similar to: UID and GID mappings

Displaying 20 results from an estimated 3000 matches similar to: "UID and GID mappings"

2007 Aug 14
0
IDMAP and RID problems
I am trying to get the rid back end to work for samba so that the UID and GID are predictable. Here is my smb.conf file. Anyone see any problems with this? When I use the default of tdb it maps UID just fine but this config is not working. Thanks Mark [global] workgroup = XXXX server string = Samba Server security = ads encrypt passwords = yes realm = XXX.XXX.EDU
2007 Nov 14
1
Winbindd
I am trying to have user logon used winbindd for user directory information and krb auth. The kerber logon works when NIS or /etc/password is used for user info. The only difference I see is winbind return a * in the password field. My understanding is * will prevent logons and x will allow the user to logon using /etc/shadow or krb auth in this case. Is there a way to change what winbind
2007 Dec 03
2
Samba using AD as a directory server
So I have idmap:rid working. The problem is I can set only the same shell for all users. I was trying to find a way to store the shell in AD. I have found a couple references to ||RFC2307. Can this be used with AD and if so is there a good article on it somewhere? (I looked through the samba docs but didn't find anythings yet perhaps I am just blind) Thanks for any help. Mark --
2007 Aug 10
3
Samba winbind and nsswith.conf
I have a Solaris 10 box running samba. I have it joined to a windows 2003 domain. I can authenticate to the samba server. However I am not getting group informaiton. I have in nsswith.conf I have passwd: files winbind group: files winbind winbindd is running libnss_windbind.so and so.1 are in /usr/lib when I run wbinfo -u or -g it returns users and groups from AD. When I do a
2005 Apr 23
1
winbind + ldap uid/gid consistency woes.
Hello all... Im trying to fix a idmap setup with winbind where the idmaps are stored in openldap. We have had this system working before, but it managed to break :-) All systems running Samba (3.0.13 on FC2) Problem: group id's and uid's (specificly uid's) are inconsistent between clients (our two test clients). Both machines are using idmap backend to talk to our ldap server and
2008 Nov 06
4
Trying to get uid and gid to match and getent to work
I am using the following in my smb.conf on samba-3.0.28-0.el5.8 idmap domains = MYDOMAIN idmap config MYDOMAIN:backend = rid idmap config MYDOMAIN:base_rid = 998 idmap config MYDOMAIN:range = 998 - 49999 idmap uid = 998-20000 idmap gid = 998-20000 template homedir = /home/users/%U # template primary group =
2016 Aug 12
0
WINBIND: UID and GID false mappings on domain member
On Fri, 12 Aug 2016 10:42:54 -0700 (PDT) rawi via samba <samba at lists.samba.org> wrote: > > > Just provisioning with --rfc2307 isn't enough, you personally need > > to add any required RFC2307 attributes. > > But you see my test user has his attributes. From samba-tool. Do you > mean the basic objects, the templates for the user and group? If yes, > how to
2013 Jul 29
1
Consistent Inter-Samba UID/GID Mappings
Hi everyone, I'm trying to ensure my various Samba3 fileservers have consistent Samba User/Group -> Linux UID/GID mappings between them. The domain is controlled by a Samba4 DC. Samba3 is used because it's maintained in the distributions that we have deployed already. I believe that using Winbind with idmap_rid is probably the easiest way to accomplish this, however I have had no
2014 Apr 07
1
Consistent UID/GID mappings?
Greetings everyone, I am currently in the process of trying to setup Samba4 as an Active Directory DC. My environment contains about 50% of Windows workstations, and 50% of Centos servers/Ubuntu workstations. Everything setup quite nicely, with Windows workstations and Linux machines being able to logon with a domain user. The problem I have is I can't seem to be able to get consistent UIDs
2016 Aug 12
0
WINBIND: UID and GID false mappings on domain member
On Fri, 12 Aug 2016 09:41:19 -0700 (PDT) rawi via samba <samba at lists.samba.org> wrote: > Thank you Rowland for looking into this! > > > > Have you added uidNumber & gidNumber attributes to the user & > > groupobjects in AD ? > > Not myself, I simply provisioned with --use-rfc2307 Just provisioning with --rfc2307 isn't enough, you personally
2016 Aug 17
0
SOLVED: WINBIND: UID and GID false mappings on domain member
On Wed, 17 Aug 2016 04:54:41 -0700 (PDT) rawi via samba <samba at lists.samba.org> wrote: > I bump this only to say SOLVED and many thanks to Rowland. > > Lessons learned: > > 1. > Indeed, my problems where related to not having a gidNumber for > "Domain Users". > After adding it I got real wbinfo --user-info on the domain member > (file server). >
2016 Aug 12
2
WINBIND: UID and GID false mappings on domain member
> Just provisioning with --rfc2307 isn't enough, you personally need to > add any required RFC2307 attributes. But you see my test user has his attributes. From samba-tool. Do you mean the basic objects, the templates for the user and group? If yes, how to do it? > Can I suggest you put dnsupdate back and then setup bind9 on the DC > correctly. I will... > You must be
2016 Aug 12
2
WINBIND: UID and GID false mappings on domain member
Thank you Rowland for looking into this! >> WHAT I DO NOT GET CORRECTLY are the UID and GID of users and groups >> on the domain member (PARTIALLY DEPENDING if I have the lines with >> "idmap config *:..." or not ??? - see below) > « [hide part of quote] > > Have you added uidNumber & gidNumber attributes to the user & > groupobjects in AD ?
2016 Aug 12
0
WINBIND: UID and GID false mappings on domain member
On Fri, 12 Aug 2016 07:33:27 -0700 (PDT) rawi via samba <samba at lists.samba.org> wrote: > Hi @ALL > > Trying to migrate to Samba AD after 12 lucky years with samba > NT-domain + server profiles and homes in a small research institute. > > I decided to provision a new domain and create the users and groups > using samba-tool with most of its parameters. > I
2016 Aug 17
3
SOLVED: WINBIND: UID and GID false mappings on domain member
I bump this only to say SOLVED and many thanks to Rowland. Lessons learned: 1. Indeed, my problems where related to not having a gidNumber for "Domain Users". After adding it I got real wbinfo --user-info on the domain member (file server). My test user could log in in his old home from the NT domain preserving the old UID and GID. 2. (question = why?) And login.bat was called at
2005 Aug 23
5
Winbind UID/GID mismatch!!
Hi the list (again) Got a pretty major issue now Did the samba link to AD on a couple of redhat es3 servers using samba 3.0.14a Everything seems ok Except when I do a getent passwd username Server 3 getent passwd ross ross:x:10006:10000:ross:/home/ACADEMIC/ross:/bin/false Server 2 getent passwd ross ross:x:10006:10000:ross:/home/ACADEMIC/ross:/bin/false Server 1 getent passwd ross
2013 Oct 08
1
sssd - ldap uid/gid does not match with uid/gids in the openLDAP DS
CentOS 6.4 (amd64) client desktop with SSSD installed+configured to do LDAP AUTH from an openLDAP DS. Groups in LDAP DS -- dsusers (for all users), project1, project2, .... The objective is to give group permissions to directory trees with users belonging to various groups; users thereby inheriting the ACL given to respective groups. Test case -- uid: jdoe, gid: dsusers (primary) On LDAP
2009 Jul 14
0
Samba 3.3.2: idmap uid or idmap gid missing -- winbindd/idmap_tdb
I've recently upgraded to 3.3.2. I run a small domain using tbdsam. I am getting the following error logged in /var/log/messages: Jul 14 08:34:07 localhost winbindd[1727]: [2009/07/14 08:34:07, 0] winbindd/idmap.c:idmap_alloc_init(587) Jul 14 08:34:07 localhost winbindd[1727]: ERROR: Initialization failed for alloc backend, deferred! and in /var/log/samba/log.winbindd-idmap I
2006 Sep 16
0
Samba SID/RID, UID/GID Best Practices?
I have a new Samba 3 domain backed by LDAP. I am using Fedora-DS for LDAP component, so I have relied on a blend of tools to get up and running including Fedora-DS console and phpLDAPAdmin and (momentarily!) sambaldap-tools. I am generally following the great IDEALX How-To but having to adapt it somewhat. Standards for well-know Samba groups like "Domain Admins" were easy to
2008 Nov 11
0
Fwd: RE: Trying to get uid and gid to match and getent to work
[This email is either empty or too large to be displayed at this time]