Displaying 20 results from an estimated 600 matches similar to: "print samba-tool dsacl"
2018 Nov 10
1
print samba-tool dsacl
Sorry - I have just seen i did the "diff -u" in wrong order and used my
test files.
Here once again the correct diff.
Am Sa., 10. Nov. 2018 um 08:54 Uhr schrieb Martin Krämer <
mk.maddin at gmail.com>:
> Hello everyone,
>
> since I was not able to find any tool like requested previously I did a
> "quick and dirty" for samba-tool.
> I copied the
2018 Aug 22
1
samba-tool dsacl set fails with "Unknown flag"
Hi,
i was not able to find anything about my issue in the bug-tracker,
the mailinglist or the release notes. We see the following issue
using samba-tool dsacl:
samba-tool dsacl set --objectdn "cn=srv-client-99,cn=CoreBizClients,cn=Netzwerk,ou=muc,DC=coreboso,DC=de" --sddl='(A;CI;GA;;;DD)'
new descriptor for
2015 Feb 19
2
dsacl
I am trying to grant or denied access to a user for changing his passwd, it's the option: User cannot change passwd. For this, I am trying to use samba-tool dsacl set [option], but I am not sure of its syntax. Could you help me with that? I need to denied this permission without use ADUC or any private tool. My Regards!
2019 Apr 12
3
Sudo rules in samba with winbind
Hello All,
I am currently changing my samba linux clients (Debian) from sssd binding
to winbind.
With sssd I had all sudo rules within the samba active directory.
The configuration was based on:
https://lists.samba.org/archive/samba/2016-April/199402.html
Is there some guideline like the one mentioned available/has someone
already experience with this for winbind based clients?
Within the
2018 Aug 22
0
samba-tool dsacl set fails with "Unknown flag"
Hi,
2014 Jul 29
1
dsacls
Are there any deny tools with samba4? Like the below example?
To set the permission to deny read access of the homePhone attribute on a single user object, you can use this command:
dsacls <DN of object> /D <security principal>:RP;homePhone
For our example, the command would look like this:
dsacls "CN=Doe\, John,OU=newOU,DC=root,DC=net" /D root\
non-HR-users:RP;homePhone
2019 Apr 08
6
Debian Stretch, Samba 4.10.2, 4.9.6 and 4.8.11 Available (amd64/i386)
Hai guys,
I've updated the Debian Stretch package for Samba 4.10.2, 4.9.6 and 4.8.11.
Repo info : https://apt.van-belle.nl
Build logs: http://downloads.van-belle.nl/samba4/Buildlogs/stretch/
Quick repo setup:
Optional: apt-get install apt-transport-https
Import my public key:
wget -O - http://apt.van-belle.nl/louis-van-belle.gpg-key.asc | apt-key add -
# Example repo stretch samba
2019 Apr 19
1
winbind offline login - NT_STATUS_NO_SUCH_USER (0xc0000064)
On Fri, 19 Apr 2019 11:58:23 +0200
Martin Krämer <mk.maddin at gmail.com> wrote:
> Hi Rowland,
>
> thanks for your reply.
>
> > I personally would have used 'cache directory =' , see 'man
> > smb.conf' for the difference.
> From description based on man smb.conf I would absolutely agree.
> I have tried and set the "cache directory"
2019 Jan 02
1
Samba - Bind9 DNS - ISC-DHCP - obsolete DNS entries
Hi,
thanks for reply.
Having the information that this is no situation considered yet is already
helpfull - telling me that I have not missed / missconfigured something. :)
I think the better solution for me is to not even create the unwanted
entries.
Filtering for "automatic" dhcp created hostnames (matching '^dhcp-.*$') to
not be added into DNS should to the trick for me
2023 Feb 01
2
[Announce] Samba 4.18.0rc2 Available for Download
Release Announcements
=====================
This is the second release candidate of Samba 4.18.? This is *not*
intended for production environments and is designed for testing
purposes only.? Please report any defects via the Samba bug reporting
system at https://bugzilla.samba.org/.
Samba 4.18 will be the next version of the Samba suite.
UPGRADING
=========
NEW FEATURES/CHANGES
2023 Feb 01
2
[Announce] Samba 4.18.0rc2 Available for Download
Release Announcements
=====================
This is the second release candidate of Samba 4.18.? This is *not*
intended for production environments and is designed for testing
purposes only.? Please report any defects via the Samba bug reporting
system at https://bugzilla.samba.org/.
Samba 4.18 will be the next version of the Samba suite.
