Re: [Samba] sambaPwdMustChange

2004-05-26 Thread lanrol
okey, and if I want to change it only 5 days, how can I do this?

szerda 26 mjus 2004 13:45 dtummal [EMAIL PROTECTED] ezt rta:
 Oh,

 Its done by MS Windows. I think the counter start warns at 15 days before
 password change.

 ---
 Emerson Henrique Kfuri Pereira

 Diviso de Atendimento e Consultoria
 CECOM - Reitoria - UFMG
 Telefone: 34994009
 ---

 [EMAIL PROTECTED] wrote on 25/05/2004

 17:49:35:
  Yes, I try it. It is cool, I set in samba to 90 days and I see it in
  usrmgr. :)
 
  But how can I send message to user (that he must change password) when

 user

  log into?
 
  kedd 25 mjus 2004 22:31 dtummal [EMAIL PROTECTED] ezt rta:
   Hi guy,
  
   You can use Micro$oft usrmgr to set account policies to you domain.
  
   ---
   Emerson Henrique Kfuri Pereira
  
   Divis?o de Atendimento e Consultoria
   CECOM - Reitoria - UFMG
   Telefone: 34994009
   ---
  
   [EMAIL PROTECTED] wrote on 25/05/2004
  
   17:10:35:
Hi guys!
   
I wanna to setup my 3.0.1 samba PDC (with tdbsam) to force user to

 change

password.
   
I read this:
   
When I set password lifetime to, say 90 days using
pdbedit -P maximum password age -C 7776000
   
Attribute Password must change is calculated using this formula :
   
sambaPwdMustChange = sambaPwdLastSet + 90 days.
   
Is it possible to get warning message before actually force user to
change their password, I mean is it possible to get this formula:
   
sambaPwdMustChange = (sambaPwdLastSet + 90 days) - 10 days
   
pdbedit setting is okay.
   
but what about sambaPwdMustChange? Should I write it to my smb.conf?
   
But, I write it and testparm says:
   Unknown parameter encountered: sambaPwdMustChange
   Ignoring unknown parameter sambaPwdMustChange
   
So, how can I do this?
   
--
   
regars, Roland
--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba--
  
   To unsubscribe from this list go to the following URL and read the
   instructions:  http://lists.samba.org/mailman/listinfo/samba
 
  --
 
  Udv, Roland
  --
  To unsubscribe from this list go to the following URL and read the
  instructions:  http://lists.samba.org/mailman/listinfo/samba

-- 

Udv, Roland
--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] sambaPwdMustChange

2004-05-25 Thread lanrol
Hi guys!

I wanna to setup my 3.0.1 samba PDC (with tdbsam) to force user to change 
password.

I read this:

When I set password lifetime to, say 90 days using 
pdbedit -P maximum password age -C 7776000

Attribute Password must change is calculated using this formula :

sambaPwdMustChange = sambaPwdLastSet + 90 days.

Is it possible to get warning message before actually force user to
change their password, I mean is it possible to get this formula:

sambaPwdMustChange = (sambaPwdLastSet + 90 days) - 10 days

pdbedit setting is okay.

but what about sambaPwdMustChange? Should I write it to my smb.conf?

But, I write it and testparm says:
Unknown parameter encountered: sambaPwdMustChange
Ignoring unknown parameter sambaPwdMustChange

So, how can I do this?

-- 

regars, Roland
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


Re: [Samba] sambaPwdMustChange

2004-05-25 Thread lanrol
Yes, I try it. It is cool, I set in samba to 90 days and I see it in 
usrmgr. :)

But how can I send message to user (that he must change password) when user 
log into?

kedd 25 mjus 2004 22:31 dtummal [EMAIL PROTECTED] ezt rta:
 Hi guy,

 You can use Micro$oft usrmgr to set account policies to you domain.

 ---
 Emerson Henrique Kfuri Pereira

 Diviso de Atendimento e Consultoria
 CECOM - Reitoria - UFMG
 Telefone: 34994009
 ---

 [EMAIL PROTECTED] wrote on 25/05/2004

 17:10:35:
  Hi guys!
 
  I wanna to setup my 3.0.1 samba PDC (with tdbsam) to force user to change
 
  password.
 
  I read this:
 
  When I set password lifetime to, say 90 days using
  pdbedit -P maximum password age -C 7776000
 
  Attribute Password must change is calculated using this formula :
 
  sambaPwdMustChange = sambaPwdLastSet + 90 days.
 
