Displaying 20 results from an estimated 10000 matches similar to: "Samba 4 Password Policies"
2019 Feb 12
1
Samba 4 Password Policies
Hi!
I think is ok(used gpo forĀ password policy) , because i read this it,
but....
https://wiki.samba.org/index.php/Samba_4.8_Features_added/changed#KDC_GPO_application
Regards;
On 11/02/2019 19:21, Viktor Trojanovic via samba wrote:
> The pw policy GPO is applied to the domain controller itself. That
> only works if the DC is a windows machine, though. So, no, no
> workaround
2015 Dec 08
4
Confusion about account locking policy (Samba AD/Windows 7 client)
Hi,
here on the wiki
https://wiki.samba.org/index.php/FAQ#Is_it_possible_to_set_user_specific_password_policies_in_Samba4_.28e._g._on_a_OU-base.29.3F
I read this:
"Is it possible to set user specific password policies in Samba4 (e.
g. on a OU-base)?
Samba can't handle GPO restrictions. You have to use 'samba-tool domain
passwordsettings' to change password policies.
2023 Aug 30
1
Domain password policy with Samba AD DC
On 30.08.2023 16:21, Rowland Penny via samba wrote:
> On Wed, 30 Aug 2023 12:40:08 +0200
> Peter Milesson via samba <samba at lists.samba.org> wrote:
>
>>
>> On 30.08.2023 11:58, Rowland Penny via samba wrote:
>>> On Wed, 30 Aug 2023 09:49:05 +0200
>>> Peter Milesson via samba <samba at lists.samba.org> wrote:
>>>
>>>> On
2023 Aug 30
2
Domain password policy with Samba AD DC
On Wed, 30 Aug 2023 18:56:48 +0200
Peter Milesson via samba <samba at lists.samba.org> wrote:
>
>
> On 30.08.2023 16:21, Rowland Penny via samba wrote:
> > On Wed, 30 Aug 2023 12:40:08 +0200
> > Peter Milesson via samba <samba at lists.samba.org> wrote:
> >
> >>
> >> On 30.08.2023 11:58, Rowland Penny via samba wrote:
> >>> On
2023 Aug 30
1
Domain password policy with Samba AD DC
On 30.08.2023 19:17, Rowland Penny via samba wrote:
> On Wed, 30 Aug 2023 18:56:48 +0200
> Peter Milesson via samba <samba at lists.samba.org> wrote:
>
>>
>> On 30.08.2023 16:21, Rowland Penny via samba wrote:
>>> On Wed, 30 Aug 2023 12:40:08 +0200
>>> Peter Milesson via samba <samba at lists.samba.org> wrote:
>>>
>>>> On
2015 Dec 08
2
Confusion about account locking policy (Samba AD/Windows 7 client)
As far as I understand Samba and the wiki in this regard, the Samba4
DC's password policy is no typical domain policy (no GPO). It can't be
inherited by Windows clients. So I suspect the full story to be:
- on the Unix side (DC and member server) the Samba password rules apply
- on the Windows client side the inherited Windows POLICIES apply (as
far as possible)
In effect, if e.g.
2023 Aug 30
1
Domain password policy with Samba AD DC
On 30.08.2023 11:58, Rowland Penny via samba wrote:
> On Wed, 30 Aug 2023 09:49:05 +0200
> Peter Milesson via samba <samba at lists.samba.org> wrote:
>
>>
>> On 29.08.2023 21:38, Andrew Bartlett via samba wrote:
>>> On Tue, 2023-08-29 at 12:58 +0200, Peter Milesson via samba wrote:
>>>> On 27.08.2023 23:45, Andrew Bartlett wrote:
>>>>>
2023 Aug 30
3
Domain password policy with Samba AD DC
On Wed, 30 Aug 2023 12:40:08 +0200
Peter Milesson via samba <samba at lists.samba.org> wrote:
>
>
> On 30.08.2023 11:58, Rowland Penny via samba wrote:
> > On Wed, 30 Aug 2023 09:49:05 +0200
> > Peter Milesson via samba <samba at lists.samba.org> wrote:
> >
> >>
> >> On 29.08.2023 21:38, Andrew Bartlett via samba wrote:
> >>>
2023 Aug 30
1
Domain password policy with Samba AD DC
On Wed, 30 Aug 2023 09:49:05 +0200
Peter Milesson via samba <samba at lists.samba.org> wrote:
>
>
> On 29.08.2023 21:38, Andrew Bartlett via samba wrote:
> > On Tue, 2023-08-29 at 12:58 +0200, Peter Milesson via samba wrote:
> >> On 27.08.2023 23:45, Andrew Bartlett wrote:
> >>> On Sat, 2023-08-26 at 11:49 +0200, Peter Milesson via samba wrote:
>
2013 Aug 09
1
Removing password complexity requirements under Samba4
We had problems removing password complexity, and I noticed a lot of
confusion on the list about exactly this topic. So I thought I would post
our success.
