similar to: gpo failure

Displaying 20 results from an estimated 3000 matches similar to: "gpo failure"

2020 Aug 27
0
Win10 and NT mode: netlogon script seems does not run anymore.
Hai, Thanks for that link, that is very usefull. Only after reading it i see its missing a very important part. This opens a security leak. See link ( dated in : Last Updated: Apr 15, 2015 ) https://support.microsoft.com/en-us/help/3000483/ms15-011-vulnerability-in-group-policy-could-allow-remote-code-executi The examples shown there. \\<Server>\<Share> - Needs to be
2016 Apr 18
0
samba 3 domain and win10 logon scripts
Am 14.04.2016 um 11:33 schrieb lejeczek: > I'm guessing I'm missing some specifics needed for win10 - what are > those I wonder. Is your Samba a NT4-style PDC? You are using Samba 3, I'm using Samba 4. Anyway: In my experiments I also had to set an additional regpatch for Win10 and a Samba 4.3.x NT4-style domain for logon scripts - otherwise the logon scripts are not
2015 Oct 07
1
gpo failure
On 7-10-2015 14:52, mourik jan c heupink wrote: > I am not sure what to check or do next..? > I checked filesystems, and there is a difference: dc3 = ext4 dc4/dc2 = xfs But ext4/xfs should both support acl and user_xattr Problem dc3 is mounted like: > /dev/vda3 on /var/lib/samba type ext4 (rw,relatime,user_xattr,barrier=1,data=ordered) I don't see the problem... But I DO get
2015 Aug 10
0
Samba Windows 10
try these settings for your GPO. Solution: GPEDIT.MSC -> Computer -> Administrative templates -> Network -> Networkprovider -> Hardened UNC Paths Added \\foo.lan\netlogon and Value: RequireMutualAuthentication=0,RequireIntegrity=0,RequirePrivacy=0 add \\foo\netlogon also Greetz, Louis >-----Oorspronkelijk bericht----- >Van: samba [mailto:samba-bounces at
2015 Jul 13
0
Strange issue with share access on domain controllers
Make sure you use the new GPO policies. Looks like the problem "[Samba] Windows 10 in Samba 3 domain: netlogon share access denied" Its not only for windows 10, also 7 and 8.x Solution: GPEDIT.MSC -> Computer -> Administrative templates -> Network -> Networkprovider -> Hardened UNC Paths Added \\foo.lan\netlogon and Value:
2015 Oct 07
4
gpo failure
On 10/7/2015 7:31 AM, mourik jan c heupink wrote: > On 7-10-2015 13:18, mourik jan c heupink wrote: >> So my dc3 seems unsynced or so. >> >> So I am now checking to make sure that my rsync replication script >> works as it should. (I'm guesssing it does NOT) > > The rsync seems to be working as it should, so now I'm > guessing that idmap.ldb differs
2020 Aug 26
4
Win10 and NT mode: netlogon script seems does not run anymore.
[ Rowland, i know, i need to upgrade. ;-) ] Some month ago, with a relative big bunch of fix&tweaks, i was able to put a Win10 1903 client in join to a 'NT mode' Samba domain. Now i'm trying to do the same with a 1909 version; all seems to work as before, BUT netlogon script (defined in smb.conf with: logon script = startup.bat ) simply seems does not run. No log event in
2014 Jul 23
1
sssd problems after dc1 is no longer online
Hi all, I hope that this request for help will be the last one, for a while to come. Today, sernet support helped my sort out our DC mess, and they did a great job. However, sssd no longer works, and I hope someone here can help out. We used to have DC1, DC2 and DC3. DC1 was the classic-upgraded, first, 'original' DC, and had to be shutdown, unfortunately. So only DC2 and DC3
2018 May 30
0
Can't join Windows 10 to classic domain
Yes, you correct, you wasted time on this.. Read also, this will give more insight. https://support.microsoft.com/en-us/help/4034314/smbv1-is-not-installed-by-default-in-windows Greetz, Louis > -----Oorspronkelijk bericht----- > Van: samba [mailto:samba-bounces at lists.samba.org] Namens > Marco Shmerykowsky PE via samba > Verzonden: dinsdag 29 mei 2018 19:12 > Aan: samba
2015 Oct 07
0
gpo failure
Hai Mourik Jan, Here are some commands you can try On a "good" server, run : Getfacl -R /var/lib/samba/sysvol > sysvol.permissions-GOOD.acl On the bad server do the same Getfacl -R /var/lib/samba/sysvol > sysvol.permissions-BAD.acl Diff them and see whats the difference. And when sure its needed apply the "good" acl on the bad server. But make sure your
2018 May 29
4
Can't join Windows 10 to classic domain
I've been running Samba 4 in NT4 Domain mode for a few years, and it's been working fine with Windows 7 PCs. I now need to join a new Windows 10 PC to the domain, but I'm not having any success! When I try to join the domain, the Windows 10 PC says "An Active Directory Domain Controller could not be contacted...." I've tried a few things, including:- Setting
2005 Jun 17
2
Illegal multibyte sequence error in pdbedit output
dear list, in the output of pdbedit -L -v heupink I'm getting these errors: convert_string_allocate: Conversion error: Illegal multibyte sequence(???p? ????????) Any ideas where to look..? Are these serieus errors..? (it looks as if the errors occur BEFORE the actual ldap connection is opened, so I guess they're not ldap related...) My samba is 3.0.14a, and system is sles9 Below find
2015 Oct 07
2
gpo failure
Hi Louis, Marc, list, Quick update: On 7-10-2015 12:25, L.P.H. van Belle wrote: > Marc, > > Its for mourik important, because he wants to know why he has this error in his event logs. (i want to know also.) (learning mode) > > Mourik Jan, reboot the computer and login again, do you still see the error message, just to check if this wasnt an old message. > And/or, maybe this pc
2015 Jan 23
3
Multiple attributes
Ho Mourik Thanks for your reply, any other attribute which we can duplicate? Br. Umar On Fri, Jan 23, 2015 at 1:47 PM, mourik jan heupink - merit < heupink at merit.unu.edu> wrote: > Hi, > > In AD, the attribute mail can only exist once. > > MJ > > On 01/23/2015 05:27 AM, Umar Draz wrote: > >> Hi All >> >> I am tying to create a user in SAMBA 4
2015 Jan 23
0
Multiple attributes
On 23/01/15 09:44, Umar Draz wrote: > Ho Mourik > > Thanks for your reply, any other attribute which we can duplicate? > > Br. > > Umar > > On Fri, Jan 23, 2015 at 1:47 PM, mourik jan heupink - merit < > heupink at merit.unu.edu> wrote: > >> Hi, >> >> In AD, the attribute mail can only exist once. >> >> MJ >> >> On
2015 Nov 18
4
Permission Issues with GPO
Hai Mourik Jan/Victor. > MJ definitely understands the problem I'm facing.... Yes, and i do to but you wont listen... ALL My client pc's, windows and linux computers, dont have any uid/gid assigned. My client pc's do access the DCs and multiple member servers with shares. I do distribute settings and files with GPO and these files are on a member server. Yes also as
2014 Sep 16
2
missing sam.ldb file
Hi, We have suddenly noticed a difference between our dc's. The file called /var/lib/samba/private/sam.ldb.d/sam.ldb is only present on 1 of our three dc's. The AD seems to be in healthy state, but...isn't this a bit strange? root at dc3:/var/lib/samba/private/sam.ldb.d# ls -l sam.ldb -rw-r--r-- 1 root root 53248 Sep 2 17:31 sam.ldb root at dc3:/var/lib/samba/private/sam.ldb.d#
2018 May 30
2
Can't join Windows 10 to classic domain
The issue does not seem to be connected to SMB1. It can be installed and it still won't authenticate. Something has been changed to force authentication to AD/DNS either solely or as a first step. The translation of the netbios name never happens even if the computer can resolve the name. Given that the authentication thru netbios resolution seems to get grandfathered in provided the domain
2015 Oct 14
1
machine accounts question
In responce of Mourik Jan in this thing.. - The pc's boot that fast these days that the network stack is not loaded yet, which explains the "currently no logon servers available to service the logon request" which can be solved by setting the "Always wait for network " Setting in GPO. For Mathias, If your using sites and different dns domains. Like Office1.domain.tld
2014 Jul 16
1
Must Samba4 AD be provisionned with rfc2307 to use winbind ?
I have been reading through an old thread and to be honest confused.com root at zent1:~# samba-tool domain level show params.c:pm_process() - Processing configuration file "/etc/samba/shares.conf" ldb_wrap open of secrets.ldb Domain and forest function level for domain 'DC=office,DC=zentyal,DC=lan' Forest function level: (Windows) 2003 Domain function level: (Windows) 2003