Displaying 20 results from an estimated 20000 matches similar to: "Group Policy Issues"
2017 Dec 09
2
Group Policy Issues
Hello James,
Thanks for your suggestion.
When we had two servers in the pool, we were pushing GPO using rsync
from PDC at every 30 minutes. However when we added the two more domain
controllers, our rsync script turned to be a pull from PDC every 30
minutes. Would this have made those policy objects inconsistent?
We have set up sysvol replication using rsync unidirectional that is a
push
2017 May 04
4
Samba Active Directory Domain Controller
Hi,
Let me just check this and revert back.
--
Thanks & Regards,
Anantha Raghava
DISCLAIMER:
This e-mail communication and any attachments may be privileged and
confidential to eXza Technology Consulting & Services, and are intended
only for the use of the recipients named above If you are not the
addressee you may not copy, forward, disclose or use any part of it. If
you have
2017 Jun 21
3
Fwd: AD Policies are not applying properly
Hi,
We have been consistently having issues with GPO and they are not
consistent. We are using version 4.6.3 with BIND DNS Backend. As
suggested in some of our previous communications, when we run the
samba-tool ntacl sysvolcheck it results in the error as detailed below.
[root at dc1 ~]# samba-tool ntacl sysvolcheck
lp_load_ex: refreshing parameters
Initialising global parameters
rlimit_max:
2017 Jul 06
2
Rebuid the Corrupt default Group Policy
Hello Marc,
> Hi Anantha,
>
> Am 06.07.2017 um 10:02 schrieb Anantha Raghava via samba:
>> Is there any way we can rebuild corrupt Default Domain Policy and
>> Default Domain Controller Policy.
> What is broken?
Entire Default Domain and Default Domain Controller Policies along with
other Polices that we had built are broken.
>> In windows AD we can use dcgpofix
2017 May 24
1
Problems in applying GPO and DNS domain name resolution issues
Hi,
We are using Samba AD 4.6.3 and built it from source on CentOS 7. The
DNS back end is BIND 9.9.4
Initially all replications were working fine and all group policies were
getting applied.
All of a sudden, we are finding that GPO applying process is erratic.
Sometime it applies and sometimes not. We have edited the Default Policy
using Windows RAST tool.
Thinking that ACLs on
2017 May 04
2
Samba Active Directory Domain Controller
Hello James,
Thanks for your quick response.
Find attached smb.conf file from DC1 and DC2. Also attached the screen
shot of the event viewer from the workstation.
At the moment, we have brought down the DC3 and DC4 in another location
and observed that DC2 is unable to replicate get the information from
DC1 or send the information to DC1. It appears replication is working in
background but
2017 Jul 06
2
Rebuid the Corrupt default Group Policy
Hi,
Is there any way we can rebuild corrupt Default Domain Policy and
Default Domain Controller Policy.
In windows AD we can use dcgpofix utility to recreate the Default Domain
and Domain Controller Policies. Something similar available in Samba AD DC?
--
Thanks & Regards,
Anantha Raghava
Do not print this e-mail unless required. Save Paper & trees.
2018 Jan 10
4
Sysvolreset
Hi!
I have 3 Samba 4 , version 4.7.3 running in Ubuntu Server 16.04.
All is ok, but GPO in DC3, with erro the permission, with dont load in
windows(gpresult /force).
My smb.conf all samba server DC.
[global]
netbios name = SAMBA-DC103
realm = <DOMAIN>
server role = active directory domain controller
server services = s3fs, rpc, nbt, wrepl, ldap,
2018 Jan 10
2
Sysvolreset
HI
Rsync
DC1 to DC2 / DC3
root / usr / bin / rsync -XAaz --delete-after / opt / samba / var /
locks / sysvol root @ DCXX: / opt / samba / var /
Run Windows "gpupdate / force", information error permission (show ID
GPO, any gpos ...).
Yes, the only gpo, with errors.
Regards;
On 10-01-2018 14:29, lingpanda101 via samba wrote:
> On 1/10/2018 8:59 AM, Carlos via samba wrote:
2017 May 03
2
Samba Active Directory Domain Controller
Hello,
I have implemented Samba as Active Directory Domain Controller with
Version 4.6.3 on CentOS 7.3, el-514. We have 4 domain controllers named
as DC1, DC2, DC3 and DC4. DC1 & 2 are in one location and DC3 & 4 are in
a different location. DNS is SAMBA INTERNAL. All 4 servers are properly
synchronizing and even GPO updates are working properly with rsync process.
