Displaying 20 results from an estimated 3000 matches similar to: "granting SeDiskOperatorPrivilege"
2018 Jul 26
2
granting SeDiskOperatorPrivilege
Am 25.07.2018 um 09:03 schrieb Stefan G. Weichinger via samba:
> Am 2018-07-24 um 09:48 schrieb Stefan G. Weichinger via samba:
>>
>> I fail to set SeDiskOperatorPrivilege on a samba DM and I suspect the
>> german umlauts:
>>
>> # wbinfo -g
>> dom�nencomputer
>> dom�nen-benutzer
>> dom�nen-g�ste
>> dom�nen-admins
>>
>> (bad
2018 Jul 25
0
granting SeDiskOperatorPrivilege
Am 2018-07-24 um 09:48 schrieb Stefan G. Weichinger via samba:
>
> I fail to set SeDiskOperatorPrivilege on a samba DM and I suspect the
> german umlauts:
>
> # wbinfo -g
> dom�nencomputer
> dom�nen-benutzer
> dom�nen-g�ste
> dom�nen-admins
>
> (bad locale, umlauts displayed as special ugly chars)
>
> but the group "domänen-admins" =
2018 Jul 26
2
granting SeDiskOperatorPrivilege
Am 2018-07-26 um 18:14 schrieb Rowland Penny via samba:
> On Thu, 26 Jul 2018 17:46:26 +0200
> "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
>> I also don't know how to use that group "domänen-benutzer" in "valid
>> users" or "read list" ...
> Stefan, you know all that knowledge you learnt about
2018 Sep 11
2
"missing security tab" and related ACL issues
Am 07.09.18 um 20:07 schrieb Rowland Penny via samba:
> On Fri, 7 Sep 2018 19:09:37 +0200
> "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
>> But
>>
>> # net rpc rights grant "Domänen-Admins" SeDiskOperatorPrivilege -U
>> "mydomain\administrator"
>>
>> fails
>>
>> also for
2020 Feb 25
2
Windows ACLs : problems
Am 25.02.20 um 14:30 schrieb Rowland penny via samba:
> On 25/02/2020 13:24, Stefan G. Weichinger via samba wrote:
>> Am 25.02.20 um 14:16 schrieb Rowland penny via samba:
>>
>>> Do you have a user.map line in smb.conf ?
>>>
>>> Something like this:
>>>
>>> username map = /etc/samba/smb.conf
>> It should be more like:
>>
2020 Feb 25
2
Windows ACLs : problems
Am 25.02.20 um 14:51 schrieb Rowland penny via samba:
> On 25/02/2020 13:37, Stefan G. Weichinger via samba wrote:
>> right now, will retest.
>>> OK, I give in, I will alter the wiki page, if you use the 'rid' or
>>> 'autorid'? backend, you can use Domain Admins, just do not give Domain
>>> Admins a gidNumber.
>> 1) why and how could I have
2018 Sep 07
2
"missing security tab" and related ACL issues
Am 07.09.18 um 16:20 schrieb Rowland Penny via samba:
> On Fri, 7 Sep 2018 15:36:15 +0200
> "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
>
>> Am 07.09.18 um 15:25 schrieb Rowland Penny via samba:
>>
>>> From what you have posted it doesn't, but when you do get then
>>> working, you need to understand that EA's
2018 Jul 26
0
granting SeDiskOperatorPrivilege
On Thu, 26 Jul 2018 18:31:48 +0200
"Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
> Am 2018-07-26 um 18:14 schrieb Rowland Penny via samba:
> > On Thu, 26 Jul 2018 17:46:26 +0200
> > "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
> >> I also don't know how to use that group
2018 Sep 07
2
"missing security tab" and related ACL issues
Am 07.09.18 um 12:45 schrieb Rowland Penny via samba:
> On Fri, 7 Sep 2018 11:22:36 +0200
> "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
>
>>
>> At a customer server (gentoo linux, so far only Samba version 4.7.7)
>> we tried to use Windows ACLs and failed:
>>
>> no security tab in Windows ... for local C: yes, not on
2020 Feb 25
3
Windows ACLs : problems
Am 25.02.20 um 14:16 schrieb Rowland penny via samba:
> Do you have a user.map line in smb.conf ?
