Displaying 20 results from an estimated 1000 matches similar to: "Can't access DNS from RSAT"
2017 Dec 12
2
Can't access DNS from RSAT
I found this page https://bugzilla.samba.org/show_bug.cgi?id=12807 which
seemed to have someone experiencing the same issue I am.
I tried adding "allow dcerpc auth level connect:dnsserver = yes" to my
smb.conf, rebooted the server, but still I get the an access denied message
in windows.
However, what is logged in the log.samba files has changed since adding
this option to my smb.conf.
2017 Dec 12
2
Can't access DNS from RSAT
The user is a member of "Domain Admins" so they should be able to access
the DNS (as is evident by the fact that they can access the DNS thru RSAT
on the initial DC).
But just to be thorough I have added "Domain Admins" to the group
"DnsAdmins" and tested again, still get the "access denied" error from
within windows.
On Tue, Dec 12, 2017 at 11:01 AM,
2017 Dec 12
1
Can't access DNS from RSAT
Daniel, I could kiss you :D I am using the default SSL certs in samba.
I tried connecting to the new DC using it's FQDN instead of it's IP, and
BAM, it connected just fine. Couldn't really tell you why, but as long as
I can access it I'm happy!
On Tue, Dec 12, 2017 at 11:20 AM, Daniel Carrasco <d.carrasco at i2tic.com>
wrote:
> Are you using the default ssl certs in
2017 Dec 15
3
UID/GID -> SID -> NAME mapping across multiple DCs
Danke!
On Fri, Dec 15, 2017 at 1:03 PM, Rowland Penny via samba <
samba at lists.samba.org> wrote:
> On Fri, 15 Dec 2017 11:56:25 -0600
> Taylor Hammerling <thammerling at tcsbasys.com> wrote:
>
> > Interesting... How do I go about getting them/keeping them in sync?
> >
>
> see here:
>
> https://wiki.samba.org/index.php/Joining_a_Samba_DC_to_an_
>
2017 Dec 12
5
failure joining a domain as a DC
Andrew - i am trying to join a new DC. Both DCs (old and new) are running
samba 4.5.12-Debian
On Dec 11, 2017 8:11 PM, "Andrew Bartlett" <abartlet at samba.org> wrote:
> On Mon, 2017-12-11 at 19:56 -0600, Taylor Hammerling via samba wrote:
> > Good evening!
> >
> > I am having difficulty joining a Samba4 install to my current domain.
>
> What new
2017 Dec 12
1
failure joining a domain as a DC
in my optinion, yes, i use my own packages for years now, started with 4.1.x ( still the same servers) started with debian wheezy and these are now debian stretch.
Start reading here, it wil help you ;-)
https://github.com/thctlo/samba4/tree/master/howtos
Greetz,
Louis
Van: Taylor Hammerling [mailto:thammerling at tcsbasys.com]
Verzonden: dinsdag 12 december 2017 15:13
Aan: L.P.H.
2017 Dec 12
2
DNS replication only working one way
I'm sorry Rowland, I meant to mention in my initial email that I am running
4.7.3.
and other replication (like AD object replication) is working in both
directions. it is just DNS replication that is only working one way.
On Tue, Dec 12, 2017 at 2:15 PM, Rowland Penny via samba <
samba at lists.samba.org> wrote:
> On Tue, 12 Dec 2017 14:00:32 -0600
> Taylor Hammerling via samba
2017 Nov 14
2
SAMBA4 API
by modify I mean add, change and/or remove DNS records (depending on the
values passed to the API).
Also, yes I mispoke, we would only be modifying the records on one DC, and
replication would take care of the rest.
On Mon, Nov 13, 2017 at 11:17 AM, Rowland Penny via samba <
samba at lists.samba.org> wrote:
> On Mon, 13 Nov 2017 11:07:28 -0600
> Taylor Hammerling via samba <samba
2017 Nov 14
2
SAMBA4 API
We aren't using BIND, we are using the builtin SAMBA backend. Also the
requests for updates are going to come from external to the DC. IE, the
inventory server needs to send a request to the DC to add/update/remove etc
DNS records. This is why I'm looking for an API.
On Tue, Nov 14, 2017 at 11:32 AM, Rowland Penny via samba <
samba at lists.samba.org> wrote:
> On Tue, 14 Nov
2017 Nov 14
2
SAMBA4 API
>From the inventory server, which is a separate server from the DC. it's a
FOG server which has had several additional tables bolted onto the database
and a PHP inventory page added to it.
