similar to: winbind and group permissions

Displaying 20 results from an estimated 40000 matches similar to: "winbind and group permissions"

2018 Jan 16
2
idmap limit?
Hi, no, that's my fault. I changed the UIDs and user names in my "ls -l" to unpersonalized/example data for my mail and didn't think about putting these values into the range. A better unpersonalized data example would look like: ---------- drwx------ 43 DOM\user1        DOM\group  4096 Jan 10 08:00 user1 drwx------   5 DOM\user2        DOM\group  4096 Jan 11 08:13 user2
2018 Jan 16
2
idmap limit?
Hi, we are running a file server as member server of a windows 2012 domain. Now we are facing the problem, that some UIDs are not mapped to the user names by the running winbindd process. This results in "nobody" usernames for nfs shares mounted by other clients. When doing an "ls -l" in the homes directory on the member server (file server), the list looks like:
2017 Jul 10
2
domain member idmap wbinfo WBC_ERR_DOMAIN_NOT_FOUND
Hi, I've done a classic upgrade to from samba 3.6.23 to samba 4.6.5 bringing across all the user accounts. The samba 3.6.23 we set up with smbldap as an NT Domain with OpenLDAP. After a lot of effort the classic upgrade worked well but now I'm a bit stuck with idmapping. The new AD DC is running 4.6.5 on CentOS7 and I can connect using ADUC. I set up a separate AD DM on a another CentOS7
2018 Jan 16
2
idmap limit?
Ok, you are completely right. Here are the real numbers with changed user names: drwx------ 43 DOM\user1        DOM\domain-user  4096 Jan 10 08:00 user1 drwx------   5 DOM\user2        DOM\domain-user  4096 Jan 11 08:13 user2 drwx------ 92 DOM\user3        DOM\domain-user   4096 Jan 16 08:39 user3 drwx------   3        133265        DOM\domain-user   4096 Sep  7 2015 user4 drwx------   7       
2018 Apr 25
5
formating DVR-RW
My Centos 6 wodim tell me that it can only format DVD+RW. I have DVD-RWs. Even when I format a DVD-RW on my standalone DVD recorder, wodim still will not write to it. Is there a centos-6-useable mechanism for formatting and writing DVD-RWs? -- Michael hennebry at web.cs.ndsu.NoDak.edu "Sorry but your password must contain an uppercase letter, a number, a haiku, a gang sign, a heiroglyph,
2013 Dec 07
2
samba4 DC, internal winbind_server: external idmap problem
Hi! i run samba 4.1.2 in DC mode. win7 client joined to this domain successfully. now i try to configure external idmap. i would like it to use our existing ldap server: idmap config DOM : backend = rfc2307 idmap config DOM : range = 1110000-1119999 idmap config DOM : ldap_server = stand-alone idmap config DOM : ldap_url = ldap://ldap.domain.ru idmap config DOM : ldap_user_dn =
2018 Jan 16
3
idmap limit?
Am 16.01.2018 um 17:26 schrieb Rowland Penny via samba: > On Tue, 16 Jan 2018 16:54:17 +0100 > Andreas Hauffe via samba <samba at lists.samba.org> wrote: > >> Ok, you are completely right. Here are the real numbers with changed >> user names: >> >> drwx------ 43 DOM\user1        DOM\domain-user  4096 Jan 10 08:00 >> user1 drwx------   5 DOM\user2       
2020 Feb 25
2
Windows ACLs : problems
Am 25.02.20 um 14:30 schrieb Rowland penny via samba: > On 25/02/2020 13:24, Stefan G. Weichinger via samba wrote: >> Am 25.02.20 um 14:16 schrieb Rowland penny via samba: >> >>> Do you have a user.map line in smb.conf ? >>> >>> Something like this: >>> >>> username map = /etc/samba/smb.conf >> It should be more like: >>
2017 Jul 10
1
domain member idmap wbinfo WBC_ERR_DOMAIN_NOT_FOUND
On 10/07/17 17:05, Rowland Penny via samba wrote: > On Mon, 10 Jul 2017 14:17:42 +1000 > Tom Robinson via samba <samba at lists.samba.org> wrote: > >> Hi, >> >> I've done a classic upgrade to from samba 3.6.23 to samba 4.6.5 >> bringing across all the user accounts. The samba 3.6.23 we set up >> with smbldap as an NT Domain with OpenLDAP. After a
2014 Jun 03
1
Interdomain Trusts
Does anyone know if interdomain trusts work in samba at all and what versions they do? I am trying to get a 1 way trust working between two domains and DOM A (which samba is joined to works in mapping users via winbind) just not the one way trust for the other domain.... DOM B Samba is just a joined member of the domain A with security = ads with nothing more than winbind id rid maps for both
2020 Feb 25
2
Windows ACLs : problems
Am 25.02.20 um 14:51 schrieb Rowland penny via samba: > On 25/02/2020 13:37, Stefan G. Weichinger via samba wrote: >> right now, will retest. >>> OK, I give in, I will alter the wiki page, if you use the 'rid' or >>> 'autorid'? backend, you can use Domain Admins, just do not give Domain >>> Admins a gidNumber. >> 1) why and how could I have
2011 Apr 12
0
winbind problem with BUILTIN?
