similar to: machine accounts question

Displaying 20 results from an estimated 2000 matches similar to: "machine accounts question"

2017 Jul 10
2
Samba ADS-member-server: FQDNs in /etc/hosts
Am 2017-07-10 um 12:08 schrieb Rowland Penny via samba: > I would change /etc/hosts to this: > > 127.0.0.1 localhost > 127.0.1.1 pre01svdeb01.my.tld pre01svdeb01 > > ::1 localhost ip6-localhost ip6-loopback > ff02::1 ip6-allnodes > ff02::2 ip6-allrouters > > But replace '127.0.0.1' with the real ipaddress of pre01svdeb01.my.tld > if
2015 Oct 13
4
machine accounts question
Hi, I can be wrong but for me UID and GID are UNIX concepts. If your workstations are Windows systems, those UID/GID are not necessary. This does not address your issue but it could help to understand things and to avoid searching in the wrong direction... Cheers, mathias 2015-10-12 20:41 GMT+02:00 mourik jan c heupink <heupink at merit.unu.edu>: > Some extra info from the samba
2017 Jul 10
3
Samba ADS-member-server: FQDNs in /etc/hosts
(new thread, same migration project) I see GPOs applied, but network drives sometimes mapped, sometimes not. Found something around hardened UNC paths, applied some GPO, dunno if that is necessary or helps (I still have to check where to apply that GPO, computer or user ...). While debugging that I find in log.smbd on the member server: [2017/07/10 11:22:20.290018, 1]
2016 Jan 08
2
Security permissions issues after changing idmap backend from RID to AUTORID
adding samba list On Fri, Jan 8, 2016 at 10:22 AM, Partha Sarathi <parthasarathi.bl at gmail.com> wrote: > Hi, > > > We have a customer who facing security issues after changing RID idmap > backend to AUTORID. > > > The History of the issue looks as below, > > 1) When samba configured with RID idmap backend customer requested to > change few permissions,
2016 Jan 10
2
Security permissions issues after changing idmap backend from RID to AUTORID
Thanks for the reply. Now we end-up with mix uid/gid from both ranges in cache TDBs. Few user logins are denied with below error in smbd.log, *[2016/01/07 11:39:44.475960, 1, pid=5202] ../source3/auth/token_util.c:430(add_local_groups* ** SID S-1-5-21-3082371790-1274690562-2878062458-5771 -> getpwuid(10005771) failed** wbinfo --user-info=mariond mariond:*:10015138:110000513:Marion,
2019 Jun 24
2
setting up a new ADS infrastructure
On 24/06/2019 10:00, Stefan Froehlich via samba wrote: > On Mon, Jun 24, 2019 at 10:52:07AM +0200, Stefan Froehlich via samba wrote: >> <http://froehlich.priv.at/www/samba/> > Always try your own links before posting them... it must be > <http://froehlich.priv.at/samba/> of course, sorry. > No problem, I just refreshed the old page I had open ;-) You have this on the
2017 Sep 25
9
Domain member server: user access
samba-4.6.8 on both DC and DM. 3 users were created as suggested: DC # samba-tool user create kamleitnerl Le26xxx --nis-domain=arbeitsgruppe --unix-home=/home/kamleitnerl --uid-number=10070 --login-shell=/bin/false --gid-number=100 this user can login to a Windows PC, but not access/connect shares. log for the PC's IP: [2017/09/25 15:45:10.522051, 1]
2018 Jan 16
3
Failed to finalize nt token
I am googling around for an issue and can't figure it out so far. Status: 2 Debian 9.3 ADCs with samba-4.6.12 each. 1 Gentoo Samba Domain Member server "main", Samba version 4.5.15 (we downgraded because of another issue a month ago or so). *one* AD user is able to log into his Windows10 PC, but doesn't get a network share connected. If I test that from the DM server or the
2023 Jan 31
2
Log errors on domain member
Hi folks, The smb.conf and other information after specification of the problems. The journal on a AD domain member server is cluttered with permission denied entries of this message pair: Jan 31 07:02:26 konsrvfast smbd[436004]: [2023/01/31 07:02:26.083500,? 0, effective(11025, 10515), real(11025, 0)] ../../source3/smbd/smb2_service.c:168(chdir_current_service) Jan 31
2019 Jun 24
2
setting up a new ADS infrastructure
On 24/06/2019 12:41, Stefan Froehlich via samba wrote: > On Mon, Jun 24, 2019 at 10:22:41AM +0100, Rowland penny via samba wrote: >> On 24/06/2019 10:00, Stefan Froehlich via samba wrote: >>> On Mon, Jun 24, 2019 at 10:52:07AM +0200, Stefan Froehlich via samba wrote: >>>> <http://froehlich.priv.at/www/samba/> >>> Always try your own links before posting
