Displaying 20 results from an estimated 1000 matches similar to: "incorrect gpo acl after sysvolreset (rc6)"
2015 Nov 16
0
samba-tool ntacl sysvolcheck and sysvolreset
On my small, one DC AD setup, where I just followed the wiki and did not
(!) make any other changes except for working on the AD through the
RSAT, I ran samba-tool ntacl sysvolcheck and got the following output:
--------------------snip--------------------
ERROR(<class 'samba.provision.ProvisioningError'>): uncaught exception -
ProvisioningError: DB ACL on GPO directory
2013 Jan 10
1
ACL on GPO directory does not match expected value from GPO object. AGAIN.
Hi all,
Some (then all) of our workstations were complaining about incorrect
ACLs on GPOs and were unable to read the gpt.ini to apply the GPOs.
So I did a sysvolcheck and sure enough I'd lost the ACLs when I moved
our sysvol share to a new location on the server (whoops, mea culpa).
I ran a sysvolreset which took a long time to return (some 5 minutes,
please see my post on slow winbind
2017 Aug 24
0
sysvolreset doesn't reset all ACLs
On Thu, 24 Aug 2017 12:03:42 +0200
Sven Schwedas via samba <samba at lists.samba.org> wrote:
> > root at graz-dc-1b:~# samba --version
> > Version 4.5.8-Debian
> > root at graz-dc-1b:~# samba-tool ntacl sysvolreset && echo "no error"
> > no error
> > root at graz-dc-1b:~# samba-tool ntacl sysvolcheck
> > ERROR(<class
2017 Aug 24
0
sysvolreset doesn't reset all ACLs
On Thu, 24 Aug 2017 12:41:36 +0200
Sven Schwedas via samba <samba at lists.samba.org> wrote:
> On 2017-08-24 12:27, Rowland Penny via samba wrote:
> > On Thu, 24 Aug 2017 12:03:42 +0200
> > Sven Schwedas via samba <samba at lists.samba.org> wrote:
> >
> >>> root at graz-dc-1b:~# samba --version
> >>> Version 4.5.8-Debian
> >>>
2017 Mar 07
2
Problem sysvolreset
Hi guys!
I´m experiencing a problem with samba 4 policies and acl and i don´t known
how it starded to do.
Some problems like copy Policies, edit them, etc. It seems like
permissions, but i´ve checked the list and can´t find a solution.
Here are some outputs that i hope can help to understand:
# Sysvol permissions:
drwxrwxrwx+ 3 root DOMAIN\domain admins 4096 Mar 7 12:17 sysvol
#
2016 Apr 22
3
Samba 4.4.2 "samba-tool ntacl sysvolreset" is not working correctly
Samba 4.4.2
I was doing some maintenance work and I noticed that sysvolcheck gave
some error. I ran "samba-tool ntacl sysvolreset". Running sysvolcheck
again still gives errors. I tried with several sysvol backups and the
result is always the same. The affected policies are always "Default
Domain Policy" and "Default Domain Controllers Policy". These policies
2015 Nov 16
0
Win Clients and DNS
On 16/11/15 11:19, Viktor Trojanovic wrote:
> So I ran a samba-tool ntacl sysvolcheck, and the following error
> message came up:
>
> --------------------snip--------------------
> ERROR(<class 'samba.provision.ProvisioningError'>): uncaught exception
> - ProvisioningError: DB ACL on GPO directory
>
2020 May 19
0
sysvolcheck and sysvolreset errors
On 19/05/2020 21:29, Roy Eastwood wrote:
>> You could try using a script Louis wrote, see here:
>> https://github.com/thctlo/samba4/blob/master/samba-check-set-sysvol.sh
>>
>> The 'idmap config' lines are nothing to worry about, you cannot set them on a DC, but, for some reason, testparm etc warns about
>> them.
>>
>> Rowland
>>
> Sorry, I
2017 Aug 24
3
sysvolreset doesn't reset all ACLs
On 2017-08-24 12:27, Rowland Penny via samba wrote:
> On Thu, 24 Aug 2017 12:03:42 +0200
> Sven Schwedas via samba <samba at lists.samba.org> wrote:
>
>>> root at graz-dc-1b:~# samba --version
>>> Version 4.5.8-Debian
>>> root at graz-dc-1b:~# samba-tool ntacl sysvolreset && echo "no error"
>>> no error
>>> root at
2015 Nov 16
0
Win Clients and DNS
On 16.11.2015 13:48, Viktor Trojanovic wrote:
> See replies below
>
> On 16.11.2015 12:39, Rowland Penny wrote:
>> On 16/11/15 11:19, Viktor Trojanovic wrote:
>>> So I ran a samba-tool ntacl sysvolcheck, and the following error
>>> message came up:
>>>
>>> --------------------snip--------------------
>>> ERROR(<class
2017 Aug 24
4
sysvolreset doesn't reset all ACLs
> root at graz-dc-1b:~# samba --version
> Version 4.5.8-Debian
> root at graz-dc-1b:~# samba-tool ntacl sysvolreset && echo "no error"
> no error
> root at graz-dc-1b:~# samba-tool ntacl sysvolcheck
> ERROR(<class 'samba.provision.ProvisioningError'>): uncaught exception - ProvisioningError: DB ACL on GPO directory
2014 Jun 23
1
Command samba-tool ntacl sysvolcheck
Can anyone explain what is happening when I run / usr / local / samba / bin /
samba-tool ntacl sysvolcheck it and an error?
