similar to: design question for small environment

Displaying 20 results from an estimated 10000 matches similar to: "design question for small environment"

2018 Sep 10
2
design question for small environment
Am 10.09.18 um 10:06 schrieb Oliver Rath via samba: > For this, you could take roaming profiles for offline use. Here the > files were copied to the local machine cache and used, if no (or only a > slow) network connection is available. Alternativly, you could use a > "RODC" (Read only Domain Controller, a mirror of the AD) locally in the > another office. As a third
2018 Sep 10
0
design question for small environment
On Mon, 10 Sep 2018 12:57:17 +0200 "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote: > Am 10.09.18 um 10:06 schrieb Oliver Rath via samba: > > > For this, you could take roaming profiles for offline use. Here the > > files were copied to the local machine cache and used, if no (or > > only a slow) network connection is available.
2018 Sep 10
0
design question for small environment
Hi Stefan! On 10.09.2018 08:35, Stefan G. Weichinger via samba wrote: > > Greetings samba-users > > another "design issue" here > > I run 2 servers in a very closed environment, basically it is only one > fileserver, the 2nd does snapshots and backups etc > > That server is configured as standalone and knows only ~6 local users. > No ADS, no domain
2018 Sep 10
0
design question for small environment
On Mon, 10 Sep 2018 08:35:38 +0200 "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote: > > Greetings samba-users > > another "design issue" here > > I run 2 servers in a very closed environment, basically it is only > one fileserver, the 2nd does snapshots and backups etc > > That server is configured as standalone and knows
2018 Sep 11
2
design question for small environment
Am 10.09.18 um 11:12 schrieb Rowland Penny via samba: > Hi Stefan, I would set up a small AD domain, one DC, and turn the two > original servers into Unix domain members and then use kerberos. How would "use kerberos" look like from the client's view?
2018 Sep 10
6
design question for small environment
Am 10.09.18 um 11:12 schrieb Rowland Penny via samba: > Hi Stefan, I would set up a small AD domain, one DC, and turn the two > original servers into Unix domain members and then use kerberos. > > I cannot think of any other way of not using passwords. I won't get a third server for doing so. It could be a VM or container, though. For now we discussed simply editing the
2018 Sep 18
2
design question for small environment
Ah, ok. Maybe you can do something with the static id mappings on the server. Map a computer to user But besides that, uhm, good luck... Stick with the login popup, and save yourself a lot of troubles. Maybe this wil give you a good hint, https://sambaxp.org/fileadmin/user_upload/sambaXP2018-Slides/StefanMetzmacher_sambaxp2018_trusted_domain_support-rev0-compact.pdf Imo, a hard one to
2018 Sep 18
0
design question for small environment
Am 18.09.18 um 16:33 schrieb L.P.H. van Belle via samba: > Ah, ok. > > Maybe you can do something with the static id mappings on the server. > Map a computer to user > > But besides that, uhm, good luck... > Stick with the login popup, and save yourself a lot of troubles. > > Maybe this wil give you a good hint, >
2018 Sep 18
0
design question for small environment
If you make sure the loginnames and password as the same on both domains. Then its just. net use k: \\FQDN\SHARE /user:DOM1\%username% net use l: \\FQDN\SHARE /user:DOM2\%username% At least that is what i do here. You can do more, open CMD box, run type: set You an use all these variables. net use m: \\FQDN\SHARE /user:%USERDOMAIN%\%username% Or net use n: \\FQDN\SHARE
2019 Mar 28
2
Is RODC password replication different from the windows version by design or is it a bug?
Hi, I've tried replacing some 2012R2 RODC by samba-4.9.4 RODCs. One question about password replication: Samba wiki (https://wiki.samba.org/index.php/Join_a_domain_as_a_RODC) states that samba RODC acts as a proxy server to a writable DC if users are not member of the Allowed RODC Password Replication Group, which is the behavior we knew (and what we want) from the MS RODCs. Our test
2018 Sep 12
2
design question for small environment
As the unix servers  running linux (I know some people wouldn't call that real unix) or a "real" unix like Solaris ? Linux has sssd which can make things simpler. In either case you probably need a proxy account for the unix system to retrieve user and group info (not passwords) via LDAP. On 09/11/18 03:56, Rowland Penny via samba wrote: > On Tue, 11 Sep 2018 08:56:35 +0200
2019 Mar 29
2
Is RODC password replication different from the windows version by design or is it a bug?