  Is it possible to get warning message before actually force user to
  change their password, I mean is it possible to get this formula:
 
  sambaPwdMustChange = (sambaPwdLastSet + 90 days) - 10 days
 
  pdbedit setting is okay.
 
  but what about sambaPwdMustChange? Should I write it to my smb.conf?
 
  But, I write it and testparm says:
 Unknown parameter encountered: sambaPwdMustChange
 Ignoring unknown parameter sambaPwdMustChange
 
  So, how can I do this?
 
  --
 
  regars, Roland
  --
  To unsubscribe from this list go to the following URL and read the
  instructions:  http://lists.samba.org/mailman/listinfo/samba--

 To unsubscribe from this list go to the following URL and read the
 instructions:  http://lists.samba.org/mailman/listinfo/samba

-- 

Udv, Roland
--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] Ntconfig.POL system policy

2004-05-05 Thread LanRol
Hi!

How can i generate Ntconfig.POL file? what kind of tools?

thanks

regards,
Roland

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] logon scripts doen't run

2004-05-03 Thread LanRol
Hi all,

I have problem with my logon scripts.

drwxrwxrwx5 root root 4096 May  2 20:26 .
drwxr-xr-x   25 root root 4096 May  3 09:36 ..
drwxrwxrwx2 root root 4096 May  2 20:11 netlogon
drwxr-xrwt4 root root 4096 May  2 22:14 profiles
drwxrwxrwx6 root root 4096 May  2 20:11 shares

I store them in netlogon folder.

In smb.conf
[global]
logon script= %G.cmd

[netlogon]
comment = logon scriptek
path= samba/netlogon
guest ok= yes
writable= no
share modes = no
browseable  = no

I have IT, HR, etc group, and of course I have IT.cmd, HR.cmd, etc. They are
all r--r--r-- root root.

Idea?

regards,
Roland

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] Unable to open TDB rid database!

2004-05-02 Thread LanRol
Hi all,

I use tdbsam backend.

When I create a box for win2k machine:
# pdbedit -a -m -u machine$
tdb_update_sam: SAM_ACCOUNT (machine$) with no RID!
Unable to add machine! (does it already exist?)

What is wrong?

Other failer message:
Unable to open TDB rid database!

Regards, 
Roland
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


RE: [Samba] Migration succesful , but can't add machine to domain

2004-04-27 Thread LanRol
  Private IP Address ranges are:
  
  10.0.0.0/8
  172.16.0.0/16 - 172.31.0.0/16
  192.168.0.0/16
 
 Oh, no problem, the firewall separates my 172.0.x.x from internet. :)

 
  Yes, you will need to run smbpasswd -a root. The program will update
  the appropriate backend.
  
  Marcus O.
  

 Ok, it works! Thanks
 
 My next question is:
 what about windows files? I think expecially for permissions, 
 access rules, how can I migrate them to my samba?
 
 regards,
 roland
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


RE: [Samba] Migration succesful , but can't add machine to domain

2004-04-26 Thread LanRol
Well, can anybody help me?

 -Original Message-
 From: [EMAIL PROTECTED]
 [mailto:[EMAIL PROTECTED] Behalf Of
 LanRol
 Sent: Monday, April 26, 2004 12:27 AM
 To: samba
 Subject: [Samba] Migration succesful , but can't add machine to domain
 
 
 Hi all,
 
 I migrate NT4 PDC to SAmba3 tdbsam backend. All users, groups, 
 machineboxes
 are ok.
 
 When I am try to add Win2k to domain, popup the a windows, I type 
 the DOMAIN
 ADMIN username, password, and I get a failer message:
 Bad user or password.
 
 I think my samba doesn't know where is passwd.tdb
 
 in my smb.conf:
 passdb backend = tdbsam:/etc/samba/passdb.tdb
 
 Any idea what is wrong?
 
 regards, roland

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


RE: [Samba] Migration succesful , but can't add machine to domain

2004-04-26 Thread LanRol
from [EMAIL PROTECTED]

 What do your logs tell you?

 What do you have for your add machine script = ?

