similar to: Kerberos tickets

Displaying 20 results from an estimated 30000 matches similar to: "Kerberos tickets"

2023 Mar 06
1
Kerberos tickets
On Mon, Mar 06, 2023 at 06:54:05PM +0000, Vaughan, Robert J via samba wrote: >Hello world (of Samba) > >We've had this periodic issue with Win 10 users 'losing their connection' to a Samba share > >This problem originally started on our Solaris server but we could be seeing it now on our replacement Red Hat Linux server > >Microsoft looked at the PC logs some time
2024 Nov 22
1
Accessing Samba domain member shares from trusted domain
Hi Ralph When you said I can't use idmap_ad in my trusting domain because 'we're not allowed to talk to a DC in the trusted domain', does that still apply even if we can provide a read-only DC from the trusted domain inside the trusting domain network? Thanks, Rob -----Original Message----- From: Ralph Boehme <slow at samba.org> Sent: Tuesday, November 12, 2024 12:59
2024 Nov 12
2
Accessing Samba domain member shares from trusted domain
On 11/12/24 6:49 PM, Vaughan, Robert J via samba wrote: > Ok well I have that setting you mention > > I just can't map my trusted AD account in the trusting domain on my > Linux Samba domain member > > I can't see any users in the trusted domain actually > > wbinfo -u --domain=TRUSTED > > returns nothing at all this is as expected. We're not allowed
2023 Feb 13
1
idmap ad question
On 12/02/2023 16:40, Vaughan, Robert J via samba wrote: > Hi all > > In the idmap_config_ad wiki, it states .. > > If you use the winbind 'ad' backend, you must add a gidNumber attribute to the Domain Users group in AD. > > Can someone explain this? > >>Yes >>Every users primaryGroupID attribute is set to 513, the RID for Domain >>Users.
2023 Feb 01
2
Searching Samba share file contents
Hello Samba listers Is there a way to search Samba share file contents from the Windows client explorer? This works on Windows shares. I can't seem to get a hit on this on Google .. Thanks, Robert Vaughan ---------------------------------------------------------------------- This is an e-mail from General Dynamics Land Systems. It is for the intended recipient only and may contain
2023 Feb 13
1
idmap ad question
On 13/02/2023 18:54, Vaughan, Robert J via samba wrote: > > nsswitch.conf has 'files winbind' for the passwd, shadow and group lines Remove it from the shadow line, it should not be there. > > What does it mean 'winbind links set up'? It refers to the links that connect winbind to nsswitch > > OS is Red Hat 7. Any idea in those packages if I might be
2023 Feb 13
1
idmap ad question
On 13/02/2023 16:50, Vaughan, Robert J via samba wrote: > On 12/02/2023 16:40, Vaughan, Robert J via samba wrote: >> Hi all >> >> In the idmap_config_ad wiki, it states .. >> >> If you use the winbind 'ad' backend, you must add a gidNumber attribute to the Domain Users group in AD. >> >> Can someone explain this? >> > >>> Yes
2023 Feb 12
2
idmap ad question
Hi all In the idmap_config_ad wiki, it states .. If you use the winbind 'ad' backend, you must add a gidNumber attribute to the Domain Users group in AD. Can someone explain this? Thanks, Robert Vaughan ---------------------------------------------------------------------- This is an e-mail from General Dynamics Land Systems. It is for the intended recipient only and may contain
2023 Feb 08
1
Domain join with realm
> The LDAP client is also Fedora 37, Samba client version also 4.17.5; > this host is joined to the Samba AD domain using "realm join ...". >>This is, in my opinion, the wrong way of joining, you should have used >>'net ads join'. >>Rowland Hi Rowland, I have noticed several times you have warned against using 'realm join' when that is the
2023 Feb 13
1
idmap ad question
On 13/02/2023 19:42, Vaughan, Robert J via samba wrote: > Yeah the link is correctly setup, since it is not compiled Samba > > Ok, I found in this link .. > >
2023 Feb 13
1
idmap ad question
> On 12/02/2023 16:40, Vaughan, Robert J via samba wrote: > Hi all > > In the idmap_config_ad wiki, it states .. > > If you use the winbind 'ad' backend, you must add a gidNumber attribute to the Domain Users group in AD. > > Can someone explain this? > >> Yes >> >> Every users primaryGroupID attribute is set to 513, the RID for Domain
2023 Feb 13
1
idmap ad question
> On 12/02/2023 16:40, Vaughan, Robert J via samba wrote: > Hi all > > In the idmap_config_ad wiki, it states .. > > If you use the winbind 'ad' backend, you must add a gidNumber attribute to the Domain Users group in AD. > > Can someone explain this? > >> Yes >> >> Every users primaryGroupID attribute is set to 513, the RID for Domain
2023 Feb 14
1
idmap ad question
On 13/02/2023 22:53, Vaughan, Robert J via samba wrote: > >>> Were you running 'getent passwd' rather than 'getent passwd AUSERNAME' ? > > Yes, I am used to getting that output with getent on my UNIX LDAP system. As long as I can get it from wbinfo I suppose that works too. >>Never understood why anyone requires all the users or groups on a
2023 Feb 13
1
idmap ad question
> I should mention, I can ssh into the server using my AD creds and the one test share I setup also maps fine, so it all seems to be working, was just curious why 'getent passwd' does not show AD accounts >>Provided that the users you want to be visible to Unix have a uidNumber >>attribute containing a unique number inside the 225-999999 range and >>Domain Users has
2024 Nov 08
1
Accessing Samba domain member shares from trusted domain
Hello all We have two AD domains; A for production, and B for development I am told B trusts A, but not the other way around (one-way trust) Within domain B exists a Linux Samba file server (domain member of domain B) which I am trying to access from domain A with my domain A account, but it is not working (prompts for creds) Does the Linux Samba file server need access to the domain A DC (and
2023 Feb 14
1
idmap ad question
On 14/02/2023 11:41, Vaughan, Robert J via samba wrote: > I am the UNIX admin and don't have a use for all domain users group since all domain users won't be UNIX (or SAMBA) users >>Your decision. > > What do you mean by "It isn't as if you can have a user group with the same name as the user"? We currently do have group names in UNIX (local and in LDAP)
2017 Mar 30
2
JPG issue
Ok, it's taken me a while, but here's what seems to be the problem. In OSX I see a lock on the file. If that lock is ON, it disappears. But what is that lock and where did it come from.... Is it like a read only lock? On Thu, Mar 30, 2017 at 11:04 AM Curtis Vaughan <cavaughan at gmail.com> wrote: > Ok, here's what seems to be going on. When a JPG is put into a share it >
2023 Nov 16
1
WInbind hang?
Hello We are running several Red Hat 7 servers as domain members using AD for winbind idmap backend and it had been working fine (no sssd is configured either) The last month or so (possibly since the latest samba-winbind package update we applied on Sep 24), server ssh logins on several servers hang on occasion, until a winbind restart, when it all works again Since this is the Red Hat
2023 Feb 13
1
idmap ad question
On 13/02/2023 18:54, Vaughan, Robert J via samba wrote: > > nsswitch.conf has 'files winbind' for the passwd, shadow and group lines Remove it from the shadow line, it should not be there. > > What does it mean 'winbind links set up'? It refers to the links that connect winbind to nsswitch > > OS is Red Hat 7. Any idea in those packages if I might be
2023 Feb 13
1
idmap ad question
On 13/02/2023 19:42, Vaughan, Robert J via samba wrote: > Yeah the link is correctly setup, since it is not compiled Samba > > Ok, I found in this link .. > > https://wiki.samba.org/index.php/Troubleshooting_Samba_Domain_Members#getent_not_Finding_Domain_Users_and_Groups > > I had to change these lines to 'Yes' .. > > winbind enum groups = Yes >