2023 Jan 31
1
Log errors on domain member
On 31/01/2023 06:59, Peter Milesson via samba wrote: > Hi folks, > > The smb.conf and other information after specification of the problems. > > The journal on a AD domain member server is cluttered with permission > denied entries of this message pair: > > ?? Jan 31 07:02:26 konsrvfast smbd[436004]: [2023/01/31 > ?? 07:02:26.083500,? 0, effective(11025, 10515),
2014 May 02
2
Auth fail getpwuid(3000007) failed
Hi sorry to bother, but all of a sudden after a fresh install of samba with the regular smb4.conf it keeps on failing when users try to authenticate: smbclient -U MyUser \\\\MyServerName\\MyShare MyPassword session setup failed: NT_STATUS_UNSUCCESSFUL [...] check_ntlm_password: authentication for user [MyUser] -> [MyUser] -> [MyUser] succeeded [2014/05/02 10:29:40.930648, 3]
2017 Jul 11
5
Samba ADS-member-server: FQDNs in /etc/hosts
Am 2017-07-11 um 09:34 schrieb Stefan G. Weichinger via samba: > [2017/07/11 09:31:17.790046, 2] > ../source4/dns_server/dns_query.c:1019(dns_server_process_query_send) > Not authoritative for 'SERVER', forwarding > [2017/07/11 09:31:17.826966, 2] > ../source4/dns_server/dns_query.c:1019(dns_server_process_query_send) > Not authoritative for 'SERVER',
2023 Apr 13
4
Is LDAP + Kerberos without Active Directory no longer supported?
Ok after installing libpam-winbind etc I had someone try to connect from a MacOS and they got: [2023/04/13 15:50:50.002773,? 1] ../../source3/auth/auth_generic.c:211(auth3_generate_session_info_pac) ? auth3_generate_session_info_pac: Unexpected PAC for [testuser at OURREALM.REALM] in standalone mode - NT_STATUS_BAD_TOKEN_TYPE [2023/04/13 15:50:50.002891,? 3]
2020 Jan 03
2
delayed write files errors
Hello, First of all : Happy New Year to you all :-) I need your help for a problem. I've 2 servers on CentOS 7: a Samba DC+AD and a Samba Files Sharing. In the Samba file sharing server, all data is store in a RAID Disk partition wich is mounted in /data/ (fstab : UUID=a47ea879-7072-4e8f-a668-3f5a86e58ef2 /data ext4 defaults,user_xattr,acl,barrier=1?? ?1 2). Under Windows each user has
2015 Apr 05
5
Samba as AD member can not validate domain user
Hi! Wheh domain user tries to access file server (samba4, member of AD domain) server logs such error: 2015/04/05 21:13:01.095178, 1] ../source3/auth/user_krb5.c:164(get_user_from_kerberos_info) Username DOMAINwusername is invalid on this system [2015/04/05 21:13:01.095200, 1] ../source3/auth/auth_generic.c:99(auth3_generate_session_info_pac) Failed to map kerberos principal to system
2016 Aug 08
2
why does add_local_groups come up in only one system's logs?
I have a couple of Debian 8.5 systems set up in similar manner. Samba is version 4.2.10-Debian Here is the essential config... # testparm /etc/samba/smb.conf Load smb config files from /etc/samba/smb.conf Processing section "[homes]" Loaded services file OK. Server role: ROLE_DOMAIN_MEMBER Press enter to see a dump of your service definitions # Global parameters [global]
2016 Aug 08
2
why does add_local_groups come up in only one system's logs?
On Mon, Aug 8, 2016 at 10:54 AM, Rowland Penny <rpenny at samba.org> wrote: > On Mon, 8 Aug 2016 10:24:03 -0300 > francis picabia <fpicabia at gmail.com> wrote: > > > I have a couple of Debian 8.5 systems set up in similar manner. > > Samba is version 4.2.10-Debian > > > > Here is the essential config... > > > > # testparm
2015 Apr 16
2
I am configuring for 2 days now new Smaba 4.1.12 with the same annoying results. Any help is very much appreciated.
Hi There, I am configuring for 2 days now new Smaba 4.1.12 with the same annoying results. Any help is very much appreciated. SID S-1-5-21-1390067357-606747145-725345543-7571 -> getpwuid(16777216) failed [2015/04/16 17:59:36.608681, 3] ../source3/auth/token_util.c:316(create_local_nt_token_from_info3) Failed to finalize nt token I can run perfectly well the commands: wbinfo -g
2019 Jun 24
2
setting up a new ADS infrastructure
On Sun, Jun 23, 2019 at 03:34:08PM +0200, Stefan Froehlich via samba wrote: > No need to be sorry - most likely I'll the whole setup from scratch. Did so (I am following a script by now, so it does not take too long), but I feel more and more lost - there must be always something different I do wrong: Now I configured DNS the other way round, pointing every host to the DC and using