Re: [Samba] Samba 3.0.23d

2010-07-19 Thread Gaiseric Vandal
If you have simple requirements, then you may want to stick with the Sun 
provided packages in the short run.


These will support
Domain controller configuration
LDAP backend
XP Clients
ZFS support
nsswitch support with winbind

It won't support
Domain trusts with Win 2003/2008-mode domains.
Win 7 clients



Compiling Samba from source on Sun can be a little tricky.  (see some of 
my earlier posts on this.)  I have no experience with creating a package.


You can also get samba from sunfreeware BUT it does NOT include 
nsswitch/winbind support or ZFS.   But if you aren't doing domain trusts 
and are using UFS it should also be fine.


If you don't have the Solaris 10 DVD you can download it from Sun.


On 07/19/2010 06:05 PM, Linux Addict wrote:



On Thu, Jul 1, 2010 at 5:18 PM, Gaiseric Vandal 
mailto:gaiseric.van...@gmail.com>> wrote:


What area?

The initial packages should be on the solaris DVD

bash-3.00# pkginfo | grep -i samba
system  SUNWsmbacsamba - A Windows
SMB/CIFS fileserver for UNIX (client)
system  SUNWsmbarsamba - A Windows
SMB/CIFS fileserver for UNIX (Root)
system  SUNWsmbausamba - A Windows
SMB/CIFS fileserver for UNIX (Usr)
bash-3.00#



If you go to sunsolve.sun.com  and search
for "Samba 5.10" you should be able to find the patches to bring
it up to 3.0.37.





On 06/30/2010 08:44 AM, Fair, Barbara wrote:

Good Morning

I am looking to download the Samba 3.0.23d binary for Solaris.
 When I go to the area that is set up for binaries, there is
nothing under the Sparc folder.  Is there another place I can
get the binary?

Thanks in advance for your help.
Barb Fair
Lockheed Martin
Valley Forge, PA
610-531-5442


-- 
To unsubscribe from this list go to the following URL and read the

instructions: https://lists.samba.org/mailman/options/samba


How  about downloading the source, compile and then create a pkg?

PS: http://www.sunfreeware.com/ftp/pub/freeware/sparc/5.10/



--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


Re: [Samba] Samba 3.0.23d

2010-07-19 Thread Linux Addict
On Thu, Jul 1, 2010 at 5:18 PM, Gaiseric Vandal
wrote:

> What area?
>
> The initial packages should be on the solaris DVD
>
> bash-3.00# pkginfo | grep -i samba
> system  SUNWsmbacsamba - A Windows SMB/CIFS
> fileserver for UNIX (client)
> system  SUNWsmbarsamba - A Windows SMB/CIFS
> fileserver for UNIX (Root)
> system  SUNWsmbausamba - A Windows SMB/CIFS
> fileserver for UNIX (Usr)
> bash-3.00#
>
>
>
> If you go to sunsolve.sun.com and search for "Samba 5.10" you should be
> able to find the patches to bring it up to 3.0.37.
>
>
>
>
>
> On 06/30/2010 08:44 AM, Fair, Barbara wrote:
>
>> Good Morning
>>
>> I am looking to download the Samba 3.0.23d binary for Solaris.  When I go
>> to the area that is set up for binaries, there is nothing under the Sparc
>> folder.  Is there another place I can get the binary?
>>
>> Thanks in advance for your help.
>> Barb Fair
>> Lockheed Martin
>> Valley Forge, PA
>> 610-531-5442
>>
>>
>
> --
> To unsubscribe from this list go to the following URL and read the
> instructions:  https://lists.samba.org/mailman/options/samba
>

How  about downloading the source, compile and then create a pkg?

PS:  http://www.sunfreeware.com/ftp/pub/freeware/sparc/5.10/
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


Re: [Samba] Samba 3.0.23d

2010-07-01 Thread Gaiseric Vandal

What area?

