Displaying 20 results from an estimated 9000 matches similar to: "Active directory sites"
2018 May 22
2
Active directory sites
Thanks for the link Rowland!
I read some of the old topics on the list, regarding trust relationship
between two different domains and said that samba could not support. I
think it was 2011 topics.
Today, with so many updates, is it already supported?
On Fri, May 18, 2018 at 4:43 AM, Rowland Penny via samba <
samba at lists.samba.org> wrote:
> On Thu, 17 May 2018 23:20:58 -0300
>
2018 May 18
0
Active directory sites
On Thu, 17 May 2018 23:20:58 -0300
Elias Pereira via samba <samba at lists.samba.org> wrote:
> hello folks,
>
> About ad sites, would work on an infrastructure as shown in the link
> image below?
>
> https://i.imgur.com/tYoxaYi.png
>
> The subnets (public IP) for communication is different on each
> others, of course. :D
>
Try reading this:
2017 Dec 11
2
How to correct set permissions only for a group users access the share folder
hello,
Configurations:
DC1
FILESERVER member of DC1
Fileserver have extend acls enable and works.
/mnt/strdc1 - share via Computer Management
[storage]
path = /mnt/strdc1
read only = no
*image example link:* http://i.imgur.com/YVO7Emz.png
The 3 groups have Full Control set.
*security tab*
*image example link:* http://i.imgur.com/Mw8xEfc.png
The 3 groups have
2017 May 30
2
member domain idmap config ad/rid
>
> Simple answer:
> Administrator, No
> Domain Admins, Yes
Ok. It was already that way.
root at fileserver:/etc/samba# getent group
...
domain admins:x:10004:
domain users:x:10000:
dap:x:10003:
dti:x:10001:
For some reason with the administrator user is not working, I put my user
as domain admin and include him as a member of unix and now I can access
the security tab.
2017 Dec 11
2
How to correct set permissions only for a group users access the share folder
Rowland,
The first two images are from the "storage" folder, that is the main
folder, which I configured via "computer management".
http://i.imgur.com/lerIGBg.png
The last two are related to the CTI group.
Tell me what you need to test, I do! :D
On Mon, Dec 11, 2017 at 1:33 PM, Rowland Penny via samba <
samba at lists.samba.org> wrote:
> On Mon, 11 Dec 2017
2018 May 17
2
Dcs Replication
On Thu, 17 May 2018 18:01:48 -0300
Carlos <carlos.hollow at gmail.com> wrote:
> I dont have DC4...
> But, i shutdown DC1(manutenção)
> i created user in DC2, this user doesn't exist in DC3, never
> replication... is not problem?
>
> Regards...
>
> On 17-05-2018 17:49, Rowland Penny wrote:
> > On Thu, 17 May 2018 17:37:28 -0300
> > Carlos
2017 Jun 13
2
recycle on a fileserver domain member
Thanks for your answer Rowland,
I fix this problem. I had not put writing permission to the "domain users".
Http://i.imgur.com/oLXS0Kn.png
In the image above I show the permissions of the recycle folder. They are
correct?
Do I need to have these 3 entries below in my smb.conf?
recycle:directory_mode = 0700
recycle:subdir_mode = 0700
recycle:inherit_nt_acl = Yes
On Tue, Jun 13, 2017
2017 Dec 11
2
How to correct set permissions only for a group users access the share folder
Yes. The /storage is the root of the share.
Share permissions tab is correct in the image above?
then 'CAMPUS' group members can Read & execute, List
> folder contents and Read the files in the share, they cannot write to
> the share.
This I set in the Security tab? Look: http://i.imgur.com/kt6F5G0.png
2017 May 30
2
member domain idmap config ad/rid
Rowland,
AD: 4.5.8
Fileserver: 4.6.3
root at fileserver:~# samba -Version
Version 4.6.3-Debian
root at fileserver:~# net rpc rights list privileges SeDiskOperatorPrivilege
-U "ADDC\administrator"
Enter ADDC\administrator's password:
SeDiskOperatorPrivilege:
ADDC\Domain Admins
BUILTIN\Administrators
chown root:Domain\ Admins /mnt/dados >>>> ok
chmod 0770
2018 Jun 28
2
Active directory sites & subnets
Thanks for the answer ligpanda101!!
For DC's that are not present on a subnet, assign the subnet to the closet
> site to a DC
Visibly via RSAT, how would that look?
