Displaying 20 results from an estimated 10000 matches similar to: "(no subject)"
2019 Jun 14
0
(no subject)
Hi Ryan,
> Sorry for the repost: my message delivery was set to digest, and that was
> hard to manage use for conversation. I changed that setting. So starting
> clean with the same subject...
>
> I don't care about SSSD or whether it's even on the machine or not. Right
> now, it's only used by the machine for login. It isn't used by Samba, and I
> am very
2018 Apr 28
4
Using samba AD in mixed OS environment
Hi guys.
I've got working samba AD server. It is playing nicely with Windows 10 and
also successfully authenticating Linux machines with SSSD.
On the Windows machines I have our EMC storage smb mounted via group
policy. Managing permissions for users and groups there, as you know,
happens with right click, security etc..
As you may have already guessed the troubles come when my Linux
2018 Apr 04
3
Debian Packages for Samba 4.8?
Hi Louis,
normally you are building these wonderful samba debian packages for us :-)
Is there a reason, that you didnt create packages for samba 4.8?
Tfh!
Oliver
2019 May 27
4
samba-tool group removemembers, not working
Because of other issues using ADUC, I tried to remove a domain member using:
> samba-tool group removemembers "Domain Computers" MARKA\$
Removed members from group Domain Computers
As shown, it say it "Removed members", but ...
> samba-tool group listmembers "Domain Computers"
:
LABRAT$
:
OHPRSSTORAGE$
MARKA$
:
COMMON$
:
listmembers still shows the computer
2018 May 02
2
Using samba AD in mixed OS environment
Hi Denis.
Since we have "tricky" people working on the Linux machines we prefer NFS
because it's less hassle to mount and requires no credentials. Basically
because of the users we tend to choose the easiest possible way for them to
access the needed resources. I guess pam-script module mounting is exactly
for this purpose, but I'll to research more since I'm not familiar
2018 May 24
3
nameservers, all DCS??
hi!
Query, I have 3 DCs, in each of the servers should have configured the
other two DCs in the resolv.conf?
or with only the primary is enough?
Maybe that's my problem that does not replicate the dc3 with the dc2
thanks to all!
2018 Sep 26
2
audit DC?
Good morning people from Argentine.
again bothering with a doubt,
It is posiblle, audit change password, create-delete-change users? and more?
i have a file server with audit and works really really well and now I want
more!
any ideas?
thanks for samba....i love it
2018 Feb 08
3
RFC2307: Recommendations for mapping Administrator account
On Thu, 8 Feb 2018 10:55:30 +0100
Denis Cardon via samba <samba at lists.samba.org> wrote:
> Hi Frederik,
>
> > I provisioned a new domain with "--use-rfc2307" as I want to use the
> > "ad" idmap backend on my domain members.
>
> unless you have really specific requirements, you should really stick
> with RID mapping, it will be easier on
2018 Feb 14
2
WERR_DS_DRA_MISSING_PARENT error when joining new DC
When trying to join a new DC to an existing Samba4 domain, I am getting this WERR_DS_DRA_MISSING_PARENT error. Does any have any suggestions on how to fix it? My original 6 dc's are running the last free Sernet (4.2.14) on CentOS6 and the error occurs if I use Sernet 4.2.14 or 4.7.5-Debian. I finally have time to upgrade and something is broke.
Thanks,
Steve
# samba-tool domain join
2019 Oct 28
5
AD domain member cannot authenticate user in remote forest unless smbclient uses "localhost"
Hi folks,
I'm trying to support a customer with multiple AD forests, and during my
research, I've observed some odd behavior. In my lab tests, it seems like
authentication works for users in all trusted forests, but only if NTLMSSP
is used. When Kerberos ends up being used, authentication only seems to
work for users in the local domain.
Here's the test setup:
- Two Active Directory
2014 Oct 15
2
Software installation by GPO ( success and fail )
Hai, In a bit testing with software deployment through GPO.
?
Now i noticed te following. If i setup my software source somewhere on the sysvol share ( and probely any other share on the DC)
then i can deploy the software with computer and user GPO setting. Aka works ok good all settings with software deployment.
