Displaying 20 results from an estimated 8000 matches similar to: "Detailed documentation about latest Samba AD DC authentication"
2018 Mar 22
3
Google Cloud Directory Service password synchronization for AD DC
Hi Justin,
Thank you for your answer, I had found this utility during my searches, and
will probably try it. As you say, reversible + plaintext is far for optimal
from a security point of view.
Also, I would like to integrate the solution in a "packaged" distribution
like for example Zentyal or UCS.
But I'm happy to learn that this solution is viable, I wouldn't lose my
time
2018 May 04
2
Samba Share - security considerations
Dear Samba Users,
I configured a samba share on a linux centos 7 server as server member
of an Active Directory Domain.
I used posix extended unix attributes in AD for permissions on the Samba
share.
Winbind and SSSD are also installed for the mapping of unix attibutes.
My question is more about security.
The linux server is using kerberos to dial with AD server (SSSD + Krb
pam etc.).
I
2018 Mar 22
4
Google Cloud Directory Service password synchronization for AD DC
I'm trying to have my Samba 4 AD DC users mapped and synchronized with
google apps for education accounts.
I would like to start from the native windows password update procedure to
eventually update the google apps password (actually, I think only some
types of hashes are stored).
Google actually provides a tool to synchronize user accounts and profiles
which works juste fine. This tools
2018 May 12
3
Keytab extraction for tshark analyze
Hi, i'm trying to analyze kerberos traffic using tshark (Samba 4.8.1 on
Centos 7).
I can't figure out how to extract keytab with password/keys.
I follow precisely the instructions at
https://wiki.samba.org/index.php/Keytab_Extraction
But it seems like I only get slot, kvno and principal, can't find a way to
get passwords or keys.
Any idea someone ?
ktutil: rkt decode.keytab
ktutil:
2018 Mar 28
5
Accentuated characters issue when receiving attributes from "samba user syncpasswords"
I receive stdin input from "samba user syncpasswords" in my python script.
The user is created with ' Active Directory Users and Computers', and have
some accentuated characters in their givenName and/or familyName (sn)
When parsing the diff, the CN reads of, but weird characters appears in the
attributes instead of the right name :
INFO:root:DN found: CN=Arsène
2018 Mar 22
2
Google Cloud Directory Service password synchronization for AD DC
Hello, and thank you for the answer. I'm quite new to Samba, and when you
speak about Samba storing a crypt() password hash and about the
virtualCryptSHA256 attribute I get the general meaning, but not the way to
get to those informations.
Would you have any pointer on where I could learn more about that ? I found
discussions about some patches from Stefan Metzmacher in the mailing lists,
is
2018 Mar 28
1
Accentuated characters issue when receiving attributes from "samba user syncpasswords"
On Wed, 2018-03-28 at 16:06 +0200, Reindl Harald via samba wrote:
>
> Am 28.03.2018 um 15:52 schrieb Lapin Blanc via samba:
> > I receive stdin input from "samba user syncpasswords" in my python script.
> > The user is created with ' Active Directory Users and Computers', and have
> > some accentuated characters in their givenName and/or familyName (sn)
2018 Mar 25
2
Google Cloud Directory Service password synchronization for AD DC
Hello again, and thank you so much for those valuable information, I'm
progressing well. Google accepts crypt hashes, and I've managed with
Garming's advice to get hashes when passwords get updated.
I've only one small question at this point, the hash seems to be printed
spanned on two lines, with a line break and a few spaces in the middle of
the hash... Is this normal ?
eg :
INFO
2018 Mar 28
4
broken mailing-list -> Re: Accentuated characters issue when receiving attributes from "samba user syncpasswords"
On Wed, 28 Mar 2018 17:32:33 +0200
Reindl Harald via samba <samba at lists.samba.org> wrote:
>
>
> Am 28.03.2018 um 17:21 schrieb Rowland Penny via samba:
> > On Wed, 28 Mar 2018 16:59:19 +0200
> > Reindl Harald via samba <samba at lists.samba.org> wrote:
> >
> >>
> >>
> >> Am 28.03.2018 um 16:50 schrieb Lapin Blanc:
>
2018 Mar 28
2
broken mailing-list -> Re: Accentuated characters issue when receiving attributes from "samba user syncpasswords"
On Wed, 28 Mar 2018 16:59:19 +0200
Reindl Harald via samba <samba at lists.samba.org> wrote:
>
>
> Am 28.03.2018 um 16:50 schrieb Lapin Blanc:
> > Thank you for the tip, i'll use it, but how come it's correctly
> > encoded in the DN and not in the attribute ?
> > Is it related to the ldif format or something ?
