Displaying 20 results from an estimated 2000 matches similar to: "Windows ACLs on share"
2019 Jan 03
2
Windows ACLs on share
Am 03.01.19 um 15:29 schrieb Rowland Penny via samba:
> On Thu, 3 Jan 2019 15:08:46 +0100
> "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
>
>>
>> We are in the process of switching over shares from the old way of
>> doing this to Windows ACLs:
>>
>> disable "valid users" "write list" etc
>>
2019 Jan 03
0
Windows ACLs on share
On Thu, 3 Jan 2019 15:46:24 +0100
"Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
> Am 03.01.19 um 15:29 schrieb Rowland Penny via samba:
> > On Thu, 3 Jan 2019 15:08:46 +0100
> > "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
> >
> >>
> >> We are in the process of switching over shares
2019 Jan 03
3
Windows ACLs on share
Am 03.01.19 um 16:19 schrieb Rowland Penny via samba:
> On Thu, 3 Jan 2019 15:46:24 +0100 "Stefan G. Weichinger via samba"
> <samba at lists.samba.org> wrote:
>> observation, maybe important:
>
> Oh, it's more than important, guess where the Windows ACLs are stored
> ;-)
hmm ... ? ;)
>> (share "projekte" works fine, share "QM"
2023 Feb 10
3
access "claim types"
Samba 4.17.3 on Debian 11.6
[global]
unix charset = iso8859-15
security = ads
realm = COMP.INTRA
workgroup = COMP
dedicated keytab file = /etc/krb5.keytab
kerberos method = secrets and keytab
winbind cache time = 10
winbind use default domain = yes
winbind refresh tickets = Yes
template homedir = /mnt/MSA2040/smb/Homes/%D/%U
domain master = no
local master = no
preferred master = no
idmap
2018 Sep 11
2
"missing security tab" and related ACL issues
Am 07.09.18 um 20:07 schrieb Rowland Penny via samba:
> On Fri, 7 Sep 2018 19:09:37 +0200
> "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
>> But
>>
>> # net rpc rights grant "Domänen-Admins" SeDiskOperatorPrivilege -U
>> "mydomain\administrator"
>>
>> fails
>>
>> also for
2019 Nov 26
2
moved DM config to new server : gids different etc
Am 26.11.19 um 17:37 schrieb Rowland penny via samba:
> How about 'getent group Domain\ Users' ?
no result = empty reply
The "admin" there is able to access stuff and reset his ACLs already.
So ... things work so far. thanks.
I will consider the config Louis suggested ... but not now
(my reply was rejected by some samba-ml-SMTP-server ... another problem)
2018 May 30
2
DM 3.6.25 -> 4.x
On Wed, 30 May 2018 15:26:37 +0200
"Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
> Am 2018-05-30 um 15:01 schrieb Rowland Penny via samba:
>
> > There are three main winbind backends, but only two are really used
> > on Unix domain members, the 'ad' and the 'rid' backends. Which you
> > use is really down to a simple
2020 Feb 24
3
Windows ACLs : problems
Status:
domain member server, Samba version 4.10.11-Debian
[global]
dedicated keytab file = /etc/krb5.keytab
domain master = No
kerberos method = secrets and keytab
load printers = No
local master = No
preferred master = No
printcap name = /dev/null
realm = customer.INTRA
security = ADS
template homedir = /mnt/MSA2040/smb/Homes/%D/%U
unix charset = iso8859-15
unix extensions = No
2018 May 30
2
DM 3.6.25 -> 4.x
On Wed, 30 May 2018 16:03:30 +0200
"Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
> We see that it is old ("SWAT", date) and ugly ...
>
>
> # cat /etc/samba/smb.conf
> # Samba config file created using SWAT
> # from UNKNOWN (192.168.100.66)
> # Date: 2012/07/23 14:38:02
It isn't that old;-)
You wont be using swat again, it
2018 May 30
3
DM 3.6.25 -> 4.x
Hai Stefan,
Yes, its always better to ask the list, that way everybody can learn from it. ;-)
> Do you think I will have to rejoin it to the domain?
No i dont think so.
Please note, o dont know anything about gentoo except that they have a good wiki/info pages.