However, off late
2018 Feb 12
1
GPO - Computer Policies are not applied
Hi,
We just upgraded the Samba-AD from version 4.6.5 to 4.7.5. The upgrade
threw many challenges and I will write a separate mail explaining the
workaround that we adapted to get over them. One of the main challenges
is GPO. While the user policy applies properly, the computer policies
are not getting applied, rather they are erratic, On some PCs within the
same LAN, it works, while on some,
2018 Jan 11
2
Sysvolreset
On 1/11/2018 10:45 AM, Carlos via samba wrote:
> Hi
>
> Any ?
>
> Regards;
>
>
> On 10-01-2018 15:11, Carlos wrote:
>>
>> Every 5 minutes.
>>
>> This moment(before sysvolreset,) machine is ok . This comend is valid
>> now ?
>>
>> *In DC01 Problem does not exist with sysvol.
>>
>> Regards;
>>
>>
>>
2018 Jan 10
2
Sysvolreset
Every 5 minutes.
This moment(before sysvolreset,) machine is ok . This comend is valid now ?
*In DC01 Problem does not exist with sysvol.
Regards;
On 10-01-2018 14:51, lingpanda101 via samba wrote:
> On 1/10/2018 11:42 AM, Carlos via samba wrote:
>> HI
>>
>> Rsync
>>
>> DC1 to DC2 / DC3
>>
>> root / usr / bin / rsync -XAaz --delete-after / opt /
2018 Jul 12
2
Continued Group Policy issues
Hi,
We have 4 Domain Controllers all on CentOS 7.5 and Samba Version 4.7.5.
We are using iNotify to watch the folder and pushing any changes made to
GPO from our first Domain Controller.
Off late, we started observing that, unless the client is reading the
Group Policies from the first Domain Controller, none of the Group
Policies gets applied. On the Windows Clients, we have observed that
2018 Jan 11
4
Sysvolreset
Hi Carlos,
>
> DC to DC2/DC3 ->
>
> /usr/bin/rsync -XAaz --delete-after /opt/samba/var/locks/sysvol
> root at samba-dc102:/opt/samba/var/locks/
>
> /usr/bin/rsync -XAaz --delete-after /opt/samba/var/locks/sysvol
> root at samba-dc102:/opt/samba/var/locks/
looking at your smb.conf file, you are using tdb idmap (default on DC).
So the UID/SID mapping will be
2018 Jul 20
1
Another peculiar behaviour, this time with BIND 9 DNS with DLZ
Hi,
String of peculiar behavior continues...
Samba Version 4.7.5, Bind Version 9.8
No. of Samba-AD-DC Servers : 4 (dc1, dc2, dc3 & dc4). All FSMO roles are
on dc1.
All the while all things were perfect. Yesterday, due to some reason,
the BIND Service on dc2 stopped. This resulted in none of the other
domain controllers could resolve the names. On dc2, only named service
was stopped but
2015 Oct 07
4
gpo failure
On 10/7/2015 7:31 AM, mourik jan c heupink wrote:
> On 7-10-2015 13:18, mourik jan c heupink wrote:
>> So my dc3 seems unsynced or so.
>>
>> So I am now checking to make sure that my rsync replication script
>> works as it should. (I'm guesssing it does NOT)
>
> The rsync seems to be working as it should, so now I'm
> guessing that idmap.ldb differs
2018 Apr 29
1
sysvol files - 'The data area passed to a system call is too small'
HI,
We have done something similar using inotify. On the DC1. we watch the
"/usr/local/samba/var/locks/sysvol" folder and if there is any change,
(add, modify or delete), we run "samba-tool ntacl sysvolreset" and we
push those changes to other DCs using rsync. We have created a shell
script that is put in rc.local so that this starts even if the server
reboots.
We chose
2017 Jun 22
1
Fwd: AD Policies are not applying properly
On 6/22/2017 9:41 AM, Anantha Raghava via samba wrote:
> Hi,
>
> No solutions to get out of this?
>
Not sure exactly what your issue is but based on your error Samba is
reporting the following on that particular Policy;
* Lost Allow Object and Container inheritance on each ACE.
* Create Owner missing ACE and you have Built in Administrators with
an ACE
* You have the
2018 Jul 20
2
Continued Group Policy issues
Hi,
> On Fri, 20 Jul 2018 06:52:06 +0530
> Anantha Raghava via samba <samba at lists.samba.org> wrote:
>
>> Hi,
>>
>> On Mon, 16 Jul 2018 17:37:21 +0530
>>> Anantha Raghava via samba <samba at lists.samba.org> wrote:
>>>
>>>> Hi,
>>>>
>>>> Thanks for clarification.
>>>>
>>>>