Displaying 20 results from an estimated 8000 matches similar to: "Cant delete OU"
2020 Apr 29
0
Cant delete OU
Hi Basti,
> I want to delete a OU in my Samba AD.
> On RSAT I get "Access denied"
> When I try it with ldapvi I get "dsdb_access: Access check failed on"
> I have also try to repair the samba DB with samba-tool dbcheck
> --cross-ncs --fix --yes but that does not solve the problem.
>
> The OU is a self generated one.
what do you mean by "self
2018 Dec 04
2
Samba AD, Attribute Editor, unixUserPassword
Hello,
I have a samba 4 AD Domain, now I see in the Attribute Editor that the
field "unixUserPassword" is plain text. This is also Plaintext in LDAP
(seen via ldapvi).
Is there a way to crypt that? SSHA for example?
Best Regards
2017 Feb 06
2
objectGUID CNAME Record
Hello,
i try
https://wiki.samba.org/index.php/Verifying_and_Creating_a_DC_DNS_Record
ldapvi '(invocationId=*)' --cross-ncs objectguid
I get objectGUID:: i55tljAenUWun3ISCvEXoQ==
When I do "samba-tool dns add dc1 _msdcs.foo i55tljAenUWun3ISCvEXoQ==
CNAME dc2.foo -Uadmin"
ERROR(runtime): uncaught exception - (8, 'WERR_NOMEM')
File
2017 Feb 06
1
objectGUID CNAME Record
On 06.02.2017 14:51, Rowland Penny via samba wrote:
> On Mon, 6 Feb 2017 13:56:28 +0100
> basti via samba <samba at lists.samba.org> wrote:
>
>> Hello,
>>
>> i try
>> https://wiki.samba.org/index.php/Verifying_and_Creating_a_DC_DNS_Record
>>
>> ldapvi '(invocationId=*)' --cross-ncs objectguid
>>
>> I get objectGUID::
2018 Dec 04
2
Samba AD, Attribute Editor, unixUserPassword
Am 04.12.18 um 10:17 schrieb Rowland Penny via samba:
> On Tue, 4 Dec 2018 09:54:05 +0100
> basti via samba <samba at lists.samba.org> wrote:
>
>> Hello,
>>
>> I have a samba 4 AD Domain, now I see in the Attribute Editor that the
>> field "unixUserPassword" is plain text. This is also Plaintext in LDAP
>> (seen via ldapvi).
>>
>>
2018 Nov 09
2
Add LDAP entry using ldapmodify or ldapvi
Hello,
how can I add LDAp entry useing ldapmodify or ldapvi --ldif?
Is there an example elsewhere?
best regards
2019 May 22
2
dsdb_access Access check failed on CN=Configuration
Poking around on this further, I believe the LMHOSTS error does not matter.
The smb directive "name resolve order" defaults to "lmhosts wins host bcast" -- so I believe the file no found error is just because it's trying lmhosts first, not finding the file and then moving on.
Eventually it hits "host" resolution and uses /etc/hosts to resolve the name.
Changing
2019 May 22
2
dsdb_access Access check failed on CN=Configuration
----- On May 22, 2019, at 11:07 AM, samba samba at lists.samba.org wrote:
> On 22/05/2019 16:29, Mike Ray via samba wrote:
>> ----- On May 22, 2019, at 10:01 AM, samba samba at lists.samba.org wrote:
>>
>>> Try again with :
>>>
>>> samba-tool ldapcmp dc5.$(hostname -d) dc3.$(hostname -d) DNSFOREST
>>> As in dc5.your.dns.domain.tld ...
2015 Jan 13
4
Missing Policies folder after failure; how to recreate
Dear Samba List!
Long story short and please just don't ask; if it were up to me this
would have not happened:
I need to recreate the default GPO-s (as in the
\SysVol\domain.of\Policies\ folder and subfolders) of my domain.
Trying to delete the old GPO-s I run into errors, both in the windows
mmc and on the dc with runing samba-tools as root.
ERROR(ldb): uncaught exception - LDAP error 50
2020 Sep 11
4
Problems with sysrepl
> I think all is clean fine.
You "think"..?? .. You must verify this !
Asumption is the mother of all fuckups an old boss of me always said..
And he is right.
Run : samba-tool fsmo show
And verify both servers.
https://wiki.samba.org/index.php/Verifying_and_Creating_a_DC_DNS_Record#The_objectGUID_CNAME_Record
And go through :
2019 May 22
2
dsdb_access Access check failed on CN=Configuration
All-
I've got 3 DCs (version 4.9.6-12) that, prior to today, were running without issue (as best I could tell).
Every night I run a few commands to monitor the status of the DCs/domain. I run:
* dbcheck --cross-ncs
* samba-tool drs kcc <other DCs>
* samba-tool ldapcmp <local DC> <other DCs> (domain|configuration|schema|dnsdomain|dnsforest)
* samba-tool drs showrepl
These
2019 Apr 23
2
Win10 cant connect to DomainController
Hai basti,
Few tips here you can check/try.
A know problem, this might happen if your primary dns and/or search dns are not correct when connected to the VPN.
See if you can use \\host.dnsdomain.tld\share and not \\host\share
Then test \\dnsdomain.tld\sysvol and \\dc.dnsdomain.tld\sysvol
Last, if you trying to access through CNAME, you might have hit this bug.
2017 Mar 20
2
Fwd: Re: Samba AD Manage User, set unix passwd
I found this one
https://lists.samba.org/archive/samba/2015-September/194133.html
It's a good point of start.
thank you rowland.
On 20.03.2017 21:37, Rowland Penny via samba wrote:
> On Mon, 20 Mar 2017 21:17:00 +0100
> basti via samba <samba at lists.samba.org> wrote:
>
>> I need the unix password for mail. the user should not be able to
>> change this, if win*
2019 Oct 16
4
cant login to fileserver
hello,
i migrate a NT4 to ad.
User can login with AD username and can connect to share on DC.
When i try to connect to the fileserver via windows i get access denied.
connect from dc1 to fileserver via smbclient does work.
on the fileserver:
- wbinfo -u show user
- wbinfo -P succeeded
- wbinfo -g show groups
- wbinfo -a Administrator succeeded
- pam-auth-update -> kbr, unix, winbind
nsswitch
2019 May 22
2
dsdb_access Access check failed on CN=Configuration
----- On May 22, 2019, at 10:01 AM, samba samba at lists.samba.org wrote:
> Try again with :
>
> samba-tool ldapcmp dc5.$(hostname -d) dc3.$(hostname -d) DNSFOREST
> As in dc5.your.dns.domain.tld ...
>
> Whats the result.?
The failure is still present -- no change in the output of the command:
# samba-tool ldapcmp dc3.domain.local dc5.domain.local DNSFOREST
ERROR(ldb):
2012 Oct 29
3
Unable to create GPO with rc3 and a few authentication problems
Hello.
I had encountered a few problems with 2 Samba 4 rc3 DCs serving domain migrated from Windows 2003 R2. I post them altogether, since they look related.
1. Unable to create or delete GPOs.
# bin/samba-tool gpo create somegpo
ERROR(ldb): uncaught exception - LDAP error 50 LDAP_INSUFFICIENT_ACCESS_RIGHTS - <dsdb_access: Access check failed on
2020 Nov 03
6
Get last uidNumber
Hello,
is there a way to get the last uidNumber from ldap.
I can do a ldapsearch like:
ldapsearch -h samdom.example.com -D "administrator at samdom.example.com"
-w "changeit" -b "DC=samdom,DC=example,DC=com" -x -LLL "(uidNumber=*)"
uidNumber | grep -Po "(?<=uidNumber: )([0-9]{4})" | sort | tail -n1
But there is no guarantee that the last
2008 Oct 02
3
Half-OT: Modify several ldap entries
Hi,
I want to fix several entries of mail attribute mail that have an
error something like this:
*john at domain.com
*joe at domain.com
*mary at domain.com
and so on.
I want to to change them to:
john at domain.com
joe at domain.com
mary at domain.com
(Delete asterisks)
How can I perform it in one (or at least few) steps?
thanks in advance!
--
--
Open Kairos http://www.openkairos.com
2019 Apr 23
1
Win10 cant connect to DomainController
On 23.04.19 14:51, Rowland Penny via samba wrote:
> On Tue, 23 Apr 2019 14:35:16 +0200
> basti via samba <samba at lists.samba.org> wrote:
>
>> Hello,
>> I have a Win10 Client connected via openVPN to the company LAN.
>> openVPN seem to work fine. I get Routes, the AD DNS server, can ping
>> domain controller file Server etc.
>
> It looks like you
2020 Sep 11
0
Problems with sysrepl
Get this,
https://raw.githubusercontent.com/thctlo/samba4/master/samba-collect-debug-info.sh
Run it, anonymize it and post it.
For both AD-DC's.
I want to see a full check on the base setup of the server.
If you dont mind ;-)
Greetz,
Louis
> -----Oorspronkelijk bericht-----
> Van: samba [mailto:samba-bounces at lists.samba.org] Namens
> basti via samba
> Verzonden: