Displaying 20 results from an estimated 2000 matches similar to: "Replication issues between Samba 4.10.2 (schema mismatch)"
2014 Jan 16
1
Replication errors (WERR_DS_DRA_SCHEMA_MISMATCH)
Hello,
I'm getting replication errors of this type on the Samba (version 4.1.4)
server (name=Roquefort):
##### #############################
ERROR(<class 'samba.drs_utils.drsException'>): DsReplicaSync failed -
drsException: DsReplicaSync failed (8418, 'WERR_DS_DRA_SCHEMA_MISMATCH')
File
2019 Nov 20
2
Schema replication error with W2008R2
Hi,
We have 3 samba 4.9.13 AD DC servers (mercurio1, mercurio2, mercurio7), replicating without error.
When we add a W2008R2 as additional DC (mercurio3) replication works fine until 24h pass and it fails.
On the samba4 DCs side, the command
samba-tool drs showrepl
shows no error. On the W2008R2 side the command
repadmin /showrepl
shows inbound replication error from the 3 samba DCs, and
2016 Oct 31
2
Schema Mismatch with Server 2008 RC
I have a domain with multiple Samba DC, and one MS Server 2008 R2 DC.
The Samba servers came first and then I added the MS DC.
I am having problems replicating, it gives me a schema mismatch error.
If I run ldapcmp
./samba-tool ldapcmp ldap://DC1 ldap://DC2 -Uadministrator schema --filter=whenChanged
Password for [MYDOMAIN\administrator]:
* Comparing [SCHEMA] context...
* Objects to be
2019 Apr 15
1
samba-tool backup offline not available (version 4.9.6) ?
Hello,
I've just upgraded to 4.9.6 and can't seem to be able to use the
'offline' backup? It seems that the only options are: online, rename,
and backup.
Can someone confirm this?
I plan to get to migrating to 4.10.2, but I'm doing it incrementally:
v4.7.6 -> v4.8.11 -> v4.9.6 -> v4.10.2
Before going to the v4.10.2, I want to backup my AD database using
2019 Jul 29
3
Samba 4.11.0RC1 replication with Windows2012R2 ?
Hello Folks,
There seems to be contradicting sentences in the release notes for
4.11.0RC1:
Default schema updated to 2012_R2
---------------------------------
Default AD schema changed from 2008_R2 to 2012_R2. 2012_R2 functional level
is not yet available. Older schemas can be used by provisioning with the
'--base-schema' argument. Existing installations can be updated with the
2016 Oct 31
0
Schema Mismatch with Server 2008 RC
I have also experienced this issue. Additionally, new objects created in AD would show up on both the S4 DCs (4.5.x) and the Server2008R2 DC, but the password would not sync between them in either direction after the initial join replication.
Thomas Maerz
> On Oct 31, 2016, at 12:52 PM, Wayne Andersen via samba <samba at lists.samba.org> wrote:
>
> I have a domain with multiple
2017 Apr 28
2
Unable to add a particular member to group (Samba 4.6.3)
On Fri, 28 Apr 2017 11:01:14 -0400
Luc Lalonde <Luc.Lalonde at polymtl.ca> wrote:
> Hello Rowland,
>
> Is this what you mean?
>
> [root at roquefort ~]# echo $LANG
> fr_CA.utf8
>
What I was trying to get at is, does your username have any of those
funny marks above some of the letters (you can tell I am English, I
don't know the correct name for them because we
2015 Mar 24
1
Samba server with NFSV4/kerberos
Hello Luc,
thanks for your answer. If I understand you correctly than you are using
samba4 as windows domaincontroller and you do not have another Windows
DC? So after all you have exactly one Kerberos Server that is part of
the samba4 server?
Thanks
Rainer
Am 24.03.2015 um 12:41 schrieb Luc Lalonde:
> Guten tag Rainer,
>
> We use our Samba4/Win2k8 AD domain to authenticate all our
2017 Apr 28
2
Unable to add a particular member to group (Samba 4.6.3)
On Fri, 28 Apr 2017 09:41:31 -0400
Luc Lalonde <Luc.Lalonde at polymtl.ca> wrote:
> Hello Rowland,
>
> Have you tried deleting a user, re-creating the same user and then
> try to add him to a group?
>
> I'm convinced that this will point us in the right direction to
> correct the bug.
>
Yes and to confirm it, I just did it again:
samba-tool user create User2
2013 Apr 11
2
Samba-tool modify users info?
Hello,
I'm wondering if there's a plan for including the possibility of modifying user attributes (must-change-at_next-login, profile-path, home-drive, home-directory, etc)?