The initial packages should be on the solaris DVD

bash-3.00# pkginfo | grep -i samba
system  SUNWsmbacsamba - A Windows SMB/CIFS 
fileserver for UNIX (client)
system  SUNWsmbarsamba - A Windows SMB/CIFS 
fileserver for UNIX (Root)
system  SUNWsmbausamba - A Windows SMB/CIFS 
fileserver for UNIX (Usr)

bash-3.00#



If you go to sunsolve.sun.com and search for "Samba 5.10" you should be 
able to find the patches to bring it up to 3.0.37.





On 06/30/2010 08:44 AM, Fair, Barbara wrote:

Good Morning

I am looking to download the Samba 3.0.23d binary for Solaris.  When I go to 
the area that is set up for binaries, there is nothing under the Sparc folder.  
Is there another place I can get the binary?

Thanks in advance for your help.
Barb Fair
Lockheed Martin
Valley Forge, PA
610-531-5442
   


--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


Re: [Samba] Samba 3.0.23d - Solaris 10

2010-07-01 Thread Gaiseric Vandal
Solaris 10 comes with Samba 3.0.x (I think 3.0.35 is the most recent) so no
need to compile it yourself.It includes backported support for zfs
acl's.I  have compiled Samab 3.4.x on solaris because I needed better
support for domain trusts with Windows 2003 mode domains.


-Original Message-
From: samba-boun...@lists.samba.org [mailto:samba-boun...@lists.samba.org]
On Behalf Of Fair, Barbara
Sent: Wednesday, June 30, 2010 9:22 AM
To: sa...@samba.org
Cc: Fair, Barbara; Bonasera, John
Subject: [Samba] Samba 3.0.23d - Solaris 10

Good Morning

I have not been able to find the binary file(s) for Solaris.  I have
downloaded the tarball for 3.0.23d, but when I go to run the "make all"
command I get the following error:

  make: Fatal error: Command failed for target 'dynconfig.o'

I have not been able to find a workaround for it.  Do you have any
suggestions?
I am running this on a Solaris 10 (release 11/06) box.

Thanks
Barb Fair
Lockheed Martin
Valley Forge, PA
610-531-5442


-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


Re: [Samba] Samba 3.0.23d + winbind

2009-01-22 Thread orlandox

Another test you may to do is:
 wbinfo -a username%password

Another test, is debug the service winbindd, using --debuglevel=3 or 
other number , this output, should to write in a log file in your linux.

With parameter -Si --debuglevel=3, print debug in stdout


orlandox escribió:
Hi, your active directory use Kerberos or LDAP, for authenticate the 
users?,

  if kerberos use:
security = ads
plus other configurations for kerberos support

  if ldap use
security = domain
password server = netbiosName or dnsName or hosts. No ip address, 
here not resolve that


Check this link, it is in spanish, but its an example, in the 
samba.org how to, appear somethink like that, in english
http://proyectofedora.org/wiki/index.php/Proxies/Squid/Squid_en_dominios_Windows#Archivos_de_configuraci.C3.B3n 



Ariel Llauger Rabaza escribió:

Hello,
I have AIX 5.2.0.0 , this server have installed ( Samba 3.0.23d +
winbind ), user of  domain NT working  OK. this user are authenticated
OK

( see smb.conf ).
[global]
workgroup = Mydomain
server string = My server samba
security = DOMAIN
auth methods = guest, winbind, sam
map to guest = Bad User
passdb backend = tdbsam:/opt/pware/samba/3.0.23d/private/passdb.tdb
guest account = guest
username map = /opt/pware/samba/3.0.23d/lib/smb_users.map
log level = 0
name resolve order = wins lmhosts host bcast
socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
load printers = No
machine password timeout = 86400
preferred master = No
local master = No
dns proxy = No
wins server =  Myserver WINS
ldap ssl = no
winbind enum users = Yes
winbind enum groups = Yes
winbind use default domain = Yes


NOW, I need change NT  for Active Directory WIN2003 Server, and
SMB.CONF not working properly ( see smb.conf).

