similar to: GPO aclcheck --help

Displaying 20 results from an estimated 5000 matches similar to: "GPO aclcheck --help"

2015 Jun 11
0
GPO aclcheck --help
I'm replying to myself. I have been carefully experimenting with the various samba-tool gpo choices and through some Windows GPO testing (command line) things I found (online searches) all my GPO policies are completing. And my initial "remove un-used local profiles" is working and has removed some of my excess un-used test users profiles from the W7 clients. The damn thing (W7)
2015 Jun 11
1
GPO aclcheck --help
Hi Bob, On 11 June 2015 at 20:38, Bob of Donelson Trophy <bob at donelsontrophy.net> wrote: > I have been carefully experimenting with the various samba-tool gpo > choices and through some Windows GPO testing (command line) things I > found (online searches) all my GPO policies are completing. And my > initial "remove un-used local profiles" is working and has removed
2015 Feb 16
6
gpo update problem
I have setup 'profiles' and 'home share' per the instructions on Samba wiki. That seemed to go fine. When I moved on to 'folder re-direction' I tried to open GPO management on my W7 client and received a "User policy could not be updated successfully . . ." on the windows CP console. Started googling the error and ran into "samba-tool ntacl
2015 Jan 28
2
W7 client cannot adjust file permissions via ADUC
W7 client domain member? yes. Logged in as domainAdministrator? yes. "SeDiskOperatorPrivilege" set? yes Read "/Setup_and_configure_file_shares_with_Windows_ACLs"? yes. --- ------------------------- Bob Wooden of Donelson Trophy 615.885.2846 (main) www.donelsontrophy.com [2] "Everyone deserves an award!!" On 2015-01-28 10:40, Marcel de Reuver wrote: >
2015 Jan 08
4
getting permissions denied on home folders
I have a fresh Debian based Samba server and Member server setup. I have configured profiles and they appear to be saving properly to the member server. When I attempt to adjust file permissions (as instructed by the Sambawiki page "Samba & Windows Profiles") I am getting "Access Denied" complaints. These I believe (I could be wrong) relate to the file permissions
2015 Jan 08
2
getting permissions denied on home folders
On 08/01/15 18:37, Bob of Donelson Trophy wrote: > > > First, I keep forgetting that I need to change the email address to > reply to the mailing list. Sorry about that, everyone. (Hard to follow a > thread that is fragmented like this one now is.) I am focusing to > intently on my problem. > > Rowland, changed to 0755 for the three directories you suggested and >
2013 Dec 11
2
samba-tool gpo aclcheck error
G'day Guys, We are running Centos 6.4, samba4.0.10, compiled from tgz. Has anyone come up with this one before? samba-tool gpo aclcheck ERROR(<type 'exceptions.KeyError'>): uncaught exception - 'No such element' File "/usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/__init__.py", line 175, in _run return self.run(*args, **kwargs) File
2015 Jan 29
4
W7 client cannot adjust file permissions via ADUC
Rowland, I think you have confused my email with a different thread. Uhm . . what? --- ------------------------- Bob Wooden of Donelson Trophy 615.885.2846 (main) www.donelsontrophy.com [1] "Everyone deserves an award!!" On 2015-01-29 07:30, Rowland Penny wrote: > On 29/01/15 12:54, Bob of Donelson Trophy wrote: > Rowland, I have tried your various alteration
2014 Dec 07
3
Fwd: Installing EnterpriseSamba (Sernet-samba) on Ubuntu
I will add here that my server provisioned yesterday afternoon. However, I did not have time to do any testing. So, this morning testing and the first thing I discovered was "sernet-samba-ad" service was NOT running. I found a Debian Wheezy sernet samba posting (via Google) and within it read that users need to edit "/etc/default/sernet-samba" as follows: # ---- SETUP
2015 Jan 29
7
W7 client cannot adjust file permissions via ADUC
Rowland, I have tried your various alteration suggestions and it is a "negative" result. Here is the output from wbinfo -u & wbinfo -g root at dtmbr01:~# wbinfo -u administrator dns-dtdc02 dns-dtdc01 krbtgt guest root at dtmbr01:~# wbinfo -g allowed rodc password replication group enterprise read-only domain controllers denied rodc password replication group read-only domain
2015 Mar 05
6
setting up W7 profiles
I am setting up W7 profiles following the "Samba & Windows Profiles" on the Sambawiki. If it matters, I have two functional DC's and one member server. When I run '# chmod 1770 /srv/samba/profiles' (on the member server) the permissions changed to: root at mbr01:~# ls -alh /srv/samba/profiles total 12K drwxrwx--T+ 2 root root 4.0K Mar 1 10:21 . drwxr-xr-t 5 root
2015 Jan 26
5
W7 client cannot adjust file permissions via ADUC
I have been improving my DC. I now have a DC01, DC02 and a DCMEMBER01. All running sernet-samba 4.1.16 on Debian 7.8.0 thanks to Louis' (old) scripts. (Any linux client work has gone on hold, for the moment.) Next step was to adjust the file permissions as instructed on "Setup and configure file shares with Windows ACLs". When I access the "Computer Management" (thru ADUC
2015 Feb 02
3
DC01 & DC02 differences?
I have created a DC01 & DC02 with Louis's (generation one) scripts. I have noticed, during some testing that 'pam-auth-update' shows PAM profiles Kerberos, Unix & Winbind listed on DC01. The DC02 only lists Kerberos & Unix and Winbind is missing. I thought that the two DC's were suppose to be identical? If DC01 goes "down" DC02 cannot carry a winbind
2015 Mar 05
2
setting up W7 profiles
Rowland, 'getent group DomainUsers' indeed returns nothing. Now, I know, you know this like the "back of your hand" but, am I wrong, are the permissions for **profiles** somewhat (not alot) different from permissions for file shares? Because I see that instructions (on the wiki) for file sharing reads differently. Thanks, again. --- ------------------------- Bob Wooden
2015 Jan 30
3
W7 client cannot adjust file permissions via ADUC
Hi bob, Yes, i have corrected the script online. I replaced the %USERNAME with %U in the old member script, and please dont give the user DOMAIN\Administrator any uid. not 0, nothing.. .no uid.. My best advice, leave Administrator as is and create a new user.. Add that one in "Domain Admins" and that user can have a uid. For setting the rights. Use setfacl to set the base
2015 Jan 08
1
getting permissions denied on home folders
On 08/01/15 19:10, Bob of Donelson Trophy wrote: > > > Part of the smb.conf > > [home] > path = /home/samba/DTDC01/users > comment = user folder 4 redirection > read only = no > > Hum-m-m? > > --- > > ------------------------- > > Bob Wooden of Donelson Trophy > > 615.885.2846 (main) > www.donelsontrophy.com [1] > >
2015 Jan 05
3
linux client join DC how?
I did a fresh install of Debian with the desktop. I know from Ubuntu that the network is handled differently in the desktop and the server versions. So, I am assuming it is a similar situation with Debian. I could be wrong but . . . When kerberos installs via the script it (the script) suggests accepting the 'defaults on the next three screens.' The first screen included the correct
2014 May 26
1
samba 4.1.7 samba-tool gpo aclcheck ERROR
I have compiled samba 4.1.7 on CentOS 6.2 32bit, and did the classicupgrade from Samba3 with ldap backend. Everything is working, including GPO. . But this command still shows the error messages: /usr/local/samba/bin/samba-tool gpo aclcheck ERROR(<type 'exceptions.KeyError'>): uncaught exception - 'No such element' File
2015 Jan 05
1
linux client join DC how?
On 05/01/15 14:04, Bob of Donelson Trophy wrote: > > > My shop is 10 minutes from my house. House and shop are connected by vpn > (between two IpFire firewalls.) I do a lot of configuring and testing > from home. Due to a Windows wake-on-lan issue (right now) I cannot wake > the lone DC W7 client from home. When I get to work this morning, W7 > client (thru ADUC) shows
2015 Jan 30
2
W7 client cannot adjust file permissions via ADUC
On 30/01/15 20:48, Bob of Donelson Trophy wrote: > > > Okay, added 'gidNumber: 10000' to the domain users group on DC1. (Was > within my range 500-40000.) > > getnet passwd [user] returns nothing on DC1. > > W7 client still a "no". > > And now? > > Have you tried getent on the member server ? Lets forget W7 for the moment, get the Unix