similar to: cifs traffic over less trusted networks

Displaying 20 results from an estimated 10000 matches similar to: "cifs traffic over less trusted networks"

2015 Feb 13
0
cifs traffic over less trusted networks
On Fri, Feb 13, 2015 at 01:49:01PM +0100, mourik jan heupink - merit wrote: > Hi all, > > We might need to open port 445 for some (specific) external ip's, so > they can make a direct connection to our samba4 AD fileservers. > > I am wondering how secure that would be, as we would normally use a > VPN connection for something like this. > > So: What smb.conf
2015 Nov 18
3
Permission Issues with GPO
None of my computers have a UID/GID and my GPO works fine. Add the line i suggested to the share, and setup your rights Gr. Louis > -----Oorspronkelijk bericht----- > Van: samba [mailto:samba-bounces at lists.samba.org] Namens mourik jan c > heupink > Verzonden: dinsdag 17 november 2015 18:55 > Aan: samba at lists.samba.org > Onderwerp: Re: [Samba] Permission Issues with
2015 Jan 23
3
Multiple attributes
Ho Mourik Thanks for your reply, any other attribute which we can duplicate? Br. Umar On Fri, Jan 23, 2015 at 1:47 PM, mourik jan heupink - merit < heupink at merit.unu.edu> wrote: > Hi, > > In AD, the attribute mail can only exist once. > > MJ > > On 01/23/2015 05:27 AM, Umar Draz wrote: > >> Hi All >> >> I am tying to create a user in SAMBA 4
2014 Mar 19
2
multiple dns forwarders
Hi, To make our AD more robust, I'd like to provide more than one dns forwarder, like for example: dns forwarder = 8.8.8.8 8.8.4.4 However, this seems to break dns resolution completely (and without logging errors in the logs!): # Host test.com not found: 3(NXDOMAIN) With only one forwarder things work: $ test.com has address 208.64.121.161 Am I really allowed to specify only one
2015 Nov 18
4
Permission Issues with GPO
Hai Mourik Jan/Victor. > MJ definitely understands the problem I'm facing.... Yes, and i do to but you wont listen... ALL My client pc's, windows and linux computers, dont have any uid/gid assigned. My client pc's do access the DCs and multiple member servers with shares. I do distribute settings and files with GPO and these files are on a member server. Yes also as
2015 Oct 07
2
gpo failure
Hi Louis, Marc, list, Quick update: On 7-10-2015 12:25, L.P.H. van Belle wrote: > Marc, > > Its for mourik important, because he wants to know why he has this error in his event logs. (i want to know also.) (learning mode) > > Mourik Jan, reboot the computer and login again, do you still see the error message, just to check if this wasnt an old message. > And/or, maybe this pc
2015 Oct 06
3
gpo failure
Am 06.10.2015 um 21:26 schrieb mourik jan c heupink: > I have checked all our policy directories on sysvol, and I have a > "Registery.pol" only in some "/Machine" directories, and none in "/User" > or "/Group Policy". Do you have any policy in the User tree in the GPME in that GPO? If you never defined one, then the file is missing. Try e. g.
