similar to: why samba-tool allows password reset against Windows DC ?

Displaying 20 results from an estimated 2000 matches similar to: "why samba-tool allows password reset against Windows DC ?"

2015 Oct 16
1
samba-tool using domain users
!!! Regards For example, I tried the following command: samba-tool user create jhon p at assword -U mike Then, the user is created without authenticate the user mike Another command that I need execute with authentication is "samba-tool fsmo transfer". That's all the point of an AD domain : ) If any user could make change into AD database, the product would not be too much secure.
2015 Oct 02
3
transfer fsmo role using ldap
On 02/10/15 20:09, Yosel Lazaro Vera Gonzalez wrote: > > ----- Mensaje original ----- > De: "Rowland Penny" <rowlandpenny241155 at gmail.com> > Para: samba at lists.samba.org > Enviados: Viernes, 2 de Octubre 2015 3:54:04 > Asunto: Re: [Samba] transfer fsmo role using ldap > > On 02/10/15 04:27, Yosel Lazaro Vera Gonzalez wrote: >> !!!Regards >>
2015 Feb 13
1
GPO set link contaniter
>I created a gpo with samba-tool, but I want to assign to a OU, the GPO that I created earlier, >I guess I need to use the command, samba-tool gpo SetLink. How the command is used? >I tried the following way: > samba-tool gpo setLink OU=People,DC=dominio,DC=pdc,DC=cu cn_GPO > But it did not work > Throws the following exception Badly formed gpLink
2015 Feb 12
3
Samba4 GPO - set a Policy
>Sorry , >I meant without the ADUC tool, of course I have client Windows, >I want to create a policy that prevents access to the control panel for users in a specific OU only using samba 4 without the ADUC tool
2016 Mar 02
2
changing location for the profiles and sysvol folder
Is it possible to define a different location for the profiles and sysvol folder during the provision of samba4 ? how can I do it ?
2015 Feb 12
2
Samba4 GPO - set a Policy
I want to create a policy that prevents access to the control panel for users in a specific OU using only samba4 without any Windows client.
2019 Oct 25
3
Old samba password is valid after setting the new one.
Hi, I've detected a very strange behavior on samba 4.8.9 and 4.10.6. After setting a new password for a user with samba-tool the old password remains valid. The user can use both passwords. After setting the third password become the first password invalid: :~ # samba-tool user setpassword extisadm --newpassword=12AbCdEf Changed password OK :~ # samba-tool user setpassword extisadm
2015 Nov 19
3
Problem setting password: : failed to pull old supplementalCredentialsBlob: NT_STATUS_BUFFER_TOO_SMALL
Hello, I am stuck with a error when setting password for a couple of specific users. This error makes impossible to set the password for the affected users. In Windows I get an operation error but the samba-tool output is more informative: samba-tool user setpassword user2 --newpassword= New Password: ndr_pull_error(11): Pull bytes 2 (../librpc/ndr/ndr_basic.c:103) ERROR: Failed to set
2019 Jul 26
2
'samba-tool user setpassword', PwdLastSet and expiration...
