Displaying 20 results from an estimated 40000 matches similar to: "winbind and group permissions"
2018 Jan 16
2
idmap limit?
Hi,
no, that's my fault. I changed the UIDs and user names in my "ls -l" to
unpersonalized/example data for my mail and didn't think about putting
these values into the range. A better unpersonalized data example would
look like:
----------
drwx------ 43 DOM\user1 DOM\group 4096 Jan 10 08:00 user1
drwx------ 5 DOM\user2 DOM\group 4096 Jan 11 08:13 user2
2018 Jan 16
2
idmap limit?
Hi,
we are running a file server as member server of a windows 2012 domain.
Now we are facing the problem, that some UIDs are not mapped to the user
names by the running winbindd process. This results in "nobody"
usernames for nfs shares mounted by other clients.
When doing an "ls -l" in the homes directory on the member server (file
server), the list looks like:
2017 Jul 10
2
domain member idmap wbinfo WBC_ERR_DOMAIN_NOT_FOUND
Hi,
I've done a classic upgrade to from samba 3.6.23 to samba 4.6.5 bringing across all the user
accounts. The samba 3.6.23 we set up with smbldap as an NT Domain with OpenLDAP. After a lot of
effort the classic upgrade worked well but now I'm a bit stuck with idmapping.
The new AD DC is running 4.6.5 on CentOS7 and I can connect using ADUC. I set up a separate AD DM on
a another CentOS7
2018 Jan 16
2
idmap limit?
Ok, you are completely right. Here are the real numbers with changed
user names:
drwx------ 43 DOM\user1 DOM\domain-user 4096 Jan 10 08:00 user1
drwx------ 5 DOM\user2 DOM\domain-user 4096 Jan 11 08:13 user2
drwx------ 92 DOM\user3 DOM\domain-user 4096 Jan 16 08:39 user3
drwx------ 3 133265 DOM\domain-user 4096 Sep 7 2015 user4
drwx------ 7
2018 Apr 25
5
formating DVR-RW
My Centos 6 wodim tell me that it can only format DVD+RW.
I have DVD-RWs.
Even when I format a DVD-RW on my standalone DVD recorder,
wodim still will not write to it.
Is there a centos-6-useable mechanism
for formatting and writing DVD-RWs?
--
Michael hennebry at web.cs.ndsu.NoDak.edu
"Sorry but your password must contain an uppercase letter, a number,
a haiku, a gang sign, a heiroglyph,
2013 Dec 07
2
samba4 DC, internal winbind_server: external idmap problem
Hi!
i run samba 4.1.2 in DC mode. win7 client joined to this domain
successfully.
now i try to configure external idmap.
i would like it to use our existing ldap server:
idmap config DOM : backend = rfc2307
idmap config DOM : range = 1110000-1119999
idmap config DOM : ldap_server = stand-alone
idmap config DOM : ldap_url = ldap://ldap.domain.ru
idmap config DOM : ldap_user_dn =
2018 Jan 16
3
idmap limit?
Am 16.01.2018 um 17:26 schrieb Rowland Penny via samba:
> On Tue, 16 Jan 2018 16:54:17 +0100
> Andreas Hauffe via samba <samba at lists.samba.org> wrote:
>
>> Ok, you are completely right. Here are the real numbers with changed
>> user names:
>>
>> drwx------ 43 DOM\user1 DOM\domain-user 4096 Jan 10 08:00
>> user1 drwx------ 5 DOM\user2
2020 Feb 25
2
Windows ACLs : problems
Am 25.02.20 um 14:30 schrieb Rowland penny via samba:
> On 25/02/2020 13:24, Stefan G. Weichinger via samba wrote:
>> Am 25.02.20 um 14:16 schrieb Rowland penny via samba:
>>
>>> Do you have a user.map line in smb.conf ?
>>>
>>> Something like this:
>>>
>>> username map = /etc/samba/smb.conf
>> It should be more like:
>>
2017 Jul 10
1
domain member idmap wbinfo WBC_ERR_DOMAIN_NOT_FOUND
On 10/07/17 17:05, Rowland Penny via samba wrote:
> On Mon, 10 Jul 2017 14:17:42 +1000
> Tom Robinson via samba <samba at lists.samba.org> wrote:
>
>> Hi,
>>
>> I've done a classic upgrade to from samba 3.6.23 to samba 4.6.5
>> bringing across all the user accounts. The samba 3.6.23 we set up
>> with smbldap as an NT Domain with OpenLDAP. After a
2014 Jun 03
1
Interdomain Trusts
Does anyone know if interdomain trusts work in samba at all and what
versions they do? I am trying to get a 1 way trust working between two
domains and DOM A (which samba is joined to works in mapping users via
winbind) just not the one way trust for the other domain.... DOM B
Samba is just a joined member of the domain A with security = ads with
nothing more than winbind id rid maps for both
2020 Feb 25
2
Windows ACLs : problems
Am 25.02.20 um 14:51 schrieb Rowland penny via samba:
> On 25/02/2020 13:37, Stefan G. Weichinger via samba wrote:
>> right now, will retest.
>>> OK, I give in, I will alter the wiki page, if you use the 'rid' or
>>> 'autorid'? backend, you can use Domain Admins, just do not give Domain
>>> Admins a gidNumber.
>> 1) why and how could I have
2011 Apr 12
0
winbind problem with BUILTIN?
I shut my Samba PDC and all members down for some PC rearranging and now
having an issue with one member server on Ubuntu 10.12 with Samba 3.5.4
after restarting all. It would not connect, I tried to remove the
computer name from LDAP and re-join the domain, that was successfully
joined and the entry reappears in LDAP, but it times out when trying to
connect to that host via the network or
2018 Jul 24
2
granting SeDiskOperatorPrivilege
I fail to set SeDiskOperatorPrivilege on a samba DM and I suspect the
german umlauts:
# wbinfo -g
dom�nencomputer
dom�nen-benutzer
dom�nen-g�ste
dom�nen-admins
(bad locale, umlauts displayed as special ugly chars)
but the group "domänen-admins" = "Domain Admins" is there.
now:
# net rpc rights grant "CUSTOMER\domänen-admins" SeDiskOperatorPrivilege
-U
2008 Jan 14
1
Failed to parse cldap reply
Dear List,
I seem to have a problem with winbind.
Have successfully joined samba to a 2003 AD, but when I start winbind, the logs are full of the following:
==> log.winbindd <==
[2008/01/14 11:25:58, 1] libads/cldap.c:recv_cldap_netlogon(247)
Failed to parse cldap reply
Running wbinfo -t returns:
checking the trust secret via RPC calls failed
error code was (0x0)
Could not check
2018 Jul 26
2
granting SeDiskOperatorPrivilege
Am 25.07.2018 um 09:03 schrieb Stefan G. Weichinger via samba:
> Am 2018-07-24 um 09:48 schrieb Stefan G. Weichinger via samba:
>>
>> I fail to set SeDiskOperatorPrivilege on a samba DM and I suspect the
>> german umlauts:
>>
>> # wbinfo -g
>> dom�nencomputer
>> dom�nen-benutzer
>> dom�nen-g�ste
>> dom�nen-admins
>>
>> (bad
2018 Jul 26
2
granting SeDiskOperatorPrivilege
Am 2018-07-26 um 18:14 schrieb Rowland Penny via samba:
> On Thu, 26 Jul 2018 17:46:26 +0200
> "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
>> I also don't know how to use that group "domänen-benutzer" in "valid
>> users" or "read list" ...
> Stefan, you know all that knowledge you learnt about
2004 Jun 07
1
not working : valid users = @"DOM+USER"
Hi,
I have Samba 3.0.4 on Solaris 9, recent patches applied. Samba is
integrated in domain (security = domain). I have compiled and
configured winbind, but not pam and no ldap. Ncsd is stopped.
Winbind works OK, I can connect to share and users get mapped on-the-fly
to UNIX uids and gids in the ranges specified in smb.conf. My config is
included below with some tweaks to protect the innocent.
2018 Sep 11
2
"missing security tab" and related ACL issues
Am 07.09.18 um 20:07 schrieb Rowland Penny via samba:
> On Fri, 7 Sep 2018 19:09:37 +0200
> "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
>> But
>>
>> # net rpc rights grant "Domänen-Admins" SeDiskOperatorPrivilege -U
>> "mydomain\administrator"
>>
>> fails
>>
>> also for
2017 Aug 22
2
Winbind with krb5auth for trust users
Hi,
the external trust, we have, is a one directional external trust. So
users of the trusted dom can logon on local dom clients, but not the
other way around. In case of "wbinfo -a" all communication is between
the client and the domain controller of the local domain, which is the
proxy for the auth process. In case of "wbinfo -K" all communication is
between the client
2001 Dec 22
1
"Secret is bad" -- Winbind with Samba 2.2.2 and Windows 2000 (native mode)
I'm having problems getting "Secret is bad" with the command "wbinfo
-t".
I get good results with "wbinfo -u", "wbinfo -g", and "wbinfo -m".
I also have positive results with all the samba tests in DIAGNOSIS.txt.
I've tried deleting the computer account and recreating many times on my
Windows 2000 Domain Controller (everything is native