Displaying 20 results from an estimated 4000 matches similar to: "Rebuid the Corrupt default Group Policy"
2017 Jul 06
2
Rebuid the Corrupt default Group Policy
Hello Marc,
> Hi Anantha,
>
> Am 06.07.2017 um 10:02 schrieb Anantha Raghava via samba:
>> Is there any way we can rebuild corrupt Default Domain Policy and
>> Default Domain Controller Policy.
> What is broken?
Entire Default Domain and Default Domain Controller Policies along with
other Polices that we had built are broken.
>> In windows AD we can use dcgpofix
2017 Jul 07
0
Rebuid the Corrupt default Group Policy
On Fri, 7 Jul 2017 05:29:30 +0530
Anantha Raghava via samba <samba at lists.samba.org> wrote:
> Hello Marc,
>
> > Hi Anantha,
> >
> > Am 06.07.2017 um 10:02 schrieb Anantha Raghava via samba:
> >> Is there any way we can rebuild corrupt Default Domain Policy and
> >> Default Domain Controller Policy.
> > What is broken?
> Entire Default
2017 Dec 08
2
Group Policy Issues
Hi,
On two of our 4 Domain Controller Servers, the Group Policy Objects have
developed some issues. Windows are reporting that Group Policy objects
cannot be read.
Any recommendation to reset the Group Policy Objects. We are taking
daily backup using Samba_Backup script.
In the past, there was a recommendation not use "samba-tool ntacl
sysvolreset". Can we use it now. By the way
2017 Jun 21
3
Fwd: AD Policies are not applying properly
Hi,
We have been consistently having issues with GPO and they are not
consistent. We are using version 4.6.3 with BIND DNS Backend. As
suggested in some of our previous communications, when we run the
samba-tool ntacl sysvolcheck it results in the error as detailed below.
[root at dc1 ~]# samba-tool ntacl sysvolcheck
lp_load_ex: refreshing parameters
Initialising global parameters
rlimit_max:
2017 Jun 22
1
Fwd: AD Policies are not applying properly
On 6/22/2017 9:41 AM, Anantha Raghava via samba wrote:
> Hi,
>
> No solutions to get out of this?
>
Not sure exactly what your issue is but based on your error Samba is
reporting the following on that particular Policy;
* Lost Allow Object and Container inheritance on each ACE.
* Create Owner missing ACE and you have Built in Administrators with
an ACE
* You have the
2017 Oct 30
3
Make Samba 4 as Additional DC to Windows Server 2003R2
Hello Andrew,
A gentle reminder for the patch.
Can you share the patch as you mentioned?
--
Thanks & Regards,
Anantha Raghava
Do not print this e-mail unless required. Save Paper & trees.
On 29/10/17 11:57 AM, Andrew Bartlett wrote:
> On Sun, 2017-10-29 at 09:11 +0530, Anantha Raghava wrote:
>> Hi,
>>
>> I did upgrade the server to Windows Server 2008 R2
2017 May 11
1
Upgrading BIND DNS Backend
Hello Marc,
Upgrade DNS worked properly as you can see below.
---------
samba_upgradedns --dns-backend=BIND9_DLZ
Reading domain information
DNS accounts already exist
No zone file /usr/local/samba/private/dns/EXZA.LOCAL.zone
# is this the culprit?
DNS records will be automatically created
DNS partitions already exist
dns-dc account already exists
See
2018 Jul 20
2
Continued Group Policy issues
Hi,
> On Fri, 20 Jul 2018 06:52:06 +0530
> Anantha Raghava via samba <samba at lists.samba.org> wrote:
>
>> Hi,
>>
>> On Mon, 16 Jul 2018 17:37:21 +0530
>>> Anantha Raghava via samba <samba at lists.samba.org> wrote:
>>>
>>>> Hi,
>>>>
>>>> Thanks for clarification.
>>>>
>>>>
2017 May 10
2
Global Catalogue
Hi,
Although Samba is listening on port 3268, proxy returns error "unable to
connect"
Any suggestions to fix this?
--
Thanks & Regards,
Anantha Raghava
DISCLAIMER:
This e-mail communication and any attachments may be privileged and
confidential to eXza Technology Consulting & Services, and are intended
only for the use of the recipients named above If you are not the
2017 May 10
2
Global Catalogue
Hi,
We provide DC Host's IP address and port as 3268 and user DN of
administrator as CN=Administrator,CN=Users,DC=ktkbank,DC=com and supply
password. But proxy reports "unable to connect to directory".
