Displaying 20 results from an estimated 40000 matches similar to: "LDAP recommendations please"
2017 Mar 24
3
4 DC's to downgrade
Okay I didn't read that. surprised that it should work with the databases as is. The dbcheck function was quite involved when it was run on the 4.5.5. update.
On Thursday, 23 March 2017, 20:21, Ray Klassen <julius_ahenobarbus at yahoo.co.uk> wrote:
After upgrade massive slowdown network wide. Does not make sense that it's the samba, but I've nothing left. Question
2010 Nov 24
1
VPN/WAN Domain members
I have about 60 PC's running windows XP behind vpn routers in different
locations. I find that they lose connection or sync (or whatever the right word
is) to the domain periodically, probably when the vpn shuts down due to low
demand. The result is that any domain user not already in the local password
hash cache cannot log in and any local share with domain permissions on it will
not
2018 Sep 12
2
eventlog functionality
'right structure' is a bit above my level of knowledge.
microsoft documentation on NetSessionEnum level 10 has some sample code but I'm not sure how to implement it...
On Wednesday, 12 September 2018, 07:59:50 GMT-7, Andrew Bartlett via samba <samba at lists.samba.org> wrote:
On Wed, 2018-09-12 at 14:33 +0000, ray klassen via samba wrote:
> Are you saying that
2010 Apr 16
2
Any pitfalls updating straight from 3.0.34 to 3.5.2?
Okay, so I've just put the sernet repo file in my yum.repos.d directory and a yum update will elevate my samba server to the latest version. Is there any pitfall that is out there that I can avoid before yum updating.
Centos 5.3
samba3-3.0.34-37 & related packages
openldap-2.3.43-3.el5 & related packages
I still have my samba3-3.0.34 packages squirreled away so I can force downgrade
2018 Jul 31
3
Winbind Craziness
Failed to find cifs/madmain at LAND.SUPERORG.COM(kvno 5) in keytab MEMORY:cifs_srv_keytab (arcfour-hmac-md5)]
so far nothing works forever.
the above error happens when the pc's are unable to connect to shares net leave/join fixes the problem temporarily.
seems to relate to
[Samba] Failed to find cifs/foo.bar in keytab MEMORY:cifs_srv_keytab (arcfour-hmac-md5)]
On Monday, 30
2018 Nov 22
5
Index Corruption xBase database
Hello,
I've been working with a xBase database (similar to dBase) in a multiuser
application. There are like 40 users working on the database on the same
time reading and like 10 writing information.
Sometimes the CDX files (Index Files) get corrupted and is it's necessary
to pack the tables (rebuild the indexes).
I have notice using the smbstatus -B command the following
Pid
2018 Nov 22
1
Index Corruption xBase database
from the man page. I've never tried veto oplocks. But it looks like
something that might be useful...
> veto oplock files (S)
>
> This parameter is only valid when the oplocks parameter is turned
> on for a share. It allows the Samba administrator to selectively
> turn off the granting of oplocks on selected files that match a
>
2018 Jul 28
3
Winbind Craziness
On Fri, 27 Jul 2018 21:25:04 +0000 (UTC)
ray klassen via samba <samba at lists.samba.org> wrote:
> so I had some time to follow this bunny trailand found that even
> though all the other servers had no problems this one continued
> to.Every so often a new computer couldn't connect and then it would
> be all better after a net leave/net join. Net join would not work
>
2013 Aug 02
1
system_groups_user syntax especially in LDAP
so if possible, I'd like an example of how to include system_groups_user in the userdb setup.
I'm using ldap, but I could revert to using pam on ldap.
There is a ldap query (gleaned from smbldap-tools) that will return a list of groups for a user
(&(objectclass=posixGroup)(memberuid=%u)) but I don't know if the ldap driver will handle it but above all I can't figure out how
2017 Mar 12
2
challenge/response problem in 4.5.5
freely quoting from something I posted on #samba a couple of hours ago
###########
it appears that challenge/response is actually broken in 4.5.5 Have upgraded 4 dc's and now winbind/freeradius does not work.
focused on the radius box thinking that was the problem -- till I finally ran
wbinfo -a user%password
on all the dc's and they all behaved the same. -> plaintext succeeded
2018 Aug 01
2
Winbind Craziness
Hai,
In addition to Rowlands question.
