Displaying 20 results from an estimated 10000 matches similar to: "FW: [Bug 11241] different ids even when idmap.ldb copied. not abug.."
2015 Apr 30
1
FW: [Bug 11241] different ids even when idmap.ldb copied. not abug..
On 30/04/15 09:09, L.P.H. van Belle wrote:
> ( sorry for mailing directly bjorn, but please have a look )
>
> I still think this is a bug..
>
> why not a bug:
> If i do assign a UID/GID to a user, then yes, this wil work fine.
> new users and groups sure.. but now im talking about the default domain groups..
>
> why a bug:
> User administrator and the domain groups
2015 Apr 30
0
FW: [Bug 11241] different ids even when idmap.ldb copied. not abug..
( sorry for mailing directly bjorn, but please have a look )
I still think this is a bug..
why not a bug:
If i do assign a UID/GID to a user, then yes, this wil work fine.
new users and groups sure.. but now im talking about the default domain groups..
why a bug:
User administrator and the domain groups are set by default by samba.
and its not consistant at all which is needed for a
2015 Apr 30
0
FW: [Bug 11241] different ids even when idmap.ldb copied. not abug..
On 30/04/15 07:09, L.P.H. van Belle wrote:
> Please read the reported bug and bjorn answer.. which does not help any to a solution of fix, or explenation.
> But the big question now is, does someone somewhere know what bjorn is talking about.
>
> i did search for "gencache" but no go here..
> just from old documentation.
>
2015 Apr 30
0
FW: [Bug 11241] different ids even when idmap.ldb copied. not abug..
Hi Louis, Bj?rn and Rowland,
Am 30.04.2015 um 08:09 schrieb L.P.H. van Belle:
> Please read the reported bug and bjorn answer.. which does not help any to a solution of fix, or explenation.
> But the big question now is, does someone somewhere know what bjorn is talking about.
>
> i did search for "gencache" but no go here..
> just from old documentation.
>
2017 Jan 12
4
Samba 4.5.3 AD DC - issues with sysvol when setting up Group Policies
Hi James
The output is as follows...
wbinfo --gid-info=10013 => CT\domain admins:x:10013:
wbinfo --gid-info=10014 => CT\domain users:x:10014:
wbinfo --uid-info=3000000 => BUILTIN\administrators:*:3000000:3000000::/home/BUILTIN/administrators:/bin/false
wbinfo --uid-info=3000008 => CT\domain admins:*:3000008:3000008::/home/CT/domain admins:/bin/false
Yes I have set
2017 Jan 12
2
Samba 4.5.3 AD DC - issues with sysvol when setting up Group Policies
Hi
root at dc1:~ # samba-tool dbcheck --cross-ncs --reset-well-known-acls --fix --yes
...some error information...
Checked 3647 objects (2 errors)
root at dc1:~ # samba-tool dbcheck --cross-ncs --reset-well-known-acls --fix
Checking 3647 objects
Checked 3647 objects (0 errors)
root at dc1:~ # getfacl /usr/local/samba/var/locks/sysvol/
getfacl: Removing leading '/' from absolute path
2017 Jan 12
2
Samba 4.5.3 AD DC - issues with sysvol when setting up Group Policies
Hi Andrew,
thanks so much for the feedback.
Yes, you're 100% right. I'm new at this and originally changed the default GPO, however subsequently reset the default and created a new GPO. (so this getfacl output is post creation of a new GPO)
The getfacl output is shown here:
# getfacl /usr/local/samba/var/locks/sysvol/mydomain.com/Policies/{31B2F340-016D-11D2-945F-00C04FB984F9}
2017 Jan 12
3
Samba 4.5.3 AD DC - issues with sysvol when setting up Group Policies
cool!
root at dc1:~ # wbinfo -r richard.h
10001
3000008
10000
10014
10004
10005
3000005
3000009
3000000
-----Original Message-----
From: samba [mailto:samba-bounces at lists.samba.org] On Behalf Of lingpanda101 via samba
Sent: 12 January 2017 22:57
To: samba at lists.samba.org
Subject: Re: [Samba] Samba 4.5.3 AD DC - issues with sysvol when setting up Group Policies
On 1/12/2017 3:47 PM,
2017 Jan 12
2
Samba 4.5.3 AD DC - issues with sysvol when setting up Group Policies
Hi
here are the commands in the order I ran them:
root at dc1:~ # systemctl stop samba
root at dc1:~ # net cache flush
root at dc1:~ # samba-tool ntacl sysvolreset
root at dc1:~ # net cache flush
root at dc1:~ # samba-tool ntacl sysvolcheck
root at dc1:~ # systemctl start samba
root at dc1:~ # smbclient //localhost/sysvol -UAdministrator -c 'ls'
Enter Administrator's password:
2015 Apr 30
3
FW: [Bug 11241] different ids even when idmap.ldb copied. not abug..
Hello Bj?rn,
I can totaly agree with that, having multiple users with the same id isnt what we want,
but samba needs at some point root rights, for creating folders/files.
Now we have a "chicken and the egg problem" which one comes first?
At install of samba files and folders are created, by root.
when installed, started samba and now we can assign a uid/gid to Administrator.
But
2015 Jun 17
3
samba tool and sysvol/gpo checks error/bugged? ( but it all works ok)
Hai,
?
im running samba 4.2.2 sernet on debian.
?
when i run :
samba-tool gpo aclcheck -UAdministrator
?
im getting :
ERROR: Invalid GPO ACL
O:DAG:DAD:PAI(A;OICI;0x001f01ff;;;DA)(A;OICI;0x001f01ff;;;EA)(A;OICIIO;0x001f01ff;;;CO)(A;OICI;0x001f01ff;;;DA)(A;OICI;0x001f01ff;;;SY)(A;OICI;0x001200a9;;;AU)(A;OICI;0x001200a9;;;ED)
and it tells me it should be
O:DAG:DAD:P?
2017 Jun 16
2
Erro sysvolcheck/sysvolreset
:-|
ls -lnd /opt/samba/var/locks/sysvol
drwxrwx---+ 3 0 3000000 4096 Jun 16 13:56 /opt/samba/var/locks/sysvol
Em 16-06-2017 13:38, Rowland Penny via samba escreveu:
> On Fri, 16 Jun 2017 13:15:19 -0300
> "Carlos A. P. Cunha" <carlos.hollow at gmail.com> wrote:
>
>> OK, sorry, uncomment a line :-D
>>
>> Yes exist!
>>
>> ls -ld
2016 Nov 03
2
Problems with GPO
On Thu, 3 Nov 2016 10:25:00 -0400
lingpanda101 via samba <samba at lists.samba.org> wrote:
> On 11/3/2016 9:59 AM, Marcio Demetrio Bacci wrote:
> > Thanks Lingpanda101
> >
> > Following the result of command:
> >
> > # file: Policies/{0F1E5B10-3640-4FFE-AA6B-5DE4CFF73625}
> > # owner: 10060
> > # group: 30028
> > user::rwx
> >
2018 Jun 14
4
Admin UID changed with upgrade to 4.8.2
On Thu, 14 Jun 2018 09:39:46 +0200
"L.P.H. van Belle via samba" <samba at lists.samba.org> wrote:
> And i did read the Comment to for Rowland below,
> On debian you need :
> libnss-winbind libpam-winbind to be installed.
> I think you miss one of these.
They are the glue that connects Samba to nsswitch and allows 'getent
passwd username' to work. Without
2017 Jan 12
1
Samba 4.5.3 AD DC - issues with sysvol when setting up Group Policies
On 1/12/2017 2:09 PM, Rowland Penny via samba wrote:
> On Thu, 12 Jan 2017 20:46:15 +0200
> Richard via samba <samba at lists.samba.org> wrote:
>
>> Hi James
>>
>> The output is as follows...
>>
>> wbinfo --gid-info=10013 => CT\domain admins:x:10013:
>>
>> wbinfo --uid-info=3000008 => CT\domain
>>
2019 Jul 22
4
errors restoring samba
Hi Rowland,
I've decided to roll back samba on DC1 to the state from a couple of
weeks ago, before I started all this mess...
Since the email subject change :)
Stopped bind9 and sernet-samba-ad and copied /var/lib/samba aside.
Restored samba folder from backup, started sernet-samba-ad but bind9
fails to start:
Jul 22 14:39:39 dc1 named[27846]: generating session key for dynamic DNS
Jul
2017 Jan 13
2
Samba 4.5.3 AD DC - issues with sysvol when setting up Group Policies
Also, I'm not sure whether this has any relevance to the problem but I did at one point try to set up a secondary AD server but was struggling to get it going so demoted it using "Demote an Offline Domain Controller" from this page
https://wiki.samba.org/index.php/Demote_a_Samba_AD_DC
I also went through the "Verifying the Demotion" checks on this page and all looked
2015 May 26
2
Problems with joining a second DC to AD
> Gesendet: Dienstag, 26. Mai 2015 um 13:31 Uhr
> Von: "Rowland Penny" <rowlandpenny at googlemail.com>
> An: "Stephan Mattecka" <ste-fun_s at gmx.de>
> Cc: samba at lists.samba.org
> Betreff: Re: Aw: Re: [Samba] [SAMBA] Problems with joining a second DC to AD
>
> On 26/05/15 10:42, Stephan Mattecka wrote:
> > Gesendet: Donnerstag, 21. Mai
2015 Feb 27
2
Domain Member Server (wheezy) - Unable to edit permissions of share without usermapping - shall I add to Wiki?
Hi Rowland,
I'm also not an expert, but with the amount of help you provide on the list,
I will defer to you.
I'd love to know your rational for prefering the "change ownership to
administrator" approach over the "change group to Domain Admins approach".
If it's just gut, that's fine too!
Thanks!
-----Original Message-----
From: samba-bounces at
2019 Aug 26
1
Problems joining station in domain
On 26/08/2019 20:43, Marcio Demetrio Bacci wrote:
> Hi,
>
> Another strange situation occurs when I use the RSAT GPO tool in
> Windows 7. The following message appears:
> "RPC Server not available"
>
> Another situation is that I have created a GPO to allow helpdesk group
> only to add stations in the domain, but this GPO does not work.
>
> The permissions