similar to: csc policy

Displaying 20 results from an estimated 5000 matches similar to: "csc policy"

2019 Jun 25
0
csc policy
Hai Christion, So yes, i told you this once before it better to setup the windows acl. And yes, but these days in win10 everything is more picky on correct settings. Set/verify you profile share again, but setup windows ACL's. not POSIX acls. See: https://wiki.samba.org/index.php/Roaming_Windows_User_Profiles Goto : Setup : Using Windows ACLs And dont look below this line on the
2019 Apr 25
2
User mapping/login issue
Hai, > -----Oorspronkelijk bericht----- > Van: samba [mailto:samba-bounces at lists.samba.org] Namens > Stephen Davies via samba > Verzonden: donderdag 25 april 2019 8:34 > Aan: samba at lists.samba.org > Onderwerp: Re: [Samba] User mapping/login issue > > > > It would appear that there may be more than one issue with my smb.conf. > The scenario is a Centos 7
2018 Apr 23
2
Windows 10 1709 detected as OSX
Hello all, I have a weird problem. We have several Windows 10 machines on our Network. All but one run older releases than 1709. We are using roaming profiles on those machines. The share is setup up as to allow different profiles depending on the machine used (see below). The %a is used as a legacy from times where WinXP and Win7 were used in parallel. The path then looks like this:
2017 May 10
3
Kcc connection
Hello Christian, Can you post me the message you got from the samba-check-db-repl.sh, Then i'll add something for it. And can you tell with version nummer of the script your using. Greetz, Louis > -----Oorspronkelijk bericht----- > Van: samba [mailto:samba-bounces at lists.samba.org] Namens > Christian Naumer via samba > Verzonden: woensdag 10 mei 2017 9:30 > Aan:
2019 May 20
4
Upgrade from 4.9.8 to 4.10.3 on Centos using Sernet Packages
In addition to Rowland comment. if you still able to test it. Remove 1 setting at a time, restart and test it. Start with these, in this order. logging = syslog only prefork children = 8 I think if the logging line is removed your problem is solved. man smb.conf /logging should explain more. Because I cant/find the setting : logging = syslog only Greetz, Louis
2019 May 20
2
Upgrade from 4.9.8 to 4.10.3 on Centos using Sernet Packages
Hello Cristian, Well, nothing to say about your steps, these looks good. And lmdb could be disable in the sernet packages, cant say, i dont know. And only one DC has these problems or all? If only one DC crashed. Which DC crashes. Last added? Oldest? Greetz, Louis > -----Oorspronkelijk bericht----- > Van: samba [mailto:samba-bounces at lists.samba.org] Namens > Christian
2017 May 10
2
Kcc connection
Hello Christian, Ive had a quick look at you output, that looks pretty normal. I'll have a good look Friday, tomorrow day off. So my suggestion is post the output to the list but -d10 is not needed. The regular output should be sufficiant. Im wondering why there is no dc3 in kcc also but why i see over 15 RPC sessions. Maybe normal maybe not, this i dont know. Greetz, Louis >
2020 Feb 26
4
New PTR records not visible
Dear all, somehow, new PTR records are not visible. This is on 4.11.6 DC with BIND9 ... Here is what happens: root at dc1:~# cat /etc/samba/smb.conf # Global parameters [global] bind interfaces only = Yes interfaces = 127.0.0.1 XXX.YYY.103.1 netbios name = DC1 realm = SAMDOM.REST_OF_FQDN server role = active directory domain controller server
2019 Apr 15
3
resolv.conf
Hello you all, this is a bit OT but I think I'll find some people here that can help. We have 4 DCs all on the same site. This is working fine. 3 Are VMs one is a physical server. They are the only DNS servers in that network. On a member server running our icinga2 installation I have this in the resolv.conf: options rotate timeout:2 retries:1 search example.com nameserver x.x.x.x (ip dc1)
2020 Feb 26
5
New PTR records not visible
So strange.. I copied your commando's only change the arpa and servername / domainnames All worked. So far nobody told how there ad-dc and DNS is setup.. Which i why i added : > > Debian 10, my own packages. > > Samba 4.11.6 + BIND9_DLZ is used . Now are you using samba DNS or BIND_DLZ dns ? That might help here. Greetz, Louis > -----Oorspronkelijk
2017 May 10
3
Kcc connection
Hello all, we have upgraded our 4 DCs from samba 4.4.12 to 4.6.3. The setup is working fine and no errors were displayed during the upgrade. After a day I noticed that the DC (dc1) holding the fsmo roles is missing one kcc connection (to dc3) in the output of samba-tool drs showrpl. Otherwise there are no errors displayed. On windows in the ADSites tool I see that the connection is missing and I
2019 Jul 17
4
Bitlocker
Hi, I am trying to implement bitlocker key management in samba4 ad. This has been posted a view times before: https://lists.samba.org/archive/samba/2015-December/196771.html https://lists.samba.org/archive/samba/2018-July/217168.html According to Andrew and this: https://docs.microsoft.com/en-us/previous-versions/orphan-topics/ws.10/cc722309(v=ws.10) the Schema should be ready for this.