ERROR(<class 'samba.provision.ProvisioningError'>): uncaught exception -
ProvisioningError: DB ACL on GPO file
/usr/local/samba/var/locks/sysvol/tdsfs01.net/Policies/{31B2F340-016D-11D2-945F-00C04FB984F9}/USER/Scripts/scripts.ini
2015 Nov 16
0
Win Clients and DNS
On 16/11/15 13:25, Ole Traupe wrote:
>
>
> Am 16.11.2015 um 14:06 schrieb Viktor Trojanovic:
>>
>>
>> On 16.11.2015 13:48, Viktor Trojanovic wrote:
>>> See replies below
>>>
>>> On 16.11.2015 12:39, Rowland Penny wrote:
>>>> On 16/11/15 11:19, Viktor Trojanovic wrote:
>>>>> So I ran a samba-tool ntacl sysvolcheck, and
2015 Nov 16
0
Win Clients and DNS
On 16/11/15 14:00, Viktor Trojanovic wrote:
>
>
> On 16.11.2015 14:44, Rowland Penny wrote:
>> On 16/11/15 13:25, Ole Traupe wrote:
>>>
>>>
>>> Am 16.11.2015 um 14:06 schrieb Viktor Trojanovic:
>>>>
>>>>
>>>> On 16.11.2015 13:48, Viktor Trojanovic wrote:
>>>>> See replies below
>>>>>
2020 May 19
0
sysvolcheck and sysvolreset errors
On 19/05/2020 17:09, Roy Eastwood via samba wrote:
> I have a samba DC based on Debian Buster running samba 4.12.2 from Louis' repo. A second DC on Raspbian buster is running samba
> 4.12.0. I have sysvol replication working using rsync/unison as per the WiKi. I wasn't having any issues until I tried to edit
> a GPO and found that all the acl settings had disappeared. This
2017 Jun 22
0
Fwd: AD Policies are not applying properly
Hi,
No solutions to get out of this?
--
Thanks & Regards,
Anantha Raghava
On 21/06/17 7:05 PM, Anantha Raghava wrote:
> Hi,
>
> We have been consistently having issues with GPO and they are not
> consistent. We are using version 4.6.3 with BIND DNS Backend. As
> suggested in some of our previous communications, when we run the
> samba-tool ntacl sysvolcheck it
2016 Nov 26
0
Everyone ACL problem
On Sat, 26 Nov 2016 11:44:50 +0100
Kévin GUERINEAU via samba <samba at lists.samba.org> wrote:
> Hello list,
>
> I have problems with my PDC Samba Servers and all file servers.
> All DC Server have a compiled Samba 4.4.5. File servers have Samba
> Debian packages.
>
> In all shared folders, the ACL has the group "Everyone" and I can't
> remove it.
2020 May 19
2
sysvolcheck and sysvolreset errors
> You could try using a script Louis wrote, see here:
> https://github.com/thctlo/samba4/blob/master/samba-check-set-sysvol.sh
>
> The 'idmap config' lines are nothing to worry about, you cannot set them on a DC, but, for some reason, testparm etc warns about
> them.
>
> Rowland
>
Sorry, I should have said - I ran louis' script and set the acl's according
2020 May 19
2
sysvolcheck and sysvolreset errors
I have a samba DC based on Debian Buster running samba 4.12.2 from Louis' repo. A second DC on Raspbian buster is running samba
4.12.0. I have sysvol replication working using rsync/unison as per the WiKi. I wasn't having any issues until I tried to edit
a GPO and found that all the acl settings had disappeared. This may have happened when I upgraded the DCs from 4.11.x to 4.12.x
2017 Mar 07
2
Problem sysvolreset
Hi Rowland.
But, samba automaticaly do this mapping.
root at server:/usr/local/src/samba-4.4.10# id 'domain admins'
uid=3000008(DOMAIN\domain admins) gid=3000008(DOMAIN\domain admins)
groups=3000008(DOMAIN\domain admins)
Because of this options in smb.conf:
winbind enum users = yes
winbind enum groups = yes
Can i remove this mapping only for domain admin group?
Thanks
2017-03-07