 Cheers!
 --


my smb.conf is

[global]
workgroup   = SOLARSYSTEM
netbios name= Sedna
server string   = Samba szerver

wins support= yes
name resolve order  = wins lmhosts hosts bcast
socket options  = TCP_NODELAY SO_RCVBUF=8192
SO_SNDBUF=8192
os level= 64

local master= yes
preferred master= yes
domain master   = yes

domain logons   = yes
passdb backend  = tdbsam:/etc/samba/passdb.tdb

dos charset = CP852
unix charset= ISO8859-2
case sensitive  = no
default case= lower
preserve case   = yes

security= user
encrypt passwords   = yes

log file= /var/log/samba/log.%m
log level   = 3
max log size= 50
hosts allow = 127.0.0.1 172.0.0.0/255.255.255.0
interfaces  = eth1 172.0.0.0/255.255.255.0
127.0.0.1

logon path  = \\samba\profiles\%U
logon script= %G.cmd

add user script = /usr/sbin/useradd -s /bin/false
'%u'
add group script= /usr/sbin/groupadd '%g'  getent
group '%g' |awk -F: '{print $3}'
add user to group script= /usr/bin/gpasswd -a '%u' '%g'
add machine script  = /usr/sbin/useradd -d /dev/null -g
machines -s /bin/false -M '%u'
set primary group script= /usr/sbin/usermod -g '%g' '%u'
delete user script  = /usr/sbin/userdel '%s'
delete group script = /usr/sbin/groupdel '%g'
delete user from group script   = /usr/bin/gpasswd -d '%u' '%g'
...


# smbclient -U% -L localhost
Domain=[SOLARSYSTEM] OS=[Unix] Server=[Samba 3.0.2-SuSE]

Sharename  Type  Comment
-    ---
netlogon   Disk  login scriptek
installDisk  telepitok
works  Disk  Munkakonyvtar
public Disk  Kozos konyvtar
developmentDisk  A fejlesztok cuccai
IPC$   IPC   IPC Service (Samba szerver)
ADMIN$ IPC   IPC Service (Samba szerver)
Domain=[SOLARSYSTEM] OS=[Unix] Server=[Samba 3.0.2-SuSE]

Server   Comment
----
SEDNASamba szerver

WorkgroupMaster
----
SOLARSYSTEM  SEDNA


# smbclient //sedna/netlogon -u admin
session setup failed: NT_STATUS_LOGON_FAILURE

and log file shows:
[2004/04/26 21:37:17, 3] smbd/sec_ctx.c:push_sec_ctx(256)
  push_sec_ctx(0, 0) : sec_ctx_stack_ndx = 1
[2004/04/26 21:37:17, 3] smbd/uid.c:push_conn_ctx(287)
  push_conn_ctx(0) : conn_ctx_stack_ndx = 0
[2004/04/26 21:37:17, 3] smbd/sec_ctx.c:set_sec_ctx(288)
  setting sec ctx (0, 0) - sec_ctx_stack_ndx = 1
[2004/04/26 21:37:17, 3] smbd/sec_ctx.c:pop_sec_ctx(386)
  pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0
[2004/04/26 21:37:17, 3] auth/auth.c:check_ntlm_password(219)
  check_ntlm_password:  Checking password for unmapped user
[EMAIL PROTECTED] with the new password interface
[2004/04/26 21:37:17, 3] auth/auth.c:check_ntlm_password(222)
  check_ntlm_password:  mapped user is: [EMAIL PROTECTED]
[2004/04/26 21:37:17, 3] smbd/sec_ctx.c:push_sec_ctx(256)
  push_sec_ctx(0, 0) : sec_ctx_stack_ndx = 1
[2004/04/26 21:37:17, 3] smbd/uid.c:push_conn_ctx(287)
  push_conn_ctx(0) : conn_ctx_stack_ndx = 0
[2004/04/26 21:37:17, 3] smbd/sec_ctx.c:set_sec_ctx(288)
  setting sec ctx (0, 0) - sec_ctx_stack_ndx = 1
[2004/04/26 21:37:17, 3] smbd/sec_ctx.c:pop_sec_ctx(386)
  pop_sec_ctx (0, 0) - sec_ctx_stack_ndx = 0
[2004/04/26 21:37:17, 3] auth/auth_sam.c:check_sam_security(200)
  check_sam_security: Couldn't find user 'root' in passdb file.
[2004/04/26 21:37:17, 3] auth/auth_winbind.c:check_winbind_security(80)
  check_winbind_security: Not using winbind, requested domain [SOLARSYSTEM]
was for this SAM.
[2004/04/26 21:37:17, 2] auth/auth.c:check_ntlm_password(312)
  check_ntlm_password:  Authentication for user [root] - [root] FAILED with
error NT_STATUS_NO_SUCH_USER
[2004/04/26 21:37:17, 3] smbd/process.c:timeout_processing(1104)
  timeout_processing: End of file from client (client has disconnected).
[2004/04/26 21:37:17, 3] smbd/sec_ctx.c:set_sec_ctx(288)
  setting sec ctx (0, 0) - sec_ctx_stack_ndx = 0
[2004/04/26 21:37:17, 2] 