2019 May 20
3
Upgrade from 4.9.8 to 4.10.3 on Centos using Sernet Packages
Am 20.05.19 um 11:59 schrieb Rowland penny via samba: >>          logging =syslog only > > Why do you have a parameter with another parameter as its value ? > > both 'logging' and 'syslog only' are both parameters, did you mean > 'logging = syslog' ? Yes I meant this "logging = syslog" > >>          server role = active
2020 Nov 09
4
How to configure samba domain member to use LDAPS instead of LDAP
The DC is a Windows AD DC. Could you please clarify why i should change setting in the Windows DC instead of the Samba server, which is the one that does the insecure ldap bind? Regards Andrea Cucciarre' On 11/9/2020 3:13 PM, Rowland penny via samba wrote: > On 09/11/2020 13:28, Andrea Cucciarre' wrote: >> My customer complain that in the AD DC they see the following
2017 Nov 23
2
Profile ACLs
Hello all, as the "profile acls = Yes" option has become deprecated in Samba 4.7 I wanted to ask what the preferred way is of doing this? The Wiki (https://wiki.samba.org/index.php/Roaming_Windows_User_Profiles) still uses "profile acls = Yes" when using posix acls. At the moment our share looks like this: [profiles] profile acls = Yes csc policy = disable
2018 Nov 13
2
Upgraded to 4.8 - forced to use winbindd - retro how to missing?
I don't know if this still works but it does what you want: https://www.samba.org/samba/docs/current/man-html/idmap_nss.8.html Regards Am 13.11.18 um 15:37 schrieb Rowland Penny via samba: > On Tue, 13 Nov 2018 09:21:14 -0500 > Richard Bollinger <rabollinger at gmail.com> wrote: > >> Prior to 4.8, without winbind in the picture, a windows user named >>
2020 Sep 05
3
Fileserver advice needed
I have a domain with two Samba DC's I don't want to use either of them as a fileserver, so I want to build a separate file server which is not a DC, which will deliver all the files to the lovely little windows users (including their roaming profiles). I've been looking online and there seems to be a thousand different ways to "join" my fileserver to the domain, but most of
2019 Sep 06
3
Change in behaviour for the "%U" substitution in 4.10.8?
I've now changed the ownership to root, as you suggest. I've removed the ACLs from /shares/DOMAIN - they don't need to be there as anyone can enter this directory already so there's no need for them. The ACLs on my individual home directory: root at server:/shares# getfacl /shares/DOMAIN/username getfacl: Removing leading '/' from absolute path names # file:
2020 Mar 20
2
dNSTombstoned
Am 18.03.20 um 22:26 schrieb Andrew Bartlett: >> Also "samba-tool domain tombstones expunge --tombstone-lifetime=0" >> does >> not delete the records with "dNSTombstoned: TRUE". Is this a >> different >> tombstone? > > That would be a different tombstone, yes. Can someone help me out with the ldap/ldb syntax to delte those by cron? >
2019 May 06
2
Samba with AD : SID rejected
Am 06.05.19 um 16:06 schrieb Rowland Penny via samba: > Yes, user 'vincent' has uidNumber 10010, gidNumber 13010 and > primaryGroupID 513. > > 513 corresponds to the group "Domain Users", which have gidNumber > 13010 > > Vincent Might this be the problem? He has primaryGroupID set to 513 (hello calssicupgrade?) but "Domain Users" hast a gid of