Displaying 20 results from an estimated 10000 matches similar to: "samba4 AD with NATted clients"
2015 Jul 15
2
samba4 AD with NATted clients
Hi Reindl,
On 7/15/2015 13:25, Reindl Harald wrote:
> i doubt that will work because there is no broadcasting possible over NAT
And I was under the impression that broadcasts were more or less from
the NT4-domain days, and that now with AD things were (perhaps
primarily) done using DNS..?
MJ
2015 Jul 22
1
samba4 AD with NATted clients
Hi all,
Further to my AD clients through NAT question: has anyone ever tried
this diagnostics tool from microsoft in their samba4 AD installation:
http://www.microsoft.com/en-us/download/confirmation.aspx?id=24009
It's supposed to verify connectivity requirements for AD functionality.
(replication, port status, etc, etc)
At our site, it crashes on verification of udp on port 137. I
2015 Jul 15
0
samba4 AD with NATted clients
Am 15.07.2015 um 12:39 schrieb mourik jan heupink:
> We currently run all public ip's inside our network, DC's and
> workstations too.
>
> We are thinking perhaps to divide our network into a NATed workstations
> segment, but keep our DC's and fileservers IPs public as they are now.
>
> We are running sernet-samba, mainly win7 clients, using GPO's, shared
>
2015 Nov 18
3
Permission Issues with GPO
None of my computers have a UID/GID and my GPO works fine.
Add the line i suggested to the share, and setup your rights
Gr.
Louis
> -----Oorspronkelijk bericht-----
> Van: samba [mailto:samba-bounces at lists.samba.org] Namens mourik jan c
> heupink
> Verzonden: dinsdag 17 november 2015 18:55
> Aan: samba at lists.samba.org
> Onderwerp: Re: [Samba] Permission Issues with
2014 Mar 19
2
multiple dns forwarders
Hi,
To make our AD more robust, I'd like to provide more than one dns
forwarder, like for example:
dns forwarder = 8.8.8.8 8.8.4.4
However, this seems to break dns resolution completely (and without
logging errors in the logs!):
# Host test.com not found: 3(NXDOMAIN)
With only one forwarder things work:
$ test.com has address 208.64.121.161
Am I really allowed to specify only one
2015 Feb 13
2
cifs traffic over less trusted networks
Hi all,
We might need to open port 445 for some (specific) external ip's, so
they can make a direct connection to our samba4 AD fileservers.
I am wondering how secure that would be, as we would normally use a VPN
connection for something like this.
So: What smb.conf options would I need to set, to make cifs traffic over
a less-trusted network as safe as possible? (or is cifs traffic by
2015 Jan 23
3
Multiple attributes
Ho Mourik
Thanks for your reply, any other attribute which we can duplicate?
Br.
Umar
On Fri, Jan 23, 2015 at 1:47 PM, mourik jan heupink - merit <
heupink at merit.unu.edu> wrote:
> Hi,
>
> In AD, the attribute mail can only exist once.
>
> MJ
>
> On 01/23/2015 05:27 AM, Umar Draz wrote:
>
>> Hi All
>>
>> I am tying to create a user in SAMBA 4
2005 Feb 03
6
smbldap-populate failure
dear list,
I'm trying to migrate nt4 to samba3, and have two issues at the moment.
First is: I'm getting two (small?) errors using smbldap-populate on my ldap
database. At first I tried ignoring this, but now also rpc net vampire
complains. (maybe because of this..?)
This is the output of smbldap-populate:
<quote>
server:/usr/local/sbin # smbldap-populate
Using builtin directory
2015 Oct 13
4
machine accounts question
Hi,
I can be wrong but for me UID and GID are UNIX concepts. If your
workstations are Windows systems, those UID/GID are not necessary.
This does not address your issue but it could help to understand things and
to avoid searching in the wrong direction...
Cheers,
mathias
2015-10-12 20:41 GMT+02:00 mourik jan c heupink <heupink at merit.unu.edu>:
> Some extra info from the samba
2015 Oct 06
6
weak passwords
Hi,
Is it possible to test our AD for weak passwords?
We have set max password age, and password complexity etc. However, we
would like to know that the passwords that are CURRENTLY still in the
system are good or weak.
Perhaps some kind of tool to test dictionary passwords etc, but
preferably locally on the /var/lib/samba databases to not lockout the
accounts due to too many failed
2015 Oct 06
3
gpo failure
Am 06.10.2015 um 21:26 schrieb mourik jan c heupink:
> I have checked all our policy directories on sysvol, and I have a
> "Registery.pol" only in some "/Machine" directories, and none in "/User"
> or "/Group Policy".
Do you have any policy in the User tree in the GPME in that GPO? If you
never defined one, then the file is missing. Try e. g.
2015 Oct 01
2
ntlm_password_check: LM password, NT MD4 password in LM field and LMv2 failed for user username
On 10/01/2015 03:57 PM, David Whitney wrote:
> Hi mourik...are you saying these messages in the logs are new, as in
> suddenly these messages are appearing?
>
> What version of Samba are you running?
>
We're on samba 4.2.4, sernet, on wheezy, AD. Running without any issues
for more than a year.
I have never noticed them before, and a quick search in the logs doesn't
2015 Jan 23
2
Multiple attributes
Hi All
I am tying to create a user in SAMBA 4 AD with ldapadd, but its not allow
me to add multiple mail attributes, here is my ldif of user.
dn: CN=ayesha,CN=Users,DC=samba4pdc,DC=net
objectClass: top
objectClass: person
objectClass: organizationalPerson
objectClass: user
cn: ayesha
name: ayesha
sAMAccountName: ayesha
userPrincipalName: Ayesha Umar
objectCategory:
2014 Sep 23
3
software deployment
Hi,
Just wondering: What are you guys using to deploy software on your
windows (7) workstations within the samba4 AD?
These are options I know of:
* wpkg (but it seems it's development is not too active)
* wpkg-gp using the group policies
* www.opsi.org (Client Management System for Windows clients)
* standard windows software deployment, but I think that's msi-only
This page also has
2015 Nov 18
4
Permission Issues with GPO
Hai Mourik Jan/Victor.
> MJ definitely understands the problem I'm facing....
Yes, and i do to but you wont listen...
ALL My client pc's, windows and linux computers, dont have any uid/gid assigned.
My client pc's do access the DCs and multiple member servers with shares.
I do distribute settings and files with GPO and these files are on a member server. Yes also as
2015 Oct 07
2
gpo failure
Hi Louis, Marc, list,
Quick update:
On 7-10-2015 12:25, L.P.H. van Belle wrote:
> Marc,
>
> Its for mourik important, because he wants to know why he has this error in his event logs. (i want to know also.) (learning mode)
>
> Mourik Jan, reboot the computer and login again, do you still see the error message, just to check if this wasnt an old message.
> And/or, maybe this pc
2014 Jan 28
3
samba4 [homes] | canonicalize_connect_path failed for service
Hi,
Meanwhile we've come many steps further, and a new issue has risen. In
samba4 AD we have a user with:
- homeDirectory \\server\username
- homeDrive P:
- scriptPath logon.bat
When this user logs on, logon.bat is executed successfully, but
homeDirectory is NOT mounted on P: and in the logs we see:
canonicalize_connect_path failed for service username,
path /\\server\username
It seems
2015 Oct 06
5
gpo failure
Hi all,
There has been some discussion on GPO's lately, and I find myself having
a problem too. This error in logged on one of our win7 workstations:
EventData
SupportInfo1 2
SupportInfo2 1232
ProcessingMode 1
ProcessingTimeInMilliseconds 1638
ErrorCode 5
ErrorDescription Access is denied.
DCName \\dc4.samba.company.com
GPOCNName
2014 Sep 16
2
missing sam.ldb file
Hi,
We have suddenly noticed a difference between our dc's. The file called
/var/lib/samba/private/sam.ldb.d/sam.ldb
is only present on 1 of our three dc's. The AD seems to be in healthy
state, but...isn't this a bit strange?
root at dc3:/var/lib/samba/private/sam.ldb.d# ls -l sam.ldb
-rw-r--r-- 1 root root 53248 Sep 2 17:31 sam.ldb
root at dc3:/var/lib/samba/private/sam.ldb.d#
2005 Jun 17
2
Illegal multibyte sequence error in pdbedit output
dear list,
in the output of pdbedit -L -v heupink I'm getting these errors:
convert_string_allocate: Conversion error: Illegal multibyte sequence(???p?
????????)
Any ideas where to look..? Are these serieus errors..? (it looks as if the errors occur BEFORE the actual ldap connection is opened, so I guess they're not ldap related...)
My samba is 3.0.14a, and system is sles9
Below find