RE: [Samba] Migration succesful , but can't add machine to domain

2004-04-26 Thread LanRol
 To rule out the obvious... Did you perform smbpasswd -a root on the
 PDC? Did you also add admin users = root in your global section? Just
 curious are you actually using the network address 172.0.0.0 for your
 setup?

 Marcus O.

No, I didn't add root to smbpasswd, but i don't want to use smbpasswd, I
wanna use tdbsam, as well this case there isn't root in smbpasswd, is there?

It isn't in global section.

Yes, of course, 172.0.0.0, what is wrong, if I know well, it is a private IP
range, like 10.x.x.x, well?

Regards, Roland

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] Migration succesful , but can't add machine to domain

2004-04-25 Thread LanRol
Hi all,

I migrate NT4 PDC to SAmba3 tdbsam backend. All users, groups, machineboxes
are ok.

When I am try to add Win2k to domain, popup the a windows, I type the DOMAIN
ADMIN username, password, and I get a failer message:
Bad user or password.

I think my samba doesn't know where is passwd.tdb

in my smb.conf:
passdb backend = tdbsam:/etc/samba/passdb.tdb

Any idea what is wrong?

regards, roland

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] It works before, but now? NT_STATUS_ACCES_DENIED

2004-04-24 Thread LanRol
Hi all,

linux:~ # net rpc join -S sun -W SOLARSYS -U admin
Joined domain SOLARSYS.

linux:~ # net rpc vampire -S sun -U admin
Fetching DOMAIN database
Failed to fetch domain database: NT_STATUS_ACCESS_DENIED

What is wrong? Any idea?

Regards,
Roland

ps: SUN is my NT4 PDC, SOLARSYS is the DOMAIN name.

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


RE: [Samba] It works before, but now? NT_STATUS_ACCES_DENIED

2004-04-24 Thread LanRol
Jerey wrote in another message:
Did you set the domain sid on the Samba box?  This
must match the NT4 domain SID if you are going
to be recognized as a BDC.

Okay, but where can i do this?

 -Original Message-
 From: [EMAIL PROTECTED]
 [mailto:[EMAIL PROTECTED] Behalf Of
 LanRol
 Sent: Saturday, April 24, 2004 3:07 PM
 To: samba
 Subject: [Samba] It works before, but now? NT_STATUS_ACCES_DENIED
 
 
 Hi all,
 
 linux:~ # net rpc join -S sun -W SOLARSYS -U admin
 Joined domain SOLARSYS.
 
 linux:~ # net rpc vampire -S sun -U admin
 Fetching DOMAIN database
 Failed to fetch domain database: NT_STATUS_ACCESS_DENIED
 
 What is wrong? Any idea?
 
 Regards,
 Roland
 
 ps: SUN is my NT4 PDC, SOLARSYS is the DOMAIN name.
 
 -- 
 To unsubscribe from this list go to the following URL and read the
 instructions:  http://lists.samba.org/mailman/listinfo/samba
 
 
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


RE: [Samba] It works before, but now? NT_STATUS_ACCES_DENIED

2004-04-24 Thread LanRol
Agh, windows is a bulls... , I wasted 3 hours from my live,
because my linux szerver name and samba name were not equal, BUT this
problem arised now, yesterday it worked correctly in spite of the names were
never equal. :(

I will change this NT, I will... :)

 -Original Message-
 From: LanRol [mailto:[EMAIL PROTECTED]
 Sent: Saturday, April 24, 2004 4:09 PM
 To: LanRol
 Subject: RE: [Samba] It works before, but now? NT_STATUS_ACCES_DENIED


 So, in the other hand, in systemlog in NT4 there is the following message

 The session setup from the computer SAMBA3 failed because there
 is no trust
 account in the security database for this computer. The name of
 the account
 referenced in the security database is SAMBA3.

