Displaying 20 results from an estimated 6000 matches similar to: "NT domain, Win10 1903 and profiles..."
2019 Oct 03
3
Roaming profiles don't work properly on newly joined Windows clients
Hi all,
We're a small charity and we've got a working and stable Debian 9 AD
system using one Samba server (version 4.9.5-Debian) and 4 x Windows 10
Pro clients.? The server has two shared folders - "Profiles" for roaming
profiles and "users" for user's home directories. We've just got
delivery of two donated computers, and we got 2 new staff members.? I
2019 Jun 27
2
W10, NT domain, profiles that work for some users and not for others...
As subject say, we are trying to ''integrate'' some W10 machine on a NT
domain, with samba as PDB/BDC, OpenLDAP backend.
profile share is defined as:
[profiles]
comment = Network Profiles Share
path = /srv/samba/profiles
read only = No
create mask = 0600
directory mask = 0700
store dos attributes = Yes
browseable = No
csc policy = disable
root preexec =
2019 Aug 28
4
[OT?] W10, SYSTEM, guest access.
[ I've just asked abut that, here, but now seems a simpler things, so i
retry... ]
This seems NON a samba touble, but a different behaviour in M$
client OS. But, really, i've not clue how to find an answer...
Suppose to have a Win7 and a Win10 machine, both NOT joined to a
domain. Suppose to have a share, with guest access enabled, where only
readonly access are needed.
Suppose also
2020 Aug 26
4
Win10 and NT mode: netlogon script seems does not run anymore.
[ Rowland, i know, i need to upgrade. ;-) ]
Some month ago, with a relative big bunch of fix&tweaks, i was able to put a
Win10 1903 client in join to a 'NT mode' Samba domain.
Now i'm trying to do the same with a 1909 version; all seems to work as
before, BUT netlogon script (defined in smb.conf with:
logon script = startup.bat
) simply seems does not run. No log event in
2020 Oct 01
2
Freeradius logon with machine account...
With Samba in NT mode, i was able to enable wireless access using
machine account, and worked decently.
Now i want to try again in AD mode, but i've not found info, and i've
just hit a trouble:
Oct 1 14:31:55 vdmsv1 radiusd[13555]: rlm_ldap (ldap): Opening additional connection (25), 1 of 31 pending slots used
Oct 1 14:31:55 vdmsv1 radiusd[13555]: (187) Login incorrect:
2020 Oct 27
5
odd issue with permisions
I'm really confused about something. It seems like on my samba server
the user AND GROUP permissions must match for me to access any files in
my home directory. Here's an example of what I mean: ($ = at unix shell,
> = in smbclient)
$ mkdir ~dan/test1
$ chmod 700 ~dan/test1
$ smbclient -U dan //localhost/dan
> cd test1
> put test1.txt
(failure, NT_STATUS_ACCESS_DENIED)
> quit
2019 Aug 29
1
[OT?] W10, SYSTEM, guest access.
Mandi! Rowland penny via samba
In chel di` si favelave...
> Are you also aware the the Guest user is turned off on Windows 10 by default?
Aware yes, but i supposed was related to guest access TO the client,
not guest access OF the client to server share...
But, i'll give it a try. Thanks.
--
dott. Marco Gaiarin GNUPG Key ID: 240A3D66
Associazione ``La Nostra
2019 Dec 18
3
Hosted printer drivers can not be used
Hai Christian,
Hm,, you tried that Universal driver and it did not work for you,. .. :-/
That worked fine for me, so its one to have a better look at.
I saw you used acl_xattr:ignore system acl also.
After you changed smb.conf, did you re-apply also the rights on the shares?
Try it in this order, first setup the share and correct the rights.
Then correct the rights on the file system,
2019 Oct 01
5
Upgrade DC 4.5 -> 4.8, timings?
I've read all docs on upgrades, from wiki to Louis notes, and i think
i'm ready to upgrade.
First step, move from stretch to jessie, and from 4.5 to 4.8, upgrade
in place.
But having a domain with 6 DCs, i'm a bit scared to upgrade all DC in
one turn, and i'm think about something like:
a) upgrade DC with FSMO roles, then wait 1-2 day to spot troubles
b) then upgrade all DC in
2019 Oct 16
4
vfs_recycle permission bug?!
Samba 4.8 (Louis debian repo), DM.
Today i've had to recovery a deleted file in that share, that use
'vfs_recycle' modules:
[Work]
comment = Spazio di Lavoro Utente
map acl inherit = Yes
path = /srv/work
read only = No
store dos attributes = Yes
vfs objects = acl_xattr recycle full_audit
volume = Work
full_audit:failure = none
full_audit:success = mkdir rmdir read pread
2018 Nov 05
4
Time server on AD DC in an LXD container.
After reading the instructions at
https://wiki.samba.org/index.php/Time_Synchronisation, I still have
questions about how samba interacts with nptd.
The issue is that LXD doesn't want containers setting the time and so won't
start ntpd at container startup even though it's enabled in systemd. The
host does sync it's time with a national time server, so we can assume that
the
2019 Dec 10
2
DC in trash...
Debian stretch, louis packages 4.9.16+dfsg-0.1~stretch~1 .
After some time (roughly: two weeks) my DC with FSMO roles (seems that
other DC are unaffected) goes suddenly on trash: memory jump from 50%
(3GB) to 100%, container start to swap and slow down (load 10-15) al
the phisical server.
A simple restart solve all the troubles.
Some hint on how to debug that? Thanks.
--
dott. Marco Gaiarin
2019 Jun 25
2
W10 Pro 1903 and Samba with Roaming Profiles: "We can't sign in to your account"
[see also my thread started here
https://social.technet.microsoft.com/Forums/en-US/b653e756-f966-4f8f-9d13-f19a88d4cc5e/w10-pro-1903-and-samba-with-roaming-profiles-quotwe-cant-sign-in-to-your-accountquot?forum=win10itprogeneral]
Hello,
since the upgrade from W10 pro 1809 to 1903 roaming users can still
logon, but they are 'greeted' with the message: "We can't sign in to
your
2019 Oct 17
3
Offline logon and NSS...
Mandi! Rowland penny via samba
In chel di` si favelave...
> Yes, somebody moved the cache to a different directory and it now gets wiped
> every time Samba is restarted, we have a bug report for it:?
> https://bugzilla.samba.org/show_bug.cgi?id=14074
Ok, thanks.
I suppose that cache get controlled by:
idmap cache time = 604800
winbind cache time = 300
so, for a portable system,
2019 Sep 23
4
testparm comaprison
On 23/09/2019 13:42, Trenta sis via samba wrote:
> Thanks, ntlm auth is temporary until we have solved some issues
> getent is needed by filesystem acl
>
If you think you need the 'winbind enum' lines so that 'getent' works,
then think again ;-)
If you do not have the 'winbind enum 'lines 'getent passwd username'
will still work.
'getent passwd'
2019 Jun 26
2
<printername>.tdb error management...
Sometimes (rarely, very rarely) i spot a <printername>.tdb error that
seems to prevent the communication between samba and CUPS.
In log i see:
[2019/06/26 15:15:49.633876, 0] ../source3/lib/util_tdb.c:316(tdb_log)
tdb(/var/cache/samba/printing/sml5010-2.tdb): tdb_rec_read bad magic 0x25 at offset=26096
the only solution i've found, pretty drastic, is:
systemctl stop
2019 Oct 17
3
Offline logon and NSS...
Mandi! Rowland penny via samba
In chel di` si favelave...
> > Considering a 'full offline' DM client (supposing a portable), there's
> > a 'winbind permanent nss cache' or a general nss cache (like
> > nss-updatedb):
> > https://wiki.debian.org/LDAP/NSS#Offline_caching_of_NSS_with_nscd
> > have to be used? Thanks.
> No, you cannot use
2020 Sep 25
2
a thing similar to su
hi
in samba/cifs/windows is there a thing similar to "su"?
i'll explain: as root with "su" i can switch to another user without
knowing his password
i want to do the same thing, as domain admin, when i mount a share:
mount the share impersonating another user without knowing his password
i need it to test permissions on this share
thanks in advance
2019 Nov 07
3
Samba, Debian and upgrade path...
Yesterday, after a long run, i've finally upgraded my DCs to
stretch/samba4.9, using Louis repos. Hurrah! ;-)
Looking forward, eg:
http://apt.van-belle.nl/debian/dists/
seems to me that i can advance to 4.10 in stretch, but to go further i
need buster (probably because of python deps, right?).
Louis, i think we need a matrix of debian-samba compatibility... ;-)
--
dott. Marco Gaiarin
2019 Oct 17
4
Offline logon and NSS...
I'm revising some docs, and i've returned on the 'offline logon' tema.
Looking at:
https://wiki.samba.org/index.php/PAM_Offline_Authentication
and smb.conf manpage, it is clear that 'offline logon' is
a pam/authentication only, does not involve NSS.
Considering a 'full offline' DM client (supposing a portable), there's
a 'winbind permanent nss