[Samba] Gentoo+OpenLDAP+Gentoo

2007-02-15 Thread [EMAIL PROTECTED]

Hey All,

   I'm trying to get a gentoo server setup running as a PDC for my 
office that I work for. I have followed the following HOWTO exactly... 
http://gentoo-wiki.com/HOWTO_LDAP_SAMBA_PDC and on step 4-4.2 
(http://gentoo-wiki.com/HOWTO_LDAP_SAMBA_PDC_Basic_Evaluation#Join_It.21)  
it fails. I have followed everything from that HOWTO exactly, although I 
did have to add one single change...


   When I got to the step where I'm supposed to start samba, it was 
failing. By doing some research online, I found that I needed to add the 
following line into the /etc/samba/smb.conf file.


winbind nested groups = no

When I tried to start samba the first time, it kept failing. When I did 
some research, I found a forum which said that fixed he problem... and 
it indeed did. The problem I am having right now, so that the windows 
system following  step 4-4.2 does not work. I get an error back...


--- Start Error 
Your computer could not be joined to the domain because of the following 
error has occured:


The user name could not be found.
--- End Error 

If I log in and just try to access the fileshares, it works fine. I can 
see my home directory fine, but when trying to join the domain, it fails.

ode
On the PDC I am running wireshark and I can see the "SAM LOGIN" 
requests, but something weird I found with them was that the User Name: 
field in the packet was either the machine name "TESTINGBOX$" or it was 
blank. If never passed the user name I entered "cjamieson".



The domain/workgroup I am using is set to  "borran"
The test user I added is "cjamieson"
The samba NETBIOS name is "PDC"

I am running this in VMWare to evaluate how well of solution samba+ldap 
is for our office. So far I have been getting no help from #samba on 
freenode, so I was suggest by #samba-technical to contact the mailing lists.
Does anyone have experiance with this, or have some information which 
could help me get this figured out?


Please and Thank you VERY much to anyone who can help.

Colton
--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] User name mapping on Active Directory

2007-02-15 Thread Brijesh Shukla

Hi Active Directory and Samba People
Could you Please teach me, if there is any user name (Active directroy)
mapping functionality is available in active directory similar to SAMBA
(example .putiing the statement "username map=/etc/samba/user.map" in
etc/smb.conf file), If yes Kindly let me know..
Thanks to read my query..
Brijesh Shukla
--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] smb4k client

2007-02-15 Thread James Lockie

Rashid N. Achilov wrote:

On Friday 16 February 2007 10:20, James Lockie wrote:
  

I am trying to get smb4k (KDE) client working.
It displays the computers on the network but not the shares (localhost 
has the only share that shows up :-().



Are you configured SMB4K? It has many configuration options, please do 
Configure Smb4k first, when didn't done. SMB4K works fine for my FreeBSD 6.2 
box, latest version is 0.8.0
  

Fixed, I set the samba|net||protocol hint to RAP.
It says old but it works with all WinXP systems. :-)

--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: Fwd: Re: [Samba] user add script, machine add script

2007-02-15 Thread Patrick Schoenfeld
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Hi,

Daniel Müller schrieb:
> [...]
> Is there a plan in the future to have a central administration within the 
> samba package?

i don't know if there is a plan to include a central administration
within the samba package. But there are enough possibilites to manage
samba with 3rd party - comfortable. usrmngr from NT4 is a possibility
and works like a charm if all commands in the config are configured
correctly. If you do use an LDAP setup you could e.g. do this with
ldapscripts or smbldap-tools - examples are included.

Other way around there is: LAM, phpldapadmin, GoSA, where the last one
may be the advanced solution for managing samba. Okay, i see everything
needs a working LDAP setup.

Best Regards

Patrick

> 
> 
>  Original-Nachricht 
> Datum: Thu, 08 Feb 2007 18:22:52 +0100
> Von: "Daniel Müller" <[EMAIL PROTECTED]>
> An: samba@lists.samba.org
> CC: 
> Betreff: [Samba] user add script, machine add script
> 
>> I am using samba 3.024 on a suse 9.3 workstation.Everythings is working as
>> it should but add users with the add user script from Microsofts usrmngr
>> and Machines with the srvmgr from Win clients.
>> The funny is I can add, delete groups put users into groups.
>> Did someone manage this?
>>
>>
>> greetings 
>> Daniel
>> -- 
>> "Feel free" - 10 GB Mailbox, 100 FreeSMS/Monat ...
>> Jetzt GMX TopMail testen:
>> http://www.gmx.net/de/go/topmail?ac=OM.GX.GX003K11713T4783a
>> -- 
>> To unsubscribe from this list go to the following URL and read the
>> instructions:  https://lists.samba.org/mailman/listinfo/samba
> 

-BEGIN PGP SIGNATURE-
Version: GnuPG v1.4.6 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFF1VCQTKIzE6LY9r8RAl5fAJ9XYRVS4U2o8ATiOJz1Aacps0tk3gCgg7/1
7VMoBltn/eIEHpNvWyUAUTg=
=Zk6g
-END PGP SIGNATURE-
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] smb4k client

2007-02-15 Thread Rashid N. Achilov
On Friday 16 February 2007 10:20, James Lockie wrote:
> I am trying to get smb4k (KDE) client working.
> It displays the computers on the network but not the shares (localhost 
> has the only share that shows up :-().