 ??? What?  I set a box for my linux machine.

 what wrong? help please

  -Original Message-
  From: [EMAIL PROTECTED]
  [mailto:[EMAIL PROTECTED] Behalf Of
  LanRol
  Sent: Saturday, April 24, 2004 3:31 PM
  To: samba
  Subject: RE: [Samba] It works before, but now? NT_STATUS_ACCES_DENIED
 
 
  Jerey wrote in another message:
  Did you set the domain sid on the Samba box?  This
  must match the NT4 domain SID if you are going
  to be recognized as a BDC.
 
  Okay, but where can i do this?
 
   -Original Message-
   From: [EMAIL PROTECTED]
   [mailto:[EMAIL PROTECTED] Behalf Of
   LanRol
   Sent: Saturday, April 24, 2004 3:07 PM
   To: samba
   Subject: [Samba] It works before, but now? NT_STATUS_ACCES_DENIED
  
  
   Hi all,
  
   linux:~ # net rpc join -S sun -W SOLARSYS -U admin
   Joined domain SOLARSYS.
  
   linux:~ # net rpc vampire -S sun -U admin
   Fetching DOMAIN database
   Failed to fetch domain database: NT_STATUS_ACCESS_DENIED
  
   What is wrong? Any idea?
  
   Regards,
   Roland
  
   ps: SUN is my NT4 PDC, SOLARSYS is the DOMAIN name.
  
   --
   To unsubscribe from this list go to the following URL and read the
   instructions:  http://lists.samba.org/mailman/listinfo/samba
  
  
  --
  To unsubscribe from this list go to the following URL and read the
  instructions:  http://lists.samba.org/mailman/listinfo/samba
 
 




-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


RE: [Samba] It works before, but now? NT_STATUS_ACCES_DENIED

2004-04-24 Thread LanRol
ooops, server and life :)
 -Original Message-
 From: [EMAIL PROTECTED]
 [mailto:[EMAIL PROTECTED] Behalf Of
 LanRol
 Sent: Saturday, April 24, 2004 5:59 PM
 To: samba
 Subject: RE: [Samba] It works before, but now? NT_STATUS_ACCES_DENIED
 
 
 Agh, windows is a bulls... , I wasted 3 hours 
 from my live,
 because my linux szerver name and samba name were not equal, BUT this
 problem arised now, yesterday it worked correctly in spite of the 
 names were
 never equal. :(
 
 I will change this NT, I will... :)
 
  -Original Message-
  From: LanRol [mailto:[EMAIL PROTECTED]
  Sent: Saturday, April 24, 2004 4:09 PM
  To: LanRol
  Subject: RE: [Samba] It works before, but now? NT_STATUS_ACCES_DENIED
 
 
  So, in the other hand, in systemlog in NT4 there is the 
 following message
 
  The session setup from the computer SAMBA3 failed because there
  is no trust
  account in the security database for this computer. The name of
  the account
  referenced in the security database is SAMBA3.
 
  ??? What?  I set a box for my linux machine.
 
  what wrong? help please
 
   -Original Message-
   From: [EMAIL PROTECTED]
   [mailto:[EMAIL PROTECTED] Behalf Of
   LanRol
   Sent: Saturday, April 24, 2004 3:31 PM
   To: samba
   Subject: RE: [Samba] It works before, but now? NT_STATUS_ACCES_DENIED
  
  
   Jerey wrote in another message:
   Did you set the domain sid on the Samba box?  This
   must match the NT4 domain SID if you are going
   to be recognized as a BDC.
  
   Okay, but where can i do this?
  
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] 
 Behalf Of
LanRol
Sent: Saturday, April 24, 2004 3:07 PM
To: samba
Subject: [Samba] It works before, but now? NT_STATUS_ACCES_DENIED
   
   
Hi all,
   
linux:~ # net rpc join -S sun -W SOLARSYS -U admin
Joined domain SOLARSYS.
   
linux:~ # net rpc vampire -S sun -U admin
Fetching DOMAIN database
Failed to fetch domain database: NT_STATUS_ACCESS_DENIED
   
What is wrong? Any idea?
   
Regards,
Roland
   
ps: SUN is my NT4 PDC, SOLARSYS is the DOMAIN name.
   
