Displaying 20 results from an estimated 11000 matches similar to: "Certificates stop working after password change in legacy domain"
2015 Mar 13
0
Certificates stop working after password change in legacy domain
On Thu, 2015-03-12 at 13:53 +0100, Roel van Meer wrote:
> Hi list,
>
> we have a problem with users that have personal certificates. When they
> change their password via the Ctrl-Alt-Del prompt, their personal
> certificates can no longer be used to authenticate.
>
> This happens with Windows 7 Professional joined to a Samba legacy domain.
> I've tested Samba
2016 Mar 31
4
Lost outgoing SIP packets
Dovid Bender writes:
> The tcpdump that you are running is on the Asterisk box or via port
> mirroring?
It's on the asterisk box itself.
I've already replaced the network card - no change.
Thanks,
Roel
> Regards,
>
> Dovid
>
> -----Original Message-----
> From: Roel van Meer <roel at 1afa.com>
> Sender: asterisk-users-bounces at
2016 Mar 31
2
Lost outgoing SIP packets
Hi Roel
Just guessing: do you have conntrack enabled?
If not, "modprobe nf_conntrack_netlink" (you can remove it and its dependencies
later)
What are the outputs of
sysctl net.netfilter.nf_conntrack_count
and
sysctl net.netfilter.nf_conntrack_max
when the problem shows up?
cheers
Ethy
On Thu, 31 Mar 2016 12:17:12 +0000
"Dovid Bender" <dovid at telecurve.com>
2016 Mar 31
2
Lost outgoing SIP packets
Dovid Bender writes:
> Just guessing I would verify that the out of : iptables -L -nv
> Shows no dropped packets, try disabling selinux as well as look at the
> limits of the asterisk pid (cat /proc/<Asterisk PID>/limits). I know the
> defualt for rhel is 1024 which was never enough for us.
Thanks for the hints. Selinux is disabled, there is no outgoing firewall
(anymore)
2016 Mar 31
5
Lost outgoing SIP packets
Ethy H. Brito writes:
> > Ifconfig output looks like this:
> >
> > root at communiceer:~# ifconfig eth1
> > eth1 Link encap:Ethernet HWaddr b4:99:ba:a9:3e:e5
> > inet addr:x.x.x.x Bcast:x.x.x.127 Mask:255.255.255.128
> > UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
> > RX packets:5967421 errors:0 dropped:21425
2015 Apr 14
4
Samba AD changing a user's password as non-root user
Hi!
I'm using Samba in an AD setup, (version 4.2.0) and I'm looking for a way to
change the password of a user from the command line, as a non-root user.
I know I can use 'smbpasswd', 'samba-tool user setpassword', or 'samba-tool
user password', but these all seem to require root privileges. When I run
them as root, they work, but when I run them as non-root
2016 Mar 31
4
Lost outgoing SIP packets
Hi list!
I have a problem where SIP packets sent by Asterisk do not hit the wire, and
I don't know what could cause this.
I'm running Asterisk 1.8.28_cert5 with full SIP debug. At the same time, I'm
doing a tcpdump of the traffic on the network interface. I can see in the SIP
debug log that asterisk is sending packets. Most of the time, I can see
those packets in the tcpdump,
2015 Aug 06
2
2nd DC, internal DNS: dns_tkey_negotiategss: TKEY is unacceptable - SOLVED
L.P.H. van Belle writes:
> is the time in sync on your servers ?
Yes it is.
I managed to make it work by specifying the primary DC as nameserver in
/etc/resolv.conf of the secondary DC. As soon as I do that, samba_dnsupdate
works on the secondary. When I change it back to use the local Samba as
resolver, it no longer works.
So it is a DNS issue (possibly related to replication
2016 Jan 12
1
Allow self password change using LDAP(s) with Samba4
Hi
Thanks all for your responses. The users can now change their own password
adding and removing the unicodePwd attribute, using the correct method to
generate the password value.
Now, I have a problem, because the users who have the option to force to
change the password in the next login checked, can't bind to the LDAP
server in order to change their password. Is there any way to do this,
2015 Aug 06
2
2nd DC, internal DNS: dns_tkey_negotiategss: TKEY is unacceptable
L.P.H. van Belle writes:
> check the rights on :
> /var/lib/samba/private/dns.keytab 640 root:bind
> /var/lib/samba/private/dns 750 root:bind
> /var/lib/samba/private/sam.ldb.d 750 root:bind
I'm using the internal DNS on both DC's, so I guess bind access rights
aren't the issue.
Thanks for your answer though :)
Regards,
Roel
> >-----Oorspronkelijk
2015 Nov 03
3
Cannot create OrganizationalUnit under ou=Users
Hi everyone,
I have a Samba 4.2.4 AD which works fine. I'm using Windows RSAT and I'm
trying to create an OU under ou=Users, but this is not allowed. I can create
OU's in the top DN, but not under ou=Users.
Could this be a permissions problem or is this simply not possible or
allowed?
Thanks a lot,
Roel
2020 Feb 06
2
ldb errors after upgrade, cause?
L.P.H. van Belle via samba writes:
> Is samba-dsdb-modules installed ?
Yes, I checked again, and all packages are installed, all of them with the
proper version, and no leftovers.
This server works fine for a half a day, and then these errors happen, so I
think it's unlikely that it's related to the install itself.
I have already made a backup of all tdb files with tdbbackup and
2015 Aug 06
4
2nd DC, internal DNS: dns_tkey_negotiategss: TKEY is unacceptable
Hi everyone,
I'm testing with a Samba4 AD network, and I have some problems with DNS on
the second DC, with which I could use a bit of your help.
I have an AD with two DC's, both Samba 4.2.3. On the first DC,
samba_dnsupdate works fine. With stock 4.2.3 I get the error
"TSIG error with server: tsig verify failure"
but the DNS updates succeed anyway, and after applying
2020 Feb 11
1
ldb errors after upgrade, cause?
Hi list,
for future reference: we haven't been able to fix it. Upgrading to 4.9.18
didn't help, so in the end we decided to downgrade to our previous version
(4.5.12) which doesn't have this problem. Hooray for tdbbackup!
Thanks Louis for thinking with us.
Best regards,
Roel
And for Google:
smbd[16461]: ldb: Failure during ltdb_lock_read(): Locking error ? Busy
smbd[16461]:
2010 Feb 12
9
DO NOT REPLY [Bug 7129] New: rsync 3.0.7 - unlink failed (21) - unable to delete directory
https://bugzilla.samba.org/show_bug.cgi?id=7129
Summary: rsync 3.0.7 - unlink failed (21) - unable to delete
directory
Product: rsync
Version: 3.0.7
Platform: Other
OS/Version: Linux
Status: NEW
Severity: normal
Priority: P3
Component: core
AssignedTo: wayned at samba.org
2020 Feb 05
2
ldb errors after upgrade, cause?
Hi!
recently we upgraded a Debian jessie server to Debian buster, with Samba
being upgraded from 4.5.12 (+dfsg-2+deb9u3) to 4.9.5 (+dfsg-5+deb10u1).
A few hours later we saw these errors in syslog:
smbd[26024]: [2020/02/03 11:13:13.631613, 0] ../lib/ldb-samba/ldb_wrap.c:79(ldb_wrap_debug)
smbd[26024]: ldb: Failure during ltdb_lock_read(): Locking error ? Busy
smbd[26024]:
2014 Sep 30
2
Samba 4 LDAP/LDB search speed
Hi list,
we're in the process of converting our Samba 3 / OpenLDAP systems to Samba4.
Since these machines also run applications (Postfix, Zarafa) that
retrieve their information from LDAP, performance of the LDAP server is
quite important to us.
While testing, it seems that the S4 LDAP server is a lot slower than
OpenLDAP. So, I would like to ask two questions:
1. What is the
2015 Sep 01
1
[Announce] Samba 4.1.20 Available for Download
=======================================================================
"Positive anything is better than
negative nothing."
Elbert Hubbard
=======================================================================
Release Announcements
---------------------
This is the latest stable
2015 Sep 01
1
[Announce] Samba 4.1.20 Available for Download
=======================================================================
"Positive anything is better than
negative nothing."
Elbert Hubbard
=======================================================================
Release Announcements
---------------------
This is the latest stable
2015 Nov 03
2
Cannot create OrganizationalUnit under ou=Users
Am 03.11.2015 um 16:43 schrieb James:
> Not possible. It's a container and not a OU.
Right.
However Roel, you can create an OU for your users/computers and redirect
the standard to them:
https://support.microsoft.com/en-us/kb/324949
Then you can have sub-OUs, link GPOs to them, etc. and ignore
cn=Users/cn=Computer.
Regards,
Marc