On Tue, Nov 14, 2017 at 12:05 PM, Rowland Penny via samba <
samba at lists.samba.org> wrote:
> On Tue, 14 Nov 2017 11:48:29 -0600
> Taylor Hammerling <thammerling at tcsbasys.com>
2017 Dec 13
2
DNS replication only working one way
I ran thru the wikipage you linked to, and the results were as they should
be
# record 1
dn: CN=NTDS
Settings,CN=DC1,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=tcsbasys,DC=com
objectGUID: 0d5ebcac-88d7-44fb-a830-ec3eacb6757f
# record 2
dn: CN=NTDS
Settings,CN=DC2,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=tcsbasys,DC=com
objectGUID:
2017 Dec 08
2
DNS issue with clean install of samba 4.5.12-Debian
i suggest review my howto
its on github find my name, thctlo, goto samba4.
full ad and member howto and scripts to check things.
Greetz,
Louis
(mobile)
> Op 8 dec. 2017 om 18:49 heeft Taylor Hammerling via samba <samba at lists.samba.org> het volgende geschreven:
>
> I am working on building a test ADDC environment for my business. I have
> performed a clean install of
2017 Dec 15
2
UID/GID -> SID -> NAME mapping across multiple DCs
Interesting... How do I go about getting them/keeping them in sync?
On Fri, Dec 15, 2017 at 11:47 AM, Rowland Penny via samba <
samba at lists.samba.org> wrote:
> On Fri, 15 Dec 2017 11:09:38 -0600
> Taylor Hammerling via samba <samba at lists.samba.org> wrote:
>
> > This isn't necessarily an issue (I don't think) but more so a
> > curiosity.
> >
2017 Dec 12
0
Can't access DNS from RSAT
Are you using the default ssl certs in samba?.
I had a similar issue, and after create my own certificate with all common
names used on my domain (for example domain.com, dc1.domain.com and
dc2.domain.com), I'm able to manage the dns using RSAT using that named.
With ip address still failing.
Greetings!!
El 12 dic. 2017 6:13 p. m., "Taylor Hammerling via samba" <
samba at
2017 Dec 12
0
Can't access DNS from RSAT
On 12/12/2017 11:24 AM, Taylor Hammerling via samba wrote:
> I found this page https://bugzilla.samba.org/show_bug.cgi?id=12807 which
> seemed to have someone experiencing the same issue I am.
> I tried adding "allow dcerpc auth level connect:dnsserver = yes" to my
> smb.conf, rebooted the server, but still I get the an access denied message
> in windows.
> However,
2017 Dec 12
0
Can't access DNS from RSAT
I cranked up the log level to 3 and found this in the log.samba file when
trying to open the DNS Manager RSAT from my client machine (which is joined
to the same domain as the DCs)
[2017/12/12 09:59:30.601170, 2]
../source4/rpc_server/dcerpc_server.c:1804(dcesrv_request)
dcesrv_request: restrict auth_level_connect access to [dnsserver] with
auth[type=0xa,level=0x2] on [ncacn_ip_tcp] from
2017 Dec 12
3
Errors transferring forestdns and domaindns FSMO roles
I am attempting to transfer the all FSMO roles from an old DC to our new DC.
Both DCs are running Samba 4.7.3. I have transferred the Schma,
Infrastructure, RID, PDC and Naming roles without issue.
unfortunately, the forestdns and domaindns roles are giving me grief.
Here is the output of the commands
root at dc1:~# samba-tool fsmo transfer --role=forestdns
ldb_wrap open of secrets.ldb
2017 Nov 13
2
SAMBA4 API
I am looking for a way to programatically modify DNS settings from outside
of my SAMBA4 DCs.
I am working on creating a PHP inventory page, which (in an ideal world)
would hook into our SAMBA4 domain controllers, allowing us to modify DNS
records in the inventory, and then have the backend of the inventory
communicate with the DCs over an API and modify the DNS on the DCs.
Is it possible that
2017 Dec 15
1
UID/GID -> SID -> NAME mapping across multiple DCs
On Fri, 15 Dec 2017 13:16:51 -0600
Taylor Hammerling <thammerling at tcsbasys.com> wrote:
> ok, I followed the directions on that wikipage, made a hot backup,
> copied the hot backup over to the new DC, renamed the hot backup
> (thus replacing the existing idmap.ldb) and ran "samba-tool ntacl
> sysvolreset" and it spat out the following after a minute or 2 of
>
2017 Dec 08
2
DNS issue with clean install of samba 4.5.12-Debian
I am working on building a test ADDC environment for my business. I have
performed a clean install of Debian 9.2, after which I performed an install
of samba 4.5.12-Debian.
once samba was installed, I ran 'samba-tool domain provision --use-rfc2307
--interactive' and answered all the questions with appropriate answers.
everything seemed to install just fine. When I try to join a windows