>
> Something like this:
>
> username map = /etc/samba/smb.conf
It should be more like:
username map = /etc/samba/samba_usermapping
and not point to smb.conf, right? ;-)
> Which contains something like this:
>
> !root = DOMAIN\Administrator
# cat
2017 Jun 22
3
two domain members, different groupIDs
Observation:
2 sambas, ADS-member servers
one is Debian, samba-4.2.14
2nd is Gentoo, samba-4.5.10
1)
winbind enum users = Yes
winbind enum groups = Yes
winbind use default domain = Yes
winbind refresh tickets = Yes
idmap config mydomain:schema_mode = rfc2307
idmap config mydomain:range = 10000-99999
idmap config mydomain:backend = rid
idmap config *:range = 2000-9999
idmap config * :
2019 Jan 03
3
Windows ACLs on share
Am 03.01.19 um 16:19 schrieb Rowland Penny via samba:
> On Thu, 3 Jan 2019 15:46:24 +0100 "Stefan G. Weichinger via samba"
> <samba at lists.samba.org> wrote:
>> observation, maybe important:
>
> Oh, it's more than important, guess where the Windows ACLs are stored
> ;-)
hmm ... ? ;)
>> (share "projekte" works fine, share "QM"
2018 May 25
1
Share periodical not accessible
Thank you for your response! Here comes the smb.conf…
André
— smb.conf —
# Global parameters
[global]
workgroup = LOPRODUCTS
realm = LOPRODUCTS.LOCAL
server role = member server
security = ads
server string = %h server (Samba, Ubuntu)
netbios name = fireball
disable netbios = yes
wins support = no
domain master = no
local master = no
preferred master = no
os level = 0
dns forwarder
2004 Nov 14
1
Samba cannot find group in ADS
Hello everybody,
I have a Samba 3.0.7-Debian setup and joined a W2k ADS-domain. A User is
put in "SambaUsers" as his primary primary group. I can create files
from XP client that belong to user in "SambaUsers" The user is
successfully authenticated by samba and can access his profile. I want
him to be able to access the share "p" on samba. Without "valid
2017 Aug 22
1
Setup of Samba with Solaris 11.3 to provide Unix File Shares to Windows Users
Does mdecker exist in AD ?
=> Yes
root at solaris1:~# getent passwd "MYDOM.ADS\\mdecker"
mdecker:*:13767:613::/home/mdecker:/bin/bash
winbind log:
getpwnam MYDOM.ADS\mdecker
wb_request_done[24254:GETPWNAM]: NT_STATUS_OK
Does 'getent passwd mdecker' work ?
=> No
getent passwd mdecker
getpwnam mdecker
winbindd_getpwnam: My domain -- rejecting getpwnam() for
2018 Sep 07
2
"missing security tab" and related ACL issues
At a customer server (gentoo linux, so far only Samba version 4.7.7) we
tried to use Windows ACLs and failed:
no security tab in Windows ... for local C: yes, not on samba shares
Yes, I followed
https://wiki.samba.org/index.php/Setting_up_a_Share_Using_Windows_ACLs
and have the vfs module enabled etc
-
Now I consider that the kernel doesn't have the necessary flags set.
I get
#
2019 Jan 03
2
Windows ACLs on share
Am 03.01.19 um 16:51 schrieb Rowland Penny via samba:
> Hmm, 'Projekte' works and is writeable by 'root', members of the 'qm'
> and anybody else. Whilst 'QM' is only writeable by 'root'. Does this
> give you any hints ?
sure. changed this already in all directions before.
and you also said you were following this wiki
> page:
>
>
2018 Sep 11
0
"missing security tab" and related ACL issues
On Tue, 11 Sep 2018 09:54:32 +0200
"Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
> Am 07.09.18 um 20:07 schrieb Rowland Penny via samba:
> > On Fri, 7 Sep 2018 19:09:37 +0200
> > "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
>
> >> But
> >>
> >> # net rpc rights grant
2013 Dec 19
1
Trouble with charsets on samba4
Hello
I have much trouble with german umlauts.
I've installed samba4 as a DC in an existing Windows Domain. The first join I made with a blank smb4.conf
"samba-tool domain join DOMAIN DC -UAdministrator%Passwort --realm=DOMAIN.LOCAL --server=windows-dc.domain.local --use-ntvfs"
It works fine and everything is synced.
On the share we have directories and files with german umlauts.
2018 Jun 20
2
Roaming profiles
Hey,
I want to use a debian stretch with samba 4 as a fileserver, but I have
problems with the access.
Here is what I did:
apt-get install samba winbind libpam-heimdal libnss-winbind
/etc/init.d/winbind stop
/etc/init.d/samba stop
nano /etc/krb5.conf https://pastebin.com/rkBPJ2Wz
nano /etc/samba/smb.conf https://pastebin.com/h1cJZ6sM
nano /etc/nsswitch.conf https://pastebin.com/gxK2rJLU