On Wed, Jun 27, 2018 at 1:06 PM lingpanda101 <lingpanda101 at gmail.com> wrote:
> On 6/27/2018 11:44 AM, Elias Pereira via samba wrote:
> > Hello,
> >
> > Reading about, specifically in the wiki
2017 May 30
2
member domain idmap config ad/rid
root at fileserver:~# getfacl /home/dados/
getfacl: Removing leading '/' from absolute path names
# file: home/dados/
# owner: root
# group: domain\040admins
user::rwx
group::rwx
other::---
Still with the same problem. No security tab on windows machine. :(
The "Administrator" and "Domain Admins" also need to have an unix attribute?
On Tue, May 30, 2017 at 4:08 PM,
2018 May 23
1
Active directory sites
Sorry Rowland, I'll leave this topic with the discussion about "sites".
I'll create another one for the discussion of "trusts".
By article of the link and other searches, based on the infrastructure of
my image, it would not be possible to configure sites, as they all need to
be in the same domain, correct?
On Wed, May 23, 2018 at 4:30 AM, Rowland Penny via samba <
2018 May 17
2
Dcs Replication
On Thu, 17 May 2018 17:37:28 -0300
Carlos <carlos.hollow at gmail.com> wrote:
> Matriz site Filial site
> DC1 -------(OPENVPN)-------- DC3
> |
> |
> DC2
>
> DC1 -> DC2 = OK
> DC1 -> DC3 = OK
>
> DC2 -> DC1 = OK
> DC2 -> DC3 = NO
>
> DC3 -> DC1 = OK
> DC3 -> DC2 =
2017 Dec 11
2
How to correct set permissions only for a group users access the share folder
Ok.
Let's start from the beginning!!! :)
*SHARE FOLDER*
Share Permissions Tab: http://i.imgur.com/fuhIRif.png
Security Tab: http://i.imgur.com/oNlcsEr.png
CAMPUS\CAMPUS is a group that has the other groups that I need to have a
shared folder.
Correct permissions so far?
On Mon, Dec 11, 2017 at 2:37 PM, Rowland Penny via samba <
samba at lists.samba.org> wrote:
> On Mon, 11
2018 Jun 27
2
Active directory sites & subnets
Hello,
Reading about, specifically in the wiki
<https://wiki.samba.org/index.php/Active_Directory_Sites> link, says the
following about subnets.
"Create a subnet entry for all subnets in your network and assign them to a
site:"
The subnet on which our DCs are configured is a public IP block, but the
client machines are in a subnet with a private address block.
Do I need to
2017 May 22
1
DNS (bind_dlz) forwarding not working
On Mon, 22 May 2017 17:49:09 -0300
Elias Pereira via samba <samba at lists.samba.org> wrote:
> Thanks Rowland!!
>
> Now everything is working properly. After I create the subdomain for
> samba, the queries that don't belong to AD are forward to our main
> DNS and I have again access to our internal services.
>
> Other question.
>
> Can I add another email
2015 Sep 01
2
Verify that user replication between master and slave through the logs?
Hello guys,
On my other e-mail does not properly explain what I was looking for.
I made the data replication between two domain controllers Samba 4. At this
point everything is okay. When I create a user, for example in master,
after a few seconds the slave already have this user.
What I want to know is how can I verify that user replication between
master and slave through the logs?
--
Elias
2017 May 19
3
DNS (bind_dlz) forwarding not working
Thanks.
I was able to verify through the following command:
*samba-tool dns query localhost yourdomain.lan @ ALL -U administrator*
--------------
Rowland,
Some time ago I had made some questions about dns with samba4. In the topic
below you say:
"I would suggest you create a sub domain of your main domain (this is
recommended anyway) i.e. if your main domain is called
2017 Jun 13
2
recycle on a fileserver domain member
Hello guys,
I configured the recycle in my fileserver, but when I logged in with normal
user and delete some files, folders, etc, the errors occurs.
./addc-pc-01.log:28251: recycle: mkdir failed for .recycle with error:
Permission denied
./addc-pc-01.log:28252:[2017/06/13 14:15:11.816085, 3]
../source3/modules/vfs_recycle.c:582(recycle_unlink)
./addc-pc-01.log:28253: recycle: Could not create
2017 Dec 11
2
How to correct set permissions only for a group users access the share folder
>
> That is it, the 'Write' permission is not set.
>
It is necessary via security tab on Computer Management?
About permissions hierarchy:
a) In the */storage* folder has have Read & execute, List folder contents
and Read permission for the CTI group
b) In the */storage/dCTI* folder has full permission for the CTI group
Permissions for "b" have priority over