Are you configured SMB4K? It has many configuration options, please do 
Configure Smb4k first, when didn't done. SMB4K works fine for my FreeBSD 6.2 
box, latest version is 0.8.0
-- 
   With Best Regards.
   Rashid N. Achilov (RNA1-RIPE), Web: http://www.askd.ru/~shelton
   OOO "ACK" telecommunications administrator, e-mail: achilov-rn [at] askd.ru
   PGP: 83 CD E2 A7 37 4A D5 81 D6 D6 52 BF C9 2F 85 AF 97 BE CB 0A
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Fwd: Re: [Samba] user add script, machine add script

2007-02-15 Thread Daniel Müller
Hello to all,
after noone bother my subject. I think I'm all alone making mistakes 
on this thing. But I should really know if it is possible to mange 
the administration  of samba in an comfortable way. After all the years I
worked with it I never did manage it to be in an sufficent manner.
Is there a plan in the future to have a central administration within the samba 
package?


 Original-Nachricht 
Datum: Thu, 08 Feb 2007 18:22:52 +0100
Von: "Daniel Müller" <[EMAIL PROTECTED]>
An: samba@lists.samba.org
CC: 
Betreff: [Samba] user add script, machine add script

> I am using samba 3.024 on a suse 9.3 workstation.Everythings is working as
> it should but add users with the add user script from Microsofts usrmngr
> and Machines with the srvmgr from Win clients.
> The funny is I can add, delete groups put users into groups.
> Did someone manage this?
> 
> 
> greetings 
> Daniel
> -- 
> "Feel free" - 10 GB Mailbox, 100 FreeSMS/Monat ...
> Jetzt GMX TopMail testen:
> http://www.gmx.net/de/go/topmail?ac=OM.GX.GX003K11713T4783a
> -- 
> To unsubscribe from this list go to the following URL and read the
> instructions:  https://lists.samba.org/mailman/listinfo/samba

-- 
NEU +++ 3DSL von 1&1 mit extra Vorteil für GMX Besteller +++
Jetzt Einführungsangebot sichern: http://www.gmx.net/de/go/dsl

-- 
Ist Ihr Browser Vista-kompatibel? Jetzt die neuesten 
Browser-Versionen downloaden: http://www.gmx.net/de/go/browser
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] Getting error Samba SID does not belong to our domain