Can you run this script and post it to the list also.
It gives a complete overview of what your running.
Its basicly what Rowland asked, but with a few extra things.
https://raw.githubusercontent.com/thctlo/samba4/master/samba-collect-debug-info.sh
And the output of:
kinit Administrator
klist
klist -ket /var/lib/samba/private/secrets.keytab
2018 Sep 11
2
eventlog functionality
so I sent you the dump separately. and i tried a persistent drive mapping to \\DC\netlogon which I figured should create a more permanent session as you described. That worked the same.
On Tuesday, 11 September 2018, 08:21:50 GMT-7, Andrew Bartlett via samba <samba at lists.samba.org> wrote:
On Tue, 2018-09-11 at 15:14 +0000, ray klassen via samba wrote:
>
> Yes, after
2018 Sep 12
2
eventlog functionality
On Wed, Sep 12, 2018 at 09:30:19AM -0700, Ray Klassen via samba wrote:
>
> and from the what the hell department. I did it. Comparing
>
> https://docs.microsoft.com/en-us/windows/desktop/api/lmshare/ns-lmshare-_session_info_1
>
>
> and
>
> https://docs.microsoft.com/en-us/windows/desktop/api/lmshare/ns-lmshare-_session_info_10
>
> and
>
>
2018 Sep 11
2
eventlog functionality
Yes, after further research the solution could possibly be to create a python script to monitor the json output in log.samba and push out eventlog formatted events to 'Security' with eventlogadm. Seems a lot of work.
The appliance in question also supports getting the necessary info via the netapi call "netsessionenum" I have tried that and a wireshark dump shows samba replying
2017 Mar 23
3
4 DC's to downgrade
all currently 4.5.5 want to downgrade them all to 4.4.12. What's the best method?
I'm thinking that if I stop before install, remove all the right ldb files, install and rejoin, that should do it for everything but the fsmo master.
if I transfer all the roles to a new 4.4.12 dc, and do as above that will take care of that one and we will all be over to the new "old" version
2018 Sep 12
2
eventlog functionality
On Wed, 2018-09-12 at 15:34 +0000, ray klassen wrote:
> Farther down the rabbit hole, I would have to create a
> init_srv_sess_info_10 to go with it?
Yes.
Andrew Bartlett
--
Andrew Bartlett http://samba.org/~abartlet/
Authentication Developer, Samba Team http://samba.org
Samba Developer, Catalyst IT http://catalyst.net.nz/services/samba
2019 Apr 16
5
strange gpo behaviour
-- 3 samba 4.10.2 DC's, binaries compiled from tarballs on Debian stretch
-- 2 DC's are on the same (main office) LAN, one is at another location
vpn'ed to the main office
-- randomly windows 10 pc's will not be able to complete a gpupdate
(repeated tries) with no consistency as to solutions. Sometimes the pc's
can't connect to the \\dc\sysvol\local.somedomain.com
--
2018 Sep 12
2
eventlog functionality
Are you saying that it could be as simple as adding a case like this one headed up by a 'case 10:' ?
case 1: werr = init_srv_sess_info_1(p,
r->in.info_ctr->ctr.ctr1,
r->in.resume_handle,
2023 Mar 11
2
Azure AD Sync support in 4.18.0
On Fri, 2023-03-10 at 13:06 -0800, Ray Klassen via samba wrote:
> I'm very interested in this. Can one of the devs elaborate on what has been
> accomplished with this? Specifically, I'd like to know if the support is
> bidirectional -- can azure change passwords in samba ad?
No, I just fixed the issue where it couldn't pull a password from Samba
to Azure AD
Azure AD Cloud
2020 Apr 17
2
markedly fewer objects in dbcheck after upgrade to 4.12.1 from 4.11.6
Recently upgraded my 3 dc's to samba 4.12.1
as part of the install ran dbcheck --cross-ncs on each dc after make install
first dc dbcheck reported 5474 objectssecond dc reported 5476 objects
last dc (the one with all the fsmo roles, etc.)? reported 1406 objects!
now all of them report 1406 objects. (drs replication obviously)
ADUC, DNS, GPO manager all seem to have the requisite data. I