On 03/29/2019 10:37 AM, Andrew Bartlett wrote: > On Fri, 2019-03-29 at 10:16 +0100, Adam Minski via samba wrote: >> >> On 03/28/2019 05:32 PM, Rowland Penny via samba wrote: >> >> [...] >> >>>> Should the samba RDOC act like the windows version or is it different >>>> by design? >>>> >>> >>> Yes it should and
2019 Mar 29
2
Is RODC password replication different from the windows version by design or is it a bug?
On 03/28/2019 05:32 PM, Rowland Penny via samba wrote: [...] >> Should the samba RDOC act like the windows version or is it different >> by design? >> > > Yes it should and there is a bug report for something similar already, > see here: https://bugzilla.samba.org/show_bug.cgi?id=13377 > > I know that is for members of the denied group, but the substance is
2019 Mar 29
2
Is RODC password replication different from the windows version by design or is it a bug?
On 03/29/2019 10:54 AM, Andrew Bartlett wrote: > On Fri, 2019-03-29 at 10:44 +0100, Adam Minski wrote: >> >> On 03/29/2019 10:37 AM, Andrew Bartlett wrote: >>> On Fri, 2019-03-29 at 10:16 +0100, Adam Minski via samba wrote: >>>> On 03/28/2019 05:32 PM, Rowland Penny via samba wrote: >>>> >>>> [...] >>>>
2018 Sep 12
1
design question for small environment
Presumably the unix servers are sharing network shares via samba but not NFS.      If you aren't using NFS and if regular users don't need to ssh or sftp into the server then winbind is probably sufficient.    My environment has a mix of unix and windows clients and servers so getting uidNumbers and gidNumbers consistent across machines and OS's is critical so winbind alone was
2000 Sep 12
1
Cleartext pre-authentication before going to secure mode.
Hi This is a feature request. 1) Make sshd to ignore garbage that may appear before ssh identification string is received. Such "garbage" may be for example telnet negotiation codes. This should be pretty easy task. 2) Make ssh to work in cleartext mode (and have minimum telnet negotiation handling) before it receives ssh identification string. This requires somewhat
2018 Nov 22
2
machine account on RODC
Hello everybody, if I set up a RODC in a different site with an own subnet do I have to replicate the machine-passwords with "samba-tool rodc reload host\$ --server=addc"? Or can a machine always authenticate against a RODC? Greetings Stefan -------------- next part -------------- A non-text attachment was scrubbed... Name: signature.asc Type: application/pgp-signature Size: 195
2018 Oct 23
3
Samba 4.7+ - RODC and password change support
On Tue, 23 Oct 2018 10:07:29 +1300 Garming Sam via samba <samba at lists.samba.org> wrote: > Hi, > > On 20/10/18 1:26 AM, Julien Ropé via samba wrote: > > > >  The deployment works, and computers seems to interact with the > > RODCs as they should, but sometimes computers leave the domain > > after a password change. > > > >  This seems to
2015 Feb 16
2
rodc and KRB_TGS_REQ forwarding to RWDC to access hub ressources
Hi Garming, > As far I know, all this should work as you would expect. Quite recently, > Andrew Bartlett and I went about testing some of the behaviour of the > KDC and confirming behaviour such as RODC ticket forwarding. thanks for the input. It gives me hope to dig deeper! I have some more time to spend on this issue today, I gonna try some more scenario. > The one thing to check
2015 Feb 10
2
rodc and KRB_TGS_REQ forwarding to RWDC to access hub ressources
Hi everyone, I would like to have some input on ressources access from a workstation logged on a RODC server that has to connect on hub site servers. After login in the remote windows workstation, I have LOGONSERVER environment variable set to the local RODC server (workstation and user credentials have been preloaded). Everything works fine on local server. However if I want to connect to