Displaying 20 results from an estimated 4000 matches similar to: "Samba and MS15-011?"
2014 Apr 25
2
Determining PDC in Samba4?
As sysvol replication seems to be safest when using rsync, how can I
determine the PDC (to avoid accidentally starting the replication on a
slave)? Windows' ADUC has the "Operations Masters" window which shows
them, how do I query this from within Samba?
--
Mit freundlichen Gr??en, / Best Regards,
Sven Schwedas
Systemadministrator
TAO Beratungs- und Management GmbH | Lendplatz 45 |
2014 Jun 16
1
Authentication problem with Windows client
I successfully joined a device to our Samba domain some weeks ago. Auth,
both online and offline, worked fine.
Now suddenly it stopped working. The device is online, the DC is
reachable, and I can log into samba member servers on the network just
fine, but not into AD accounts on that device.
I could remove the device from the domain using my domain credentials,
but now I can't re-join, it
2014 Aug 19
1
Intermittent failures of internal DNS
Every once in a while, the DNS fails to resolve external domains ? but
the DNS forwarder is still reachable (8.8.8.8, I assume it would be
noticeable if it had any issues).
What debug class is used by the DNS code? I don't really want to put
several DCs on log level 10 for possibly days?
--
Mit freundlichen Gr??en, / Best Regards,
Sven Schwedas
Systemadministrator
TAO Beratungs- und
2013 Jul 15
2
Re: The firewall just doesn't make any sense
Could *somebody* shed some light on how the firewall is supposed to
work? I haven't even managed to get trivial firewall rules to work. As
mentioned, the examples in the documentation generate completely
nonsensical rulesets, and if I try writing my own, they make even less
sense.
For example:
> <filter name='test-eth0' chain='root'>
> <rule
2014 Aug 01
1
Re: XP and virtio
----- Original Message -----
> From: "Sven Schwedas" <sven.schwedas@tao.at>
> To: libvirt-users@redhat.com
> Sent: Friday, August 1, 2014 2:29:22 AM
> Subject: Re: [libvirt-users] XP and virtio
>
> On 2014-07-31 20:05, Mauricio Tavares wrote:
> > So I need to create a XP vm. I am using lvm logical volumes for
> > its disk, so I am using virtio.
2014 May 28
1
winbindd 4.1.7 resolves group memberships for all but primary group
We're using a bunch of AD groups ? all users/groups are created and
managed with ADUC. Domain Users is the primary group for all users, plus
a few for our departments (and Domain Admins). All groups have their
posixGroup attributes filled out.
wbinfo --group-info and getent group show the correct membership for all
groups except Domain Users.
smb.conf: http://pastebin.com/ymrXZJ5u
Already
2014 Jan 15
2
Samba 4 and Debian
I've wasted the last two days trying to get various versions of samba 4
packages getting to run under Wheezy.
? Wheezy's own packages are incomplete betas.
? Inverse provides their own packages (for SOGo), but they only care
about getting their one use case to work; smbd doesn't work all, winbind
has problems, and the postinst script resets my smb.conf with nonsense.
Before I try
2014 Mar 14
2
Modifying the AD scheme, how?
I'm trying to add schema extensions to my Samba (4.1.5) server, as per
> https://wiki.samba.org/index.php/Samba4/Schema_extenstions
However, importing the example file (after replacing the DOMAIN_TOP_DN)
fails:
> $ ldbmodify -H sam.ldb /tmp/automount.ldif --option="dsdb:schema update allowed"=true
> Unable to find attribute automountMapName in the schema
> ERR:
2014 May 08
1
samba4: DC doesn't start up
I tried joining a new DC to my AD domain (Samba 4.1.6).
Join claimed to have worked, but samba refuses to start afterwards:
> http://pastebin.com/jJiTzxsG
Apparently it doesn't recognize its role any more? What went wrong?
--
Mit freundlichen Gr??en, / Best Regards,
Sven Schwedas
Systemadministrator
TAO Beratungs- und Management GmbH | Lendplatz 45 | A - 8020 Graz
Mail/XMPP:
2015 Jan 07
2
Duplicate (not so) single-valued attributes on some DCs?
We've run into a small issue over the holidays (I can't pinpoint it due
to nobody being in the office for the past three weeks and thus not
noticing anything): At least one LDAP entry has an (single-valued!)
attribute duplicated on *some* DCs, but not all of them ? and said
attribute hasn't been modified in six months.
Microsoft's ADSI just crashes when trying to open the entry on
2015 Apr 08
1
Samba 4 , ful list of LDAP-style attributes
Thanks Sven, good Idea
let's see if i am getting this right:
1) use MS ADSI editor to add few more attributes to the "users" class
2) use ldapmodify from my ubuntu server to populate those attributes
would that work?
___________________________________________________________________________________________
Mario Pio Russo, System Admin SWG IT Services Dublin, Phone & FAX:
2019 Jul 03
2
`samba-tool dbcheck --cross-ncs --fix` fails: governsID already exists as an attributeId or governsId
On 03.07.19 17:19, Rowland penny via samba wrote:
>> All these object classes were tests we did? years ago, and which have
>> been "deleted" (I don't even remember by what mechanism) for almost as
>> long. No object should still be using any of these, and on graz-dc-sem
>> that's true.
> I would love to know how you deleted something from the schema, it
2015 Mar 03
2
Renaming Default-First-Site
On 2015-03-03 11:01, L.P.H. van Belle wrote:
> Roman,
> it was easier if you used :
>
> samba-tool domain provision --site=SITENAME ....
> then you wont have to rename the site..
Why isn't this in the wiki?
>
> Louis
>
>
>
>> -----Oorspronkelijk bericht-----
>> Van: abartlet at samba.org [mailto:samba-bounces at lists.samba.org]
>>
2014 May 17
1
Re: routed mode
/etc/sysctl.conf
net.ipv4.ip_forward = 1
centos 65 host has static private ip 192.168.1.15
I have added a route
ip route add 192.168.1.0/24 via 192.168.1.15
but each time I use 'service network restart' the new route disappears
anyway I have made a ping before restarting the network and is still not
working
Thank you.
2014-05-15 12:23 GMT+02:00 Sven Schwedas
2014 Dec 09
0
Samba embedded device?
On 2014-12-05 04:37, George wrote:
> On Thu, Dec 4, 2014 at 5:19 AM, Sven Schwedas <sven.schwedas at tao.at> wrote:
>
>> Tbh, you might get away with using PCEngines' APU boards (the successor
>> to their Alix boards with a massively upgraded CPU) if individual
>> machines don't need RAID (because everything is replicated anyway).
>>
>
> I
2019 Jul 04
1
`samba-tool dbcheck --cross-ncs --fix` fails: governsID already exists as an attributeId or governsId
On 04.07.19 15:54, Rowland penny via samba wrote:>> Still left are the
three governsId collisions, which are now identical
>> across all DCs:
>>
>>> Checking 3861 objects
>>> Error: governsID
>>> CN=ucsUser,CN=Schema,CN=Configuration,DC=ad,DC=tao,DC=at on
>>> 1.3.6.1.4.1.19414.3.2.2 already exists as an attributeId or governsId
>>>
2015 Aug 25
0
Questions about Samba 4
On 2015-08-25 09:51, Volker Lendecke wrote:
> On Tue, Aug 25, 2015 at 08:36:14AM +0200, Sven Schwedas wrote:
>> On 2015-08-24 20:55, Jeremy Allison wrote:
>>> On Thu, Aug 13, 2015 at 09:21:23AM +0200, Sven Schwedas wrote:
>>> winbindd is extremely reliable and fully supported by the Samba
>>> Team, please don't post FUD about Samba components. If you have
2019 Jul 04
2
`samba-tool dbcheck --cross-ncs --fix` fails: governsID already exists as an attributeId or governsId
On 03.07.19 18:04, Rowland penny via samba wrote:
>>>> How do I get rid of these bogus Schema entries, and how do I fix the
>>>> user account?
>>> I do not think you can remove anything from the schema, but I believe
>>> you can deactivate schema objects, try reading this:
>>>
>>>
2015 Mar 17
0
Domain controller in a chroot
On 2015-03-17 11:13, S?bastien Le Ray wrote:
> Le 17/03/2015 11:06, Sven Schwedas a ?crit :
>> Not really an option : :-)
>> total used free shared buffers cached
>> Mem: 496 470 25 0 58 82
>>
>> That's why I'm targetting the chroot
>> You won't be able to run a usable file
2015 Mar 17
0
Domain controller in a chroot
On 2015-03-17 11:40, S?bastien Le Ray wrote:
>
>
> Le 17/03/2015 11:25, Sven Schwedas a ?crit :
>> On 2015-03-17 11:13, S?bastien Le Ray wrote:
>>
>>> I'm sucessfully running a fileserver on it, just wanting to avoid issues
>>> in case of network link outage.
>> So your users, which cannot connect due to network link outage, won't be
>>