similar to: Keeping Windows ACL's when migrating to SAMBA Server

Displaying 20 results from an estimated 1000 matches similar to: "Keeping Windows ACL's when migrating to SAMBA Server"

2010 Oct 20
0
No subject
samba fails to allow this operation. 4.11. documentation ... ----------------------- In [8] there is very helpful tip to take migration using temporal root acco= unt. These two sentences was that break point... 4.12. Searching for root ------------------------ As stated in [7] net command operates on two servers, both of them is conne= cted using same account name. On other side DST account
2010 Dec 05
2
Windows ACL's on SAMBA file server
I have a Samba 3.5 server running on Ubuntu 10.10 I'm have it the server on my Windows 2003 Domain but am having trouble setting up the ACL's. I can set some of my ACL's for users but it doesn't alwasy stick and apparently giving a user the modify right automatically gives them Full user rigths. This is probably related but it refuses to let me give any of my domain users any
2020 May 15
3
Problems with groups, minimum gidnumber?
On Fri, 15 May 2020, Rowland penny via samba wrote: > On 15/05/2020 13:48, Harald Hannelius wrote: >> >> I created a script that looped on 'getent passwd' from the old DC. It >> called samba-tool and pdbedit to add the users; >> >> samba-tool user create $username Some2pass/e --use-username-as-cn >> --nis-domain=sad --unix-home=$home
2012 Feb 15
3
Samba domain member server using only nss ldap
I have NT4 domain on samba-3.x integrated with LDAP. I need to use domain users in the shares permissions On the domain member server I have the following smb.conf [global] workgroup = W3 server string = File server netbios name = FS1 security = domain load printers = no show add printer wizard = no printcap name = /dev/null disable spoolss = yes log file =
2004 Aug 05
3
LDAP Idmap
I'm having quite a bit of trouble getting an LDAP directory set up for the idmap backend for winbind. I've been working on it for quite a while, and haven't found any very helpful websites or anything. I've found quite a bit on how to set up a PDC using LDAP, which would be nice, but I already have the PDC... I just need LDAP to host UID's and GID's. The things I'd like
2016 Jun 30
1
Rights issue on GPO
Am 30.06.2016 um 12:00 schrieb mathias dufresne: > Sorry to ask that but this thread is quite long and that makes > understanding difficult, at least to me. What is the status of all that? I > believe at one moment it was writtent using winbindd is solution, that with > winbindd instead of winbind we don't need to synchronize idmap.ldb to get > GPOs working well even with
2016 Dec 09
5
How to join join Ubuntu desktop to AD
> On 9 Dec 2016, at 14:26, lingpanda101 via samba <samba at lists.samba.org> wrote: > > Still no luck getting getent to retrieve user information. I have uid's and gid's setup for all users I am attempting to query. But did you give Domain Users a gid? If you don’t do that, winbind and getent will not find any UNIX users (doesn’t matter if the users have a uid and gid
2013 Nov 28
1
Issues on Samba4 AD DC GPO's with Sites and Winbind
Hello Samba-List, Recently I ran into a few access rights problems with GPO's. I have an test environment running with four samba4 AD DC's (sernet 4.1.2/debian wheezy). Used the Script's from the samba wiki for sysvol replication. The AD Database is comming from an classic upgrade and i have "idmap_ldb:use rfc2307 = yes" in my smb.conf. Some groups like for example
2018 Nov 19
4
getenv does not return any AD DOMAIN users or groups - ?nsswitch is not setup for Samba?
>What is wrong with the Samba wiki, what didn't go exactly like the wiki ? https://wiki.samba.org/index.php/Maintaining_Unix_Attributes_in_AD_using_ADUC Well take this wiki that I'm trying to follow to add the AD uid/gid to the objects. It's helpful and confusing, but maybe because I'm just not informed enough. I got the property pages to show in AD Users & Computers,
2010 Dec 01
0
ACLs, NT_STATUS_ACCESS_DENIED, etc.