However, the Proxy's Content Gateway is a member of AD DC and it uses
integrated windows authentication.
--
Thanks & Regards,
Anantha Raghava
DISCLAIMER:
This
2017 Aug 08
6
Not enough storage space error
Hello Andrew & Louis,
Yesterday by around 1:30 PM we had the same issue. Samba AD kicked all
of us out and RSAT did not connect to any domain controllers.
/*Incidentally the RSAT that caused this error was running on Windows 7
Professional 64 Bit edition.*/
When I restarted the samba-ad-dc service, all started working well
again. However, as mentioned again, I could not trace the error
2018 Jul 20
2
Continued Group Policy issues
Hi,
On Mon, 16 Jul 2018 17:37:21 +0530
> Anantha Raghava via samba <samba at lists.samba.org> wrote:
>
>> Hi,
>>
>> Thanks for clarification.
>>
>> However, we held back from implementing your suggestion and observed
>> that after about 40 odd hours from the initial publishing of the
>> policies, all clients connecting to any of the Domain
2019 Jun 17
3
RPC Server Unavailable - Error
Hi,
We were running Samba-AD - Version 4.7.6 for over 2 years without any
errors. We have 4 Domain Controllers in our setup and DNS is BIND_DLZ
(BIND 9.9.4). Off late (since 8th June 2019) we upgraded the Samba-AD
version to 4.10.4 and all of sudden we started receiving the error "RPC
Server not available" when we are trying to join the new PCs to domain.
After multiple attempts
2017 May 24
1
Problems in applying GPO and DNS domain name resolution issues
Hi,
We are using Samba AD 4.6.3 and built it from source on CentOS 7. The
DNS back end is BIND 9.9.4
Initially all replications were working fine and all group policies were
getting applied.
All of a sudden, we are finding that GPO applying process is erratic.
Sometime it applies and sometimes not. We have edited the Default Policy
using Windows RAST tool.
Thinking that ACLs on
2018 Jul 12
2
Continued Group Policy issues
Hi,
We have 4 Domain Controllers all on CentOS 7.5 and Samba Version 4.7.5.
We are using iNotify to watch the folder and pushing any changes made to
GPO from our first Domain Controller.
Off late, we started observing that, unless the client is reading the
Group Policies from the first Domain Controller, none of the Group
Policies gets applied. On the Windows Clients, we have observed that
2017 May 11
2
Upgrading BIND DNS Backend
Hi,
After upgrading to BIND9_DLZ, BIND service is properly starting.
However, DNS updates are failing. When I try to force the DNS update, I
get the following error.
Even kinit command returns "kinit: Cannot find KDC for realm
"EXZA.LOCAL" while getting initial credentials"
---------------------------------------
[root at dc ~]# samba_dnsupdate --verbose --all-names
IPs:
2018 Feb 12
1
GPO - Computer Policies are not applied
Hi,
We just upgraded the Samba-AD from version 4.6.5 to 4.7.5. The upgrade
threw many challenges and I will write a separate mail explaining the
workaround that we adapted to get over them. One of the main challenges
is GPO. While the user policy applies properly, the computer policies
are not getting applied, rather they are erratic, On some PCs within the
same LAN, it works, while on some,
2017 May 11
1
Global Catalogue
Hello Rowland,
ldap search command throws error as below. I am unable to search ldap.
-------
ldap_initialize( ldap://dc.exza.local:3268 )
ldap_start_tls: Can't contact LDAP server (-1)
Enter LDAP Password:
ldap_sasl_bind(SIMPLE): Can't contact LDAP server (-1)
----------
I am using BIND_DLZ dns back end. and server is listening on 3268 and 3269
--
Thanks & Regards,
Anantha
2018 Apr 29
1
sysvol files - 'The data area passed to a system call is too small'
HI,
We have done something similar using inotify. On the DC1. we watch the
"/usr/local/samba/var/locks/sysvol" folder and if there is any change,
(add, modify or delete), we run "samba-tool ntacl sysvolreset" and we
push those changes to other DCs using rsync. We have created a shell
script that is put in rc.local so that this starts even if the server
reboots.
We chose
2017 Aug 04
3
Not enough storage space error
Hai,
Im joining this one if you dont mind.
My setup:
Debian 8 (Jessie)
ADDC's : samba 4.6.6
Member with profiles : samba 4.6.6
This problem is here seen also on a Windows7 Pro 64bit client.
The client here, is related to the user profile, this one is having a corrupted user profile in my case.
Due to this, my GPO fails and i see event id: 4098 , error code : 0x8007000E insufficions