similar to: Using Samba AD for NFSV4 Kerberos servers and clients

Displaying 20 results from an estimated 9000 matches similar to: "Using Samba AD for NFSV4 Kerberos servers and clients"

2018 Feb 05
1
Using Samba AD for NFSV4 Kerberos servers and clients
Hello Kevin, We have a  Samba/Windows20008R2 domain that's been running a few years now. Here are the details: * clients auth with SSSD (ldap, kerberos, ldap_schema=rfc2307bis) * idmap * samba on clients/server for joining domain We have scripts that automatically create users with UnixHomeDir, UID and GUID numbers within AD. I don't know about using WInbind...  I dropped that
2018 Feb 05
0
Using Samba AD for NFSV4 Kerberos servers and clients
I found one of my problems was that on the client, in the /etc/krb5.conf file, the domain name was in lower case. The one on the server was upper case. Upper case'ing the client one fixed my nfs4 mount issue, but now I have another one. The nfs4 krb5 export mounts on the remote client, but doesn't seem to recognize permissions. The mount directory is shown as owned by root and the
2018 Feb 05
0
Using Samba AD for NFSV4 Kerberos servers and clients
Hai, NfsV4 and samba works fine but there is a big BUT and you have found it already. > The nfs4 krb5 export mounts on the remote client, but doesn't seem to > recognize permissions. The mount directory is shown as owned by root and the group is 4294967294 Yes, the nfsv4 acls and system acl over kerberos doent match anymore. This is a know problem and i dont know when it wil be
2015 Mar 24
5
Samba server with NFSV4/kerberos
Hello, I am searching for a solution that I thought should be kind of standard, but until now I was not successful finding anything. Here is the problem: At our site we offer windows and linux, most servers (eg file, samba, web) are linux based. User data is stored on NFS file servers. Windows systems are part of a Windows domain with an ADS domain controller. At the moment the linux samba
2015 Mar 24
1
Samba server with NFSV4/kerberos
Hello Luc, thanks for your answer. If I understand you correctly than you are using samba4 as windows domaincontroller and you do not have another Windows DC? So after all you have exactly one Kerberos Server that is part of the samba4 server? Thanks Rainer Am 24.03.2015 um 12:41 schrieb Luc Lalonde: > Guten tag Rainer, > > We use our Samba4/Win2k8 AD domain to authenticate all our
2019 May 14
2
Samba4 changing a user's password from linux workstation
Hello Rowland, We’ve been using SSSD with Acitve Directory for a few years now… It’s been solid for us. Our Linux clients use the AD-Kerberos via SSSD for secure NFS4 mounts with POSIX attributes defined in AD (uidNumber, gidNumber, unixHomeDirectory, loginShell). Before putting into production, I tested using Winbind and could not get it to do what I wanted. If I remember correctly, I had
2019 Jul 29
3
Samba 4.11.0RC1 replication with Windows2012R2 ?
Hello Folks, There seems to be contradicting sentences in the release notes for 4.11.0RC1: Default schema updated to 2012_R2 --------------------------------- Default AD schema changed from 2008_R2 to 2012_R2. 2012_R2 functional level is not yet available. Older schemas can be used by provisioning with the '--base-schema' argument. Existing installations can be updated with the
2017 Apr 28
2
Unable to add a particular member to group (Samba 4.6.3)
On Fri, 28 Apr 2017 09:41:31 -0400 Luc Lalonde <Luc.Lalonde at polymtl.ca> wrote: > Hello Rowland, > > Have you tried deleting a user, re-creating the same user and then > try to add him to a group? > > I'm convinced that this will point us in the right direction to > correct the bug. > Yes and to confirm it, I just did it again: samba-tool user create User2
2017 Apr 28
2
Unable to add a particular member to group (Samba 4.6.3)
On Fri, 28 Apr 2017 11:01:14 -0400 Luc Lalonde <Luc.Lalonde at polymtl.ca> wrote: > Hello Rowland, > > Is this what you mean? > > [root at roquefort ~]# echo $LANG > fr_CA.utf8 > What I was trying to get at is, does your username have any of those funny marks above some of the letters (you can tell I am English, I don't know the correct name for them because we
2019 Jul 29
2
Samba 4.11.0RC1 replication with Windows2012R2 ?