I shut my Samba PDC and all members down for some PC rearranging and now having an issue with one member server on Ubuntu 10.12 with Samba 3.5.4 after restarting all. It would not connect, I tried to remove the computer name from LDAP and re-join the domain, that was successfully joined and the entry reappears in LDAP, but it times out when trying to connect to that host via the network or
2018 Jul 24
2
granting SeDiskOperatorPrivilege
I fail to set SeDiskOperatorPrivilege on a samba DM and I suspect the german umlauts: # wbinfo -g dom�nencomputer dom�nen-benutzer dom�nen-g�ste dom�nen-admins (bad locale, umlauts displayed as special ugly chars) but the group "domänen-admins" = "Domain Admins" is there. now: # net rpc rights grant "CUSTOMER\domänen-admins" SeDiskOperatorPrivilege -U
2008 Jan 14
1
Failed to parse cldap reply
Dear List, I seem to have a problem with winbind. Have successfully joined samba to a 2003 AD, but when I start winbind, the logs are full of the following: ==> log.winbindd <== [2008/01/14 11:25:58, 1] libads/cldap.c:recv_cldap_netlogon(247) Failed to parse cldap reply Running wbinfo -t returns: checking the trust secret via RPC calls failed error code was (0x0) Could not check
2018 Jul 26
2
granting SeDiskOperatorPrivilege
Am 25.07.2018 um 09:03 schrieb Stefan G. Weichinger via samba: > Am 2018-07-24 um 09:48 schrieb Stefan G. Weichinger via samba: >> >> I fail to set SeDiskOperatorPrivilege on a samba DM and I suspect the >> german umlauts: >> >> # wbinfo -g >> dom�nencomputer >> dom�nen-benutzer >> dom�nen-g�ste >> dom�nen-admins >> >> (bad
2018 Jul 26
2
granting SeDiskOperatorPrivilege
Am 2018-07-26 um 18:14 schrieb Rowland Penny via samba: > On Thu, 26 Jul 2018 17:46:26 +0200 > "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote: >> I also don't know how to use that group "domänen-benutzer" in "valid >> users" or "read list" ... > Stefan, you know all that knowledge you learnt about
2004 Jun 07
1
not working : valid users = @"DOM+USER"
Hi, I have Samba 3.0.4 on Solaris 9, recent patches applied. Samba is integrated in domain (security = domain). I have compiled and configured winbind, but not pam and no ldap. Ncsd is stopped. Winbind works OK, I can connect to share and users get mapped on-the-fly to UNIX uids and gids in the ranges specified in smb.conf. My config is included below with some tweaks to protect the innocent.
2018 Sep 11
2
"missing security tab" and related ACL issues
Am 07.09.18 um 20:07 schrieb Rowland Penny via samba: > On Fri, 7 Sep 2018 19:09:37 +0200 > "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote: >> But >> >> # net rpc rights grant "Domänen-Admins" SeDiskOperatorPrivilege -U >> "mydomain\administrator" >> >> fails >> >> also for
2017 Aug 22
2
Winbind with krb5auth for trust users
Hi, the external trust, we have, is a one directional external trust. So users of the trusted dom can logon on local dom clients, but not the other way around. In case of "wbinfo -a" all communication is between the client and the domain controller of the local domain, which is the proxy for the auth process. In case of "wbinfo -K" all communication is between the client
2001 Dec 22
1
"Secret is bad" -- Winbind with Samba 2.2.2 and Windows 2000 (native mode)
I'm having problems getting "Secret is bad" with the command "wbinfo -t". I get good results with "wbinfo -u", "wbinfo -g", and "wbinfo -m". I also have positive results with all the samba tests in DIAGNOSIS.txt. I've tried deleting the computer account and recreating many times on my Windows 2000 Domain Controller (everything is native