Displaying 20 results from an estimated 3000 matches similar to: "[Announce] Samba 4.18.9 Available for Download"
2023 Nov 27
1
[Announce] Samba 4.19.3 Available for Download
On Mon, 2023-11-27 at 13:27 +0100, Jule Anger via samba wrote:
> Release Announcements
> ---------------------
>
> This is the latest stable release of the Samba 4.19 release series.
> It contains the security-relevant bug CVE-2018-14628:
>
> ???? Wrong ntSecurityDescriptor values for "CN=Deleted Objects"
> ???? allow read of object tombstones over LDAP
>
2023 Nov 27
2
[Announce] Samba 4.19.3 Available for Download
Release Announcements
---------------------
This is the latest stable release of the Samba 4.19 release series.
It contains the security-relevant bug CVE-2018-14628:
??? Wrong ntSecurityDescriptor values for "CN=Deleted Objects"
??? allow read of object tombstones over LDAP
??? (Administrator action required!)
??? https://www.samba.org/samba/security/CVE-2018-14628.html
2023 Nov 27
2
[Announce] Samba 4.19.3 Available for Download
Release Announcements
---------------------
This is the latest stable release of the Samba 4.19 release series.
It contains the security-relevant bug CVE-2018-14628:
??? Wrong ntSecurityDescriptor values for "CN=Deleted Objects"
??? allow read of object tombstones over LDAP
??? (Administrator action required!)
??? https://www.samba.org/samba/security/CVE-2018-14628.html
2024 Apr 15
1
Upgrade to 4.20: Not resetting nTSecurityDescriptor
I did it:
root at dom2:~# samba-tool dbcheck --fix
Checking 705 objects
Reset nTSecurityDescriptor on CN=Deleted Objects,DC=tlk,DC=loc back to provision default?
Owner mismatch: SY (in ref) DA(in current)
Group mismatch: SY (in ref) DA(in current)
Part dacl is different between reference and current here is the detail:
2024 Apr 15
1
Upgrade to 4.20: Not resetting nTSecurityDescriptor
On Mon, 15 Apr 2024 07:53:16 +0200
Daniel M?ller via samba <samba at lists.samba.org> wrote:
> I did it:
> root at dom2:~# samba-tool dbcheck --fix
> Checking 705 objects
> Reset nTSecurityDescriptor on CN=Deleted Objects,DC=tlk,DC=loc back
> to provision default? Owner
> mismatch: SY (in ref) DA(in current) Group mismatch: SY (in ref)
2024 Apr 15
1
Upgrade to 4.20: Not resetting nTSecurityDescriptor
root at dom2:~# samba-tool dbcheck --fix --yes
Checking 705 objects
Checked 705 objects (0 errors)
root at dom2:~# samba-tool dbcheck --cross-ncs
Checking 4506 objects
Not resetting nTSecurityDescriptor on CN=Deleted Objects,CN=Configuration,DC=tlk,DC=loc
Not resetting nTSecurityDescriptor on CN=Deleted Objects,DC=DomainDnsZones,DC=tlk,DC=loc
Not resetting nTSecurityDescriptor on CN=Deleted
2024 Apr 13
1
Upgrade to 4.20: Not resetting nTSecurityDescriptor
On Fri, 2024-04-12 at 08:03 +0200, Daniel M?ller via samba wrote:
> Hello to all,
>
> After updating to samba 4.20 (from samba 4.19) on Debian 11, samba-tool
> dbcheck --cross-ncs
> results in:
> samba-tool dbcheck --cross-ncs
> Checking 4499 objects
> Not resetting nTSecurityDescriptor on CN=Deleted
> Objects,CN=Configuration,DC=tlk,DC=loc
> Not resetting
2018 Nov 29
0
Different LDAP query in different DC...
On Thu, 29 Nov 2018 14:32:39 +0100
Marco Gaiarin via samba <samba at lists.samba.org> wrote:
> Mandi! Rowland Penny via samba
> In chel di` si favelave...
>
> > You need to explicitly ask for it, for instance:
>
> Oh, cool! Seems effectivaly different:
>
> root at vdcsv1:~# ldbsearch -H /var/lib/samba/private/sam.ldb -b
>
2019 Mar 27
3
samba 4.9.5 - joining Samba DC to existing Samba AD failed
HOn Tue, 26 Mar 2019 09:29:41 +0000
Rowland Penny via samba <samba at lists.samba.org> wrote:
> On Tue, 26 Mar 2019 05:18:20 +0100
> Franta Hanzlík <franta at hanzlici.cz> wrote:
>
> > Hi Tim and Rowland, thanks for Your support!
> > I was thinking about e.g. Python 2.7.15 compatibility (as newer Samba
> > versions require Python3), but You are right, here
2018 Nov 29
2
Different LDAP query in different DC...
Mandi! Rowland Penny via samba
In chel di` si favelave...
> You need to explicitly ask for it, for instance:
Oh, cool! Seems effectivaly different:
root at vdcsv1:~# ldbsearch -H /var/lib/samba/private/sam.ldb -b "DC=ad,DC=fvg,DC=lnf,DC=it" "(cn=prova123)" nTSecurityDescriptor
# record 1
dn: CN=prova123,CN=Aliases,OU=FVG,DC=ad,DC=fvg,DC=lnf,DC=it
nTSecurityDescriptor:
2018 Aug 27
2
Problems removing a SBS 2008 server from a Samba AD DC.
Hi,
I have a samba 4.7.9 DC that I am trying to remove a windows SBS dc from.
In doing this I have run across several problems.
For whatever reason when I try to dcpromo the windows DC it fails because
it says it cannot contact the samba4 DC. I have checked replication as per
https://wiki.samba.org/index.php/Verifying_the_Directory_Replication_Statuses
All of the tests pass.
Since we are going
2024 Apr 12
1
Upgrade to 4.20: Not resetting nTSecurityDescriptor
Hello to all,
After updating to samba 4.20 (from samba 4.19) on Debian 11, samba-tool
dbcheck --cross-ncs
results in:
samba-tool dbcheck --cross-ncs
Checking 4499 objects
Not resetting nTSecurityDescriptor on CN=Deleted
Objects,CN=Configuration,DC=tlk,DC=loc
Not resetting nTSecurityDescriptor on CN=Deleted
Objects,DC=DomainDnsZones,DC=tlk,DC=loc
Not resetting nTSecurityDescriptor on CN=Deleted
2016 Jan 04
0
LDAP permissions - ldbedit/ldapmodify?
On 04/01/16 01:43, Jonathan Hunter wrote:
> Hi,
>
> A while ago I successfully set permissions on a section of my LDAP / AD
> tree, using either ADUC or ADSIEDIT (I forget which). These permissions
> allowed my own user to access this section of the tree; I removed
> permissions for 'Domain Admins' etc. to ensure that others would not be
> able to view or change the
2013 Jan 10
2
Samba 4 "Services for UNIX"? [SOLVED]
To get the automount schema to work with the git checkout of samba 4 I had
to modify the automount schema files and separate the attributes from the
classes. I also discovered that it's required to have the
ntSecurityDescriptor , instanceType, and objectCategory attributes. Without
these it will crash whenever you try to browse... I did alot of stopping
samba, tarring of /usr/local/samba and
2016 Jan 04
0
LDAP permissions - ldbedit/ldapmodify?
The story gets deeper, also.. (nothing is ever easy, right? :-))
Using the ldbsearch command above, I could at least view the SIDs that have
access to the OU.
One of them should be a group called "mysecretou Managers"; I can see from
ADUC that my user is indeed still a member of this group (so far, so good).
However, "wbinfo -s S-1-5-21-000000000-1111111111-2222222222-1234"
2016 Jan 04
2
LDAP permissions - ldbedit/ldapmodify?
Thank you, Rowland!
On 4 January 2016 at 10:36, Rowland penny <rpenny at samba.org> wrote:
> On 04/01/16 01:43, Jonathan Hunter wrote:
>
>> I can view the data using ldbsearch when logged in as root on the DC
>> itself
>> - but how do I view the permissions and edit them from the commandline?
>>
>
> They are stored in a hidden attribute called
2009 Oct 15
0
Regarding changing ACL with LDAP or SAMBA
Hi
I am trying to change the ACL for a Active Directory group using Perl on
Linux. The problem is that there are no Perl bindings for Samba and I
couldn't find any UNIX compatible module that can me do this.
This is the same as setting "Managed By" and then clicking "(X) Manager
can update membership list" in the AD admin tools.
# ldapmodify -x -h Server -W -D
2013 Jul 28
2
Error running samba-tool dbtool --reset-well-known-acls
Hi,
I updated my two samba DC's from 4.0.3 to serner 4.0.7. Both servers run
debian wheezy and the add was created at the beginning of the year with
an classic upgrade to version 4.0.0.
Recent release notes do not provide information about required upgrade
tasks. So i ran.
samba-tool dbcheck --reset-well-known-acls. On the first DC it found a
few errors about missong members in computer
2019 Mar 26
0
samba 4.9.5 - joining Samba DC to existing Samba AD failed
On Tue, 26 Mar 2019 05:18:20 +0100
Franta Hanzlík <franta at hanzlici.cz> wrote:
> Hi Tim and Rowland, thanks for Your support!
> I was thinking about e.g. Python 2.7.15 compatibility (as newer Samba
> versions require Python3), but You are right, here in DB can be
> problem
> - first Samba AD DC was created by migrating Samba3 NT4 domain to
> Samba4 AD cca week ago
2013 Feb 21
2
Upgrade from 4.0.0 to 4.0.3 creates unfixable errors with dbcheck
Hello,
Today I tried to upgrade from samba 4.0.0 to 4.0.3 on my test environment.
I patched the source with the diffs patch-4.0.0-4.0.1.diffs,
patch-4.0.1-4.0.2.diffs, patch-4.0.2-4.0.3.diffs , then make, make install.
# samba-tool dbcheck
Checking 807 objects
Not fixing nTSecurityDescriptor on CN=Performance Monitor
Users,CN=Builtin,DC=inview,DC=local <--- all errors were