Displaying 20 results from an estimated 8000 matches similar to: "Unable to join domain when DC firewall is active"
2024 Jan 01
0
Unable to join domain when DC firewall is active
Thanks. I did read that. Maybe my understanding is wrong. I thought that
by adding the samba service, everything that shows as samba would be
enabled. 445, 139, etc didn't have samba so I added them with --add-port.
Is that not an accurate assumption? Do I need to open each of those ports
individually rather than allowing the service? The only thing I don't see
is:
tcp 0 0
2018 Feb 13
5
firewalld services to open for an ADDC
Hai,
If you use that or the AD, then its incomplete, imo.
Your missing ldaps (636) and the GC (ssl) 3268/3269) ports and maybe NTP (123/tcp) if installed.
Maybe you dont need them, just an observation.
Greetz,
Louis
> -----Oorspronkelijk bericht-----
> Van: samba [mailto:samba-bounces at lists.samba.org] Namens Jeff
> Sadowski via samba
> Verzonden: dinsdag 13 februari 2018
2015 Aug 27
3
Samba AD firewalld services
Progress...
On 08/27/2015 08:50 AM, L.P.H. van Belle wrote:
> After reading this thread.. and ..seeing the comments..
>
> I googled a bit around. and yes.. more then 5 sec.. ;-)
>
> I wonder why almost every "centos/redhat/rpm based" howto removes firewalld with the base iptables service
> now, i'm not "pro" systemd or con systemd, i use it but i set my
2015 Aug 27
3
Samba AD firewalld services
Oh, this really helps. See below, though.
On 08/27/2015 09:33 AM, Rowland Penny wrote:
> On 27/08/15 14:25, Robert Moskowitz wrote:
>> Progress...
>>
>> On 08/27/2015 08:50 AM, L.P.H. van Belle wrote:
>>> After reading this thread.. and ..seeing the comments..
>>>
>>> I googled a bit around. and yes.. more then 5 sec.. ;-)
>>>
2015 Aug 27
1
Samba AD firewalld services
mDNS is not DNS
mDNS (zeroconf/avahi) ( used for .local and .lan reserved tlds ) is an apple thingy..
mDNS udp 5353
DNS tcp/udp 53.
Yes, dns tcp + udp.
If and dns udp package is to large it switches to tcp.
got that from wiets ( the postfix developer )
So i must believe him.. wiets is great.. ( and dutch ) :-))
Greetz,
Louis
>-----Oorspronkelijk bericht-----
>Van: samba
2018 Feb 13
3
firewalld services to open for an ADDC
I tried the following
firewall-cmd --add-service=dns --permanent
firewall-cmd --add-service=samba --permanent
firewall-cmd --reload
But was not able to connect until I disabled the iptables via
iptables -P INPUT ACCEPT
iptables -F
then I was able to connect my windows 10 pro to my domain.
So my question is what services or ports am I missing to open?
2018 Feb 13
1
firewalld services to open for an ADDC
On Mon, Feb 12, 2018 at 11:50 PM, Marc Muehlfeld <mmuehlfeld at samba.org> wrote:
> Hi Jeff,
>
> Am 13.02.2018 um 05:16 schrieb Jeff Sadowski via samba:
>> So my question is what services or ports am I missing to open?
>
> AD DCs:
> https://wiki.samba.org/index.php/Samba_AD_DC_Port_Usage
perfect exactly what I was looking for
I found some docs about firewalld that
2015 Aug 27
9
Samba AD firewalld services
Now with firewalld, opening up ports is now 'better' done by opening
services. So what do I need, for starters it seems:
dns, dhcp, dhcpv6, samba, kerberos
Here is the list of services:
RH-Satellite-6 amanda-client bacula bacula-client dhcp dhcpv6
dhcpv6-client dns
ftp high-availability http https imaps ipp ipp-client ipsec kerberos
kpasswd ldap
ldaps libvirt libvirt-tls mdns mountd
2015 Aug 27
2
Samba AD firewalld services
On 27/08/15 13:50, L.P.H. van Belle wrote:
> After reading this thread.. and ..seeing the comments..
>
> I googled a bit around. and yes.. more then 5 sec.. ;-)
>
> I wonder why almost every "centos/redhat/rpm based" howto removes firewalld with the base iptables service
Now here's a funny thing, I was searching the samba wiki for 'firewall'
and found there
2017 Aug 25
1
AD Group update lag / cache, firewall related?
# wbinfo -n working-group | awk '{print $1}' | awk -F '-' '{print $8}'
69153
# wbinfo -n problem-group | awk '{print $1}' | awk -F '-' '{print $8}'
136399
The OS can use that group:-
# chgrp problem-group test.txt
# ls -asl test.txt
0 -rw-r--r-- 1 root problem-group 0 Aug 25 17:55 test.txt
#
It's not a case that the group is unavailable...
2004 Aug 11
2
GLM with binomial distribution: a bug?
I?m trying to run a factorial model with binomial error distribution on R
program but I had some problems. I'm quite sure it is a bug and would like to
know if it was alread corrected. The output don?t gives me the effects of
factors, it mix the names of factors with the names of factor?s levels. For
instances: specieserythroxylum ('species? is the name of the factor
and
2015 Nov 04
4
Server used in DOS attack on UDP port 0
Hi,
One of our AWS machines was used in an DOS attack last night and I am
looking for possible attack vectors. AWS tells me it was sending UDP port 0
traffic to a cloudflare address.
This instance had an incorrectly configured AWS security group exposing all
ports.
The server in question is a Centos 7 based FreeIPA server, OpenVPN
concentrator and DNS server.
With a brief inspection before the
2019 May 14
2
Samba4 changing a user's password from linux workstation
I've gotten pretty unhappy with "realmd" and "sssd". They try to hide
>> a lot of steps away from the user, but the internal interactions are a
>> bit of a "mousetrap" game. When it works, you get the mouse. But if
>> any of the many steps are even slightly worn, it becomes erratic or
>> fails.
>>
>
>
>
Update: In fact i
2012 Aug 30
1
samba4 & kpasswd: refuses to change
hi
after kpasswd paniced samba4 (debian wheezy packages, beta2) i've
compiled the latest from git (Version 4.0.0beta8-GIT-5131359). It does
not panic anymore but tells me the following:
# kpasswd
Password for user at TEST.DOMAIN:
Enter new password:
Enter it again:
Password change rejected: Password must be at least 7 characters long,
and cannot match any of your 24 previous passwords
2014 May 09
1
samba4 : [kerberos part kinit work but no kpasswd
hi,
?
i have recently installed a samba 4 in a DC role.
The distribution is a debian jessie/sid, the version of samba is 4.1.7.
The server is globally working but there is some litle trouble.
on the server itself, i can do a kinit without probleme but if i try a kpasswsd, i obtain the following
?
root at station:/var/log/samba# kinit
Password for administrator at TOTO.FR:
root at
2019 Sep 02
2
Problem to access from Win to Win after classicupdate to Samba DC 4.10.7
Il giorno lun, 02/09/2019 alle 08.26 +0100, Rowland penny via samba ha
scritto:
> > set 01 22:36:56 s-addc.studiomosca.net named[639]: samba_dlz:
> > cancelling transaction on zone studiomosca.net
>
> That is showing that a client isn't being allowed to update a record.
Is it possible to cure it in some way?
> > [2] ----[smb.conf]
> >
> Please do not post
2004 Sep 06
4
Cox regression for prevalence estimates
Hello, I'm an MD working in an eye clinic. I'm learning by myself to use R
for use in my research works and for implementation in a software project.
There are some authors who recomends the use of Cox regression as a
substitute for Logistic regression (<a
href="http://www.biomedcentral.com/1471-2288/3/21.pdf"> Barros AJD, Hirakata
VN. BMCMedical Research Methodology, 2003;
2019 May 14
2
Samba4 changing a user's password from linux workstation
Le 14/05/2019 à 09:12, Rowland penny via samba a écrit :
> On 14/05/2019 07:32, Julien TEHERY via samba wrote:
>> Le 13/05/2019 à 18:44, Rowland penny via samba a écrit :
>>> On 13/05/2019 16:11, Julien TEHERY via samba wrote:
>>>> Hi
>>>>
>>>> I'm trying to find a way to change user passwords from ubuntu
>>>> client
2015 Feb 18
2
How do I allow users to change their own passwords on GNU/Linux?
How do I configure my GNU/Linux system to allow users to change their
own password?
When I type in the passwd command as a domain user it prompts to change
the kerberos password but doesn't allow them to change it. I get an
error that say password changes may not permitted on this account.
2005 Jan 16
2
Sync password (with MIT-kerberos server) and migration
Hello, my first post here :-),
For several years, I are using samba 2.0 with local backend for windows
stations and servers.
NIS was our used for Linux stations and servers
Now, LDAP /KERBEROS is replacing NIS and Samba (with ldap backend) will
replace the local backend .
My questions :
1- How can I migrate information form server1 (samba 2) to server2 (samba 3)
? I read the official Samba