Displaying 20 results from an estimated 2000 matches similar to: "WINBIND: UID and GID false mappings on domain member"
2016 Aug 12
0
WINBIND: UID and GID false mappings on domain member
On Fri, 12 Aug 2016 07:33:27 -0700 (PDT)
rawi via samba <samba at lists.samba.org> wrote:
> Hi @ALL
>
> Trying to migrate to Samba AD after 12 lucky years with samba
> NT-domain + server profiles and homes in a small research institute.
>
> I decided to provision a new domain and create the users and groups
> using samba-tool with most of its parameters.
> I
2017 Jan 12
2
Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
Ubuntu 16.04.1 LTS
Samba Version 4.3.11-Ubuntu
Hi
I'm still testing and trying to migrate from a NT4 domain to samba4 AD
With the test configuration:
AD-DC + domain_member_file_server + Windows_8.1_client
all is working well, inclusive server profiles
But I have to migrate also some old WindowsXP_SP2 and Windows7
I could join the domain with the WindowsXP. I see it's record with
2017 Jan 17
2
SOLVED(aproximative?): Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
Samba - General mailing list wrote
> On Mon, 16 Jan 2017 09:07:35 -0800 (PST)
> rawi via samba <
> samba at .samba
> > wrote:
>
>> Samba - General mailing list wrote
>> >> [2017/01/11 16:42:34.522067, 1]
>> >> ../source3/librpc/crypto/gse.c:496(gse_get_server_auth_token)
>> >> gss_accept_sec_context failed with [
2016 Aug 12
2
WINBIND: UID and GID false mappings on domain member
> Just provisioning with --rfc2307 isn't enough, you personally need to
> add any required RFC2307 attributes.
But you see my test user has his attributes. From samba-tool. Do you mean
the basic objects, the templates for the user and group? If yes, how to do
it?
> Can I suggest you put dnsupdate back and then setup bind9 on the DC
> correctly.
I will...
> You must be
2017 Jan 16
4
SOLVED(I hope): Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
Samba - General mailing list wrote
>> [2017/01/11 16:42:34.522067, 1]
>> ../source3/librpc/crypto/gse.c:496(gse_get_server_auth_token)
>> gss_accept_sec_context failed with [ Miscellaneous failure (see text):
>> Failed to find cifs/hg004.humgen.0zone at HUMGEN.0ZONE(kvno 1) in keytab
>> MEMORY:cifs_srv_keytab (arcfour-hmac-md5)]
>> [2017/01/11
2016 Aug 17
3
SOLVED: WINBIND: UID and GID false mappings on domain member
I bump this only to say SOLVED and many thanks to Rowland.
Lessons learned:
1.
Indeed, my problems where related to not having a gidNumber for "Domain
Users".
After adding it I got real wbinfo --user-info on the domain member (file
server).
My test user could log in in his old home from the NT domain preserving the
old UID and GID.
2. (question = why?)
And login.bat was called at
2017 Jan 17
2
SOLVED(aproximative?): Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
Samba - General mailing list wrote
> On Tue, 17 Jan 2017 03:03:28 -0800 (PST)
> rawi via samba <
> samba at .samba
> > wrote:
>
>> Samba - General mailing list wrote
>>
>> Rowland, thank you
>>
>> Please note the comments starting with two '#'. They give info about
>> erroneous behavior I encontered.
>>
>>
2016 Aug 12
2
WINBIND: UID and GID false mappings on domain member
Thank you Rowland for looking into this!
>> WHAT I DO NOT GET CORRECTLY are the UID and GID of users and groups
>> on the domain member (PARTIALLY DEPENDING if I have the lines with
>> "idmap config *:..." or not ??? - see below)
> « [hide part of quote]
>
> Have you added uidNumber & gidNumber attributes to the user &
> groupobjects in AD ?
2016 Aug 17
0
SOLVED: WINBIND: UID and GID false mappings on domain member
On Wed, 17 Aug 2016 04:54:41 -0700 (PDT)
rawi via samba <samba at lists.samba.org> wrote:
> I bump this only to say SOLVED and many thanks to Rowland.
>
> Lessons learned:
>
> 1.
> Indeed, my problems where related to not having a gidNumber for
> "Domain Users".
> After adding it I got real wbinfo --user-info on the domain member
> (file server).
>
2017 Jan 16
0
SOLVED(I hope): Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
On Mon, 16 Jan 2017 09:07:35 -0800 (PST)
rawi via samba <samba at lists.samba.org> wrote:
> Samba - General mailing list wrote
> >> [2017/01/11 16:42:34.522067, 1]
> >> ../source3/librpc/crypto/gse.c:496(gse_get_server_auth_token)
> >> gss_accept_sec_context failed with [ Miscellaneous failure (see
> >> text): Failed to find cifs/hg004.humgen.0zone
2017 Jan 17
0
SOLVED(aproximative?): Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
On Tue, 17 Jan 2017 03:03:28 -0800 (PST)
rawi via samba <samba at lists.samba.org> wrote:
> Samba - General mailing list wrote
>
> Rowland, thank you
>
> Please note the comments starting with two '#'. They give info about
> erroneous behavior I encontered.