--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba
   
   
   --
   To unsubscribe from this list go to the following URL and read the
   instructions:  http://lists.samba.org/mailman/listinfo/samba
  
  
 
 
 
 
 -- 
 To unsubscribe from this list go to the following URL and read the
 instructions:  http://lists.samba.org/mailman/listinfo/samba
 
 
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


RE: [Samba] It works before, but now? NT_STATUS_ACCES_DENIED

2004-04-24 Thread LanRol
Ohhh, n, it doesnt work! :(

have anybody a good idea?

  Hi all,
 
 linux:~ # net rpc join -S sun -W SOLARSYS -U admin
  Joined domain SOLARSYS.
 
 linux:~ # net rpc vampire -S sun -U admin
 Fetching DOMAIN database
 Failed to fetch domain database: NT_STATUS_ACCESS_DENIED
 
 What is wrong? Any idea?
 
 ps: SUN is my NT4 PDC, SOLARSYS is the DOMAIN name.

 Jerey wrote in another message:
 Did you set the domain sid on the Samba box?  This
 must match the NT4 domain SID if you are going
 to be recognized as a BDC.
 
 Okay, but where can i do this?

 So, in the other hand, in systemlog in NT4 there is the 
 following message
 
 The session setup from the computer SAMBA3 failed because there
 is no trust
 account in the security database for this computer. The name of
 the account
 referenced in the security database is SAMBA3.
 
 What?  I set a box for my linux machine.
 
 what wrong? help please


 
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


RE: [Samba] group name with space

2004-04-22 Thread LanRol
Hi!

linux:~ # net groupmap list
System Operators (S-1-5-32-549) - -1
Replicator (S-1-5-32-552) - Replicator
Guests (S-1-5-32-546) - Guests

So, I did 'System Operators' --- net groupmap modify ntgroup=System
Operators unixgroup=sys

it is okey, but I don't make TRUST ACCOUNT for my machine.

linux:~ # pdbedit -am IT01
tdb_update_sam: SAM_ACCOUNT (it01$) with no RID!
Unable to add machine! (does it already exist?)

I dont understand this message. :(

Any idea?

Regards, roland




 -Original Message-
 From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
 Sent: Wednesday, April 21, 2004 12:39 AM
 To: LanRol
 Cc: samba
 Subject: Re: [Samba] group name with space


 On Tue, Apr 20, 2004 at 11:44:52PM +0200, LanRol wrote:
  Hi all,
 
  linux:~ # net rpc vampire -S sun -U admin%admin
  Fetching DOMAIN database
  SAM_DELTA_DOMAIN_INFO not handled
  Creating unix group: 'Domain Admins'
  groupadd: Domain Admins is a not a valid group name
  Creating unix group: 'Domain Users'
  groupadd: Domain Users is a not a valid group name
 
  and if i try
 
  # groupadd 'abc def'
  groupadd: Domain Users is a not a valid group name
 
  why? Can I add this group?

 Maybe.  If groupadd Domain Users doesn't work, you can map Domain
 Users to something like users with the net groupmap modify command.

 man net for more info.  Search for groupmap.
 Most commonly, I use:
 net groupmap list
 net groupmap modify

 Cheers!


-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] group name with space

2004-04-20 Thread LanRol
Hi all,

linux:~ # net rpc vampire -S sun -U admin%admin
Fetching DOMAIN database
SAM_DELTA_DOMAIN_INFO not handled
Creating unix group: 'Domain Admins'
groupadd: Domain Admins is a not a valid group name
Creating unix group: 'Domain Users'
groupadd: Domain Users is a not a valid group name

and if i try

# groupadd 'abc def'
groupadd: Domain Users is a not a valid group name

why? Can I add this group?


regards,
Roland

173539771 
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] NT4 - samba 3.0.2, tdbsam

2004-04-19 Thread LanRol
Hi all,

I installed:
samba3.0.2
tdb-1.0.6-96
tdb-devel-1.0.6-96

I can join my ntdomain, but I can't find passdb.tdb :(

I got some failure message, but my group's and user's names seem ok.

what is wrong?