>
> no idea and hence *do not* reply
2018 Mar 22
0
Google Cloud Directory Service password synchronization for AD DC
On Thu, 2018-03-22 at 21:15 +0100, Lapin Blanc via samba wrote:
> Hi Justin,
>
> Thank you for your answer, I had found this utility during my searches, and
> will probably try it. As you say, reversible + plaintext is far for optimal
> from a security point of view.
> Also, I would like to integrate the solution in a "packaged" distribution
> like for example
2018 May 12
0
Keytab extraction for tshark analyze
On Sat, 12 May 2018 19:45:10 +0200
Lapin Blanc <fabien.toune at lapin-blanc.com> wrote:
> I'm studying samba related protocols for a work I have to present at
> the university,
> and for me to really understand how it works, I try to put in in
> practice. So I was reading
> http://www.kerberos.org/software/tutorial.html and tried to track
> packets... I was hoping this
2018 Mar 28
2
broken mailing-list -> Re: Accentuated characters issue when receiving attributes from "samba user syncpasswords"
On Wed, 28 Mar 2018 18:22:16 +0200
Reindl Harald via samba <samba at lists.samba.org> wrote:
>
>
> Am 28.03.2018 um 18:07 schrieb Rowland Penny via samba:
> > On Wed, 28 Mar 2018 17:32:33 +0200
> > Reindl Harald via samba <samba at lists.samba.org> wrote:
> >
> >>
> >>
> >> Am 28.03.2018 um 17:21 schrieb Rowland Penny via samba:
2018 Mar 22
0
Google Cloud Directory Service password synchronization for AD DC
Fabien,
The way that we’ve accomplished this was to ensure that all users have the “Store passwords using reversible encryption” (which is not optimal) and use a utility called “samba4-gaps.”
Also:
samba-tool domain passwordsettings set --store-plaintext=on
Works perfectly.
https://github.com/baboons/samba4-gaps
Justin
> On Mar 22, 2018, at 3:58 PM, Lapin Blanc via samba <samba at
2012 Dec 29
1
Samba 4 technical documentation
Hi Newsgroup,
I want to write a technical thesis about Samba 4 and need more detailed
infos about samba's own implementations of ldap, kerberos, bind, etc. and
the differences from the common implementations.
Obviously I'm to stupid to find it for myself so I would be very grateful
for any help, links, etc.
Thanks in advance,
Markus
2018 Apr 29
1
no attributes after following "Setting up a Share Using Windows ACLs"
Hi, i have setup an ad dc with samba 4.8, and then rigorously followed wiki
tutorial at :
https://wiki.samba.org/index.php/Setting_up_a_Share_Using_Windows_ACLs
However, when following the last part (File System ACLs in the Back End), I
don't get
the expected results :
[root at mydc ~]# getfattr -d /srv/samba/Demo/
doesn't yield anything and
getfacl /srv/samba/Demo/
getfacl : suppression
2018 Mar 22
0
Google Cloud Directory Service password synchronization for AD DC
Hi,
If you look at both:
samba-tool user getpassword --help
samba-tool user syncpasswords --help
You may be able to find the information that you're looking for. Samba
does store all the hashes in the LDAP directory, but you have to
normally access them directly from the system (not over LDAP). You
should also note that our Kerberos server reads and updates the password
stored in the
2018 Mar 28
3
broken mailing-list -> Re: Accentuated characters issue when receiving attributes from "samba user syncpasswords"
On Wed, 28 Mar 2018 18:54:16 +0200
Reindl Harald via samba <samba at lists.samba.org> wrote:
>
>
> Am 28.03.2018 um 18:47 schrieb Rowland Penny via samba:
> > On Wed, 28 Mar 2018 18:22:16 +0200
> > Reindl Harald via samba <samba at lists.samba.org> wrote:
> >
> >>
> >>
> >> Am 28.03.2018 um 18:07 schrieb Rowland Penny via samba:
2007 Apr 12
1
Assignment from list
I have a list of groups of xy positions I want to set to 0 in an
array full of 1s. When the assignments are done directly from the
list, they are incorrect, while if I use a temporary array derived
from the list the assignments are correct. The following example will
hopefully make my problem clearer.
The matrices z and zz are initialised with 1. The z and zz values at
coordinates in
2004 Mar 01
4
AW: samba configuration multiple ethernet card
Ok, and then?
in file smb.conf.192.168.0.1
[global]
...
bind interfase only = yes
interfaces = eth0
...
[FOR_ALL]
...
in file smb.conf.192.168.0.2
[global]
...
bind interfase only = yes
interfaces = eth1
...
[ADMINS]
...
Does this configuration works?
Is this a good solution? i really don't know, so what's
the global thinking about this.
--
Information Systems