Displaying 20 results from an estimated 7000 matches similar to: "AD and Linux UID/GID best practices."
2014 May 15
2
routed mode
Hi,
I have installed a centos65_guest_1 system on a centos65 host with
virt-manager.
By default libvirt has a default network in NAT mode. At centos65_guest_1
when pinging to google it works.
But I would like to use a routed mode for production enviroment with some
services online,
like http, ftp, ssh, etc.
I have created the virtual network 192.168.100.0/24 with routed mode, and I
have
2014 Jan 29
2
getent passwd and winbind not work
Hi,
I test (replacement of nslcd ) winbind in member server.
I used Samba4/Winbind howto and howto for member server.
wbinfo -u and wbinfo -g work fine but getent passwd not work (getent not
list user from AD)
Why ?
Anyone have a idea ?
thx
St?phane
-----------------------------------
St?phane PURNELLE Admin. Syst?mes et R?seaux
Service Informatique
2014 Jan 15
2
Samba 4 and Debian
I've wasted the last two days trying to get various versions of samba 4
packages getting to run under Wheezy.
? Wheezy's own packages are incomplete betas.
? Inverse provides their own packages (for SOGo), but they only care
about getting their one use case to work; smbd doesn't work all, winbind
has problems, and the postinst script resets my smb.conf with nonsense.
Before I try
2014 Jul 31
2
XP and virtio
So I need to create a XP vm. I am using lvm logical volumes for
its disk, so I am using virtio. I got the iso in
http://alt.fedoraproject.org/pub/alt/virtio-win/latest/images/bin/images/,
but how do I feed it to the XP install? I did try to mount it as a
floppy and it hung there on "please wait"; I guess that means it did
not like a 70MB iso as its floppy. But it also does not seem to
2015 Jun 25
2
Bi-directional sync for Sysvol folder -- Osync?
Hi,
I was thinking about bidirectional sync of sysvol and i've a question:
?What about DRBD?. You can create a disk partition in every node, create a
DRBD cluster and then mount that partition on sysvol folder. The
sincronization is bidirectional and in real time.
For now i've not tested this option, but i've plans to start some tests.
What is your opinion about this?
Greetings!!
2014 Jul 08
3
log level sticks at 2
Hi,
Seems log level can not be defined in smb.conf any longer. No matter
what i define in [global], testparm -v always reports it at 2.
This is on debian wheezy with sernet 4.1.9-8.
achim~
2015 Jun 25
2
Bi-directional sync for Sysvol folder -- Osync?
Dear Daniel, Klaus
I've try that before
But because of how samba work on the files.
The Advise is No
Without CTDB, you will just shoot yourself on the foot...
On Thu, Jun 25, 2015 at 7:39 PM, Zerwes, Klaus <zerwes at rosalux.de> wrote:
> Just some notes:
> For master <-> master setup (bi-directional sync) you need AFAIK a cluster
> filesystem.
> I have no idea
2015 Jun 23
2
Bi-directional sync for Sysvol folder -- Osync?
Dear Belle,
That produce the similar situation.
Thus I'm trying osync
And the result are much present according to my test case
And configuration are much streamline.
However, I'm not sure how it can work with 2 DC or more...
Thank You
On Mon, Jun 22, 2015 at 9:05 PM, L.P.H. van Belle <belle at bazuin.nl> wrote:
> Hai Min Wai Chan,
>
> I have tested it as shown in
2015 Feb 23
2
sssd config doesn't ask for password
I didn't setup any ssh-keys for authentication yet. Sorry.
> Karel Lang AFD <lang at afd.cz> hat am 23. Februar 2015 um 14:48 geschrieben:
>
>
> Hi there,
> isn't possible, that the problem is just very basic and you've got a
> authentication set via ssh-key on admin locally on the server you try to
> logon?
> Just saying ..
>
> cheers :]
2014 Jun 29
4
Unable to migrate vm from redhat to ubuntu using virsh migrate
Hello All,
I am working on migrating the vm from redhat to ubuntu. the emulator value is as below.
Ubuntu: <emulator>/usr/bin/qemu-system-x86_64</emulator>
redhat: <emulator>/usr/libexec/qemu-kvm</emulator>
When i try to migrate from redhat, i get the following error. It would be great help if you can
suggest how to workaround the issue.
virsh migrate --live --verbose
2015 Jun 25
1
Bi-directional sync for Sysvol folder -- Osync?
2015-06-25 14:44 GMT+02:00 Daniel Carrasco Mar?n <danielmadrid19 at gmail.com>:
>
>
> 2015-06-25 14:12 GMT+02:00 Min Wai Chan <dcmwai at gmail.com>:
>
>> Dear Daniel, Klaus
>>
>> I've try that before
>> But because of how samba work on the files.
>>
>> The Advise is No
>> Without CTDB, you will just shoot yourself on the
2015 Mar 17
5
Domain controller in a chroot
Le 17/03/2015 11:25, Sven Schwedas a ?crit :
> On 2015-03-17 11:13, S?bastien Le Ray wrote:
>
>> I'm sucessfully running a fileserver on it, just wanting to avoid issues
>> in case of network link outage.
> So your users, which cannot connect due to network link outage, won't be
> prevented from logging in? Sounds like a splendid idea.
My users will be able to open
2015 Jun 22
3
Bi-directional sync for Sysvol folder -- Osync?
Hello Min Wai Chan,
?
Can you explain more about,, the DC1 will remove any emptey directory on DC1.
tested it here, but that does not occure here.
i can create empty directories on DC1, and these are synced to DC2. empty or not.
?
?DC1 will overwrite any users/group change on DC2?
if setup correctly, your sysvol rights on DC1 and DC2 are the same..
?
i suggest you to the following.
get the
2014 Mar 12
1
Strange GID and UID with winbindd + Samba AD DC
Dear All,
I've some strange entry on my getent as shown below.
It seem that
There are some strange value UID/GID
4294967295 <-- what number is this?
I get this info from my Domain member which serving as a files server.
Also some different GID from Samba AD DC
E.g wbinfo from AD DC (default configuration after classical migratation)
--> AD DC have no winbind configuration.
wbinfo
2014 Dec 05
2
Samba embedded device?
On Thu, Dec 4, 2014 at 5:19 AM, Sven Schwedas <sven.schwedas at tao.at> wrote:
> Tbh, you might get away with using PCEngines' APU boards (the successor
> to their Alix boards with a massively upgraded CPU) if individual
> machines don't need RAID (because everything is replicated anyway).
>
I considered that, but what would you use for storage?? They have an mSATA
2015 Apr 08
1
Samba 4 , ful list of LDAP-style attributes
Thanks Sven, good Idea
let's see if i am getting this right:
1) use MS ADSI editor to add few more attributes to the "users" class
2) use ldapmodify from my ubuntu server to populate those attributes
would that work?
___________________________________________________________________________________________
Mario Pio Russo, System Admin SWG IT Services Dublin, Phone & FAX:
2013 Jul 15
2
Re: The firewall just doesn't make any sense
Could *somebody* shed some light on how the firewall is supposed to
work? I haven't even managed to get trivial firewall rules to work. As
mentioned, the examples in the documentation generate completely
nonsensical rulesets, and if I try writing my own, they make even less
sense.
For example:
> <filter name='test-eth0' chain='root'>
> <rule
2014 Apr 25
2
Determining PDC in Samba4?
As sysvol replication seems to be safest when using rsync, how can I
determine the PDC (to avoid accidentally starting the replication on a
slave)? Windows' ADUC has the "Operations Masters" window which shows
them, how do I query this from within Samba?
--
Mit freundlichen Gr??en, / Best Regards,
Sven Schwedas
Systemadministrator
TAO Beratungs- und Management GmbH | Lendplatz 45 |
2015 Aug 24
4
Questions about Samba 4
On Thu, Aug 13, 2015 at 09:21:23AM +0200, Sven Schwedas wrote:
>
> Depends on your needs. If you don't need samba file/printer sharing
> /from/ the member, I'd recommend using SSSD. It's much more stable and
> reliable than winbindd.
Can't let comments like this pass. sssd does something slightly
different than winbindd, so may or may not be what the person
needs.
2015 Mar 20
7
Samba AD with external DNS server
Hallo,
We have Samba4 (Sernet, Version4.1) on a Debian Wheezy server. There we try to
use our Infoblox (It is our primary and secondary DNS server) as an external DNS
server for the active directory on the samba4 server. It doesn?t matter which
setup option (Samba_internal, bind_dlz, none) we use it doesn?t work.
Harry