Displaying 20 results from an estimated 7000 matches similar to: "smb 3 posix extension support (minimum version for cifs.ko and smbd)"
2019 Mar 18
0
How to automatically store the macAddress in AD
Hi Pierre,
> Does someone know a way to automatically store the hwaddress in the AD?
> I'm using Veyon in my school to manage the students PCs and if the hwadress
> is populated in the AD, the Room configuration can be set with AD otherwise
> i have to manage rooms manually.
> I'm using samba4 with bind and isc-dhcp-server are on the same server.
> Can we use scripts or
2019 May 28
0
samba-tool group removemembers, not working
Hi Mark,
> Because of other issues using ADUC, I tried to remove a domain member using:
>
>> samba-tool group removemembers "Domain Computers" MARKA\$
> Removed members from group Domain Computers
>
> As shown, it say it "Removed members", but ...
>
>> samba-tool group listmembers "Domain Computers"
> :
> LABRAT$
> :
>
2019 May 28
0
samba-tool group removemembers, not working
Hai,
Can you post the output of :
ldbsearch --show-binary -H ldap://YOURDCNAME_HERE "(&(objectClass=computer)(sAMAccountName=MARKA$))" -k yes | grep -v '#' | grep -v 'ref:'
(https://bugzilla.samba.org/show_bug.cgi?id=11482)
Greetz,
Louis
> -----Oorspronkelijk bericht-----
> Van: samba [mailto:samba-bounces at lists.samba.org] Namens
> Denis
2019 Jun 17
0
Kerberos and NTLMv2 authentication
Hi Edouard,
> I set a samba share (4.8.1) on a linux (centos 7) as server member ;
> authentication is done against a AD win 2012 R2 server through winbind.
>
> I thought authentication was using kerberos, but I checked log and found :
>
> Auth: [SMB2,(null)] user [MYDOMAIN]\[mydomainuser] at [mar., 11 juin 2019
> 10:21:42.000927 -03] with [NTLMv2] status [NT_STATUS_OK]
2019 Dec 18
0
"ldap server require strong auth" and MS-AD
Hi everyone,
Microsoft is going to tighten their AD LDAP binding security in
mid-January 2020 [1][2].
I am wondering if this change is identical or similar to the "ldap
server require strong auth=yes" parameter in smb.conf. Or if it more
like "ldap server require strong auth=allow_sasl_over_tls".
From [1] :
"""
Summary
LDAP channel binding and LDAP
2020 Mar 05
1
Upgrade 4.9 -> 4.11 oups
Hi Andrew,
>> I decided to upgrade my fileservers from stretch/samba 4.9 to
>> buster/samba 4.11
>> I just realized that smbd is not working anymore :-/
>> If someone has an idea It would be amazing... as an idiot, I upgraded
>> my 20 servers.... without snapshot....
>> Thank you so much
>>
>> Here's some logs :
>>
>> root at
2019 May 28
1
samba-tool group removemembers, not working
I hate to be a complete moron on this, but I'm apparently not setting YOURDCNAME_HERE
correctly. I get the errors:
Failed to bind - LDAP client internal error: NT_STATUS_INVALID_PARAMETER
Failed to connect to 'ldap://mail' with backend 'ldap': LDAP client internal error: NT_STATUS_INVALID_PARAMETER
Failed to connect to ldap://mail - LDAP client internal error:
2019 Jun 14
0
(no subject)
Hi Ryan,
> Sorry for the repost: my message delivery was set to digest, and that was
> hard to manage use for conversation. I changed that setting. So starting
> clean with the same subject...
>
> I don't care about SSSD or whether it's even on the machine or not. Right
> now, it's only used by the machine for login. It isn't used by Samba, and I
> am very
2019 Mar 13
1
SPN and case sensitivity on LMDB backend
Hi everyone,
samba-tool dbcheck --reindex
Re-indexing...
../ldb_tdb/ldb_index.c:2352: duplicate attribute value in
CN=WSTEST,OU=vm,OU=computers,OU=test,DC=ad,DC=test,DC=it for index on
servicePrincipalName, duplicate of objectGUID
4c723426-73f8-4991-bf95-88eb57840c2c in
@INDEX:SERVICEPRINCIPALNAME:TERMSRV/WSTEST.AD.TEST.IT
Looking at the computer entry, I indeed have thoses two SPN (notice
2019 May 28
2
samba-tool group removemembers, not working
On Tue, 28 May 2019 11:04:01 +0200 Denis Cardon <dcardon at tranquil.it> wrote:
> Hi Mark,
>
> > Because of other issues using ADUC, I tried to remove a domain member using:
> >
> >> samba-tool group removemembers "Domain Computers" MARKA\$
> > Removed members from group Domain Computers
> >
> > As shown, it say it "Removed
2018 Mar 15
0
power users group
Hi Lorenzo,
> I just installed a samba4 dc and I see that Power Users group is missing,
> is possible to create that group so that a workstation joined in the
> domain can install software using users belonging to that group and how
> it can be done?
