Displaying 20 results from an estimated 5000 matches similar to: "Kerberos with delegated domain"
2010 Sep 15
1
Reverse DNS, Kerberos, and Samba4 as a DC
Hey everyone,
I'm one of those crazy people willing to try setting up Samba4
alpha in a small production environment as a DC. I've followed the
Samba4 HowTo (which is excellent by the way) and have a domain setup and
functioning in a test environment.
My production network, however, is not quite as nice as my test
network. I have convinced IT (I work for a group of research
2017 Jul 10
3
Samba ADS-member-server: FQDNs in /etc/hosts
(new thread, same migration project)
I see GPOs applied, but network drives sometimes mapped, sometimes not.
Found something around hardened UNC paths, applied some GPO, dunno if
that is necessary or helps (I still have to check where to apply that
GPO, computer or user ...).
While debugging that I find in log.smbd on the member server:
[2017/07/10 11:22:20.290018, 1]
2015 Sep 14
2
pxelinux tries to load ldlinux.c32 from DHCP server, instead of next-server
>On Sat, Sep 12, 2015 at 6:37 PM, Gene Cumm <gene.cumm at gmail.com> wrote:
>>
>...
>
>> Something like this would be preferable except it's not quite so
>> simple. We'd need to not store BOOTP siaddr before parsing. Store a
>> pointer to the string during parsing if serverip is unset. After all
>> parsing, if the pointer is set, attempt to
2018 Oct 26
3
Again NFSv4 and Kerberos at the 'samba way'...
Hai Marco,
> -----Oorspronkelijk bericht-----
> Van: samba [mailto:samba-bounces at lists.samba.org] Namens
> Marco Gaiarin via samba
> Verzonden: vrijdag 26 oktober 2018 11:23
> Aan: samba at lists.samba.org
> Onderwerp: Re: [Samba] Again NFSv4 and Kerberos at the 'samba way'...
>
> Mandi! L.P.H. van Belle via samba
> In chel di` si favelave...
>
>
2006 Sep 06
4
FQDN nodes in LDAP
Hi,
I''ve set up puppet to get node definitions from LDAP as per the docs.
It''s been working well, but I now want to use fully qualified domain
names instead of simple domain-less hostnames for the node name.
I replaced the ou=Hosts entries with equivalent ones using FQDNs,
restarted the puppetmasterd, and tried a "puppetd --test" from one of
the nodes. However, I
2017 Jul 10
0
Samba ADS-member-server: FQDNs in /etc/hosts
On Mon, 10 Jul 2017 11:45:31 +0200
"Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
>
> (new thread, same migration project)
>
> I see GPOs applied, but network drives sometimes mapped, sometimes
> not.
>
> Found something around hardened UNC paths, applied some GPO, dunno if
> that is necessary or helps (I still have to check where to
2008 Nov 20
2
ISDN Cause codes
Hi All
Just been looking at stats for one of my sites, and I'm conserned about
the number of error cause codes being returned from the telco
for example
12000 calls processed
131 are cause code 31* normal. unspecified.*
139 are cause code 28 * invalid number format (address incomplete).*
112 are cause code 1 *Unallocated (unassigned) number.
*this adds up to about 3% of calls not
2024 Jan 10
1
matchname: host name/name mismatch logging
After fixing the abnormal logging with attempts to chmod smbpasswd file,
a new threat is now happening:
[2024/01/10 16:29:13.984400, 0, pid=2853904] ../../source3/lib/util_sock.c:711(matchname)
matchname: host name/name mismatch: 10.2.111.26 != (NULL)
[2024/01/10 16:29:13.984471, 0, pid=2853904] ../../source3/lib/util_sock.c:893(get_remote_hostname)
matchname failed on 10.2.111.26
Yes,
2017 Jun 08
2
RDNS records are not generated automatically.
Hi All,
This is regarding the reverse DNS issue
1. We are using samba AD 4.4.5 & samba integrated Bind 9.1
2. RDNS records are not being created automatically
Is it possible that RDNS record generate automatically like the Microsoft
Active Directory
Thanks & Regards,
Sunil
Server Admin
Goods and Services Tax Network (GSTN)
Mobile : +91 9896755744
Phone Tag : 011-49111238
2005 Jun 10
1
ATTN: Keith - Seriously OT
On Friday, June 10, 2005 3:16 AM, Andrew Kohlsmith
[SMTP:akohlsmith-asterisk@benshaw.com] wrote:
> On Friday 10 June 2005 04:08, Terry H. Gilsenan wrote:
> > Received: from source ([81.56.129.44]) by exprod5mx8.postini.com
> > ([64.18.4.10]) with SMTP; Fri, 10 Jun 2005 00:29:16 PDT
> >
> > Your MTA claimed it was called "SOURCE" but rDNS tells the recipient
2020 Sep 15
4
smbclient ignores configured kerberos ccache when using krb5-user on ubuntu/debian
Hello all.