If this was debian, then in this case, what i would extra do here, run :
samba -b and backup all folders of samba and any thing
2019 Jan 03
2
Windows ACLs on share
Am 03.01.19 um 16:51 schrieb Rowland Penny via samba:
> Hmm, 'Projekte' works and is writeable by 'root', members of the 'qm'
> and anybody else. Whilst 'QM' is only writeable by 'root'. Does this
> give you any hints ?
sure. changed this already in all directions before.
and you also said you were following this wiki
> page:
>
>
2020 Feb 25
2
Windows ACLs : problems
Am 25.02.20 um 15:16 schrieb Rowland penny via samba:
> On 25/02/2020 14:01, Stefan G. Weichinger via samba wrote:
>> Am 25.02.20 um 14:54 schrieb Rowland penny via samba:
>>> You do not need it, it is only required if using the winbind 'ad'
>>> backend and only then if you don't want possible problems with sysvol.
>> What? Now I *don't* need it?
2018 Jun 30
2
DM 3.6.25 -> 4.x
That domain member server worked fine for about 2 weeks until today.
Somehow the DNS-record didn't work anymore, I did a rejoin and added
some kerberos-related lines to smb.conf
# 2 lines old
winbind cache time = 10
winbind use default domain = yes
# new lines
dedicated keytab file = /etc/krb5.keytab
kerberos method = secrets and keytab
winbind refresh tickets = Yes
created keytab,
2018 May 30
2
DM 3.6.25 -> 4.x
On Wed, 30 May 2018 09:48:04 +0200
"Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
> Am 2018-05-30 um 09:21 schrieb L.P.H. van Belle:
> > Hai Stefan,
> >
> > Yes, its always better to ask the list, that way everybody can
> > learn from it. ;-)
> >
> >> Do you think I will have to rejoin it to the domain?
> > No
2018 Sep 07
2
"missing security tab" and related ACL issues
Am 07.09.18 um 16:20 schrieb Rowland Penny via samba:
> On Fri, 7 Sep 2018 15:36:15 +0200
> "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
>
>> Am 07.09.18 um 15:25 schrieb Rowland Penny via samba:
>>
>>> From what you have posted it doesn't, but when you do get then
>>> working, you need to understand that EA's
2019 Jan 03
0
Windows ACLs on share
On Thu, 3 Jan 2019 16:33:56 +0100
"Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
> Am 03.01.19 um 16:19 schrieb Rowland Penny via samba:
> > On Thu, 3 Jan 2019 15:46:24 +0100 "Stefan G. Weichinger via samba"
> > <samba at lists.samba.org> wrote:
> >> observation, maybe important:
> >
> > Oh, it's more
2017 Jan 31
1
Sieve & Public folders issue (2nd episode)
Hello Community,
Getting back to my previous post, here a a complement:
- Having enabled sieve, I can store mails and create folder under the
recipient
- Having enabled public folders, I can move mail into them using a
client (eg Thunderbird); security is therefore ok (actually I gave full
control to the user)
eg Public/Newsletters/SomeCompany
- *BUT* running a sieve script to store to
2018 Sep 07
2
"missing security tab" and related ACL issues
At a customer server (gentoo linux, so far only Samba version 4.7.7) we
tried to use Windows ACLs and failed:
no security tab in Windows ... for local C: yes, not on samba shares
Yes, I followed
https://wiki.samba.org/index.php/Setting_up_a_Share_Using_Windows_ACLs
and have the vfs module enabled etc
-
Now I consider that the kernel doesn't have the necessary flags set.
I get
#
2018 Sep 07
2
"missing security tab" and related ACL issues
Am 07.09.18 um 12:45 schrieb Rowland Penny via samba:
> On Fri, 7 Sep 2018 11:22:36 +0200
> "Stefan G. Weichinger via samba" <samba at lists.samba.org> wrote:
>
>>
>> At a customer server (gentoo linux, so far only Samba version 4.7.7)
>> we tried to use Windows ACLs and failed:
>>
>> no security tab in Windows ... for local C: yes, not on
2002 Feb 27
9
IP Binding
Hi all,
New to Samba here so please bear with dumb questions.
I have a server that's currently running SMB shares off of device 10.0.0.1
on a private network. It has a second device, 10.0.0.2 that I would like to
add to the device bindings for Samba. I've tried this in the smb.conf file
but it doesn't seem to work. Here's what I tried:
workgroup = SOMECOMPANY
netbios