>
> actually simply creating a group with that name doesn't get any
> privilege to that group users.
PowerUsers group is a
2019 Jun 21
0
DLZ Backend DNS Hosed
No, this is not needed.
Solution here in this is simple.
search primary.domain.tld # optional extra search domains after the primary.
nameserver IP_AD-DC_OF_THIS_SERVER_FIRST
nameserver IP_AD-DC_others
Run : samba_upgradedns --dns-backend=BIND9_DLZ
And your done, all needed records are fixed/updated.
This goes wrong if the IP of the running server isnt the first and/or if search is setup
2018 Apr 18
0
Wing's repo, rpms & upgrades
Hi Vincent,
> I started using Samba as an AD DC on el7 a few weeks ago. I have some
> questions for others who mights also be using Wing's rpms on el7
> (http://wing-net.ddo.jp/wing).
>
> A) Is there a wiki/issues page for that repo? I could not find any..
>
> B) is that the only repo of samba rpms available for el7/centos7?
You can use the RPM at https://samba.plus from
2018 May 04
1
unexplained Replication failures...?
Hi Denis,
Thanks for taking the time to answer.
Yes, I may have been wrong with --forced-sync and --full-sync since the
start but in fact I wanted to make sure to force replication between the
servers.
Here is what I have noticed:
- replication works from dc00 -> dc00 but not from dc01 -> dc00:
[root at dc00 ~]# samba-tool drs replicate DC01 DC00
dc=ad,dc=lasthome,dc=solace,dc=krynn
2018 Sep 26
2
audit DC?
mmm Very interesting.
and...if i have 3 DCS and i change the passwords in principal but, the
audit is in other DC, I suppose that by replicating the change in the other
DCS the auditor will work, right?
El mié., 26 sept. 2018 a las 13:54, Denis Cardon (<dcardon at tranquil.it>)
escribió:
> Hi
>
> > Good morning people from Argentine.
> >
> > again bothering with a
2018 May 03
0
Using samba AD in mixed OS environment
Hi Rowland.
As suggested I switched to winbind with rid backend, since I had free time
for tests today. This is what I've done for few min.
smb.conf from the testing pc
[global]
workgroup = XXXX
security = ads
realm = XXXX.X.XX
log file = /var/log/samba/%m.log
log level = 1
idmap config * : backend = tdb
idmap config * : range =
2018 Feb 08
0
domain provision again ?
Hi Massimo,
>>> Hi to All,
>>> i'm wondering to do again domain provision.
>>> anyone that tryed this?
>>> any idea on how to have the previous users profiles imported in the
>>> new domain ?
>>> do i have to rejoin all the workstations?
>> If you provision Samba, you will get a NEW domain. Whilst you can dump
>> the users etc
2018 Feb 08
0
RFC2307: Recommendations for mapping Administrator account
Hi Frederik,
> I provisioned a new domain with "--use-rfc2307" as I want to use the
> "ad" idmap backend on my domain members.
unless you have really specific requirements, you should really stick
with RID mapping, it will be easier on the long run.
> I am thinking of mapping the "Administrator" account to UID 10000
> (this is where my UID range for
2018 Feb 14
0
WERR_DS_DRA_MISSING_PARENT error when joining new DC
Hi DreamySurfer212,
>
> When trying to join a new DC to an existing Samba4 domain, I am
> getting this WERR_DS_DRA_MISSING_PARENT error. Does any have any
> suggestions on how to fix it? My original 6 dc's are running the last
> free Sernet (4.2.14) on CentOS6 and the error occurs if I use Sernet
> 4.2.14 or 4.7.5-Debian. I finally have time to upgrade and something
> is
2018 Feb 21
0
win2003 AD migration to SAMBA 4.6 - dnsupdate problem
Hi Tomas,
> I want to migrate old 2003 domain to Samba - join SAMBA 4.6(DC2) to win
> 2003 domain like DC, move sysvol, FSMO, demote old server(DC1), etc.,
> etc. -
> https://wiki.samba.org/index.php/Joining_a_Samba_DC_to_an_Existing_Active_Directory
>
>
> My problem are DNS Updates, I have kerberos working (added enctypes =
> rc4-hmac for compatibility),
May I ask you