We're talking about a Samba4 PDC/AD here. Once we got Samba installed and
provisioned, we used samba-tool from the command-line on the Samba box to
change the domain password settings:
sudo samba-tool domain passwordsettings set
2017 Nov 21
2
Time synchronization and Password Policies
On 11/21/2017 4:34 AM, lists via samba wrote:
> Hi,
>
> On 21-11-2017 4:40, Anantha Raghava via samba wrote:
>>
>> /*Password Policies*/
>>
>> Password policies are not getting enforced on the clients. Initially
>> we thought that we have to set those policies using "samba-tool user
>> passwordsettings" and not on Windows GPO. As this was
2017 Nov 21
4
Time synchronization and Password Policies
Hi,
We are running Samba-AD and all things are working absolutely fine.
However, two very specific issues observed one related to Windows
Clients (Members) automatically synchronizing the time with PDC emulator
and second password policies are not getting enforced.
/*Time Synchronization:*/
Normally, in totally Windows environment, when adding a windows PC (Or
server) to a domain as a
2023 Aug 30
1
Domain password policy with Samba AD DC
On 29.08.2023 21:38, Andrew Bartlett via samba wrote:
> On Tue, 2023-08-29 at 12:58 +0200, Peter Milesson via samba wrote:
>> On 27.08.2023 23:45, Andrew Bartlett wrote:
>>> On Sat, 2023-08-26 at 11:49 +0200, Peter Milesson via samba wrote:
>>>> Hi folks,
>>>> I just wonder why it is not possible to set domain password
>>>> policieswith GPO,
2016 Feb 21
1
user login passwords are mixed up
Thank you! That was the hint I needed with 4.2 and ""Bad Password Lockout
in the AD DC".
I did it via samba-tool this time and not via GPO with RSAT.
samba-tool domain passwordsettings set --history-length=0
samba-tool domain passwordsettings show
Password informations for domain 'DC=x,DC=x,DC=x'
Password complexity: on
Store plaintext passwords: off
Password history
2017 Nov 21
3
Time synchronization and Password Policies
You guys mix to things.
> AFAIK is the 'privileges' that are host-specific.
Is correct.
>the policies are on the domain (in the LDAP data,
> the root DN, look at them!).
Yes, but only the GPO policies and these are not applied to the samba server.
And because of that, samba-tools password settings needs to be set on every DC.
Greetz,
Louis
> -----Oorspronkelijk
2019 Oct 17
1
List of applied policy if 'apply group policies = yes'...
Ahem, again revising docs...
I've not found a place where there's a ist of policy applied if i set:
apply group policies = yes
There's something like that? they are exactly the policy in:
samba-tool domain passwordsettings show
Thanks.
--
dott. Marco Gaiarin GNUPG Key ID: 240A3D66
Associazione ``La Nostra Famiglia''
2020 Jul 17
3
Migrate GPO policies does not work properly.
Hi,
I successfully migrated my GPO policies in a new installation of domain
controller.
After I joined a Windows 10 machine to the domain the gpupdate /force
command printed this errors all of my policies.
filtering not applied (empty)
On the server side everything looks fine. I checked the tdb files under
the /var/lib/samba/private/sam.ldb.d/ folder.
The
2020 Jul 20
3
Migrate GPO policies does not work properly.
Is : samba-dsdb-modules
Installed ?
dpkg-query -s samba-dsdb-modules |grep Status
Greetz,
Louis
> -----Oorspronkelijk bericht-----
> Van: samba [mailto:samba-bounces at lists.samba.org] Namens
> Csorba R?bert via samba
> Verzonden: maandag 20 juli 2020 13:29
> Aan: Rowland penny; samba at lists.samba.org
> Onderwerp: Re: [Samba] Migrate GPO policies does not work
2020 Jul 20
2
Migrate GPO policies does not work properly.
Hi,
I migrated from my the main domain controller.I use Centos 7 server with
tranquilrepository.
The destination server is a test enviorement with different domain name
but the same system specifications.
I can browse the sysvol network share without any problem.
If i want to check the sam.ldb file on the test server I got these errors.
WARNING:Module [samba_dsdb] not found - do you need to
2016 Feb 20
3
user login passwords are mixed up
Hello,
In what samba version is parameter "old password allowed period"
introduced?
This parameter seems be the remedy to my problem but I cannot find it with
"testparm -v | grep password"
or in my
"man smb.conf"
Does it even exist in 4.1.17 (just the regular debian package)?
In this document it says it is for samba version 4:
https://www.mankier.com/5/smb.conf
I