?
Now i noticed the following.
I did setup a share on a member server the AD
2018 Feb 21
2
win2003 AD migration to SAMBA 4.6 - dnsupdate problem
I want to migrate old 2003 domain to Samba - join SAMBA 4.6(DC2) to win
2003 domain like DC, move sysvol, FSMO, demote old server(DC1), etc.,
etc. -
https://wiki.samba.org/index.php/Joining_a_Samba_DC_to_an_Existing_Active_Directory
My problem are DNS Updates, I have kerberos working (added enctypes =
rc4-hmac for compatibility), SAMBA join without errors, I have created
DNS records, can
2018 Apr 17
5
Wing's repo, rpms & upgrades
Hi All,
I started using Samba as an AD DC on el7 a few weeks ago. I have some
questions for others who mights also be using Wing's rpms on el7
(http://wing-net.ddo.jp/wing).
A) Is there a wiki/issues page for that repo? I could not find any..
B) is that the only repo of samba rpms available for el7/centos7?
C) Is there a reason why samba46-4.6.14 is the latest available version?
Are
2020 Jan 10
1
SCCM and other MS tools compatibility with Samba 4.x.x (Functional level 2008R2)
Hello Folks,
We're using Samba as AD servers along with Windows AD Servers (2008R2 FL).
We also use SCCM (Current Branch) that is dependent on AD for lab
deployments (Windows 10).
Currently, SCCM (current branch) supports 2008R2 FL, but for how long???
Samba does not support 2012R2, 2016, 2019 FL.
We'd like to remove the Windows Servers from our AD infrastructure, but
would also like
2018 May 03
2
unexplained Replication failures...?
Hi all,
I'm running in circles trying to debug replication failures on samba
4.7.6:
dc00 : is a VM on KVM host (attached to a bridge on local LAN)
dc01 : is a similarly configured VM on another KVM host.
I've forcibly demoted and re-promoted dc01 but I still cannot get
automatic replication to work:
root at dc00 ~]# samba-tool drs showrepl
Krynn\DC00
DSA Options: 0x00000001
DSA
2018 Jan 11
2
Deploy software in fileserver folder
Hi Elias,
> I thought it worked, but after I uninstalled the software that I deployed
> via user scope, it did not reinstall. I selected the "Redeploy application"
> option, but it also did not work.
The user scope GPO are run with the privileges and access tokens of the
logged on user, so the user have local admin rights for install and need
access rights to the share you
2019 Mar 14
8
How to automatically store the macAddress in AD
Hi list,
Does someone know a way to automatically store the hwaddress in the AD?
I'm using Veyon in my school to manage the students PCs and if the hwadress
is populated in the AD, the Room configuration can be set with AD otherwise
i have to manage rooms manually.
I'm using samba4 with bind and isc-dhcp-server are on the same server.
Can we use scripts or some ways?
thanks in advance
2018 Feb 14
2
Is it possible to lower the domain and forest functional level
Hi Denis,
We are using the latest version of sharepoint.
samba-tool domain level show :
Domain and forest function level for domain 'DC=removed,DC=com'
Forest function level: (Windows) 2008 R2
Domain function level: (Windows) 2008 R2
Lowest function level of a DC: (Windows) 2008 R2
I did not have to change the revision attributes by hand.
I think the MSAD2K3 was an upgrade from MSAD2K.
2018 May 25
1
nameservers, all DCS??
I dont understand whats the question here.
But what i can say about the resolv.conf settings if you have multiple dc's.
You have to think in 2 DNS resolving settings.
1) on the server as client resolving ( resolv.conf )
2) clients resolving ( DNS Services )
The difference explained.
If i do : ping hostname this is a server which is doing a client dns request through resolve.conf
2018 Mar 15
5
power users group
I just installed a samba4 dc and I see that Power Users group is missing,
is possible to create that group so that a workstation joined in the
domain can install software using users belonging to that group and how
it can be done?
actually simply creating a group with that name doesn't get any
privilege to that group users.