Displaying 20 results from an estimated 1000 matches similar to: "Lost Default Domain Controller Policy and Default Domain Policy"
2024 Dec 30
1
Replacing one of my Samba DCs
I started with two Samba DCs running 4.14.7 (camus and cristal). I am
replacing them with newer OS and Samba versions with an eye to get
everything current. At this point, I have taken the baby step of adding a
third server running 4.15.13 (frangelico). I have added the new system to
the domain, it is participating as a DC and replication is working nicely.
After a few days, I transferred all the
2023 Nov 17
0
TSIG error with server: tsig verify failure - Failed DNS update with exit code 5
I have been trying to figure out this problem for a couple weeks no with no
luck. Out of the blue, I started getting TSIG errors on my Samba AD DC. I
pulled the logging extract below after turning up the log level to 10 and
waiting for a reoccurrence. These errors will typically happen every few
hours with one to three occurrences withing the same second. Can anybody
tell from this what Samba is
2025 Mar 25
1
Could not convert sid S-0-0: NT_STATUS_NONE_MAPPED every time sudo is executed
I recently upgraded my Samba Domain Member server that provides a share for
Windows clients to write their backups to. The backup clients use an AD
credential to connect to the share, so individuals are not connecting to the
share. This works well and has for years. However, when I upgraded to Samba
v4.21.3 (built from source, same distro as my Samba AD DCs), I started
getting my logs cluttered up
2019 May 16
0
GPO-Error
On 16/05/2019 09:00, Stefan Kania via samba wrote:
> Hello,
>
> I have the following error when checking for GPOs for a single user,
> listing all GPOs is working:
> ------------------
>
> root at tn2-debian1:~# samba-tool gpo listall
> GPO : {31B2F340-016D-11D2-945F-00C04FB984F9}
> display name : Default Domain Policy
> path :
>
2013 Nov 15
0
gpo not working
Hello people:
First, excuse any misspelling, english is not my mother tongue
I'm triying a simple gpo, put a fixed image as wallpaper on all the pc
connected to the dc but is not working.
Using the remote administration tool had has defined an Organizational
Unit with one user and defined a policy with two restrictions
1) use a shared image [ \\dc\common\backgroud.jpg ] as wallpaper
2)
2019 May 16
0
GPO-Error
Hai Stefan,
What is the samba version your running now?
Im now at 4.10.3 with my DC's and the command :
samba-tool gpo list username
Then it does show the GPO's for the user.
If you on 4.10, check if these are installed :
ii python3 3.5.3-1 amd64 interactive high-level object-oriented language (default python3 version)
ii
2016 Jan 14
0
Cannot add a new GPO opject at GPMC on win7
Hi, guys!
Have some trouble with adding a new GPO.
If i add a new GPO it says me "The parametr is incorrect"
I use RSAT on win7.
I have an AD DC based on samba 4.1.14 on FreeBSD 10.1
Evrything else working fine/
Here is my smb.conf
# Global parameters
[global]
workgroup = DEVCOM
realm = DEV.COM.UA
netbios name = WIZARD
server role = active directory domain controller
#server services =
2015 May 01
0
After the classicupgrade from samba3 to sernet-samba-4.2.1 , users are not able to remote desktop anymore
correct.
bug still exists, just tested also on latest git master.
see : https://bugzilla.samba.org/show_bug.cgi?id=11061
temp solution.
try adding :
auth methods = sam, winbind
to smb.conf on the dc and restart the DC.
Greetz,
Louis
>-----Oorspronkelijk bericht-----
>Van: mariopiorusso at ie.ibm.com
>[mailto:samba-bounces at lists.samba.org] Namens Mario Pio Russo
2020 Feb 26
0
sysvolcheck and aclcheck generates error
Hi,
Search on the net but not getting enough information to resolve the issue.
As per suggestion to check the sysvol but mine got issues.
Currently using CentOS 8.1.1911 and a compiled samba 4.11.4 based on Fedora
31.
I tried also to delete the broken GPO
policy E4108E65-68AB-4E2D-9A00-A9063B1558E3 but I can't delete it (using
samba-tool gpo del {31B2F340-016D-11D2-945F-00C04FB984F9}
2019 May 16
5
GPO-Error
Hello,
I have the following error when checking for GPOs for a single user,
listing all GPOs is working:
------------------
root at tn2-debian1:~# samba-tool gpo listall
GPO : {31B2F340-016D-11D2-945F-00C04FB984F9}
display name : Default Domain Policy
path :
\\example2.net\sysvol\example2.net\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}
dn :
2015 May 01
0
After the classicupgrade from samba3 to sernet-samba-4.2.1 , users are not able to remote desktop anymore
2015-05-01 15:08 GMT+02:00 Mario Pio Russo <mariopiorusso at ie.ibm.com>:
> Thanks Luis
>
> I've changed the smb.conf as you said, now it looks like this:
>
>
> root at ccdc-samba4:~# cat /etc/samba/smb.conf
> # Global parameters
> [global]
> workgroup = CCDC
> realm = CCDC.LAN
> netbios name = CCDC-SAMBA4
> server role
2019 May 16
1
GPO-Error
Ok, so yesterday it worked.
Can you run this for me and mail me the output, i have a quick check.
https://raw.githubusercontent.com/thctlo/samba4/master/samba-collect-debug-info.sh
And
https://raw.githubusercontent.com/thctlo/samba4/master/samba-check-db-repl.sh
Last, have you check for corrupted filesystem and/or file/folders?
Any updates done last days?
Now maybe, just maybe, and this
2015 May 01
3
After the classicupgrade from samba3 to sernet-samba-4.2.1 , users are not able to remote desktop anymore
Good Day All
I have a current working configuration of sernet-samba-4.2.1, created by
upgrading from a samba3 PDC using the classic upgrade.
Now, I have added a windows 2008 machine to the domain and I'm using the AD
snap in tools in order to browse the domain.
I can see all the users and groups and they have been imported correctly.
However I am able to remote desktop to the domain
2015 May 01
0
After the classicupgrade from samba3 tosernet-samba-4.2.1 , users are not able to remote desktop anymore ( bug11061 )
ok this is my smb.conf file now
# Global parameters
[global]
workgroup = CCDC
realm = CCDC.LAN
netbios name = CCDC-SAMBA4
server role = active directory domain controller
idmap_ldb:use rfc2307 = yes
dns forwarder = 9.0.138.50
##For debugging
dcerpc endpoint servers = epmapper, wkssvc, rpcecho, samr,
netlogon, lsarpc, spoolss,
2015 May 01
0
After the classicupgrade from samba3 to sernet-samba-4.2.1 , users are not able to remote desktop anymore ( bug11061 )
while im reading..
im seeing :
getfacl: Removing leading '/' from absolute path names
# file: var/lib/samba/sysvol
# owner: root
# group: 544
your using :
idmap_ldb:use rfc2307 = yes
but i dont see a complete smb.conf for a rfc2307 setup.
please also read : https://wiki.samba.org/index.php/RFC2307_backend
so im puzzel what your backend is set to (AD or RID) and what the ranges
2015 May 01
0
After the classicupgrade from samba3 tosernet-samba-4.2.1 , users are not able to remote desktop anymore ( bug11061 )
On 01/05/15 15:29, Steve Ankeny wrote:
> On Samba AD DC most of these enpoint server are already running --
>
> dcerpc endpoint servers = epmapper, wkssvc, rpcecho, samr, netlogon,
> lsarpc, spoolss, drsuapi, dssetup, unixinfo, browser, eventlog6,
> backupkey, dnsserver, mapiproxy
>
> Use samba-tool testparm -v first before adding them to the smb.conf
>
> I say this
2015 May 01
2
After the classicupgrade from samba3 to sernet-samba-4.2.1 , users are not able to remote desktop anymore
Thanks Luis
I've changed the smb.conf as you said, now it looks like this:
root at ccdc-samba4:~# cat /etc/samba/smb.conf
# Global parameters
[global]
workgroup = CCDC
realm = CCDC.LAN
netbios name = CCDC-SAMBA4
server role = active directory domain controller
idmap_ldb:use rfc2307 = yes
dns forwarder = 9.0.138.50
auth methods = sam,
2015 May 01
1
After the classicupgrade from samba3 tosernet-samba-4.2.1 , users are not able to remote desktop anymore ( bug11061 )
On 05/01/2015 12:03 PM, Rowland Penny wrote:
> On 01/05/15 15:29, Steve Ankeny wrote:
>> On Samba AD DC most of these enpoint server are already running --
>>
>> dcerpc endpoint servers = epmapper, wkssvc, rpcecho, samr, netlogon,
>> lsarpc, spoolss, drsuapi, dssetup, unixinfo, browser, eventlog6,
>> backupkey, dnsserver, mapiproxy
>>
>> Use
2015 Jun 04
0
After the classicupgrade from samba3 to sernet-samba-4.2.1 , users are not able to remote desktop anymore ( bug11061 )
guys sorry to take this thread onboard once more, but I still can't get
this sorted.
I have compiled the latest tarball from samba, 4.2.2 . compilation works
fine and after that I am able to upgrade from samba 3 with the following
command:
samba-tool domain classicupgrade --dbdir=/var/lib/samba-ccdc1/dbdir/
--use-xattrs=yes --realm=ccdc.lan /etc/samba/smb-ccdc1.conf 2>&1 | tee
2025 Mar 26
1
Missing Policies folder in AD and /var/lib/samba/sysvol
Progress maybe...
I tried running sysvolcheck with strace and noticed something really odd....
This was in the trace:
getxattr("/var/lib/samba/sysvol/samdom.example.com/Policies/{6AC1786C-016F-11D2-945F-00C04fB984F9}",
"security.NTACL", NULL, 0) = -1 ENOENT
But I knew that folder was in my sysvol folder:
??? [drwxrwx--- root???? BUILTIN\administrators]