Hey, all. I've got some irksome issues, and would love it if someone could show me where I'm going wrong. First and foremost, I can access the folders, create new ones, etc. But copying stuff from an existing Windows share (with ACLs), not so much. Likewise when I try to assign permissions. I wind up with stuff like [2010/12/01 02:56:34, 0]
2016 Jun 29
2
Rights issue on GPO
On 29/06/16 16:01, Achim Gottinger wrote: > Did you have an chance to look at your method for replication yet > Rowland? > > Am 27.06.2016 um 14:44 schrieb Rowland penny: >>> Thank you for the test. Do you run samba-tool ntacl sysvolreset >>> after rsync on dc2? >> >> This may be where the problems come in, let me look into this and >> report back
2008 Nov 06
4
Trying to get uid and gid to match and getent to work
I am using the following in my smb.conf on samba-3.0.28-0.el5.8 idmap domains = MYDOMAIN idmap config MYDOMAIN:backend = rid idmap config MYDOMAIN:base_rid = 998 idmap config MYDOMAIN:range = 998 - 49999 idmap uid = 998-20000 idmap gid = 998-20000 template homedir = /home/users/%U # template primary group =
2018 May 08
2
Verifying idmap.ldb consistency across domain controllers
On 5/8/2018 9:07 AM, Rowland Penny via samba wrote: > On Tue, 8 May 2018 08:59:52 -0400 > lingpanda101 via samba <samba at lists.samba.org> wrote: > >> Hello, >> >>     Is there a command or quick way to verify idmap.ldb is >> consistent across domain controllers? Similar to using samba-tool to >> compare two ldap databases? Thanks. >> > No,
2011 Mar 25
2
Winbindd where to use it ? in which environnement ?
Dear I need help about know what is the real necessary to use Winbindd daemon ? After reading many wikis it seems that you need to use Winbindd only when you need to connect samba to any "Microsoft Windows NT domains" such has NT4 PDC or Active Directory. Is it true that you "did not need" winbindd when you want Samba act has a Primary Domain Controller ? Best regards and
2018 Nov 19
2
getenv does not return any AD DOMAIN users or groups - ?nsswitch is not setup for Samba?
>What is the AD DC ? Windows 2012 Server DC's >If it is a Windows DC, is 'IDMU' installed (also known as 'services for >Unix) ? No, Services for Unix are not installed, but I did install the NIS for Unix for the AD Users & Computers app and that all works fine. I did however find the Samba LDIF file for preparing a Directory Schema import file, and I did that. That
2018 Nov 13
2
Upgraded to 4.8 - forced to use winbindd - retro how to missing?
We recently upgraded a test server to samba-4.8.3.... but wonder how to reproduce the legacy behavior with winbind now forced into the picture for better or worse. We specifically do not want any of the whiz-bang capabilities of winbind, just the old familiar mapping of windows usernames to unix usernames. It seems not sufficient to omit winbind settings in smb.conf; i.e., the defaults force the
2016 Dec 09
2
How to join join Ubuntu desktop to AD
Just to confirm that it can be done, I followed the wiki and joined my Ubuntu 16.04 desktop to a Samba AD using the Ubuntu distro provided packages. I'm not sure if it's relevant, but the Samba AD DCs are also running Ubuntu 16.04 with the distro provided packages. Mike E. On Fri, Dec 9, 2016 at 10:55 AM, Rowland Penny via samba < samba at lists.samba.org> wrote: > On Fri, 9
2008 Apr 10
1
Tdbtool in Samba 3.0.28a
Hello, I'm wondering if tdbtool is working in new samba. I have some UID's, which I have to delete but when i'm starting tdbtool, next open /usr/local/samba/var/locks/winbindd_idmap.tdb and trying to delete UID 109 for example, i get "delete failed", when I type "keys" command in tdbtool, I got all UID's GID's and SID's and what I was found on the list
2011 Mar 15
2
create_builtin_administrators: Failed to create Administrators (Solaris 10)?
Hi All, Samba 3.0.37 is working on my Solaris 10 (Sun Fire T5520) Sparc server but /var/samba/log/smbd.log displayed the following error: $ tail -f log.smbd smbd version 3.0.37 started. Copyright Andrew Tridgell and the Samba Team 1992-2009 [2011/03/15 11:04:44, 0] auth/auth_util.c:(844) create_builtin_administrators: Failed to create Administrators [2011/03/15 11:04:44, 0]
2007 Sep 24
2
Q: how to collect user/group-names
Hi Sorry if it's not 100% appropriate for this list, cannot think of better place to find people with lots of know-how from Unix and Windows. I'm currently working on replacing EMC's Celerra file servers by Linux/Samba. The SID to UID/GID mapping table on Celerra is very large, ~50'000 entries and I don't want to pollute my LDAP server with all this (using winbind with LDAP