workgroup = Mydomain
server string = Myserver samba
security = SERVER
password server = my server AD
auth methods = guest, winbind, sam
map to guest = Bad User
passdb backend = tdbsam:/opt/pware/samba/3.0.23d/private/passdb.tdb
guest account = guest
username map = /opt/pware/samba/3.0.23d/lib/smb_users.map
log level = 0
name resolve order = wins lmhosts host bcast
socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
load printers = No
machine password timeout = 86400
preferred master = No
local master = No
dns proxy = No
wins server = My wins server
ldap ssl = no
winbind enum users = Yes
winbind enum groups = Yes
winbind use default domain = Yes

 In this smb, re-direct all incoming connections to the AD server for
authentication, but no working.
This command  work OK:
 ./net  rpc join -S  ADSERV  -U
wbinfo -u
winfo -g

Please help me
  




--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Samba 3.0.23d + winbind

2009-01-22 Thread orlandox
Hi, your active directory use Kerberos or LDAP, for authenticate the 
users?,

  if kerberos use:
security = ads
plus other configurations for kerberos support

  if ldap use
security = domain
password server = netbiosName or dnsName or hosts. No ip address, 
here not resolve that


Check this link, it is in spanish, but its an example, in the samba.org 
how to, appear somethink like that, in english

http://proyectofedora.org/wiki/index.php/Proxies/Squid/Squid_en_dominios_Windows#Archivos_de_configuraci.C3.B3n

Ariel Llauger Rabaza escribió:

Hello,
I have AIX 5.2.0.0 , this server have installed ( Samba 3.0.23d +
winbind ), user of  domain NT working  OK. this user are authenticated
OK

( see smb.conf ).
[global]
workgroup = Mydomain
server string = My server samba
security = DOMAIN
auth methods = guest, winbind, sam
map to guest = Bad User
passdb backend = tdbsam:/opt/pware/samba/3.0.23d/private/passdb.tdb
guest account = guest
username map = /opt/pware/samba/3.0.23d/lib/smb_users.map
log level = 0
name resolve order = wins lmhosts host bcast
socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
load printers = No
machine password timeout = 86400
preferred master = No
local master = No
dns proxy = No
wins server =  Myserver WINS
ldap ssl = no
winbind enum users = Yes
winbind enum groups = Yes
winbind use default domain = Yes


NOW, I need change NT  for Active Directory WIN2003 Server, and
SMB.CONF not working properly ( see smb.conf).

workgroup = Mydomain
server string = Myserver samba
security = SERVER
password server = my server AD
auth methods = guest, winbind, sam
map to guest = Bad User
passdb backend = tdbsam:/opt/pware/samba/3.0.23d/private/passdb.tdb
guest account = guest
username map = /opt/pware/samba/3.0.23d/lib/smb_users.map
log level = 0
name resolve order = wins lmhosts host bcast
socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
load printers = No
machine password timeout = 86400
preferred master = No
local master = No
dns proxy = No
wins server = My wins server
ldap ssl = no
winbind enum users = Yes
winbind enum groups = Yes
winbind use default domain = Yes

 In this smb, re-direct all incoming connections to the AD server for
authentication, but no working.
This command  work OK:
 ./net  rpc join -S  ADSERV  -U
wbinfo -u
winfo -g

Please help me
  


--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] samba 3.0.23d with ldap compile problem - SOLVED

2007-01-18 Thread Angela Gavazzi
Am Donnerstag, 18. Januar 2007 14:50 schrieb [EMAIL PROTECTED]:
> Hi,
>
> >> and in the default location ?
> >
> > no: /usr/local/ldap
>
> Ok the problem come from this,
>
> ldconfig will help to load the librairie at run stage but won't help
> configure or the linker to find it when linking.