>
> The manual says that "domain master = auto" means "NO", if "domain
>
2017 Jan 17
0
SOLVED(aproximative?): Difficulties with Windows XP: failed to find cifs/fileserver.y.z@Y.Z in keytab (arcfour-hmac-md5)
On Tue, 17 Jan 2017 03:32:46 -0800 (PST)
rawi via samba <samba at lists.samba.org> wrote:
> Samba - General mailing list wrote
> > On Tue, 17 Jan 2017 03:03:28 -0800 (PST)
> > rawi via samba <
>
> > samba at .samba
>
> > > wrote:
> >
> >> Samba - General mailing list wrote
> >>
> >> Rowland, thank you
>
2016 Aug 12
0
WINBIND: UID and GID false mappings on domain member
On Fri, 12 Aug 2016 10:42:54 -0700 (PDT)
rawi via samba <samba at lists.samba.org> wrote:
>
> > Just provisioning with --rfc2307 isn't enough, you personally need
> > to add any required RFC2307 attributes.
>
> But you see my test user has his attributes. From samba-tool. Do you
> mean the basic objects, the templates for the user and group? If yes,
> how to
2016 Aug 12
0
WINBIND: UID and GID false mappings on domain member
On Fri, 12 Aug 2016 09:41:19 -0700 (PDT)
rawi via samba <samba at lists.samba.org> wrote:
> Thank you Rowland for looking into this!
>
>
> > Have you added uidNumber & gidNumber attributes to the user &
> > groupobjects in AD ?
>
> Not myself, I simply provisioned with --use-rfc2307
Just provisioning with --rfc2307 isn't enough, you personally
2013 Aug 28
1
Samba4 Member Server not working
Hi,
I have one Samba4 server running as Active Directory Domain Controller.
It's working like a charm.
So I needed to add another server to be a Member Server (File Server).
The server is running samba-4.0.9.
Configured and compiled ok:
./configure --prefix=/usr/local/samba --sysconfdir=/etc
--localstatedir=/var --mandir=/usr/man --bindir=/usr/bin
--sbindir=/usr/sbin --libdir=/lib
2007 May 16
3
Winbind - wbinfo -u works, getent passwd only gives local users
I only have limited Samba experience, and expect this is a silly mistake, but
have been unable to find a solution
I have installed Samba and Winbind on my desktop Linux (Debian) machine
(SPARKSTONELX), aiming to unify logins with other windows machines accessing
the PDC, again samba/Debian, with tdbsam password backend. All is well,
joining the domain, and getting account details using wbinfo -u,
2024 May 02
1
named wont start
On 5/1/24 17:51, Peter Carlson via samba wrote:
>
> On 5/1/24 17:32, Peter Carlson via samba wrote:
>>
>>>>>> In an ideal world, the Samba dns server (be it the internal or
>>>>>> Bind9) should just be responsible for the AD domain and forward
>>>>>> anything unknown to another dns server (which is how dns servers
2011 Dec 30
1
winbind user mapping problem
Hello list,
I am using Samba + winbind and I have some users that cannot access
shares on this server, getting the following error in
'/var/log/samba':
[2011/12/30 09:33:08.072315, 1] smbd/sesssetup.c:454(reply_spnego_kerberos)
Username GALILEU-F\teste is invalid on this system
Also, in 'winbind-idmap' log file I am getting this:
[2011/12/30 09:32:56.902810, 1]
2015 Nov 17
2
using chown on server with Domain username
Hi. I'm following this document:
https://wiki.samba.org/index.php/Setup_Samba_as_an_AD_Domain_Member
- setting up my second Samba server in a test environment. We're planning
a medium to large-scale deployment (six sites, 8 domain controllers, 8 NAS
boxes, 120 workstations). I've already set up an AD Controller and
successfully joined a Windows workstation to it.
I got down to
2006 Aug 06
1
smbpasswd doesn't prompt root for password
Hello.
When I run smbpasswd from samba 3.0.23a on a MIPSEL system running
Linux 2.4.20 as root, I'm NEVER asked for a password. Even when I
create a new user in smbpasswd, I'm not asked:
root@HD.bei.digitalprojects.com:/etc/samba# strings smbpasswd
root:0:AAD3B435B51404EEAAD3B435B51404EE:31D6CFE0D16AE931B73C59D7E0C089C0:[U ]:LCT-44D63D42: