Displaying 20 results from an estimated 1000 matches similar to: "Authenticating other services against AD - PAM and Postgres - dedicated user"
2015 Jun 02
7
Can't join machine without full access
Sernet samba 4.2.2 in ubuntu 14.04.2 LTS, a fresh migration from samba 3
(I'm still in the testing phase).
I'm experimenting with task delegation.
Using the ADUC wizard, I select the "Join machine to domain" task to add
to my userid (I also tried a group I'm a member of with the same
result), at the domain level (rough translation, this is on a localized
windows 7).
Adding
2014 Jul 21
2
Windows XP cannot join Samba 4AD but win 7 can.
Hello everybody,
I've got some troubles making Win XP join may samba4 AD, and, well, i'm
kind of stuck !
I use the binary distribution of Samba 4 for Ubuntu Trusty Server
(4.1.6), with bind9 DLZ as a DNS backend.
Everything works fine with Win7 workstations, but I get a message
"Internal Error" on Win XP workstation during the domain join.
The machine account is created on
2015 Mar 24
2
Authenticating Against Other Services
Hello,
I use several applications that allow for authenticating against a
Microsoft ADDC natively. Can someone point me in a direction on where to
start? I'm using Samba 4.2.0 on Ubuntu 12.04. I think these are the
steps I need to take but would like confirmation before attempting. Thanks.
Step 1 Method 2: Connecting to AD via Kerberos :
2014 Jul 21
1
Doing ADUC-like operations with the command line
Hi all,
is there a simple way to do certain ADUC-operations using the command
line in Samba 4.1.9? samba-tool doesn't seem to cover all operations.
The operations I'd require are: Assigning a user to an OU and
modifying some of the users attributes, like the home directory, UNIX
attributes, etc.
Kind regards,
Andreas
2013 May 13
1
samba-tool of delegation of permissions
Am 13.05.2013 14:53, schrieb daniel gonzalez:
>> For doing it with ADUC, see here:
>>
>> http://wiki.samba.org/index.php/Samba_AD_DC_HOWTO/AD_Delegation#Delegating_.27Joining_Computers_to_the_domain.27-permissions
>
> Hello Marc, with ADUC don't work computers xp, only 7.
It is working fine here for XP and Win7 in production and my test
environment. The HowTo is
2015 Aug 05
2
LDAP bindpw password
> SIGH, does nobody read the samba wiki ????
> Have a look here:
> https://wiki.samba.org/index.php/Authenticating_other_services_against_AD
>
Yes, I read that document before writing to the list, but I cannot
understand where I can set or modify the bind password.
2014 Jul 23
1
samba4 passwordless ssh
hi all
i have samba4 ad setup and working,
i am currently trying to set up passwordless ssh on my client servers,
i have read this page
https://wiki.samba.org/index.php/Authenticating_other_services_against_AD
i have a properly configured krb5.conf file, i have a keytab from the
samba dc
and i can kinit and obtain a valid ticket.
the only thing i have not done is to join my client which is a
2013 May 12
1
samba-tool of delegation of permissions
On Sun, 2013-05-12 at 06:24 -0700, daniel gonzalez wrote:
>
>
> i need a practical example of samba-tool of delegation of
> permissions ,for allow supporters to join machines to the
> domain.
> Use samba 4.0.5
> Thank you very much.
>
>
I think this may be easier done using the Active Directory Users an
2013 Jul 12
1
Administrative users on domain
Back in January we upgraded/moved our domain from an old install of samba and openldap to a newer version (samba 3.5.10 and openldap 2.4.23) while also moving our domain to a new name. On the old domain, which was setup before I got here, our IT section was in an ldap group that allowed us to join PC's to the domain and when the prompt came up in windows to install software we could log in as
2015 Mar 25
0
Authenticating Against Other Services
I've successfully authenticated my Meraki device against Samba by
creating a 2048 bit RSA key and self signed certificate. Thanks Rowland.
The next application I'm attempting is failing. I'm working with the
vendor to troubleshoot that issue. I will post back to the list if we
still can't figure it out. I would like to authenticate a Kolab
groupware server with Roundcube against
2014 Nov 19
1
winbind using active directory's unix attributes
We have Windows AD configured with identity for Unix so windows users
have their uid and gid set in the unix attributes tab of the Active
directory.
Aix server is joined to the AD successfully.
How can you make that Samba (winbind) uses Windows user's uid and gid
set in the active directory's unix attributes tab?
I have tested several configurations but when I set permissions in
2017 Apr 23
2
kerberos got crazy after ubuntu upgrade from 14.04 to 16.04
Rowland, thanks for answering
2017-04-23 12:21 GMT+02:00 Rowland Penny <rpenny at samba.org>:
> On Sun, 23 Apr 2017 11:40:45 +0200
> Jakub Kulesza <jakkul+samba at gmail.com> wrote:
>
> > OK, I've deleted everything what Rowland suggested. THANKS
> >
> > Now smb.conf looks like this
> >
> > [netlogon]
> > path =
2013 Aug 11
6
samba4 + winbind did not work
hello,
I have install samba4 on debian whezzy 64-bit All is working OK, but now I
try to add qoutas to users and this tutorial did not working
https://wiki.samba.org/index.php/Samba4/Winbind
when i write getent passwd i did't see users from AD so e.g.
# id Administrator
id Administrator: There is no such user
Pozdrowienia
------------------------------------------
dafr32
dafr32 at
2013 Aug 25
3
OpenSSH auth in SAMBA4 LDAP
Hi,
I have some Ubuntu LTS servers running openssh server authenticating to
external openldap. I installed a new Ubuntu LTS server with Samba4 to
create a domain and is working very well. I managed to make a pfsense
firewall authenticate users in this Samba4 ldap. How to make openssh in
Ubuntu authenticate users in Samba4 ldap?
2015 Apr 09
2
Migration of 2 samba3 PDC+OpenLDAP in one new Samba4 AD
Hi Marc,
> Am 08.04.2015 um 17:25 schrieb BRIEC, Pierre:
>> On Site1, the machines accounts are specifics, same for the Users and
>> Groups except 1 group that is common with Site2 (The Teachers).
>> Today, each site is independant,
>>
>> Now, i would like a create a new domain Samba4 AD whith all machines and
>> users from site1 and site2 together.
>>
2007 Jun 10
0
In this case just use 'colorbar' to get a 'legend'.
CAON Releases Fact Sheet For Investors
Chan-On International Inc.
Symbol: CAON
Close: $0.72 UP 4.35%
Read this over the weekend, you won't be sorry. CAON has changed
direction and investors love it. Friday's volume went through the roof.
Big news expected Monday. Set your marker for CAON first thing Monday!
Number of generators needed? On two computers the program was slowed
down and
2014 Mar 18
2
samba-tool illegal instruction setting up Kerberos auth for http
Hi all,
Has anyone noticed this behaviour in samba-tool? I was trying to do the
Apache Single Sign on authentication:
https://wiki.samba.org/index.php/Authenticating_other_services_against_AD#Apache_Single_Sign-On
> root at bnedevdc0:~# samba-tool domain exportkeytab /root/httpd.keytab --principal=HTTP/svn.myrealm.mydomain at MYREALM.MYDOMAIN -d10
> INFO: Current debug levels:
>
2017 Apr 23
1
kerberos got crazy after ubuntu upgrade from 14.04 to 16.04
I did stop it. And everything went back to life.
I wonder why it did work this way on 14.04... 37 years on the clock and
life still surprises me :)
Thanks guys, issue looks solved.
If anyone's in Warsaw/PL, beer's on me.
2017-04-23 13:50 GMT+02:00 Rowland Penny <rpenny at samba.org>:
> On Sun, 23 Apr 2017 13:37:25 +0200
> Jakub Kulesza <jakkul+samba at gmail.com>
2018 Apr 25
1
4.3.11-Ubuntu fail to add DC to a AD domain
yes, I tried working with samba wiki and quad-verifying what is recommended
to be checked.
OK, I'll try to join using 18.04.
the samba_dnsupdate tool does not have the --use-samba-tool option in
ubuntu 16.04
2018-04-25 22:47 GMT+02:00 Rowland Penny via samba <samba at lists.samba.org>:
> On Wed, 25 Apr 2018 22:32:10 +0200
> Jakub Kulesza <jakkul+samba at gmail.com> wrote:
2018 Apr 25
2
4.3.11-Ubuntu fail to add DC to a AD domain
Rowland, thank you for answering!
I have investigated this a bit, and I think that using 18.04 for the new DC
will not be successful anyway. Reasons: the AD I have has been created back
in the days when 14.04 LTS was fresh. The provisioning scripts worked
differently. 14.04 has been upgraded to 16.04, and I think that I do not
have all of the DNSes configured properly and this might be the cause