>
> I think that the simplest way to solve it , if you cant put  your open ldap
> librairy in a standard place, is to put a symbolic link referencing the
> .a file an .so file in /usr/local/ldap/lib in /usr/lib .

thank you very much.
This is just what I just tried now and it solved the problem.
I was expecting ldconfig to help also configure.

by, angela
>
> Regards,
>
> Yanick
>
> >> Seen to me that you have missed a step in the installation / compilation
> >> of openldap, since configure can't find the open ldap library.
> >>
> >> Did you have the librairy libldap.so in /usr/lib or /usr/local/lib ?
> >
> > find / -name libldap.so
> > /usr/src/openldap-2.3.27/libraries/libldap/.libs/libldap.so
> > /usr/local/ldap/lib/libldap.so
> >
> > but
> >
> > cat /etc/ld.so.conf
> >
> > /usr/X11R6/lib
> > /usr/lib/include
> > /usr/local/lib
> > /usr/local/ldap/include
> > /usr/local/ldap/lib
> >
> > I thought that this should work after executing ldconfig. Is this wrong?
> >
> > Tia, Angela
> >
> >> Regards,
> >>
> >> Yanick Durant / Linagora
> >>
> >> > Hi,
> >> >
> >> > I'm trying to compile samba 3.0.23d for use with ldap as backend.
> >> >
> >> > The system is Debian Sarge fresh installed, all updates installed, and
> >> > openldap-2.3.27 installed from sources.
> >> >
> >> > I searched a lot but couldn't google out anythink that helped.
> >> >
> >> > I sent this same mail jesterday with configure options for ldap,
> >> > ld.so.conf
> >> > and samba error.log but it was too long. So another time with less
> >>
> >> text.
> >>
> >> > Can anybody here help? It would be great!
> >> >
> >> > Thank you very much.
> >> >
> >> > Angela
> >> >
> >> >
> >> > samba configure:
> >> >
> >> > ./source/configure \
> >> > '--prefix=/usr/local/samba' \
> >> > '--sysconfdir=/etc' \
> >> > '--localstatedir=/usr/local/samba/var' \
> >> > '--with-configdir=/etc/samba' \
> >> > '--with-privatedir=/etc/samba' \
> >> > '--with-lockdir=/usr/local/samba/var/lock' \
> >> > '--with-piddir=/usr/local/samba/var/run' \
> >> > '--with-swatdir=/usr/local/samba/swat' \
> >> > '--with-smbmount' \
> >> > '--with-quotas' \
> >> > '--with-ldap' \
> >> > '--with-acl-support'
> >> >
> >> > *
> >> >
> >> > Configure aborts with this error:
> >> >
> >> > 
> >> > checking for LDAP support... yes
> >> > checking ldap.h usability... yes
> >> > checking ldap.h presence... yes
> >> > checking for ldap.h... yes
> >> > checking lber.h usability... yes
> >> > checking lber.h presence... yes
> >> > checking for lber.h... yes
> >> > checking for ber_scanf in -llber... no
> >> > checking for ldap_init in -lldap... no
> >> > checking for ldap_set_rebind_proc... no
> >> > checking whether ldap_set_rebind_proc takes 3 arguments... 3
> >> > checking for ldap_dn2ad_canonical... no
> >> > configure: error: libldap is needed for LDAP support
> >> >
> >> > *
> >> >
> >> >
> >> > --
> >> > To unsubscribe from this list go to the following URL and read the
> >> > instructions:  https://lists.samba.org/mailman/listinfo/samba
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] samba 3.0.23d with ldap compile problem

2007-01-18 Thread Gerald (Jerry) Carter
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Angela Gavazzi wrote:

>> Also check the failure in 
>> config.log to see if it is a missing library.
> 
> libldap.so is missing. 
> 
> It's in /usr/local/ldap/lib and the path is set in ld.so.conf.
...
> Is there a better way to tell the samba compile process where it is?

export CFLAGS="-I/usr/local/ldap/include"
export LDFLAGS="-L/usr/local/ldap/lib"
./configure





cheers, jerry
=
Samba--- http://www.samba.org
Centeris ---  http://www.centeris.com
"What man is a man who does not make the world better?"  --Balian
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.4.2.2 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFFr3vqIR7qMdg1EfYRAm6zAKC/qJtj5yLBuuYCxJm2+17JlZSedwCgsZJY
b21SUKnYwB7ya/SonIrq/7s=
=xAut
-END PGP SIGNATURE-
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] samba 3.0.23d with ldap compile problem

2007-01-18 Thread Gerald (Jerry) Carter
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Angela Gavazzi wrote:
> Hi,
> 
> I'm trying to compile samba 3.0.23d for use with ldap as backend.
> 
> The system is Debian Sarge fresh installed, all updates installed, and 
> openldap-2.3.27 installed from sources.
> 
> I searched a lot but couldn't google out anythink that helped.
> 
> I sent this same mail jesterday with configure options for 
> ldap, ld.so.conf  and samba error.log but it was too long.
> So another time with less text.

