Displaying 20 results from an estimated 20000 matches similar to: "Best solution for remote sites"
2016 May 15
1
Best solution for remote sites
Le 14/05/2016 à 12:03, Andrew Bartlett a écrit :
> On Wed, 2016-05-11 at 14:06 +0200, Sébastien Le Ray wrote:
>> Hi,
>>
>> I was wondering if there was a possibility for remote sites to avoid
>> having a "local" domain controller (Samba 4 AD DC) and still provide
>> share access while WAN link is down. Something like the Windows
>> credential cache
2016 Mar 29
3
Permission denied on GPT.ini (Event ID 1058)
To see which DC is used by Windows client: open a MSDOS console, type
"set", look for LOGONSERVER=\\<your_dc>
<your_dc> is the DC used to connect on.
If issue comes from one DC I would have on sysvol synchronisation between
DC, ACL on all sysvol, DNS entries (but I don't think that's a DNS issue if
you have only GPO issue).
2016-03-29 14:51 GMT+02:00 Sébastien Le
2016 Mar 29
5
Permission denied on GPT.ini (Event ID 1058)
Complete event id of :
> But still, events log show a warning about kerberos ticket from LsaSrv
> source and right after a permission denied on GPT.ini
And a getfacl of the problem GPO SID please, i'll check.
And a output of ipconfig /all on the problem pc.
And question, dedicated IP or dhcp IP?
Greetz,
Louis
> -----Oorspronkelijk bericht-----
> Van: samba
2016 Mar 29
3
Permission denied on GPT.ini (Event ID 1058)
Ok, where your pc's get the DNS info from?
Server : AD-DC + DNS
Or
Server : AD-DC
+
Some other server with DNS
Can you give the output of
dig NS your.domain.tld
and tel us what what is.
> -----Oorspronkelijk bericht-----
> Van: samba [mailto:samba-bounces at lists.samba.org] Namens Sébastien Le Ray
> Verzonden: dinsdag 29 maart 2016 16:31
> Aan: samba at
2016 Mar 19
3
Permission denied on GPT.ini (Event ID 1058)
Le 18/03/2016 20:58, lingpanda101 at gmail.com a écrit :
> On 3/18/2016 2:15 PM, Sébastien Le Ray wrote:
>>
>>
>>>
>>> Are you using Item level targeting in your GPO?
>>>
>>
>> No
>
> When this error happens, can you confirm if you can manually navigate
> to the file? Open file explorer and enter the UNC path.
>
> ie.
2016 Apr 08
3
Samba as AD-Controller: unable to update policies and call start scripts
Zitat von Sébastien Le Ray <sebastien-samba at orniz.org>:
>> The very strange thing is, that gpupdate tries to copy somethings
>> from \\cch.intra\sysvol and not from \\dc1\sysvol...
>> There a no server with name cch.intra, this is just the Realm...
>
> Thats expected. your.realm should resolve to all your DC in a
> round-robin fashion.
OK, I didn't
2015 Jul 12
7
Strange issue with share access on domain controllers
Hi list,
I've a strange issue with Windows 7 (also occurs on 8.1) when accessing
shares on domain controllers. If I use IP address or in-domain FQDN
(server.domain.name), all is right. If I use another DNS entry pointing
to the same IP, share access fails with following message (translated
from french) :
\\somehost.somsuffix\someshare is not accessible. […] Invalid parameter
Issue
2016 Aug 03
1
Samba 4.2.14 GPO issue
Dear Sébastien,
Sorry for the delay,
Please check on the log below.
As for the word "存取被拒。" it should translate to Access Deny...
Please help.
- <Event xmlns="*http://schemas.microsoft.com/win/2004/08/events/event
<http://schemas.microsoft.com/win/2004/08/events/event>*">
- <System>
<Provider Name="*Microsoft-Windows-GroupPolicy*"
2016 Jul 24
3
Samba 4.2.14 GPO issue
Hello Sébastien Le Ray,
The PC reply the following...
The processing of Group Policy failed. Windows could not resolve the user
name. This could be caused by one or more of the following:
a) Name Resolution failure on the current domain controller.
b) Active Directory Replication Latency (an account created on another
domain controller has not replicated to the current domain controller).
The
2016 Mar 30
2
Permission denied on GPT.ini (Event ID 1058)
I found this one.
Check which one works for you.
http://www.eventid.net/display-eventid-40960-source-LSASRV-eventno-8508-phase-1.htm
Im sure this is not a samba configuration problem.