For the moment, it seems the only way to do this is when the user is created (samba-tool newuser) or by doing so via 'administrative tools' via a Windows machine.
Thank You!
--
Luc Lalonde, analyste
2013 May 14
1
GPO replication?
Hello Folks,
I've successfully created a GPO for user logon scripts with Samba4... However, the 'SYSVOL\domain\Policies' folder and contents is not replicated to the other DC's.
Is this normal? It is working, but it seems that this is a 'single point of failure' for 'logon' scripts.
Thank You!
--
Luc Lalonde, analyste
2013 May 13
1
Logon script via GPO
Hello Folks,
I'm trying to get a logon script to execute via a GPO with Samba 4.0.5.
I used the Group Policy Editor that came with the Administration tools and linked a simple 'logon.bat' batch file to automatically mount a network share for a given 'OU=students'.
When I log in with a user that's in this container, it does not seem to execute the login script.
Anyone
2019 Jul 29
2
Samba 4.11.0RC1 replication with Windows2012R2 ?
Ahh ok, thanks for the clarification!?? I'll go to bed less ignorant
tonight ;-)
On 2019-07-29 12:07 p.m., Rowland penny via samba wrote:
> On 29/07/2019 16:41, Luc Lalonde wrote:
>> The first sentence says that default schema has changed from 2008R2
>> (schema 47) to 2012R2 (schema 69).
>>
>> This does not mean that we're now at Windows 2012R2 functional level
2017 Apr 25
3
Unable to add a particular member to group (Samba 4.6.3)
The user exists in AD:
- I can see the user using 'wbinfo', 'samba-tool user list'
- I can add the user to a group with 'Active Directory Users and
Computers' in Windows 2008R2
- It's seems impossible to use 'samba-tool group addmembers foogroup
foouser'
I looked at the user's attributes but can't find anything different from
any other user that
2019 Jul 29
2
Samba 4.11.0RC1 replication with Windows2012R2 ?
The first sentence says that default schema has changed from 2008R2
(schema 47) to 2012R2 (schema 69).
This does not mean that we're now at Windows 2012R2 functional level by
default??? I must be missing something...
On 2019-07-29 11:29 a.m., Rowland penny via samba wrote:
> On 29/07/2019 15:59, Luc Lalonde via samba wrote:
>> Hello Folks,
>>
>> There seems to be
2019 Jul 30
4
Samba 4.11.0RC1 replication with Windows2012R2 ?
Hello Tim,
Wow, great documentation! ? That really clears a lot of the terminology?
for me.
We have to remove our Win2008R2 Servers before Jan2020.??
Hopefully Samba 4.11.x will permit us to join a Win2012R2 Server at a
2008R2 functional level...?
Your documentation gives steps on how to do this.? But I need some
clarifications...
Here's my understanding of the workflow:
1. Upgrade
2015 Mar 24
5
Samba server with NFSV4/kerberos
Hello,
I am searching for a solution that I thought should be kind of standard,
but until now I was not successful finding anything. Here is the problem:
At our site we offer windows and linux, most servers (eg file, samba,
web) are linux based. User data is stored on NFS file servers. Windows
systems are part of a Windows domain with an ADS domain controller. At
the moment the linux samba
2017 Apr 26
2
Unable to add a particular member to group (Samba 4.6.3)
This is the case for this user too... Could it be that Samba is trying
to work with the old SID???
Le 2017-04-26 à 10:47, Dale Renton via samba a écrit :
> On Tue, Apr 25, 2017 at 3:31 PM, Luc Lalonde via samba <
> samba at lists.samba.org> wrote:
>
>> The user exists in AD:
>>
>> - I can see the user using 'wbinfo', 'samba-tool user list'
2018 Feb 05
6
Using Samba AD for NFSV4 Kerberos servers and clients
Thanks Luc,
First, can I just use the small /etc/krb5.conf suggested in Samba AD
docs or do I need something more substantial on the server & client for
Kerberos NFS to work?
[libdefaults]
default_realm = SUBDOMAIN.DOMAIN.COM
dns_lookup_realm = false
dns_lookup_kdc = true
I understand a /etc/krb5.keytab file has to be created on both server &
client. Most
2013 Apr 15
3
Winbind strip domain from username?
Hello Folks,
This directive works with Samba3 but does not seem to work with Samba-4.0.5:
winbind use default domain = Yes
I want to get a username that does not contain the domain (GIGL). Instead here's what I get:
[root at roquefort ~]# getent passwd | grep GIGL
GIGL\Administrator:*:0:100::/usagers/%U:/bin/bash
GIGL\Guest:*:3000002:3000003::/usagers/%U:/bin/bash