Displaying 20 results from an estimated 5000 matches similar to: "logon script and variables"
2019 May 27
4
samba-tool group removemembers, not working
Because of other issues using ADUC, I tried to remove a domain member using:
> samba-tool group removemembers "Domain Computers" MARKA\$
Removed members from group Domain Computers
As shown, it say it "Removed members", but ...
> samba-tool group listmembers "Domain Computers"
:
LABRAT$
:
OHPRSSTORAGE$
MARKA$
:
COMMON$
:
listmembers still shows the computer
2020 Jan 10
1
SCCM and other MS tools compatibility with Samba 4.x.x (Functional level 2008R2)
Hello Folks,
We're using Samba as AD servers along with Windows AD Servers (2008R2 FL).
We also use SCCM (Current Branch) that is dependent on AD for lab
deployments (Windows 10).
Currently, SCCM (current branch) supports 2008R2 FL, but for how long???
Samba does not support 2012R2, 2016, 2019 FL.
We'd like to remove the Windows Servers from our AD infrastructure, but
would also like
2019 Jun 17
2
Disabling or deleting domain "Administrator" account
Hello,
A client is asking about disabling, deleting or renaming the domain
"Administrator" account on a Samba AD. I've seen this done on Windows
AD domains for security purposes.
Assuming the risk of being locked-out is mitigated (i.e. an equivalent
user is created and is a member of the same groups), is there any
reason this can't be done on a Samba AD as well?
Is the
2019 Jun 13
1
Moving Samba AD DC from one VM host to another: Preauthentication failed
I'm trying to move my current Samba AD DC VM from EXSi vSphere to
XenServer (XCP-NG).
I was able to export the VM to .OVA file & import it into XCP-NG fine.
I was able to open ADUC & the DNS manager in Windows without an issue.
But my web server had a lot of these errors in the log & couldn't mount
the SMB shares from the file server:
kerberos_kinit_password <HOSTNAME>
2019 Mar 11
2
AD administrator can't administer
Over time I have ignored the fact that my AD administrator has stopped
being able to administer. For example, the Ad administrator cannot install
drivers or updates. Once a week now, I logout as workstation user and login
as the "local administrator" to install drivers or run windows updates (in
today's case a printer driver on the workstation.)
Does this falls into that "gray
2019 Oct 14
3
Detect version of smb being employed
FreeBSD 12
Samba 4.8.12
Samba is not showing up on my Win 10 PRO machine. I can access the
shares if I use the machines hostname or IP, though. How can I
determine what version of ?smb? is being used? I have set ?client max
protocol = SMB3? in the config file; however, I am not sure if it is
being used.
Thanks!
--
Gerard
-------------- next part --------------
A non-text attachment was
2019 Jun 12
3
(no subject)
Sorry for the repost: my message delivery was set to digest, and that was
hard to manage use for conversation. I changed that setting. So starting
clean with the same subject...
I don't care about SSSD or whether it's even on the machine or not. Right
now, it's only used by the machine for login. It isn't used by Samba, and I
am very careful to let libwbclient-sssd nowhere near
2019 Mar 14
8
How to automatically store the macAddress in AD
Hi list,
Does someone know a way to automatically store the hwaddress in the AD?
I'm using Veyon in my school to manage the students PCs and if the hwadress
is populated in the AD, the Room configuration can be set with AD otherwise
i have to manage rooms manually.
I'm using samba4 with bind and isc-dhcp-server are on the same server.
Can we use scripts or some ways?
thanks in advance
2020 Mar 01
3
OpenVPN using LDAP Auth and Samba 4 AD
Hello All,
I would like to use OpenVPN with Samba 4 AD using the LDAP Auth plugin.
However, my tests come up with the following errors in the OpenVPN...
LDAP bind failed: Strong(er) authentication required (BindSimple: Transport encryption required.)
Unable to bind as CN=VPN Connect,CN=Users,DC=MYDOMAIN,DC=COM
LDAP connect failed.
PLUGIN_CALL: POST
2019 Jul 18
1
Can't add DNS records when joining Windows DC (Was Can't find machine account)
On 18/07/19 7:12 AM, Rowland penny via samba wrote:
> On 17/07/2019 19:31, Robert A Wooldridge via samba wrote:
>>
>> Here's the full error:
>>
>> Could not find machine account in secrets database: Failed to fetch
>> machine account password for EDM from both secrets.ldb (Could not
>> find entry to match filter:
>>
2019 Jun 15
4
Kerberos and NTLMv2 authentication
Dear Samba Users,
I set a samba share (4.8.1) on a linux (centos 7) as server member ;
authentication is done against a AD win 2012 R2 server through winbind.
I thought authentication was using kerberos, but I checked log and found :
Auth: [SMB2,(null)] user [MYDOMAIN]\[mydomainuser] at [mar., 11 juin 2019
10:21:42.000927 -03] with [NTLMv2] status [NT_STATUS_OK] workstation
[CANONDCE0BD]
2019 Apr 08
6
Debian Stretch, Samba 4.10.2, 4.9.6 and 4.8.11 Available (amd64/i386)
Hai guys,
I've updated the Debian Stretch package for Samba 4.10.2, 4.9.6 and 4.8.11.
Repo info : https://apt.van-belle.nl
Build logs: http://downloads.van-belle.nl/samba4/Buildlogs/stretch/
Quick repo setup:
Optional: apt-get install apt-transport-https
Import my public key:
wget -O - http://apt.van-belle.nl/louis-van-belle.gpg-key.asc | apt-key add -
# Example repo stretch samba
2015 Feb 27
3
Is Server-side GPO Configuration possible? (for logon script)
On 26/02/15 16:54, Marc Muehlfeld wrote:
> Hello John,
>
> Am 26.02.2015 um 12:17 schrieb John:
>> Is it possible to make GPO changes from the server (i.e. without using
>> Windows) ?
> No. There's no tool for *nix, to edit GPOs. At least I've never seen
> one. :-)
>
>
> Regards,
> Marc
>
Shame, that. But I kind of expected that to be the answer.
2018 Sep 26
2
audit DC?
Good morning people from Argentine.
again bothering with a doubt,
It is posiblle, audit change password, create-delete-change users? and more?
i have a file server with audit and works really really well and now I want
more!
any ideas?
thanks for samba....i love it
2018 Apr 04
3
Debian Packages for Samba 4.8?
Hi Louis,
normally you are building these wonderful samba debian packages for us :-)
Is there a reason, that you didnt create packages for samba 4.8?
Tfh!
Oliver
2018 Feb 14
2
WERR_DS_DRA_MISSING_PARENT error when joining new DC
When trying to join a new DC to an existing Samba4 domain, I am getting this WERR_DS_DRA_MISSING_PARENT error. Does any have any suggestions on how to fix it? My original 6 dc's are running the last free Sernet (4.2.14) on CentOS6 and the error occurs if I use Sernet 4.2.14 or 4.7.5-Debian. I finally have time to upgrade and something is broke.
Thanks,
Steve
# samba-tool domain join
2018 Feb 21
2
win2003 AD migration to SAMBA 4.6 - dnsupdate problem
I want to migrate old 2003 domain to Samba - join SAMBA 4.6(DC2) to win
2003 domain like DC, move sysvol, FSMO, demote old server(DC1), etc.,
etc. -
https://wiki.samba.org/index.php/Joining_a_Samba_DC_to_an_Existing_Active_Directory
My problem are DNS Updates, I have kerberos working (added enctypes =
rc4-hmac for compatibility), SAMBA join without errors, I have created
DNS records, can
2018 May 24
3
nameservers, all DCS??
hi!
Query, I have 3 DCs, in each of the servers should have configured the
other two DCs in the resolv.conf?
or with only the primary is enough?
Maybe that's my problem that does not replicate the dc3 with the dc2
thanks to all!
2020 Feb 06
3
commiting SAM database
We stopped the migration, because we had to many problems. For your
information:
The windows-domain was set up in 2002 with windows 2000 and was raised
up to windows 2012 over the years. The domain is responsible for the
login of all 20.000 students. So over the years they have over 170.000
Objects. For the migration we used the 4.11 sernet-packages. We started
with 32GB of RAM and noticed that
2019 Jan 10
6
Running off pre-created keytabs
Hi folks,
we'd like to provision new Samba servers (file sharing only) with the
system keytab. It will precreated by some other process (msktutil)
because we don't have direct access to a domain admin account. Is there
any degragation in functionality by not using "secrets and keytab" and
not doing "net ads join"?
This is somewhat similiar to my question from