Greetz,
Louis
> -----Oorspronkelijk bericht-----
> Van: samba [mailto:samba-bounces at lists.samba.org] Namens L.P.H. van Belle
> Verzonden: dinsdag 29 maart 2016 16:18
> Aan: samba at
2016 Apr 14
4
Permission denied on GPT.ini (Event ID 1058)
I hate 'me too' replies - but I have also been struggling with this for
some years in my multi-DC environment. (yes, replicated sysvol via lsyncd +
rsync; permissions looked identical via getfacl last time I checked).
Sometimes a client machine will run gpupdate just fine; other times it will
fail, seemingly randomly.
My next step was going to be to run wireshark on a client machine to
2016 Mar 29
2
Permission denied on GPT.ini (Event ID 1058)
I'm not an expert in idmap (at all in fact :p) but I thought idmap stuffs
were here to replace RFC2307 UID/GID declared into AD/LDAP objects.
In others words, if you configure correctly idmap into smb.conf I expect
you don't need any more declaring UID/GID for machine accounts.
Anyway here my machines get access to their GPO: I tested one computer's
GPO this morning, the one giving
2015 Jul 13
1
Strange issue with share access on domain controllers
Hi,
No change
According to netbios aliases documentation, it only modify NETBIOS
announce, but I'm using DNS to access the host (and it is correctly
resolved since smbclient access works, shares list works on windows)
Regards
Le 13/07/2015 15:53, Zerwes, Klaus a écrit :
> set
>
> netbios aliases =
>
> in the global section of smb.conf
>
> Good luck
>
> Klaus
2016 Mar 21
1
Permission denied on GPT.ini (Event ID 1058)
Hai,
Today i had a "about" same problem.
Check the following.
1) Get the Policy id ( like ": {78732DBF-5381-497B-9B25-00A278270A1F} from
PATH_TO_SYSVOL_FOLDER/Policies/
2) run getfacl on the folder like :
getfacl \{78751DBF-5381-497B-9B25-00A278270A1F\}/
here in my case i noticed the following.
I had a user set on one specific policie, i changed that users to a newly
2016 Apr 08
1
Samba as AD-Controller: unable to update policies and call start scripts
Zitat von Sébastien Le Ray <sebastien-samba at orniz.org>:
> Did you try a samba-tool ntacl sysvolreset on the DC? (actually…
> that almost never fixed anything in my case but why not)
I just tried to run "samba_dnsupdate --verbose --all-names" on the DC
and I got many "Failed nsupdate: 2" and at the end "Failed update of
21 entries".
Attached is
2016 Apr 18
2
Permission denied on GPT.ini (Event ID 1058) (SOLVED)
I think I finally solved it…
This is indeed not related to Samba (I guess), and I have to say that I
don't know if there is a proper fix
Let's recap in case someone take this in the middle of the thread :
Some machines fails to apply GPO at startup. Manual launches of gpupdate
are successful, only boot up ones fail (that is, everything related to
software installation or startup
2015 Jun 15
2
OT: suggestion need on Sync in the windows way.
I agree,
If the synology uid and gid is working right than nfs would be great. it
would be easy...
However, it seem that they have something else running under samba/nfs to
control the permission on the files/folder...
I would like to use bidir sync because I like some of the synology feature
on remote sync and etc which is making remote access much easier compare to
samba...
But these sync
2015 Jun 14
2
OT: suggestion need on Sync in the windows way.
Hi Sebastien,
Rsync is only one way right, any 2 way sync solution?
Thank you.
S?bastien Le Ray <sebastien-samba at orniz.org> ? 2015?6?15? ??????
> Hi
>
> rsync -a should be able to perform chown using usernames rather than uids
> so your files would still be owned by the right user.
>
> Regards
>
> Le 14/06/2015 16:48, Min Wai Chan a ?crit :
>
>> Dear
2016 Apr 25
2
samba 4.2.10 makes shares unusable on XP
Hi list,
Just upgraded to 4.2.10. All our XP boxes (yeah I know) are slow as Hell
wrt share browsing & profiles loading… What (new) parameter should be
set to recover historical behavior? I tried to find tune some of the new
smb.conf parameters with no succes. Only downgrade to 4.1.17 (debian)
fixed thing.
Did anyone encounter same issue?
Regards
2015 Jul 20
3
Doubt about Unix Attributes
I can configure UidNumer and gidNumber attributes by Microsoft RSAT tool
and the value is stored. When I click again on the tab "Unix Attributes"
appears a message saying "Not is possible the execution". I click OK button
and the attribute is correct.
Why appear this message?
How can I verify if the NIS service is working correctly?
Regards,
Márcio