I've a script 'infrastructure' that manage password propagation between some domains/password sources. When, in my AD domains, i ''consume'' a passord caming from another domain, i run: samba-tool user setpassword ${USER} --option="check password script"="" --newpassword="$mypassword" and the script exit with status 0 and print
2003 Feb 26
2
Scripting with smbpasswd
Hi All, I'm writing a website on which users can change their Samba-password. I therefore use the smbpasswd-utility which I execute through the PHP function system (or exec, it doesn't really matter). I have to use the -s switch for smbpasswd to enable it to read input from STDIN, which I redirect to read the information from a file. I execute: /usr/local/samba/bin/smbpasswd -r
2016 Sep 12
2
installing samba from ubuntu 16.04 repository as DC
!!! Regards Is it possible to install samba4 from ubuntu 16.04 repository as a domain controller? I tried, but I'm having trouble with the sysvol folder ACLs. I can authenticate with smbclient however when I try to access from windows with the same user, I get permission denied # smbclient //localhost/sysvol -UAdministrator -c 'ls' Enter Administrator's password:
2014 Apr 30
2
Changing active directory user password via LDAP
Hello, lists. I'm struggling to find out, how one can change password of an active directory (based on samba4) user via LDAP. The problem is that if I try to use userPassword parameter: dn: CN=John Smith,cn=Users,DC=domain,DC=com changetype: modify replace: userPassword userPassword: newPassword ldapmodify -v -c -a -f filename.ldif -H ldaps://server.domain.com -D\ administrator at
2024 Apr 25
1
Users/admin unable to reset passwords
On Mon, 22 Apr 2024 08:56:41 -0400 Mark Foley via samba <samba at lists.samba.org> wrote: > New related issue. > > I upgraded the Domain Controller from 4.8.2 to 4.18.9 about 90 days > ago, and set the 'Maximum password age' to 90 days. Today, two of the > users' passwords were expired when they tried to log in this morning. > They got the messaage that their
2019 Mar 11
4
classicupgrade, net rpc rights grant NT_STATUS_IO_TIMEOUT and NT_STATUS_INTERNAL_ERROR
Dear all, we are transitioning from an openldap / MIT KDC setup to a samba4 AD. I am doing this by setting up a samba NT4 domain, populating it from LDAP and sticking in the password hashes which I automatically extract from the MIT KDC arc4-hmac keys. Then I run the classicupgrade. I do this whole thing from cron in a script once a day to be able to slowly migrate services. The MIT / openldap
2018 Mar 28
5
How to change Domain password as normal user?
On Tue, 27 Mar 2018 13:38:56 -0400 Mark Foley wrote: > > On Mon, 26 Mar 2018 08:08:53 +0200 Michael Wandel <m.wandel at t-online.de> wrote: > > > > Am 26.03.2018 um 06:31 schrieb Mark Foley via samba: > > > As a normal user, I want to change my Domain Password. I've tried: > > > > > > $ samba-tool user setpassword myuserId
2024 Apr 29
2
Users/admin unable to reset passwords
On Thu Apr 25 05:02:39 2024 Rowland Penny via samba <samba at lists.samba.org> wrote: > > On Mon, 22 Apr 2024 08:56:41 -0400 > Mark Foley via samba <samba at lists.samba.org> wrote: > > > New related issue. > > > > I upgraded the Domain Controller from 4.8.2 to 4.18.9 about 90 days > > ago, and set the 'Maximum password age' to 90 days.
2019 Apr 29
2
Difficulties retrieving randomly assigned password for newly created Samba user acounts
Hi everyone, I am using Samba 4.5.16-Debian on Raspbian and thanks to the help offered by everyone here I now finally have a mostly-working Active Directory network. I am now at the stage of creating inidividual user accounts for my domain and unfortunately I have a very basic but fundamental problem! I currently enter the following input at the command-line to create a new user on my DC: pi
2019 Mar 12
5
classicupgrade, net rpc rights grant NT_STATUS_IO_TIMEOUT and NT_STATUS_INTERNAL_ERROR
Am 11.03.2019 um 09:24 schrieb Rowland Penny via samba: > On Mon, 11 Mar 2019 07:16:30 +0100 > Christian via samba <samba at lists.samba.org> wrote: > >> Dear all, >> >> we are transitioning from an openldap / MIT KDC setup to a samba4 AD. >> I am doing this by setting up a samba NT4 domain, populating it from >> LDAP and sticking in the password hashes
2018 Mar 24
5
Redirected folders no longer working correctly
I have a new problem. I'm currently running Samba4 4.4.16 as an AD/DC. I've been running this AD/DC for several years now. I am using redirected folders. Up to now, domain users logging onto any domain member Windows workstation would get their desktop. Recently I discovered that users now only get their desktop on their "usual" workstation, and the Desktop Target is in fact
2015 Aug 28
2
More on bind_dlz - documentation I have not found
On 28/08/15 16:45, Robert Moskowitz wrote: > > > On 08/28/2015 11:04 AM, Rowland Penny wrote: >> On 28/08/15 15:56, Robert Moskowitz wrote: >>> >>> >>> On 08/28/2015 10:42 AM, L.P.H. van Belle wrote: >>>> Are you setting up a AD DC or old style NT PDC ? >>>> >>>> see : >>>> /etc/default/sernet-samba to