Re: [Samba] Samba 3 as BDC

2002-11-20 Thread Ronan Waide
On November 20, [EMAIL PROTECTED] said:
> 
> If you want to contribute some doco or simply a discussion of what you
> did and how you did it, it would be most appreciated.

Certainly will do. Once I get it working and all :)
 
> You must use the 'add user' scripts etc - because we don't automatically
> create these users, and we don't allow users without a unix id to be
> represented.  I might add some more LDAP magic toward this, but that's
> how it is for now.  

So basically there is currently no way around the requirement for a
Unix ID and/or group?
 
> You can't demote to BDC - it will try and sync the passwords, and that
> will fail badly.  However, if demoted all the way to domain member, it
> should work.  

Okay. Demonstrating my ignorance, how the hell do I demote it all the
way to a domain member without reinstalling NT?

Cheers,
Waider.
-- 
"We are experiencing MVS processor spin loops, the programs are running while
 holding a disabled CPU. This is causing XCF communication delays to the point
 where we are losing VTAM RTP routing, are suffering OSPF adjacency failures on
 TCP/IP dynamic routing and MIM VCF failures." - Reported via Slashdot
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba



Re: [Samba] Samba 3 as BDC

2002-11-20 Thread Andrew Bartlett
On Wed, 2002-11-20 at 22:53, Ronan Waide wrote:
> On November 20, [EMAIL PROTECTED] said:
> > It should work, once  you get the SIDs right, for users at least
> > (assuming ldap or rsynced smbpasswd).  Other things are harder to get
> > synced across correctly.
> > 
> > There is some (slightly out date) documentation in the source disto.  
> 
> I'm fighting with this at the moment. net rpc vampire isn't documented
> in the source distro (that I can find, anyway) but for anyone else
> playing with it, it does take a bit of fiddling to make it work. I
> presume there's a way to make all this work without creating Unix
> accounts (LDAP or winbindd) but since I'm trying not to go too far out
> on a limb, I will note that the use-unix-accounts option requires you
> to have working "add machine", "add user", and "add group" scripts. It
> will fail non-obviously if you don't have these (for example, it
> claims to be creating the groups, but doesn't do so, because you've
> not defined the script - this had me stumped for a while).

If you want to contribute some doco or simply a discussion of what you
did and how you did it, it would be most appreciated.

You must use the 'add user' scripts etc - because we don't automatically
create these users, and we don't allow users without a unix id to be
represented.  I might add some more LDAP magic toward this, but that's
how it is for now.  

> The question I'd have, since it's pertinent to what I'm trying to do:
> Is it possible to "net rpc vampire" a PDC, then promote Samba to the
> PDC and demote the Windows box to the BDC? I don't care if syncing
> doesn't work after I've done that, I just need to be able to force
> every machine in the domain to recognise that the PDC is, er, not the
> PDC any more, but I can't take the PDC out of the domain entirely
> because there are other things running on it.

You can't demote to BDC - it will try and sync the passwords, and that
will fail badly.  However, if demoted all the way to domain member, it
should work.  

-- 
Andrew Bartlett [EMAIL PROTECTED]
Manager, Authentication Subsystems, Samba Team  [EMAIL PROTECTED]
Student Network Administrator, Hawker College   [EMAIL PROTECTED]
http://samba.org http://build.samba.org http://hawkerc.net



signature.asc
Description: This is a digitally signed message part


Re: [Samba] Samba 3 as BDC

2002-11-20 Thread Ronan Waide
On November 20, [EMAIL PROTECTED] said:
> It should work, once  you get the SIDs right, for users at least
> (assuming ldap or rsynced smbpasswd).  Other things are harder to get
> synced across correctly.
> 
> There is some (slightly out date) documentation in the source disto.  

I'm fighting with this at the moment. net rpc vampire isn't documented
in the source distro (that I can find, anyway) but for anyone else
playing with it, it does take a bit of fiddling to make it work. I
presume there's a way to make all this work without creating Unix
accounts (LDAP or winbindd) but since I'm trying not to go too far out
on a limb, I will note that the use-unix-accounts option requires you
to have working "add machine", "add user", and "add group" scripts. It
will fail non-obviously if you don't have these (for example, it
claims to be creating the groups, but doesn't do so, because you've
not defined the script - this had me stumped for a while).

The question I'd have, since it's pertinent to what I'm trying to do:
Is it possible to "net rpc vampire" a PDC, then promote Samba to the
PDC and demote the Windows box to the BDC? I don't care if syncing
doesn't work after I've done that, I just need to be able to force
every machine in the domain to recognise that the PDC is, er, not the
PDC any more, but I can't take the PDC out of the domain entirely
because there are other things running on it.

Cheers,
Waider.
-- 
[EMAIL PROTECTED] / Yes, it /is/ very personal of me.

"A one question geek test. If you think it's funny, you're a geek. Seen on a
 California license plate on a VW Beetle: "Feature"" - Joshua D. Wachs
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba



Re: [Samba] Samba 3 as BDC

2002-11-20 Thread Andrew Bartlett
On Wed, 2002-11-20 at 21:14, Kristyan Osborne wrote:
> Hi,
> 
> I was wondering what is the current state of play with samba 3 being a BDC?? Is 
>there any documentation anywhere?

It should work, once  you get the SIDs right, for users at least
(assuming ldap or rsynced smbpasswd).  Other things are harder to get
synced across correctly.

There is some (slightly out date) documentation in the source disto.  

Andrew Bartlett

-- 
Andrew Bartlett [EMAIL PROTECTED]
Manager, Authentication Subsystems, Samba Team  [EMAIL PROTECTED]
Student Network Administrator, Hawker College   [EMAIL PROTECTED]
http://samba.org http://build.samba.org http://hawkerc.net



signature.asc
Description: This is a digitally signed message part


[Samba] Samba 3 as BDC

2002-11-20 Thread Kristyan Osborne
Hi,

I was wondering what is the current state of play with samba 3 being a BDC?? Is there 
any documentation anywhere?

Cheers

-
Kristyan Osborne IT Technician
Longhill High School
01273 391672

--
Computers are like airconditioners: They stop working properly if you open windows.
Win95:   A 32-bit patch for a 16-bit GUI shell running on top of an
 8-bit operating system written for a 4-bit processor by a
 2-bit company who cannot stand 1 bit of competition.

--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba