similar to: winbindd hangs and makes the system unuseable when DC is offline

Displaying 20 results from an estimated 10000 matches similar to: "winbindd hangs and makes the system unuseable when DC is offline"

2015 Aug 07
4
Cannot change directory permissions
Hi Rowland, yes I do have two separate config files for smbd/nmbd and winbindd. You can tell winbindd to load a separate config file via the "-s" command line switch. Therefore I set "WINBINDD_EXTRA_OPTS" in "/etc/default/sernet-samba" to "-s /etc/samba/winbindd.conf". The "cached_login" option for pam is also set and working. The problem was
2015 Jul 01
0
winbindd hangs and makes the system unuseable when DC is offline
On 01/07/15 12:59, Felix Matouschek wrote: > Hello, > > I am using winbindd to map users via the idmap_ad backend from a Samba 4.2.2 AD to another machine in the network. > Everything works fine unless I shutdown the DC. > I would expect winbindd to realize the DC is offline and shutdown or something, however instead of realizing something is wrong > It goes into some kind of
2015 Aug 14
1
winbind_krb5_locator usage
Just a question. Did you create this server on site a and the moved it to site b? >-----Oorspronkelijk bericht----- >Van: samba [mailto:samba-bounces at lists.samba.org] Namens Felix >Matouschek >Verzonden: vrijdag 14 augustus 2015 8:58 >Aan: samba at lists.samba.org >Onderwerp: Re: [Samba] winbind_krb5_locator usage > >Hello, > >i investigated further and
2015 Aug 04
2
Cannot change directory permissions
Hi Rowland, I had to split smbd and winbindd config to work around some bugs in credentials offline caching. I have a separate winbindd.conf, it looks like this: [global] ### Network ### netbios name = Fileserver server string = Fileserver (%h V:%v) ### ad member ### workgroup = INTRANET realm = INTRANET.MYCOMPANY.DE security = ADS kerberos method = secrets and
2015 Aug 13
4
winbind_krb5_locator usage
Hello, I have different Sites in my domain and want the different members to use the respective domain controller of their site. I can't get this to work right. I have a member that is in site B but executing "net ads info" outputs the DC of site A as active. I read about enabling "winbind_krb5_locator", but it is already located in
2015 Aug 04
2
Cannot change directory permissions
Hi Rowland, my users are known to the OS, they also have the correct permissions to alter the settings. Doing so on the CLI does work when logged in via SSH. When opening the Security Tab the users and groups are displayed, only on directories there are no checkmarks under Read, Write etc. I also cannot set any checkmarks for Read, Write etc. When viewing the Security Tab of a file everything
2015 Aug 04
2
Cannot change directory permissions
Hi Rowland, when saying 'I' I theoretically meant any user that has write access to the share. It should be possible to right click the directory in windows, the go to security tab and remove the write permissions on the directory. This behaviour already works with files, I'm trying to figure out how to make it also work for directories. Greetings, Felix -----Ursprüngliche
2015 Aug 04
2
Cannot change directory permissions
Hello, I occasionally need to remove the write permissions from directories inside a share to prevent users from accidentally deleting files inside that directory. My problem is that I neither can view nor can change the permissions of directories on my shares. Curiously enough viewing and changing permissions of files in the same shares works without a problem. Is there anything I
2015 Aug 07
1
Cannot change directory permissions
Hi Rowland, sorry, I hit the wrong reply button in the last answer. So there is no other way than to use Windows ACLs? I was told with our old systems (Samba 3 in non-domain mode) the behaviour I want to achieve was possible when only using ugo. Greetings, Felix -----Ursprüngliche Nachricht----- Von: samba [mailto:samba-bounces at lists.samba.org] Im Auftrag von Rowland Penny Gesendet:
2015 Aug 15
4
Make Samba4 ignore domain prefix on share logon
Hello, at my work we are migrating from samba 3.6.24 on gentoo + openLDAP to Windows Server 2012 AD DC + Samba 4.1.6 Ubuntu Member server for file sharing. Our old configuration ignores domain prefixes when logging on to shares i.e. I just need to type user instead of SAMDOM\user when accessing share from windows machines. The Windows DC behaves like this too, but samba 4 does not. Is there any
2015 Jul 03
4
Getent Differences on a DC and a Member Server
Thank you Felix. On 02/07/15 16:18, Felix Matouschek wrote: > Hi David, > > I experienced this issue as well, it's currently a limitation of Samba 4.2.2. > Samba 4.2.2 DCs do not support pulling home directories and login shells from AD via rfc2307. > > I solved this issue with the "template homedir" and "template shell" directives. > You lose some
2015 Aug 13
0
winbind_krb5_locator usage
Hi Rowland, /var/run/samba/smb_krb5 does not exist. However /var/cache/samba/smb_krb5 exists, there is a file named "krb5.conf.INTRANET". Contents: [libdefaults] default_realm = INTRANET.VIPCO.DE default_tgs_enctypes = aes256-cts-hmac-sha1-96 aes128-cts-hmac-sha1-96 RC4-HMAC DES-CBC-CRC DES-CBC-MD5 default_tkt_enctypes = aes256-cts-hmac-sha1-96
2015 Apr 06
1
winbind authentication for user FAILED with error NT_STATUS_WRONG_PASSWORD
Hello, I'm trying to authenticate to a Samba file server version 3.6.6 which is joined to a samba AD version 4.1.17. The problem is that I can't seem to login using smbclient -L //172.16.0.229/itdev -U shemgp tothe file server and the server displays the error: winbind authentication for user [shemgp] FAILED with error NT_STATUS_WRONG_PASSWORD even if I use the correct password.
2017 Feb 03
3
Problems with winbind cache
Hi guys!! I'm facing problem with Samba 4 + winbind that I spent some days to solve that without success and I'll appreciate any help. I self compile samba 4 and apparently everything is working fine. I installed samba on six distributed servers at remote branch offices and all users, groups, dns and other components are replicating with success. But last week I saw that windind
2015 Dec 08
5
Samba4 ad dc with Centos7
Hello, I may have a problem with winbind setup. -with wbinfo -g and wbinfo -u I get all group/user from AD/DC. -with getent group "Domain Users" and getent passwd "remote_user" I can see the info about the specific group and specific user. -with getent group and getent passwd I only see my local group/users. -I believe that using "getent group" and "getent
2015 Mar 20
1
Debian Jessie AD DC w. BIND9 : DNS update fails for debian squeezy member server
I'm sorry it got confusing, changed the topic and I'll try to explain. I am using Jessie on the DC. Server13 is a linux file server and domain member, it is on squeeze. If possible, I do not want to upgrade it. The problem here is, that it does not seem to generate a DNS record when joining the domain and, after setting up the new smb.conf, the users aren't passed on from winbind to
2014 Jan 19
2
AD share not accessible
Hi, Thx Steve for pointing out the overlapping range issue I had in my conf. I changed the config, but still no success gentent passwd or getent groups is only showing local users/groups after showing the local users, there seems to be a timeout of 5 seconds and then back to shell. Accessing my share with a group that is situated in the group Valid Users isn't working either. No errors in
2015 Mar 19
5
Dynamic DNS Updates not working. samba_dnsupdate : RuntimeError: (sambalist: to exclusive) kinit for [DC@Realm] failed (Cannot contact any KDC for requested realm)
Good morning! First of all thanks Rowland for the fast answer yesterday! I realized that samba-technical might have been the wrong mailing list and switched it to the normal samba users list (hopefully it worked, as it does get a bit confusing with spamgourmets sendto addresses!). Unfortunately the problem with samba_dnsupdate remains after the changes. I did changed the smb.conf, krb5.conf, and
2015 Mar 20
1
Fwd: Dynamic DNS Updates not working. samba_dnsupdate : (sambalist: message 3 of 20) RuntimeError: (sambalist: to exclusive) kinit for [DC@Realm] failed (Cannot contact any KDC for requested realm)
Ok, I setup a new smb.conf and rebooted. Winbind doesn't seem to pass on the domain users anymore and the DNS Update during domain join still fails. For some reason, although I have all samba 3.5.6. packages installed on this debian squeeze samba -V or samba-tool are unknown commands. Maybe this is why the dns update fails, some missing tools or commands? wbinfo -u and wbinfo -g return domain
2023 May 19
1
PAM Offline Authentication in Ubuntu 22.04...
I'm trying to enable offline auth in a Ubuntu 22.04 box, following: https://wiki.samba.org/index.php/PAM_Offline_Authentication using standard ubuntu samba package (4.15.13+dfsg-0ubuntu1.1). I've enabled workaround 'lock directory = /var/cache/samba'. Still does not work, and behave very badly with no conectivity or bad connectivity (wireless): sometime the