Ahh ok, thanks for the clarification!?? I'll go to bed less ignorant tonight ;-) On 2019-07-29 12:07 p.m., Rowland penny via samba wrote: > On 29/07/2019 16:41, Luc Lalonde wrote: >> The first sentence says that default schema has changed from 2008R2 >> (schema 47) to 2012R2 (schema 69). >> >> This does not mean that we're now at Windows 2012R2 functional level
2017 Apr 25
3
Unable to add a particular member to group (Samba 4.6.3)
The user exists in AD: - I can see the user using 'wbinfo', 'samba-tool user list' - I can add the user to a group with 'Active Directory Users and Computers' in Windows 2008R2 - It's seems impossible to use 'samba-tool group addmembers foogroup foouser' I looked at the user's attributes but can't find anything different from any other user that
2013 Apr 11
2
Samba-tool modify users info?
Hello, I'm wondering if there's a plan for including the possibility of modifying user attributes (must-change-at_next-login, profile-path, home-drive, home-directory, etc)? For the moment, it seems the only way to do this is when the user is created (samba-tool newuser) or by doing so via 'administrative tools' via a Windows machine. Thank You! -- Luc Lalonde, analyste
2013 May 14
1
GPO replication?
Hello Folks, I've successfully created a GPO for user logon scripts with Samba4... However, the 'SYSVOL\domain\Policies' folder and contents is not replicated to the other DC's. Is this normal? It is working, but it seems that this is a 'single point of failure' for 'logon' scripts. Thank You! -- Luc Lalonde, analyste
2013 May 13
1
Logon script via GPO
Hello Folks, I'm trying to get a logon script to execute via a GPO with Samba 4.0.5. I used the Group Policy Editor that came with the Administration tools and linked a simple 'logon.bat' batch file to automatically mount a network share for a given 'OU=students'. When I log in with a user that's in this container, it does not seem to execute the login script. Anyone
2019 Jul 29
2
Samba 4.11.0RC1 replication with Windows2012R2 ?
The first sentence says that default schema has changed from 2008R2 (schema 47) to 2012R2 (schema 69). This does not mean that we're now at Windows 2012R2 functional level by default??? I must be missing something... On 2019-07-29 11:29 a.m., Rowland penny via samba wrote: > On 29/07/2019 15:59, Luc Lalonde via samba wrote: >> Hello Folks, >> >> There seems to be
2017 Apr 26
2
Unable to add a particular member to group (Samba 4.6.3)
Still doesn't work for that user... for works for another user: [root at roquefort samba]# cp -av ./lib64/python2.6/site-packages/samba/samdb.py ./lib64/python2.6/site-packages/samba/samdb.py.bak « ./lib64/python2.6/site-packages/samba/samdb.py » -> « ./lib64/python2.6/site-packages/samba/samdb.py.bak » [root at roquefort samba]# vi ./lib64/python2.6/site-packages/samba/samdb.py [root
2019 Jul 30
4
Samba 4.11.0RC1 replication with Windows2012R2 ?
Hello Tim, Wow, great documentation! ? That really clears a lot of the terminology? for me. We have to remove our Win2008R2 Servers before Jan2020.?? Hopefully Samba 4.11.x will permit us to join a Win2012R2 Server at a 2008R2 functional level...? Your documentation gives steps on how to do this.? But I need some clarifications... Here's my understanding of the workflow: 1. Upgrade
2016 Sep 19
2
Windows 10 anniversary update (1607) causing profile sync errors
On 2016-09-19 14:08, Marcio Vogel Merlone dos Santos via samba wrote: > Em 09/09/2016 12:48, Luc Lalonde via samba escreveu: > >> We have some machines that have updated to the Windows 10 anniversary update (1607) that are having roaming profile sync problems. >> >> Before I search the event logs or provide details, has anyone experience profile sync wierdness? >>
2014 Jan 16
1
Replication errors (WERR_DS_DRA_SCHEMA_MISMATCH)
Hello, I'm getting replication errors of this type on the Samba (version 4.1.4) server (name=Roquefort): ##### ############################# ERROR(<class 'samba.drs_utils.drsException'>): DsReplicaSync failed - drsException: DsReplicaSync failed (8418, 'WERR_DS_DRA_SCHEMA_MISMATCH') File
2017 Apr 26
2
Unable to add a particular member to group (Samba 4.6.3)
This is the case for this user too... Could it be that Samba is trying to work with the old SID??? Le 2017-04-26 à 10:47, Dale Renton via samba a écrit : > On Tue, Apr 25, 2017 at 3:31 PM, Luc Lalonde via samba < > samba at lists.samba.org> wrote: > >> The user exists in AD: >> >> - I can see the user using 'wbinfo', 'samba-tool user list'