2016 Apr 05
2
chgrp "Domain Admins" on folder return invalid group "Domain Admins"
Thank you Rowland for your mail.
My aim is to create a fileserver with samba4 and with acl supported. Users
most logon through their windows that are in domain to access their shares.
Samba how to and your explanations open my eyes on the interaction between
samba users and group with the Linux OS.
>From ADUC, I assign an Unix Attribute to a user accout, and automatically
it is given 10000
2016 Apr 04
3
chgrp "Domain Admins" on folder return invalid group "Domain Admins"
Dear Samba users and admins,
I am trying to deploy Samba4 as a domain controller and a file server and
having some issues.*
The domain have been well provisioned with option --use-rfc2307
I am then trying to create share by following this samba wiki
https://wiki.samba.org/index.php/Shares_with_Windows_ACLs
The problem is that i cannot succeed to change the group owner of the
folder I want to
2016 Apr 05
3
chgrp "Domain Admins" on folder return invalid group "Domain Admins"
Thank you Rowland,
I do not change my existing configuration as far i have already indicate
winbind value on both passwd and group lines in nsswitch.conf.
But i execute the net cahe flush command and then try getent command by
providing the user name and it works.
It provide outpout for a demo acount that it is only creat in AD and has
unix attribute assigned :
#getent passwd demo
2007 Oct 23
0
Dammit, you''re all admins now (especially since Ezra and Kirk are mostly MIA)
This is stupid, I made Luis, Wayne, Evan, and Filipe admins. Make anyone else admins that you want and do all the changes you need. Especially since you guys are mostly running the show anyway.
--
Zed A. Shaw
- Hate: http://savingtheinternetwithhate.com/
- Good: http://www.zedshaw.com/
- Evil: http://yearofevil.com/
2003 Oct 28
0
Attention Mirror Admins!
You need to replace the index.htm[l] file at the root of the Shorewall
mirror site with the attached one.
Thanks,
-Tom
--
Tom Eastep \ Nothing is foolproof to a sufficiently talented fool
Shoreline, \ http://shorewall.net
Washington USA \ teastep@shorewall.net
-------------- next part --------------
2003 Oct 28
0
Another try to Mirror Admins
^%$# List Server removed the attachment.
Please download from http://shorewall.net/pub/shorewall/Website/index.htm
or ftp://shorewall.net/pub/shorewall/Website/index.htm.
Thanks,
-Tom
--
Tom Eastep \ Nothing is foolproof to a sufficiently talented fool
Shoreline, \ http://shorewall.net
Washington USA \ teastep@shorewall.net
2005 Apr 20
0
Domain Admins
OK, I have RTFM. All the I could find.
I cannot seem to set permissions via WINXP Pro explorer. No matter what I do all I get is access denied - even if I own the file.
Samba log reveals:
[2005/04/20 10:56:08, 2] smbd/open.c:open_file(326)
larry opened file xghost.bin read=Yes write=No (numopen=1)
[2005/04/20 10:56:08, 3] smbd/process.c:process_smb(1102)
Transaction 19 of length 188
2005 Nov 10
0
Fotolog needs Unix Sys Admins!
Job: Unix Administrator
Fotolog.net, a New York City startup, is one of the oldest and largest
photo-blogging sites in the world. Over 2,000,000 members are sharing
their photos and connecting with each other on Fotolog.net. Our members
have uploaded more than 65 million photos and generate over 600 million
monthly page views, and our community is growing rapidly. We are
looking for a sys
2005 Nov 02
1
usrmgr keeps user in domain admins group / bug ?
Hi everybody,
i have discovered following problem.
System suse 9.2 pdc samba 3.0.20b ldap.
a system user which was in the group Domain Admins ( as secondary group
of course ) , cannot be removed from the group, by usrmgr ( in real ldap
the user gets deleted ! )
If the user account gets deleted completly and recreated it is shown
again in the domain admins group.( which isnt so in ldap )
This