2007-02-15 Thread ashok cvs

Hi all

we have samba 3.0.21c with OpenLDAP backend as PDC and also 4 BDC's
Suddenly on PDC we are getting these error messages in /var/log/messages
I am unable to register any system to the domain. niether able to logon to
the domain.
##
Feb 15 11:14:32 msdpl smbd[18212]: [2007/02/15 11:14:32, 0]
lib/util_sock.c:send_smb(765)
Feb 15 11:14:32 msdpl smbd[18212]:   Error writing 5 bytes to client. -1.
(Connection reset by peer)
Feb 15 11:14:34 msdpl smbd[18217]: [2007/02/15 11:14:34, 0]
passdb/pdb_ldap.c:ldapuser2displayentry(4006)
Feb 15 11:14:34 msdpl smbd[18217]:   sid
S-1-5-21-3963901886-956592875-555457773-500 does not belong to our domain
Feb 15 11:14:34 msdpl smbd[18217]: [2007/02/15 11:14:34, 0]
passdb/pdb_ldap.c:ldapuser2displayentry(4006)
Feb 15 11:14:34 msdpl smbd[18217]:   sid
S-1-5-21-3963901886-956592875-555457773-2998 does not belong to our domain
Feb 15 11:14:34 msdpl smbd[18217]: [2007/02/15 11:14:34, 0]
passdb/pdb_ldap.c:ldapuser2displayentry(4006)
Feb 15 11:14:34 msdpl smbd[18217]:   sid
S-1-5-21-3963901886-956592875-555457773-3004 does not belong to our domain
Feb 15 11:14:34 msdpl smbd[18217]: [2007/02/15 11:14:34, 0]
passdb/pdb_ldap.c:ldapuser2displayentry(4006)
Feb 15 11:14:34 msdpl smbd[18217]:   sid
S-1-5-21-3963901886-956592875-555457773-3006 does not belong to our domain
Feb 15 11:14:35 msdpl smbd[18217]: [2007/02/15 11:14:35, 0]
passdb/pdb_ldap.c:ldapuser2displayentry(4006)
Feb 15 11:14:35 msdpl smbd[18217]:   sid
S-1-5-21-3963901886-956592875-555457773-3008 does not belong to our domain
Feb 15 11:14:35 msdpl smbd[18217]: [2007/02/15 11:14:35, 0]
passdb/pdb_ldap.c:ldapuser2displayentry(4006)
Feb 15 11:14:35 msdpl smbd[18217]:   sid
S-1-5-21-3963901886-956592875-555457773-3010 does not belong to our domain
Feb 15 11:14:35 msdpl smbd[18217]: [2007/02/15 11:14:35, 0]
passdb/pdb_ldap.c:ldapuser2displayentry(4006)
Feb 15 11:14:35 msdpl smbd[18217]:   sid
S-1-5-21-3963901886-956592875-555457773-3012 does not belong to our domain
Feb 15 11:14:35 msdpl smbd[18217]: [2007/02/15 11:14:35, 0]
passdb/pdb_ldap.c:ldapuser2displayentry(4006)
Feb 15 11:14:35 msdpl smbd[18217]:   sid
S-1-5-21-3963901886-956592875-555457773-3014 does not belong to our domain
Feb 15 11:14:35 msdpl smbd[18217]: [2007/02/15 11:14:35, 0]
passdb/pdb_ldap.c:ldapuser2displayentry(4006)
Feb 15 11:14:35 msdpl smbd[18217]:   sid
S-1-5-21-3963901886-956592875-555457773-3016 does not belong to our domain
#
when typing net rpc info it gives the following error
rpc_client/cli_pipe.c:rpc_api_pipe(790) rpc_api_pipe: Remote machine
MEDHAPDC pipe \samr fnum 0x7008returned critical error. Error was Call timed
out: server did not respond after 1 milliseconds [2007/02/15 21:12:52,
0] libsmb/clientgen.c:cli_rpc_pipe_close(375) cli_rpc_pipe_close: cli_close
failed on pipe \samr, fnum 0x7008 to machine MEDHAPDC. Error was Call timed
out: server did not respond after 1 milliseconds this is net rpc error

but when we type
#net getlocalsid  it gives the SID
S-1-5-21-3963901886-956592875-555457773

Actually my server's SID is the same as above.

what does the above error means .

The below is my smb.conf
###
[global]

 workgroup = msdpl.com
 netbios name = medhapdc
 passdb backend = ldapsam:ldap://msdpl.com
 server string = Domain Controller
 hosts allow = 192.168.128. 192.168.129. 192.168.130. 127.
 security = user
 encrypt passwords = yes
 socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
 interfaces = eth0,lo
 printing = cups
 disable spoolss = Yes
 printcap name = cups
 max print jobs = 100
 enable privileges = yes
 log level = 2
 password level = 8
 username level = 8
 bind interfaces only = yes
 local master = Yes
 os level = 65
 domain master = yes
 preferred master = yes
remote browse sync = 192.168.130.3
 null passwords = no
 hide unreadable = yes
 hide dot files = yes
 domain logons = yes
 logon script = %u.bat
 logon path =
 logon drive = X:
 logon home =
 wins support = yes
 name resolve order = wins lmhosts host bcast
 dns proxy = no
 time server = yes
 log file = /var/log/samba/%m.log
 max log size = 50
 nt acl support = yes
 ldap passwd sync = yes
 add user script = /usr/local/sbin/smbldap-useradd -m "%u"
 delete user script = /usr/local/sbin/smbldap-userdel "%u"
 add machine script = /usr/local/sbin/smbldap-useradd -w "%m"
 add group script = /usr/local/sbin/smbldap-groupadd -p "%g"
 add user to group script = /usr/local/sbin/smbldap-groupmod -m "%u" "%g"
 delete user from group script = /usr/local/sbin/smbldap-groupmod -x "%u"
"%g"
 set primary group script = /usr/local/sbin/smbldap-usermod -g '%g' '%u'
 ldap delete dn = Yes
 ldap ssl = no
 ldap suffix = dc=msdpl,dc=com
 ldap admin dn = cn=manager,dc=msdpl,dc=com
 ldap group suffix = ou=Groups
 ldap user suffix = ou=People

[Samba] Samba 3.0.24 + OpenLDAP

2007-02-15 Thread dev
I'm using the above version of Samba with OpenLDAP.  I also use the
smbldap-useradd script to add users, like below.  I'm finding that I also
have to have an account in /etc/passwd for the user to get in otherwise I
get the message below.  I thought that the ldapsam:ldap://localhost/ would
not require the /etc/passwd entry.  What did I miss?

# Adding a User (doesn't work)
smbldap-useradd -a -s /bin/false -c'Test User' -A 1 -N'Test User' test_user

# The errors I see
 [2007/02/15 20:00:39, 0] passdb/pdb_get_set.c:pdb_get_group_sid(164)
   pdb_get_group_sid: Failed to find Unix account for busby
 [2007/02/15 20:00:39, 0] auth/auth_sam.c:check_sam_security(352)
   check_sam_security: make_server_info_sam() failed with
'NT_STATUS_NO_SUCH_USER'


# What's odd is that if I add a user to /etc/passwd with useradd then use
the smbldap-useradd script to add a user to LDAP it works fine.  I've
tried to tweak PAM and NSS to read ldap and it looks to work via `getent
passwd` test.  I can also see my users in ldap when I do ldapsearch for
the same thing Samba does.  Any ideas?

/djb

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] smb4k client

2007-02-15 Thread James Lockie

I am trying to get smb4k (KDE) client working.
It displays the computers on the network but not the shares (localhost 
has the only share that shows up :-().


The command line may give a clue.
This works:
#  smbclient  -L //compaq
but it prompts me for a password but I can just press return to get a 
list of shares.


--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: solved: Re: [Samba] Letter instead of A4 with driver installed via Samba's Point'n'Print

2007-02-15 Thread Kay Obermueller
Kay Obermueller schrieb:

>Chris Smith schrieb:
>
>
>  
>
>>>On Thursday 18 January 2007 17:51, you wrote:
>>> 
>>>
>>>  
>>>
>> 
>>
>>
>>
>Yes, and it printed already correctly as a remote printer from Linux and
>OS X. Page Size is set to A4.
>   
>
>  
>
>>>   
>>>
>>>
>>>Hmmm...cups updates the ppd in /etc/cups/ppd/ when the printer options are 
>>>set 
>>>ans I'm reasonably sure, but not certain, that it uses that ppd as a base 
>>>when doing cupsaddsmb. Maybe there's an old version 
>>>in /var/lib/samba/printers/W32X86 or wherever your distro puts it.
>>>
>>>Regardless you should be able to set the defaults via Windows by drilling 
>>>down 
>>>the printers folder on the server, right click on printer, choose 
>>>properties, 
>>>then from the Advanced tab select the box 'Printing Defaults...' and 
>>>continue.
>>>
>>>Chris
>>> 
>>>
>>>  
>>>
>> 
>>
>>
>>
>After I repeated cupsaddsmb I must have missed the correct menu in
>Windows to set the paper size. Since I set it in any menu I could find
>and tested printing with a brand new untouched Windows client everthing
>is fine and really works without any user intervention! Thank you.
>
>Kay
>
>
>  
>


Unfortunately this issue is still unsolved. But I had no time for the last 
weeks. Now I got the HP Laserjet 2200 reinstalled onto Samba and made it print 
A4 per default after first installation on a windows client but not the Minolta 
Magicolor 2200. That one showed A4 in it's properties, but still tried to print 
Letter on first printout. (I even thought on manipulating the little switch 
behind it's paper tray...)
Also setting defaults on the server doesn't work. And that would help very much.
What had an influence was to reinstall the HP Laserjets from a console in wich 
locales were set to de_DE.UTF-8 instead POSIX. Why not for the Magicolor?

Kay


-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] Newbie question, authentication with UNIX accounts, not smbusers/smbpasswd

2007-02-15 Thread Philip Gleghorn

Hi all,
I would like to access my RedHat Enterprise box which has Samba 3.0.9, 
by mapping a network drive from WinXP and specifying the UNIX 
account/password on the server. Is this possible? I can duplicate 
account usernames/passwords into smbusers/smbpasswd, but doing this for 
every user is a pain.

Thanks in advance for any suggestions or pointers,
Phil

--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] Problem with MacOSX and filenames ending in white space

2007-02-15 Thread Oliver Schulze L.

Hi,
I have an OSX Client to a Linux Samba server (samba-3.0.23c-4 on CentOS4)

When the client saves a filename that ends in one or more white spaces,
OSX create also files starting with a dot.
The filenames are correct in Linux but the OSX client see only garbage as
the filename.

I think is a problem with the .DS_Store file created by OSX.

If you delete the whitespace of the filename in OSX and then copy
the file, the problem is gone.

Is this a know issue between OSX and Samba, or is a problem with
OSX and any Windows server?

Many thanks
Oliver

--
Oliver Schulze L.   | Get my e-mail after a captcha in:
Asuncion - Paraguay | http://tinymailto.com/oliver 


--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] appears to be incompatibility between samba versions

2007-02-15 Thread Jay G. Scott

here's the latest.  i believe this points to a samba version
incompatibility.

on a new server, running samba 3.0.22, solaris 10.
client Mac could not get access, claimed password was wrong.
a windows PC did get access.

the log files showed that the password was correct for BOTH the
Mac and the pc.  i repeated this three times to make sure.
the samba 3.0.22 server thinks the password i gave it is fine,
but the client continues to say the password is wrong.

i down-revved the samba server to 3.0.7.
now the client Mac __can__ get it.  i can't find out what
the rev is on the Mac.

there was one Mac at 3.0.10 which was able to access the samba
server running 3.0.22, FWIW.

j.
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Should I upgrade Samba?

2007-02-15 Thread Gary Dale

Boaz Bezborodko wrote:

Currently I have a new server being set up with CentOS 4.4 (RedHat
Enterprise Linux 4.4) and the Samba binaries that come with it which are
version 3.010149.

I am something of a Linux newbie so I wanted to know if I should upgrade
to 3.0.24 and, if I should, why doesn't CentOS upgrade their binaries to
the latest Samba?

Thanks in advance.

Boaz
  
If it ain't broke, don't fix it. The version that CentOS provides works 
and is configured for their system. Moreover, you can get security 
patches for it.


If you have a compelling need for a feature that isn't present in your 
current version, you may want to consider upgrading. Otherwise, stick 
with the version distributed with CentOS.


--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] Should I upgrade Samba?

2007-02-15 Thread Boaz Bezborodko
Currently I have a new server being set up with CentOS 4.4 (RedHat
Enterprise Linux 4.4) and the Samba binaries that come with it which are
version 3.010149.

I am something of a Linux newbie so I wanted to know if I should upgrade
to 3.0.24 and, if I should, why doesn't CentOS upgrade their binaries to
the latest Samba?

Thanks in advance.

Boaz
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] UTF8 not working - solved.

2007-02-15 Thread Björn Jacke
On 2007-02-15 at 12:41 +0100 Dexter Filmore sent off:
> Adding iocharset=utf8 to the fstab options did the trick.
> Can't smbd announce this to mount.cifs?

this is not a matter of smbd<->cifs. It's a matter of cifs vfs having 
to decide what the system's locale charset is. I think the default is 
taken from the kernel configuration of CONFIG_NLS_DEFAULT.

Cheers
Bjoern
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Clients periodically disconnecting

2007-02-15 Thread Chris St. Pierre

Anyone have any ideas on this?  I'm really stuck scratching my head

Chris St. Pierre
Unix Systems Administrator
Nebraska Wesleyan University

Never send mail to [EMAIL PROTECTED]

On Tue, 13 Feb 2007, Chris St. Pierre wrote:


Samba 3.0.21c, RHEL4.

About a week ago, we restarted our Samba server because nmbd had run
amok.  Since that restart, our Apple clients have periodically
disconnected -- by most reports, they disconnect every 15-45 minutes.
It doesn't appear to be synchronized, i.e., every Mac on campus
doesn't disconnect at once, but only occasionally.  They get a message
similar to:

"A server you are using is no longer available.  Do you want to
continue trying to contact it?"

(This varies by exact OS revision, of course.)

Our Windows clients do not exhibit this behavior.

I turned up the logging for a few users for whom this was reliably
happening.  The following are the last few messages before it
disconnects:

[2007/02/13 10:08:57, 3] smbd/sec_ctx.c:set_sec_ctx(288)
 setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
[2007/02/13 10:08:57, 5] auth/auth_util.c:debug_nt_user_token(433)
 NT user token: (NULL)
[2007/02/13 10:08:57, 5] auth/auth_util.c:debug_unix_user_token(454)
  UNIX token of user 0
  Primary group is 0 and contains 0 supplementary groups
[2007/02/13 10:08:57, 5] smbd/uid.c:change_to_root_user(324)
 change_to_root_user: now uid=(0,0) gid=(0,0)
[2007/02/13 10:08:57, 5] lib/username.c:Get_Pwnam_alloc(290)
 Finding user jrandom
[2007/02/13 10:08:57, 5] lib/username.c:Get_Pwnam_internals(234)
 Trying _Get_Pwnam(), username as lowercase is jrandom
[2007/02/13 10:08:57, 5] lib/username.c:Get_Pwnam_internals(267)
  Get_Pwnam_internals did find user [jrandom]!

Any ideas?

Chris St. Pierre
Unix Systems Administrator
Nebraska Wesleyan University
--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba



--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


RE: [Samba] Solaris 10 and "store dos attributes"

2007-02-15 Thread Schaefer Jr, Thomas R.
The user wouldn't be able to write to the file at a command prompt
either..

[EMAIL PROTECTED]:~ -bash$ cat /etc/release 
  Solaris 10 3/05 s10_74L2a X86
   Copyright 2005 Sun Microsystems, Inc.  All Rights Reserved.
Use is subject to license terms.
Assembled 22 January 2005

[EMAIL PROTECTED]:~ -bash$ id
uid=241(schaefer) gid=203(stuff)

[EMAIL PROTECTED]:~ -bash$ touch a_file.txt

[EMAIL PROTECTED]:~ -bash$ ls -ld a_file.txt 
-rw-r--r--   1 schaefer stuff  0 Feb 15 08:04 a_file.txt

[EMAIL PROTECTED]:~ -bash$ echo blah >> a_file.txt 

[EMAIL PROTECTED]:~ -bash$ chmod u-w,g+w a_file.txt 

[EMAIL PROTECTED]:~ -bash$ ls -ld a_file.txt 
-r--rw-r--   1 schaefer stuff  5 Feb 15 08:04 a_file.txt

[EMAIL PROTECTED]:~ -bash$ echo blah >> a_file.txt 
-bash: a_file.txt: Permission denied

-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of James
Sent: Wednesday, February 14, 2007 1:58 PM
To: samba@lists.samba.org
Subject: [Samba] Solaris 10 and "store dos attributes"

I'm having trouble with files being marked read-only in Windows because
the Solaris file owner does not have write-permissions on the file;
group-write is
allowed:

-r--rw   1 user  group  32 Feb 13 14:19 testfile.txt

I thought that setting "store dos attributes = yes" for this share would
allow the "read only" setting to be stored in extended attributes, but
it doesn't seem to be working - does Solaris 10 support extended
attributes as needed by Samba?

I'm using Samba 3.0.24 on Solaris 10, configuration file or the share
below:

[TEST]
   comment = server vartmp
   path = /var/tmp
   browseable = yes
   public = yes
   guest ok = yes
   writable = yes
   force create mode = 0664
   force directory mode = 0775
   map hidden = no
   map system = no
   map archive = no
   ea support = yes
   store dos attributes = yes

Thanks in advance -- James

--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba
--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Domain Admins with Samba 3.024

2007-02-15 Thread Gary Martin
I am having the exact same problem as you.  When you say "I built fresh
rpms", do you mean that you downloaded the srpms and used the rpmbuild
command?  Could you post what you did in a step by step format.

Thanks,

Gary

On Wed, 2007-02-14 at 21:48 -0700, Neil Jolly wrote:
> On 14-Feb-07, at 8:13 AM, Neil Jolly wrote:
> 
> >
> > 
> >> Please read the changelog !
> >>
> >> There are many change between 3.0.10 and 3.0.2x
> >> In 3.0.2x samba version, privilege are enabled are must be used !
> >>
> 
> I resolved the issue. I built fresh rpms, completely uninstalled the  
> old install of samba, installed the fresh rpms, and restored the  
> configuration files. Worked like a charm this time round. Not sure  
> what the issue whas, but I'm glad to have it resolved.
> 
> Thanks for the help, and suggestions.
> 
> Neil Jolly
> #12 800 Bowcroft Place
> Cochrane, Alberta
> Phone: (403) 688-7516
> Fax:   (403) 851-0873
> 
> 

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] ClearCase Interop problem with recent Samba versions

2007-02-15 Thread Volker Lendecke
On Thu, Feb 15, 2007 at 07:47:26AM -0500, Eric Boehm wrote:
> I see from the release notes for 3.0.23 that the defaults for these
> two settings were changed to yes.
> 
> Does this have implications for uses other than ClearCase?
> Why did it affect ClearCase?

No idea for both questions, sorry.

Volker
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] ClearCase Interop problem with recent Samba versions

2007-02-15 Thread Eric Boehm
On Wed, Feb 14, 2007 at 06:03:47PM +0100, Volker Lendecke wrote:
> "Volker" == Volker Lendecke <[EMAIL PROTECTED]> writes:

Volker> On Wed, Feb 14, 2007 at 11:54:25AM +0100, Masopust,
Volker> Christian wrote:
>> attached you'll find the level 10 logs and "snoop" output as i
>> don't have tcpdump installed on this sun-server (if needed i
>> could).

Volker> Try to set

Volker> host msdfs = no 
Volker> msdfs root = no

Volker> in the [global] section.

I see from the release notes for 3.0.23 that the defaults for these
two settings were changed to yes.

Does this have implications for uses other than ClearCase?
Why did it affect ClearCase?

-- 
Eric M. Boehm  /"\  ASCII Ribbon Campaign
[EMAIL PROTECTED]   \ /  No HTML or RTF in mail
X   No proprietary word-processing
Respect Open Standards / \  files in mail
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] UTF8 not working - solved.

2007-02-15 Thread Dexter Filmore
Adding iocharset=utf8 to the fstab options did the trick.
Can't smbd announce this to mount.cifs?

Dex

-- 
-BEGIN GEEK CODE BLOCK-
Version: 3.12
GCS d--(+)@ s-:+ a- C UL++ P+>++ L+++> E-- W++ N o? K-
w--(---) !O M+ V- PS+ PE Y++ PGP t++(---)@ 5 X+(++) R+(++) tv--(+)@ 
b++(+++) DI+++ D- G++ e* h>++ r* y?
--END GEEK CODE BLOCK--

http://www.stop1984.com
http://www.againsttcpa.com
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] UTF8 not working

2007-02-15 Thread Dexter Filmore
Am Donnerstag, 15. Februar 2007 09:40 schrieb Björn Jacke:
> On 2007-02-14 at 22:46 +0100 Dexter Filmore sent off:
> > //xerxes/media /mnt/xerxes/smb/media cifs credentials=,rw,users 0 0
>
> there is a iocharset mount option. try setting that to utf8.
>
> Björn

Das war's, danke.

-- 
-BEGIN GEEK CODE BLOCK-
Version: 3.12
GCS d--(+)@ s-:+ a- C UL++ P+>++ L+++> E-- W++ N o? K-
w--(---) !O M+ V- PS+ PE Y++ PGP t++(---)@ 5 X+(++) R+(++) tv--(+)@ 
b++(+++) DI+++ D- G++ e* h>++ r* y?
--END GEEK CODE BLOCK--

http://www.stop1984.com
http://www.againsttcpa.com
--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] can't see both my slackboxes in my internal network

2007-02-15 Thread )\\(@sS

hello everyone,
for a couple of days now and i have a 2nd slackware 10.2 pc in my home
network.
i carried out the same steps to enable me to access my home folders on this
slackbox too as i did for the oter pc.
basically i did the absolutely minimum:
-renamed the smb.conf-sample that came with slack10.2 to smb.conf
-changed the 'server name' option to smth unique for this pc
-changed the 'host allow' option to see my internal network.
-added user nass with smbpasswd.

now i can see this new slackbox pc in my internal network (from my winXP
network places) but not the other one!
if i remove the new pc from the network then i can see the old one again!
any ideas?
thank you in advance for your help
nass
--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] [home] shares not closing ?!

2007-02-15 Thread Collen Blijenberg

Hello...

i have a small problem, in our samba domain, the home shares from users 
are not closing the connection.

is there a way to make samba do this. i know it's an actual windows problem.

now i have over 20 connections to homes shares from a view computers
and i dislike the fact that users can see the other home shares listed 
under the pdc share list.


i tried deadtime = 15, but no luck here...

sugestions ?!?!?!

Cheers, Collen


--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] UTF8 not working

2007-02-15 Thread Björn Jacke
On 2007-02-14 at 22:46 +0100 Dexter Filmore sent off:
> //xerxes/media /mnt/xerxes/smb/media cifs credentials=,rw,users 0 0

there is a iocharset mount option. try setting that to utf8.

Björn
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


RE: [Samba] ClearCase Interop problem with recent Samba versions

2007-02-15 Thread Masopust, Christian
> 
> On Wed, 2007-02-14 at 18:03 +0100, Volker Lendecke wrote:
> > On Wed, Feb 14, 2007 at 11:54:25AM +0100, Masopust, Christian wrote:
> > > attached you'll find the level 10 logs and "snoop" output 
> as i don't have
> > > tcpdump installed on this sun-server (if needed i could).
> > 
> > Try to set
> > 
> > host msdfs = no
> > msdfs root = no
> > 
> > in the [global] section.
> 
> IIRC you need to reboot the client(s) if you do that ...
> 
> Simo.

yes, that was true, i had to reboot the client!

chris
--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


RE: [Samba] ClearCase Interop problem with recent Samba versions

2007-02-15 Thread Masopust, Christian

Hello Volker,

thanks a lot for your help! with the settings you mentioned below everything 
works
now !!!

Christian


--
"I sense much NT in you, NT leads to Blue Screen. 
Blue Screen leads to downtime, downtime leads to suffering. NT is the path to 
the darkside." 

- Unknown Unix Jedi  

> -Original Message-
> From: Volker Lendecke [mailto:[EMAIL PROTECTED] On Behalf Of 
> Volker Lendecke
> Sent: Wednesday, February 14, 2007 6:04 PM
> To: Masopust, Christian
> Cc: samba@lists.samba.org
> Subject: Re: [Samba] ClearCase Interop problem with recent 
> Samba versions
> 
> On Wed, Feb 14, 2007 at 11:54:25AM +0100, Masopust, Christian wrote:
> > attached you'll find the level 10 logs and "snoop" output 
> as i don't have
> > tcpdump installed on this sun-server (if needed i could).
> 
> Try to set
> 
> host msdfs = no
> msdfs root = no
> 
> in the [global] section.
> 
> Volker
> 
--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


[Samba] Solaris 10 + Samba 3.0.24 = AD-Member Win2003Server

2007-02-15 Thread Neuwald , Björn
Hi!

I have problems with my Samba 3.0.24 on my Solaris 10 machine.
I hope u can help me?
I "google'd" a lot and asked many people but nobody can help me.

So... I have...
Solaris 10 with Samba 3.0.24
Kerberos installed
OpenLDAP installed
OpenSSL installed

I configured and compiled Samba 3.0.24 (Options: ./configure 
--prefix=/usr/local/samba --with-winbind --with-ads --with-ldap 
--with-krb5=/usr/local --with-acl-support )

Know i want Samba to be a member of the ADS Domain.
I maked an "Keytab"-File with the following command on the Windows 2003 
Domaincontroller:
C:\>ktpass -princ host/[EMAIL PROTECTED] -mapuser XXX\user1  -pass * -out 
c:\user1.keytab

After this i configured  SWAT...and SWAT was working good.

Then i registered the "Keytab"-File with the following commands:
#/usr/local/sbin/ktutil
#ktutil: rkt /usr/local/krb5/usr1.keytab
#ktutil: wkt /usr/local/krb5/krb5.keytab

I set copied the "libnss_winbind.so" and set the symbolic links.
#cp .../samba-3.0.24/source/nsswitch/libnss_winbind.so  /usr/lib
#ln -s libnss_winbind.so libnss_winbind.so.1
#ln -s libnss_winbind.so nss_winbind.so.1
#ln -s libnss_winbind.so nss_winbind.so.2

After this is configured Kerberos...edited "krb5.conf" like this:

# krb5.conf template
# In order to complete this configuration file
# you will need to replace the  placeholders
# with appropriate values for your network.
#
[libdefaults]
ticket_lifetime = 24000
default_realm = XXX..DE
default_tgs_enctypes = des-cbc-crc des-cbc-md5
default_tkt_enctypes = des-cbc-crc des-cbc-md5

[realms]
NTBV.BZ-FREIBURG.DE = {
kdc = server1.xx..de
kdc = server2.xx..de
admin_server = server1.xx..de
default_domain = xx..de
}

[domain_realm]
.mn.freinet.de = XXX..DE
mn.freinet.de = XXX..DE

[logging]
default = FILE:/var/krb5/kdc.log
kdc = FILE:/var/krb5/kdc.log
kdc_rotate = {

# How often to rotate kdc.log. Logs will get rotated no more
# often than the period, and less often if the KDC is not used
# frequently.

period = 1d

# how many versions of kdc.log to keep around (kdc.log.0, kdc.log.1, ...)

versions = 10
}

[appdefaults]
kinit = {
renewable = true
forwardable= true
}

Now i edited the "/etc/nscd.conf", I added the following:
...
#   logfile /var/adm/nscd.log
enable-cachehosts   no
enable-cachepasswdno
enable-cachegroup   no
...

And the "/etc/nsswitch.conf" i edited too:

passwd: files winbind
group:  files winbind


Via "SWAT", i configured Samba like this:

# Samba config file created using SWAT
# from 172.16.124.6 (172.16.124.6)
# Date: 2006/09/11 15:14:18
[global]
workgroup = XX
realm = XX..DE
netbios name = test1
server string = SambaTest
interfaces = 192.168.20.19
bind interfaces only = Yes
security = ADS
password server = server1.xx.xxx.de
log file = /user/local/samba/log/log.%m
ldap ssl = No
idmap uid = 5000-1
idmap gid = 5000-1
template homedir = /usr/local/samba/%D/%U
template shell = /bin/bash
winbind enum users = Yes
winbind enum groups = Yes
force create mode = 0775
force directory mode = 06775
[medianet]
comment = TestShare
path = /shared
valid users = @XX\group1,@XX\group4
read only = No

Then I Registered the Server in the Active Directory:
#kinit domainadmin
Password for [EMAIL PROTECTED]: 
#
#./net ads join
Using short domain name - XX
Joined 'test1' to realm 'XX.X.DE'#


Then i tested the following:

#/usr/local/samba/bin/wbinfo -u
XX\user1
XX\user2
XX\user3
XX\user4

# /usr/local/samba/bin/wbinfo -g
XX\group1
XX\group2
XX\group3
XX\group4
XX\group5

#/usr/local/samba/bin/net ads info
LDAP server: 192.168.20.1
LDAP server name: server1.XX..de
Realm: XX..DE
Bind Path: dc=XX,dc=,dc=DE
LDAP port: 389
Server time: Tue, 12 Sep 2006 14:10:57 MEST
KDC server: 192.168.20.1
Server time offset: 0

# id "XX\user1"
uid=5000(XX\user1) gid=5000(XX\group4)
 
# ./wbinfo -r "XX\user1"
group3
group4

I created a Test Share, like in the Samba config.
Valid User/group for the Share was the group1 ("@XX\group1") and group4 
("@XX\group2"), like configured in smb.conf.
The user user1 which have the primary-group group4 "XX\group4" and is also 
member of the group3 "XX\group3" 
must enter this share and should be allowed to enter it. Ok this works.

But when i want to enter an folder in this share, which i created in Solaris 
(for example "/shared/testfolder") and added the ACL: #setfacl -m 
g:"XX\group3":rwx /shared/testfolder, then the window on my windows machine 
appears, that i have not the