# net rpc vampire -S SUN
Fetching DOMAIN database
SAM_DELTA_DOMAIN_INFO not handled
Creating unix group: 'Domain Admins'
usage: groupadd [-g gid [-o]] [-r] [-f] group
Creating unix group: 'Domain Users'
usage: groupadd [-g gid [-o]] [-r] [-f] group
Creating unix group: 'Domain Guests'
usage: groupadd [-g gid [-o]] [-r] [-f] group
Creating unix group: 'accounting'
Creating unix group: 'development'
Creating unix group: 'finance'
Creating unix group: 'hr'
Creating unix group: 'it'
Creating unix group: 'trade'
Creating account: Administrator
[2004/04/19 12:29:32, 0] passdb/pdb_tdb.c:tdbsam_getsampwrid(255)
  pdb_getsampwrid: Unable to open TDB rid database!
[2004/04/19 12:29:32, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user Administrator (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: Guest
[2004/04/19 12:29:32, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user Guest (group
SID=S-1-5-21-1145440481-799482739-311576647-514)
Creating account: IUSR_TESZTNT
[2004/04/19 12:29:33, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user IUSR_TESZTNT (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: IT01$
Could not create posix account info for 'IT01$'
Creating account: LINUX$
Could not create posix account info for 'LINUX$'
Creating account: kbela
[2004/04/19 12:29:33, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user kbela (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: laron
[2004/04/19 12:29:33, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user laron (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: jagota
[2004/04/19 12:29:33, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user jagota (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: jelemer
[2004/04/19 12:29:33, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user jelemer (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: kmonika
[2004/04/19 12:29:33, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user kmonika (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: krichard
[2004/04/19 12:29:34, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user krichard (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: szelod
[2004/04/19 12:29:34, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user szelod (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: admin
[2004/04/19 12:29:34, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user admin (group
SID=S-1-5-21-1145440481-799482739-311576647-512)
Creating account: ntas
[2004/04/19 12:29:34, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user ntas (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: tjudit
[2004/04/19 12:29:34, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user tjudit (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: keszter
[2004/04/19 12:29:34, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user keszter (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: tjeno
[2004/04/19 12:29:35, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user tjeno (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: szgizella
[2004/04/19 12:29:35, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user szgizella (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: wagnes
[2004/04/19 12:29:35, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user wagnes (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: ntohotom
[2004/04/19 12:29:35, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user ntohotom (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating account: nalmos
[2004/04/19 12:29:35, 0] utils/net_rpc_samsync.c:fetch_account_info(497)
  Could not find unix group 4294967295 for user nalmos (group
SID=S-1-5-21-1145440481-799482739-311576647-513)
Creating 

RE: [Samba] NT4 PDC-Samba 3.0.2 PDC

2004-04-12 Thread LanRol
 | I installed following package to my Suse 9:
 | 1 cups-libs-1.1.19-80.i586.rpm
 | 2 libsmbclient-3.0.2-0.i586.rpm
 | 3 libsmbclient-devel-3.0.2-0.i586.rpm
 | 5 samba3-cifsmount-3.0.2-0.i586.rpm
 | 4 samba3-client-3.0.2-0.i586.rpm
 | 6 samba3-doc-3.0.2-0.i586.rpm
 | 7 samba3-utils-3.0.2-0.i586.rpm
 | 8 samba3-vscan-0.3.4-0.i586.rpm
 | 9 samba3-winbind-3.0.2-0.i586.rpm  --nodeps
 | 10 samba3-3.0.2-0.i586.rpm

The net command is missing from these packages. 

Where from can I download a net's package to my suse 9?

Regards,
Roland

ICQ: 173539771

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


RE: [Samba] enabling ACL support on Red Hat 8

2004-04-03 Thread LanRol
It must be supported by kernel and add acl to your fstab, for example:

/dev/sda2/shared  ext3   defaults,acl  0
0

 -Original Message-
 From: [EMAIL PROTECTED]
 [mailto:[EMAIL PROTECTED]
 Behalf Of Philippe
 Sent: Sunday, April 04, 2004 12:02 AM
 To: [EMAIL PROTECTED]
 Subject: [Samba] enabling ACL support on Red Hat 8


 Hello,

 I would like to enable ACL support (ext3, XFS...) on a Red Hat 8.
 I want to
 uses this feature with Samba.

 Thanks

 Phil
 --
 To unsubscribe from this list go to the following URL and read the
 instructions:  http://lists.samba.org/mailman/listinfo/samba




-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


RE: [Samba] enabling ACL support on Red Hat 8

2004-04-03 Thread LanRol
 I believe Samba 3 comes with ACL support turned off by default as well
 (I'm not sure, I've always built from Source RPM, which didn't have
 --with-acl-support in the configure line).  In which case, you'll need
 to get the Samba 3 SRPM and add --with-acl-support to the configure line
 and use rpmbuild to build a custom samba3 RPM.

 Hope this helps!

 Clint

2.4.21 kernel does support ACL, don't need any patch. I install Samba-3 from
RPM, and it does support ACL too.

# cat config | grep ACL
CONFIG_REISERFS_FS_POSIX_ACL=y
CONFIG_EXT3_FS_POSIX_ACL=y
CONFIG_JFS_POSIX_ACL=y
CONFIG_EXT2_FS_POSIX_ACL=y
CONFIG_XFS_POSIX_ACL=y
CONFIG_NFS_ACL=y
CONFIG_NFSD_ACL=y
CONFIG_FS_POSIX_ACL=y

ACL turns on in this kernel.

# ldd /usr/sbin/smbd
libattr.so.1 = /lib/libattr.so.1 (0x4020c000)
libacl.so.1 = /lib/libacl.so.1 (0x4021)
And ACL supporting packages are installed in samba-3 rpm (3.0.2)

I use Suse Linux 9.


-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


RE: [Samba] After reinstall XP - browsing doesn't work

2004-01-18 Thread LanRol
well?

-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] Behalf Of
Lancsr Roland
Sent: Saturday, January 17, 2004 5:24 AM
To: samba
Subject: [Samba] After reinstall XP - browsing doesn't work


Hi all,

I use Samba 2.2.7a-SuSE. It works correctly, but after when I reinstalled my
XP, the browsing hasn't worked. :(

Example, I try to browse from Explore, it halt. But if I try to access (for
example) \\server\mp3, it works.

What is wrong?

Thanks!

Regards, Roland

My smb.conf:

[global]
time server = yes
netbios name= Stargate
workgroup   = NIK
server string   = Samba server (on %L)
hosts allow = 10.1.1. 10.0.0. localhost
interfaces  = 10.0.0.0/24 10.1.1.0/24
bind interfaces only= yes
local master= yes
os level= 34
time server = yes
wins support= yes
name resolve order  = wins lmhosts hosts bcast
local master= yes
security= user
encrypt passwords   = yes
smb passwd file = /etc/samba/smbpasswd
unix password sync  = yes
passwd program  = /usr/bin/passwd u%
passwd chat = *new password* %n\n *new password* %n\n
*success*
log level   = 2
max log size= 1000
log file= /sambalog/log.%m
socket options  = TCP_NODELAY IPTOS_LOWDELAY
guest ok= yes
character set   = ISO8859-2
client code page= 852
mangle case = no
case sensitive  = no
default case= lower
preserve case   = yes
short preserve case = yes

[homes]
comment = Home Directory
valid users = %S
browsable   = no
read only   = no
create mode = 600
force create mode   = 600
directory mask  = 700
force directory mode= 700
hide dot files  = yes
[shared]
guest ok= yes
browsable   = yes
read only   = no
path= /wd40/shared
map archive = yes
create mask = 0644
directory mask  = 0755
force group = users
delete readonly = yes

[mp3s]
valid users = roland
path= /wd40/mp3s
read only   = no
map archive = yes
create mask = 0644
directory mask  = 0755
force group = users
delete readonly = yes




--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba





-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


Re: [Samba] User/groups between samba and active directory

2003-12-15 Thread LanRol
The answer: ACL

http://acl.bestbits.at/download.html

Does it work?

- Original Message -
From: Justin B. Kay [EMAIL PROTECTED]
To: [EMAIL PROTECTED]
Sent: Monday, December 15, 2003 8:23 PM
Subject: [Samba] User/groups between samba and active directory


 I have an active directory server which I can authenticate to in order to
 access shares on the samba server (3.0.0).  When I create a file on the
samba
 server from a windows client the user name is DOMAIN+username and the
group
 is DOMAIN+Domain Users.  My question is how to set permissions on folders
in
 linux to allow DOMAIN+Domain Users/username to create files without
setting
 the permissions to world write access.  Any good online reading about this
 anywhere?

 Justin
 --
 To unsubscribe from this list go to the following URL and read the
 instructions:  http://lists.samba.org/mailman/listinfo/samba






-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba