Displaying 20 results from an estimated 500 matches similar to: "samba support of KB5020276 workaround"
2024 Nov 06
0
samba support of KB5020276 workaround
>> Hi everybody,
>>
>> since a couple of years, user X can't join a computer to AD if the
>> computer object has been created by user Y.
>
> Why pre-create the computer object before the join ?
hi Rowland,
in order to place it in the correct ou (unless I am mistaken. Is it
possible to specify the target ou during the join? In my memory it was not.)
> The
2024 Nov 06
0
samba support of KB5020276 workaround
> I?ve spent a lot of time working on this. There?s no workaround that actually works.
>
> The machine account must me deleted and recreated by the new user. I use a generic user to own these new account so I keep it even if the employee adding machines leaves.
>
> LP
thank you a lot: you're saving me a lot of time!
Francesco
2023 Feb 15
1
Evaluation of the Samba-tools rename functionality
HI,
Just an update on this samba-tool (V4.17.4) ..rename functionality, against a 2008SP2 level AD.
(also in case anyone else is mad enough to want to attempt this.)
The rename tool, seems to do a fairly good job,
However there are a couple of other fields that could do with being flushed/fixed during the rename.
This one which breaks MS tools(with continuous looping & modal
2004 May 11
0
net ads join hangs
Hi list,
I'm having difficulty joining new Samba 3.0.x machines to our production domain. I'm trying to join using
net ads join -U Administrator
but it just hangs. It does create a computer object in the AD though, if you Control C the hung net join and try
and start winbind, winbind complains with this error "ads_connect from domain DOMAIN failed: Cannot read password"
I
2018 Feb 21
2
Could not convert sid: NT_STATUS_NO_SUCH_USER
hi all,
I can't figure out why winbind can't find ad users with wbinfo calls.
It happens on a member server, Debian GNU/Linux stretch, samba is 4.7.5
from Louis repository:
[global]
security = ADS
workgroup = EXAMPLEAD
realm = EXAMPLE.ORG
idmap config * : backend = tdb
idmap config * : range = 1000000-3000000
idmap config EXAMPLEAD:backend = ad
idmap config
2018 Sep 04
3
gencache.tdb size and cache flush
Il 04/09/18 06:00, Volker Lendecke ha scritto:
> Hi!
>
> Technical description below, but the exec summary is: Yes, we have a
> performance problem with gencache.
>
> On Wed, Aug 29, 2018 at 10:28:05AM +0200, Francesco Malvezzi via samba wrote:
>> Hi all,
>>
>> I have a midsize AD domain with some 50k users but only 100 workstations
>> joined.
>>
2018 Feb 16
2
idmap config ad: can't resolve domain users' uids
> On Fri, 16 Feb 2018 12:12:32 +0100
> Francesco Malvezzi via samba <samba at lists.samba.org> wrote:
>
>> dear experts,
>>
>> I would like to setup idmap config ad. I have already the uidNumber
>> attribute populated on AD.
>>
>> But there is something very basic wrong with my config:
>
> Yes, there is something wrong ;-)
> See below
2015 Jun 11
3
Joining 4.2.2 Samba client to Samba3 PDC
Hi,
Not sure of the etiquette of this, so apologies if this is frowned upon,
but a couple of months ago, this[1] question was asked.
I'm trying to join a Samba 4.2.2 server to a Samba 3.4.7 PDC (e.g. Think
NT4, not AD), which is also our OpenLDAP principal server. I'm failing
because, although my "net rpc join" command seems to succeed, and the
host entry is added to the
2003 Mar 31
3
can't connect to a samba share with Windows XP
Hi all,
I am having problems with using XP Pro to connect to a samba share.
All I get from XP are repated dialogs asking for my username and password.
My linux box has been joined to the local windows domain.
I am using encrypted passwords and the security level is set to user.
If I set the log level to 10 I can see that LM and NT4 MD password checks failed on the challenge
returned by the XP
2018 Feb 16
2
idmap config ad: can't resolve domain users' uids
Il 16/02/18 12:58, Rowland Penny via samba ha scritto:
> On Fri, 16 Feb 2018 12:39:37 +0100
> Francesco Malvezzi via samba <samba at lists.samba.org> wrote:
>
[...]
>>
>> should I remove tout-court this part?
>
> Not sure I understand that, but it sounds like you are asking if you
> should remove the lines, if so, the answer is yes.
You understood correctly.
2019 Sep 24
2
Repacking database from v1 to v2 format: how long does it take?
On 23/09/2019 20:41, Andrew Bartlett wrote:
> On Mon, 2019-09-23 at 11:25 +0200, Francesco Malvezzi via samba wrote:
>> hi all,
>>
>> I updated a small domain with 8k object to samba-4.11.0 and the
>> database
>> conversion from v1 to v2 didn't take a noticeable time.
>>
>> On the other hand, in a larger domain with 67k object, where the
>>
2018 Oct 31
2
Pair ADFS with samba: possible?
hi all,
is it feasible to setup a ADFS server paired with a samba AD DC?
Are there ADFS requirements (versions not older than ..., not newer than
...) if the samba AD DC is samba-4.9.1?
I tried to match a Windows Server 2016 ADFS v3 with a samba-4.9.1 AD DC.
The web form authentication allow a user to insert username and
password, the ADFS correctly recognizes wrong password, but when
password
2010 Jan 26
1
samba4 HEAD: unable to provision
I'm trying to install samba4 with openldap, as from
http://wiki.samba.org/index.php/Samba4/LDAP_Backend/OpenLDAP,
I have got the yesterday realease, last git commit:
commit 2024d4fb27514869d78e9bb39085f98e80413529
Date: Mon Jan 25 12:41:48 2010 +0100
My system is GNU/Debian Linux Lenny.
./configure --prefix=/opt/samba4
make
sudo make install
all worked
./setup/provision from the source4
2015 Jun 03
2
No builtin nor plugin backend for ldapsam found
Il 03/06/15 13:58, Rowland Penny ha scritto:
> On 03/06/15 12:42, Francesco Malvezzi wrote:
>>> Hmm, '--with-ldap' is the default, so you don't really need to give it,
>>> what OS are you compiling on ? what extra packages did you install
>>> before you compiled samba ?
>>>
>>> Rowland
>>
>> it is Debian GNU/Linux Wheezy,
2019 Sep 23
2
Repacking database from v1 to v2 format: how long does it take?
hi all,
I updated a small domain with 8k object to samba-4.11.0 and the database
conversion from v1 to v2 didn't take a noticeable time.
On the other hand, in a larger domain with 67k object, where the
sudo ./bin/samba-tool dbcheck --cross-ncs --fix
takes ~40 minutes, 2 hours and half were not enough to complete the
conversion.
Is it a couple of hours something expected if dbcheck takes so
2018 Aug 29
6
gencache.tdb size and cache flush
Hi all,
I have a midsize AD domain with some 50k users but only 100 workstations
joined.
Sometimes I find server CPU throttling at 100%. In order to let it drop
and have smooth performance I delete cache:
systemctl stop samba
net cache flush
systemctl start samba
First of all, is it needed a samba stop to flush the cache?
Even if cache flush does the job to restore performance, I am clueless
2015 Jun 03
2
No builtin nor plugin backend for ldapsam found
> Hmm, '--with-ldap' is the default, so you don't really need to give it,
> what OS are you compiling on ? what extra packages did you install
> before you compiled samba ?
>
> Rowland
it is Debian GNU/Linux Wheezy, with:
ii libldap2-dev:i386 2.4.31-2
i386 OpenLDAP development libraries
ii libsasl2-dev
2018 Feb 16
2
idmap config ad: can't resolve domain users' uids
Il 16/02/18 13:43, Rowland Penny via samba ha scritto:
> On Fri, 16 Feb 2018 13:10:16 +0100
> Francesco Malvezzi via samba <samba at lists.samba.org> wrote:
>
>>
>> So just to recap: there were two problems:
>>
>> 1) the syntax mistake in smb.conf pointed up before;
>
> This wouldn't have helped.
>
>> 2) a logical mistake because wbinfo
2004 Dec 14
2
Issues with trustdom on 3.0.9
I upgraded from 2.2.12 (and kept my tdb files -- it is a possibility that
this is a part of my problem, but let me run it by you anyway). I'm
attempting to do a domain trust between my production domain and a test
domain. However, on my production domain, I have the following problem:
# /products/samba/bin/net rpc trustdom list -U novosirj
Password:
Trusted domains list:
NWK-DEV
2007 Aug 25
1
Bug in replace parameter on file types?
Part of my authentication setup is to keep clients'' secrets.tdb for
Samba/Winbind on the puppetmaster. Since secrets.tdb contains the
username/password for an Active Directory machine account, it will get
changed by Winbind periodically, and I don''t want it those changes to
get reverted by puppet. So I''ve got active-directory-member.pp, last
modified August 19, with