2005 Jun 17
2
Illegal multibyte sequence error in pdbedit output
dear list, in the output of pdbedit -L -v heupink I'm getting these errors: convert_string_allocate: Conversion error: Illegal multibyte sequence(???p? ????????) Any ideas where to look..? Are these serieus errors..? (it looks as if the errors occur BEFORE the actual ldap connection is opened, so I guess they're not ldap related...) My samba is 3.0.14a, and system is sles9 Below find
2015 Oct 01
2
ntlm_password_check: LM password, NT MD4 password in LM field and LMv2 failed for user username
On 10/01/2015 03:57 PM, David Whitney wrote: > Hi mourik...are you saying these messages in the logs are new, as in > suddenly these messages are appearing? > > What version of Samba are you running? > We're on samba 4.2.4, sernet, on wheezy, AD. Running without any issues for more than a year. I have never noticed them before, and a quick search in the logs doesn't
2015 Oct 13
4
machine accounts question
Hi, I can be wrong but for me UID and GID are UNIX concepts. If your workstations are Windows systems, those UID/GID are not necessary. This does not address your issue but it could help to understand things and to avoid searching in the wrong direction... Cheers, mathias 2015-10-12 20:41 GMT+02:00 mourik jan c heupink <heupink at merit.unu.edu>: > Some extra info from the samba
2015 Oct 07
4
gpo failure
On 10/7/2015 7:31 AM, mourik jan c heupink wrote: > On 7-10-2015 13:18, mourik jan c heupink wrote: >> So my dc3 seems unsynced or so. >> >> So I am now checking to make sure that my rsync replication script >> works as it should. (I'm guesssing it does NOT) > > The rsync seems to be working as it should, so now I'm > guessing that idmap.ldb differs
2005 Feb 03
6
smbldap-populate failure
dear list, I'm trying to migrate nt4 to samba3, and have two issues at the moment. First is: I'm getting two (small?) errors using smbldap-populate on my ldap database. At first I tried ignoring this, but now also rpc net vampire complains. (maybe because of this..?) This is the output of smbldap-populate: <quote> server:/usr/local/sbin # smbldap-populate Using builtin directory
2014 Sep 16
2
missing sam.ldb file
Hi, We have suddenly noticed a difference between our dc's. The file called /var/lib/samba/private/sam.ldb.d/sam.ldb is only present on 1 of our three dc's. The AD seems to be in healthy state, but...isn't this a bit strange? root at dc3:/var/lib/samba/private/sam.ldb.d# ls -l sam.ldb -rw-r--r-- 1 root root 53248 Sep 2 17:31 sam.ldb root at dc3:/var/lib/samba/private/sam.ldb.d#
2015 Oct 07
1
gpo failure
On 7-10-2015 14:52, mourik jan c heupink wrote: > I am not sure what to check or do next..? > I checked filesystems, and there is a difference: dc3 = ext4 dc4/dc2 = xfs But ext4/xfs should both support acl and user_xattr Problem dc3 is mounted like: > /dev/vda3 on /var/lib/samba type ext4 (rw,relatime,user_xattr,barrier=1,data=ordered) I don't see the problem... But I DO get
2015 Nov 18
4
Permission Issues with GPO
On 18/11/15 10:24, mourik jan c heupink wrote: > > > On 18-11-2015 10:59, Rowland Penny wrote: >> OK, I am trying to understand this as well, I take it that the uidNumber >> you add is a unique number that is inside the range you have set in >> smb.conf, but what about the gidNumber? do you set it to '515' and is >> this also inside the range? > Yep.
2015 Jul 22
1
samba4 AD with NATted clients
Hi all, Further to my AD clients through NAT question: has anyone ever tried this diagnostics tool from microsoft in their samba4 AD installation: http://www.microsoft.com/en-us/download/confirmation.aspx?id=24009 It's supposed to verify connectivity requirements for AD functionality. (replication, port status, etc, etc) At our site, it crashes on verification of udp on port 137. I
2015 Oct 06
1
weak passwords
But the issue is: we have many users that do not login locally using windows-workstations, but instead use variour kinds of remote access, like web interfaces, email, vpn, etc, etc. I am not sure what would happen with those services, if I would set accounts to 'change password on next logon'... I know this would work in the case of 'regular' 'interactive logons' as I
2014 Sep 23
3
software deployment
Hi, Just wondering: What are you guys using to deploy software on your windows (7) workstations within the samba4 AD? These are options I know of: * wpkg (but it seems it's development is not too active) * wpkg-gp using the group policies * www.opsi.org (Client Management System for Windows clients) * standard windows software deployment, but I think that's msi-only This page also has
2015 Nov 18
2
Permission Issues with GPO
On 18/11/15 09:37, mourik jan c heupink wrote: > > > On 18-11-2015 10:13, L.P.H. van Belle wrote: >> Hai Mourik Jan/Victor. >> >>> MJ definitely understands the problem I'm facing.... >> Yes, and i do to but you wont listen... > > Could it perhaps be that the vital detail is that Viktor (and me too) > are not using windows (security tab) to manage
2015 Oct 21
1
Can't get 'root preexec' to run
On 21/10/15 13:30, Rowland Penny wrote: > On 21/10/15 12:41, mourik jan heupink wrote: >> Hi, >> >> On 10/21/2015 01:21 PM, Rowland Penny wrote: >>> I am now beginning to think it doesn't work at all, if samba4 is >>> involved in any way. I knew that it wouldn't work on a DC (probably >>> because the user is DOMAIN\username and not just