Displaying 20 results from an estimated 1000 matches similar to: "Evaluation of the Samba-tools rename functionality"
2019 Jun 21
3
Group policy broken
Hello,
I using Samba 4.10.4-Debian and Samba work as Active Directory. All work
ok, until I try apply GPO to specific security group with guide on link
http://www.rebeladmin.com/2018/04/group-policy-security-filtering/ .
After modify GPO I got error:
root at dc1:~# samba-tool gpo list user5
ERROR(runtime): uncaught exception - Badly formed gPLink ' '
? File
2019 May 16
5
GPO-Error
Hello,
I have the following error when checking for GPOs for a single user,
listing all GPOs is working:
------------------
root at tn2-debian1:~# samba-tool gpo listall
GPO : {31B2F340-016D-11D2-945F-00C04FB984F9}
display name : Default Domain Policy
path :
\\example2.net\sysvol\example2.net\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}
dn :
2020 Jul 22
1
Migrate GPO policies does not work properly.
Hi!
Sorry my late answer. I did run the sysvolcheck/reset commands and
everything seems fine.
On my server I use the following rpm packages, installed from the
tranquil.it repository.
ldb-tools.x86_64 2.0.10-1.el7?????????????????? @samba_custom
libldb.x86_64?????????????????????? 2.0.10-1.el7 @samba_custom
libldb-devel.x86_64???????????????? 2.0.10-1.el7 @samba_custom
2019 May 16
1
GPO-Error
Ok, so yesterday it worked.
Can you run this for me and mail me the output, i have a quick check.
https://raw.githubusercontent.com/thctlo/samba4/master/samba-collect-debug-info.sh
And
https://raw.githubusercontent.com/thctlo/samba4/master/samba-check-db-repl.sh
Last, have you check for corrupted filesystem and/or file/folders?
Any updates done last days?
Now maybe, just maybe, and this
2015 Feb 13
1
GPO set link contaniter
>I created a gpo with samba-tool, but I want to assign to a OU, the GPO that I created earlier,
>I guess I need to use the command, samba-tool gpo SetLink. How the command is used?
>I tried the following way:
> samba-tool gpo setLink OU=People,DC=dominio,DC=pdc,DC=cu cn_GPO
> But it did not work
> Throws the following exception Badly formed gpLink
2019 May 16
0
GPO-Error
On 16/05/2019 09:00, Stefan Kania via samba wrote:
> Hello,
>
> I have the following error when checking for GPOs for a single user,
> listing all GPOs is working:
> ------------------
>
> root at tn2-debian1:~# samba-tool gpo listall
> GPO : {31B2F340-016D-11D2-945F-00C04FB984F9}
> display name : Default Domain Policy
> path :
>
2019 Jun 21
0
Group policy broken
Hai Ivan,
Base on the example link.
The users/computer impersonat "SYSTEM" to apply the GPO these days.
So i think your missing SYSTEM somewhere.
I have myself on such GPO objects only "apply GPO" set on a security group.
But in the resulting GPO, SYSTEM is shown also.
And you could run : samba-tool ntacl sysvolreset
See if that helps also.
Greetz,
Louis
2019 May 16
0
GPO-Error
Hai Stefan,
What is the samba version your running now?
Im now at 4.10.3 with my DC's and the command :
samba-tool gpo list username
Then it does show the GPO's for the user.
If you on 4.10, check if these are installed :
ii python3 3.5.3-1 amd64 interactive high-level object-oriented language (default python3 version)
ii
2019 May 26
3
GPO problem ACL permission
On 26/05/2019 19:24, Epsilon Minus via samba wrote:
> i don't know if the problem with the command samba-tool gpo aclcheck
> is connect with the original problem, but is necesary resolv all
> warinings.
>
> I put de log level = 5 to check the report.
>
> this is the output:
>
>
> root at DC04:~# samba-tool gpo aclcheck
Try it like this:
samba-tool gpo aclcheck
2005 Nov 01
1
OU vs. Default CN?
I am having a hard time getting any information from this list about the
default OU's used when running the net ads join command.
After mapping to the wrong OU in Active Directory for a Samba Domain
Member Server (ou=wrong_container,dc=server,dc=com) I cannot change this
back to the default (cn=users,dc=server,dc=com). Any help is
appreciated and here is the result of net ads dn command:
2020 Jul 20
2
Migrate GPO policies does not work properly.
Hi,
I migrated from my the main domain controller.I use Centos 7 server with
tranquilrepository.
The destination server is a test enviorement with different domain name
but the same system specifications.
I can browse the sysvol network share without any problem.
If i want to check the sam.ldb file on the test server I got these errors.
WARNING:Module [samba_dsdb] not found - do you need to
2020 Jul 20
0
Migrate GPO policies does not work properly.
Hi Robert,
Le 20/07/2020 ? 13:28, Csorba R?bert via samba a ?crit?:
> Hi,
>
> I migrated from my the main domain controller.I use Centos 7 server
> with tranquilrepository.
>
> The destination server is a test enviorement with different domain
> name but the same system specifications.
>
> I can browse the sysvol network share without any problem.
>
> If i want
2024 Nov 06
2
samba support of KB5020276 workaround
Hi everybody,
since a couple of years, user X can't join a computer to AD if the
computer object has been created by user Y.
It is KB5020276?Netjoin: Domain join hardening changes [1].
The documentation suggests a workaround, basically a group policy
applied to all the domain controllers.
Is it that possibile to apply group policies to a samba DC?
The group policy I'm talking about
2024 Nov 06
0
samba support of KB5020276 workaround
>> Hi everybody,
>>
>> since a couple of years, user X can't join a computer to AD if the
>> computer object has been created by user Y.
>
> Why pre-create the computer object before the join ?
hi Rowland,
in order to place it in the correct ou (unless I am mistaken. Is it
possible to specify the target ou during the join? In my memory it was not.)
> The
2024 Nov 06
0
samba support of KB5020276 workaround
> I?ve spent a lot of time working on this. There?s no workaround that actually works.
>
> The machine account must me deleted and recreated by the new user. I use a generic user to own these new account so I keep it even if the employee adding machines leaves.
>
> LP
thank you a lot: you're saving me a lot of time!
Francesco
2006 Oct 22
3
Keeping DRY - I like a simple life!
Hi,
I''m new to Ruby and Rails and I would be very grateful for some advice.
I''ve got the following code.
class Foo < ActiveRecord::Base
include Versionable # Some methods to handle my versioned objects
has_many :versions, :class_name => "FooVersion", :foreign_key =>
"parent_id"
belongs_to :curr, :class_name => "FooVersion",
2000 Jul 19
1
Followup to Rok Papez's tests
I first downloaded Vorbis about a month ago, around the time Rok Papez posted
comparisons of Ogg and Lame [*]. Here's my much rougher test on a single file.
CPU: AMD K6-233
MP3: LAME 3.70, mp3blaster 2.0b6
Ogg: Vorbize 0.6 (Xiphophorus libVorbis I 20000718), ogg123-0.1
Data set: Ministry, "The Fall" (51,955,724 byte WAV)
* * *
Ogg Vorbis command line:
time vorbize -v -w
2019 Jul 25
2
Possible problems with AD Schema in Samba 4
Hi,
I found that the base of Samba 4 DC is different from the base of Windows
Server 2008 DC. There are many mistakes when I make the comparison as the
result as follows (only parts of reult):
samba-tool ldapcmp ldap://WINDC1 ldap://SAMBA4-DC -Uadministrator
Password for [EMPRESA\administrator]:
* Comparing [DOMAIN] context...
* DN lists have different size: 1787 != 1788
* DNs found only in
2017 Mar 23
4
[Samba 4.5] Very slow LDAP Queries (almost unusable), performance tunning ?
Are use using zarafaAccount=1 withing the search filters?
I use this things like this :
(&(objectClass=person)(zarafaAccount=1)(|(mail=%s)(otherMailbox=%s)))
Or for groups.
(&(objectclass=group)(zarafaAccount=1)(|(mail=%s)(otherMailbox=%s)))
That helps a lot.
! If you switch to kopano beware to change the SCHEMA and filters
zarafaAccount changed to kopanoAccount
Greetz.
Louis
2025 May 19
0
Domain join hardening changes, trusted user
Hello,
we manage our Samba AD via an external IPAM/IDM (the AD is only one of several
backends) and use a system user to create, modify and delete the objects
including machine accounts in LDAP. All necessary rights are explicitly
delegated to this system user, who is not a member of the ?Domain Admins?
group.
This has been causing problems when joining Windows machines for some time.