similar to: two domain members, different groupIDs

Displaying 20 results from an estimated 10000 matches similar to: "two domain members, different groupIDs"

2018 May 25
1
Share periodical not accessible
Thank you for your response! Here comes the smb.conf… André — smb.conf — # Global parameters [global] workgroup = LOPRODUCTS realm = LOPRODUCTS.LOCAL server role = member server security = ads server string = %h server (Samba, Ubuntu) netbios name = fireball disable netbios = yes wins support = no domain master = no local master = no preferred master = no os level = 0 dns forwarder
2018 Jul 24
2
granting SeDiskOperatorPrivilege
I fail to set SeDiskOperatorPrivilege on a samba DM and I suspect the german umlauts: # wbinfo -g dom�nencomputer dom�nen-benutzer dom�nen-g�ste dom�nen-admins (bad locale, umlauts displayed as special ugly chars) but the group "domänen-admins" = "Domain Admins" is there. now: # net rpc rights grant "CUSTOMER\domänen-admins" SeDiskOperatorPrivilege -U
2017 Aug 22
1
Setup of Samba with Solaris 11.3 to provide Unix File Shares to Windows Users
Does mdecker exist in AD ? => Yes root at solaris1:~# getent passwd "MYDOM.ADS\\mdecker" mdecker:*:13767:613::/home/mdecker:/bin/bash winbind log: getpwnam MYDOM.ADS\mdecker wb_request_done[24254:GETPWNAM]: NT_STATUS_OK Does 'getent passwd mdecker' work ? => No getent passwd mdecker getpwnam mdecker winbindd_getpwnam: My domain -- rejecting getpwnam() for
2018 Jul 26
2
granting SeDiskOperatorPrivilege
Am 25.07.2018 um 09:03 schrieb Stefan G. Weichinger via samba: > Am 2018-07-24 um 09:48 schrieb Stefan G. Weichinger via samba: >> >> I fail to set SeDiskOperatorPrivilege on a samba DM and I suspect the >> german umlauts: >> >> # wbinfo -g >> dom�nencomputer >> dom�nen-benutzer >> dom�nen-g�ste >> dom�nen-admins >> >> (bad
2017 Jun 22
2
two domain members, different groupIDs
Am 2017-06-22 um 10:44 schrieb Rowland Penny via samba: >> Can I fix that without breaking things? > > If your users have files stored on the domain members, probably not. I understand that this just creates the need to run some chown/chgrp-commands after correcting smb.conf and restarting samba? > Your 'idmap config' block on ALL Unix domain members needs to be >
2018 Sep 11
2
"missing security tab" and related ACL issues
Am 07.09.18 um 20:07 schrieb Rowland Penny via samba: > On Fri, 7 Sep 2018 19:09:37 +0200 > "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote: >> But >> >> # net rpc rights grant "Domänen-Admins" SeDiskOperatorPrivilege -U >> "mydomain\administrator" >> >> fails >> >> also for
2018 Jul 26
2
granting SeDiskOperatorPrivilege
Am 2018-07-26 um 18:14 schrieb Rowland Penny via samba: > On Thu, 26 Jul 2018 17:46:26 +0200 > "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote: >> I also don't know how to use that group "domänen-benutzer" in "valid >> users" or "read list" ... > Stefan, you know all that knowledge you learnt about
2018 Sep 07
2
"missing security tab" and related ACL issues
Am 07.09.18 um 12:45 schrieb Rowland Penny via samba: > On Fri, 7 Sep 2018 11:22:36 +0200 > "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote: > >> >> At a customer server (gentoo linux, so far only Samba version 4.7.7) >> we tried to use Windows ACLs and failed: >> >> no security tab in Windows ... for local C: yes, not on
2018 Jun 20
2
Roaming profiles
Hey, I want to use a debian stretch with samba 4 as a fileserver, but I have problems with the access. Here is what I did: apt-get install samba winbind libpam-heimdal libnss-winbind /etc/init.d/winbind stop /etc/init.d/samba stop nano /etc/krb5.conf https://pastebin.com/rkBPJ2Wz nano /etc/samba/smb.conf https://pastebin.com/h1cJZ6sM nano /etc/nsswitch.conf https://pastebin.com/gxK2rJLU
2018 Sep 07
2
"missing security tab" and related ACL issues
Am 07.09.18 um 16:20 schrieb Rowland Penny via samba: > On Fri, 7 Sep 2018 15:36:15 +0200 > "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote: > >> Am 07.09.18 um 15:25 schrieb Rowland Penny via samba: >> >>> From what you have posted it doesn't, but when you do get then >>> working, you need to understand that EA's
2017 Jun 26
2
two domain members, different groupIDs
Am 2017-06-22 um 13:10 schrieb Rowland Penny via samba: > On Thu, 22 Jun 2017 12:56:25 +0200 > "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote: > >> Am 2017-06-22 um 10:44 schrieb Rowland Penny via samba: >> >>>> Can I fix that without breaking things? >>> >>> If your users have files stored on the domain
2016 Sep 22
2
permissions of new files and directories
Hello I'm running Samba 4.3.9 on Ubuntu 14 as domain member. Both Windows DCs are Win 2012 R2 in 2008 R2 mode. This is the smb.conf: [global] workgroup = MYDOM server string = Fileserver netbios name = myhostname winbind separator = + security = ADS admin users = %D+administrator, %D+backupmaster realm = MYDOM.WHEREVER kerberos method = secrets and keytab
2016 Sep 22
2
Antwort: Re: permissions of new files and directories
> Von: Rowland Penny via samba <samba at lists.samba.org> > An: samba at lists.samba.org > Datum: 22.09.2016 13:18 > Betreff: Re: [Samba] permissions of new files and directories > Gesendet von: "samba" <samba-bounces at lists.samba.org> > > On Thu, 22 Sep 2016 11:53:36 +0200 > Philipp Snizek via samba <samba at lists.samba.org> wrote: > >
2018 Sep 07
2
"missing security tab" and related ACL issues
At a customer server (gentoo linux, so far only Samba version 4.7.7) we tried to use Windows ACLs and failed: no security tab in Windows ... for local C: yes, not on samba shares Yes, I followed https://wiki.samba.org/index.php/Setting_up_a_Share_Using_Windows_ACLs and have the vfs module enabled etc - Now I consider that the kernel doesn't have the necessary flags set. I get #
2018 May 12
3
domainuser cannot access a share
Hey, I have a Windows Server 2016 as a DC and a Debian (Stretch) Server joined the domain. I only want to use this server as a fileserver, but domain-users cannot access the share. Here is what I did: smb.conf: https://paste.ubuntu.com/p/2fKDYFrZ6h/ nsswitch.conf: https://paste.ubuntu.com/p/qjKnKMtZ42/ mkdir /home/EXAMPLE/profile chmod 1770 /home/example/profile chgrp domänen-benutzer
2016 Sep 23
1
Antwort: Re: Antwort: Re: permissions of new files and directories
> Von: Rowland Penny via samba <samba at lists.samba.org> > An: samba at lists.samba.org > Datum: 22.09.2016 15:14 > Betreff: Re: [Samba] Antwort: Re: permissions of new files and directories > Gesendet von: "samba" <samba-bounces at lists.samba.org> > > On Thu, 22 Sep 2016 14:36:34 +0200 > Philipp Snizek via samba <samba at lists.samba.org>
2019 Jan 03
3
Windows ACLs on share
Am 03.01.19 um 16:19 schrieb Rowland Penny via samba: > On Thu, 3 Jan 2019 15:46:24 +0100 "Stefan G. Weichinger via samba" > <samba at lists.samba.org> wrote: >> observation, maybe important: > > Oh, it's more than important, guess where the Windows ACLs are stored > ;-) hmm ... ? ;) >> (share "projekte" works fine, share "QM"
2017 Aug 22
2
Setup of Samba with Solaris 11.3 to provide Unix File Shares to Windows Users
Thanks Rowland and Louis, after changing from ad to rid, i get all users listed with "getent passwd", not just the ones with uidNumber - which is good. But "getent passwd MYDOM\\mdecker" still does not resolve. In addition, no groups are listed with "getent group". Looking at winbindd debug, it seems that after trying getgrsid on the very first group "Exchange
2017 Aug 21
2
Setup of Samba with Solaris 11.3 to provide Unix File Shares to Windows Users
Dear Rowland, our windows admin assured me that they have set uidNumber and gidNumber in the range. I have requested screenshots for confirmation. Now we are one step further: "getent passwd | grep mdecker" now lists the AD account. mdecker:*:13667:7142:Decker, Martin:/home/MYDOM/mdecker:/bin/false With "getent passwd mdecker" however, it shows
2018 Jul 26
0
granting SeDiskOperatorPrivilege
On Thu, 26 Jul 2018 18:31:48 +0200 "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote: > Am 2018-07-26 um 18:14 schrieb Rowland Penny via samba: > > On Thu, 26 Jul 2018 17:46:26 +0200 > > "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote: > >> I also don't know how to use that group