I'm encountering an issue where smbclient seemingly ignores the kerberos
ccache as configured in krb5.conf when using "krb5-user" as the kerberos
package and will instead always default to using "FILE:/tmp/krb5cc_uid".
I tested each valid default ccache name type but smbclient completely
ignores whatever is set as the "default_ccache_name" in the conf
2014 Feb 02
4
Telco with multipe SIP servers
Hi!
My telco is Deutsche Telekom and they got about 30 SIP servers right now.
Currently I've set up a template for incoming calls in sip.conf and added
each SIP server by it's IP address like this:
[DTAG-in-1](DTAG-in-template)
host=217.0.16.103
...
[DTAG-in-30](DTAG-in-template)
host=217.0.20.99
I've done that to improve security and to be able to assign all calls
coming in
2007 Aug 08
2
Problem with LDAP failover config
Hi,
I have working master & slave OpenLDAP servers the Samba PDC works
correctly when using either as the passdb backend.
However, when configuring for LDAP failover as per this doc:
http://samba.org/samba/docs/man/Samba-Guide/2000users.html
Samba doesn't work & the logs fill up with this:
ldap_initialize: Bad parameter to an ldap routine
Connection to LDAP server failed for the 1
2012 Feb 02
10
postfix - reject of incoming mail due to helo check??
Hi list,
I have been getting the following types of log messages
Jan 30 08:22:33 ndgonline postfix/smtpd[30538]: NOQUEUE: reject: RCPT
from unknown[71.46.229.50]: 450 4.7.1 Client host rejected: cannot find
your hostname, [71.46.229.50]; from=<DWoodman at orangebankfl.com>
to=<rkampen at ndgonline.net> proto=ESMTP helo=<mail.floridianbank.com>
a rdns check shows all is well
2020 Sep 16
3
smbclient ignores configured kerberos ccache when using krb5-user on ubuntu/debian
I know, and i have him the "samba" solution, because ...
I dont know sssd also.
And i dont get the fuss on samba+winbind or samba+sssd
I have 3 services running minimal : samba winbind user-homes.automount
Everything works as it should.
I hope, and i'll add the note here also.
NOTE !
My packages are NOT sssd compliant, you need to recompile SSSD yourselfs agains my samba
2009 Dec 03
2
Active Directory DNS Registration
Hi,
I'm using a domain where the DNS is hosted by a couple of domain controllers
on the network, outside of my control. I do have ability to work with group
policy and active directory users and computers.
I was able to join a samba/linux computer to the domain using 'net rpc join
-S <IP of local DC/DNS server>'.
This caused an entry for the computer to show up in Active
2018 Jan 22
2
Samba 4.7.4 + bind9 DLZ /backend/ dropping delegated domain
Here's the problem. I've got working samba AD server. I've configured it to
work with bind9 DLZ backend and I'm managing the DNS entries from the
windows DNS manager.
I've made delegated DNS record for our EMC cluster storage, according to a
guide. The record points to the SmartConnect service IP of the EMC.
Since last week I've noticed that my DNS queries to the storage
2006 Jul 21
1
Failed to set servicePrincipalNames (Samba+Solaris 10+NISplus+ADS+DNS)
When joining our Solaris 10 Samba 3.0.23 system to ADS via...
# /usr/local/samba/bin/net ads join -U Administrator
Administrator's password:
Using short domain name -- ULS
Failed to set servicePrincipalNames. Only NTLM authentication will be
possible.
Please ensure that the DNS domain of this server matches the AD domain,
Or rejoin with using Domain Admin credentials.
Joined
2007 Sep 03
1
Code/comment mismatch in delegated administration code.
In zfs_mount() function, when we process a mount by a regular user
through the delegated administration, the comment states:
/*
* Make sure user is the owner of the mount point
* or has sufficient privileges.
*/
This makes sense, but the code doesn''t match the comment. The code
ensures that user is the owner of the mount point _and_ can write to the
directory.
Or does "has
2018 Jan 06
0
Account is sensitive and cannot be delegated (userAccountControl NOT_DELEGATED flag 0x00100000)
On Sat, 2018-01-06 at 11:11 +0000, Antonios Kalkakos via samba wrote:
> I have an AD with two Debian Stretch Samba 4.5.12 DCs. The Samba and Heimdal Kerberos 7.1.0 packages are installed from Debian repositories. Management is done from MS-RSAT installed on a Windows 7 Pro client.
>
> When I select the option "Account is sensitive and cannot be delegated" (in Active Directory