UPGRADING
=========
NEW FEATURES/CHANGES
2019 Apr 06
2
DsReplicaSync failed - WERR_LOGON_FAILURE // Failed to bind to uuid for ncacn_ip_tcp - NT_STATUS_LOGON_FAILURE
Hello Rowland,
thanks for your help.
Below my comments
Am Sa., 6. Apr. 2019 um 14:32 Uhr schrieb Rowland Penny via samba <
samba at lists.samba.org>:
> On Sat, 6 Apr 2019 10:58:15 +0200
> Martin Krämer via samba <samba at lists.samba.org> wrote:
>
> > Hello everyone,
> >
> > I have setup two Samba AD DC's running Debian 9 with BIND9_DLZ dns
> >
2023 Mar 01
1
[Announce] Samba 4.18.0rc4 Available for Download
Release Announcements
=====================
This is the fourth release candidate of Samba 4.18.? This is *not*
intended for production environments and is designed for testing
purposes only.? Please report any defects via the Samba bug reporting
system at https://bugzilla.samba.org/.
Samba 4.18 will be the next version of the Samba suite.
UPGRADING
=========
NEW FEATURES/CHANGES
2023 Mar 01
1
[Announce] Samba 4.18.0rc4 Available for Download
Release Announcements
=====================
This is the fourth release candidate of Samba 4.18.? This is *not*
intended for production environments and is designed for testing
purposes only.? Please report any defects via the Samba bug reporting
system at https://bugzilla.samba.org/.
Samba 4.18 will be the next version of the Samba suite.
UPGRADING
=========
NEW FEATURES/CHANGES
2018 Dec 20
4
Samba AD DC replication error - 2, 'WERR_BADFILE'
Hai,
As extra on Rowland comment..
Your config looks ok as said, i did see..
smb.conf
map to guest = bad user < remove it.
Bad User - Means user logins with an invalid password are rejected, unless the username does not exist, in
which case it is treated as a guest login and mapped into the guest account.
and you want that for a AD DC setup? you might
2019 Apr 06
5
DsReplicaSync failed - WERR_LOGON_FAILURE // Failed to bind to uuid for ncacn_ip_tcp - NT_STATUS_LOGON_FAILURE
Am Sa., 6. Apr. 2019 um 18:01 Uhr schrieb Rowland Penny via samba <
samba at lists.samba.org>:
> On Sat, 6 Apr 2019 17:21:26 +0200
> Martin Krämer <mk.maddin at gmail.com> wrote:
>
> > Hello Rowland,
> >
> > thanks for your help.
> > Below my comments
>
> > > See here:
> > >
> > > http://apt.van-belle.nl/
> > >
2020 Jul 30
2
Set write permission for an user into a specific LDAP field...
I need to have an AD user that need to *write* in an users LDAP field.
The user case is a MFP (a set of MFP, indeed) that have RFID auth, and
so need to 'register' the RFID cards.
Seems to me that i have to use dsacl/samba-tool acl ds, but i don't
found a way to set the property for every user.
EG, assign write permission to user 'mfp' to field 'pager' for every
2019 Apr 19
4
winbind offline login - NT_STATUS_NO_SUCH_USER (0xc0000064)
On Fri, 19 Apr 2019 07:50:28 +0200
Martin Krämer via samba <samba at lists.samba.org> wrote:
> Hi All,
>
> I tried multiple topics and did some further analyzing regarding this.
> I found that described error below only appears if I restart the
> device when connecting from "online" to "offline".
> If I keep my device running winbind caches the users
2018 Dec 21
1
Samba AD DC replication error - 2, 'WERR_BADFILE'
Ok, some more resolving things to fix.
On both DC's few things to edit.
In resolv.conf, the order is important here and dont point to nameserver 127.0.0.1 for the DC's.
DC1.
file: /etc/resolv.conf
search example.corp
nameserver IP_DC1
nameserver IP_DC2
nameserver 8.8.4.4
/etc/hosts
IP_DC1 hostname.internal.example.com hostname
IP_DC2 hostname.internal.example.com hostname
2018 Dec 20
5
Samba AD DC replication error - 2, 'WERR_BADFILE'
Hello everyone,
I have setup two Samba AD DC's with BIND9_DLZ dns backend.
faiserver.example.corp is one of them hosting all FSMO Roles.
location-000001.example.corp is the second one.
Both are in different subnets but can reach each other.
Unfortunately replication only works from faiserver.example.corp ->
location-000001.example.corp.
In the other direction location-000001.example.corp