Make sure you set -I and -L properly.  Also check the failure in
config.log to see if it is a missing library.





cheers, jerry
=
Samba--- http://www.samba.org
Centeris ---  http://www.centeris.com
"What man is a man who does not make the world better?"  --Balian
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.4.2.2 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFFr3VAIR7qMdg1EfYRAqgoAKDX8uOW+Pz91kjWZhmSsts/jasZIQCgpWos
gDwtzrD3XlRR0ckSvrigOc8=
=7tB/
-END PGP SIGNATURE-
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] samba 3.0.23d with ldap compile problem

2007-01-18 Thread George R . Kasica
>On Thu, 18 Jan 2007 10:24:27 +0100, you wrote:

>Hi,
>
>I'm trying to compile samba 3.0.23d for use with ldap as backend.
>
>The system is Debian Sarge fresh installed, all updates installed, and 
>openldap-2.3.27 installed from sources.
>
>I searched a lot but couldn't google out anythink that helped.
>
>I sent this same mail jesterday with configure options for ldap, ld.so.conf 
>and samba error.log but it was too long. So another time with less text.
>
>Can anybody here help? It would be great!
>
>Thank you very much.
>
>Angela
>
>
>samba configure:
>
>./source/configure \
>'--prefix=/usr/local/samba' \
>'--sysconfdir=/etc' \
>'--localstatedir=/usr/local/samba/var' \
>'--with-configdir=/etc/samba' \
>'--with-privatedir=/etc/samba' \
>'--with-lockdir=/usr/local/samba/var/lock' \
>'--with-piddir=/usr/local/samba/var/run' \
>'--with-swatdir=/usr/local/samba/swat' \
>'--with-smbmount' \
>'--with-quotas' \
>'--with-ldap' \
>'--with-acl-support'
>
>*
>
>Configure aborts with this error:
>
>
>checking for LDAP support... yes
>checking ldap.h usability... yes
>checking ldap.h presence... yes
>checking for ldap.h... yes
>checking lber.h usability... yes
>checking lber.h presence... yes
>checking for lber.h... yes
>checking for ber_scanf in -llber... no
>checking for ldap_init in -lldap... no
>checking for ldap_set_rebind_proc... no
>checking whether ldap_set_rebind_proc takes 3 arguments... 3
>checking for ldap_dn2ad_canonical... no
>configure: error: libldap is needed for LDAP support
>
>*


Angela:

I have a similar issue here as well, posted back on 11/16/06 with no
response either, I'm going to put it out again on the bottom of your
message maybe the two are somehow related.

>On Thu, 16 Nov 2006 11:10:44 -0800, you wrote:

>-BEGIN PGP SIGNED MESSAGE-
>Hash: SHA1
>
>George R. Kasica wrote:
>
>> Compiling dynconfig.c
>> In file included from include/includes.h:1067,
>>  from /Linux/samba-3.0.23d/source/dynconfig.c:21:
>> include/proto.h:672: error: expected declaration specifiers or '...'
>> before 'LDAPControl'
>> include/proto.h:672: error: expected declaration specifiers or '...'
>> before 'LDAPControl'
>> make: *** [dynconfig.o] Error 1
>> 
>> I'm not a programmer so I'm not sure how to correct the 
>> problem here, any assistance would be greatly appreciated.
>
>What platform is this?  And what LDAP client libs do you
>have installed (if any)?
>
>Intel P-III platform, and no LDAP is in use or installed.
>Caldera OpenLinus 2.2 but its been upgraded extensively so it is now more or
>less generic 2.6.19.1.

-- 
===[George R. Kasica]===+1 262 677 0766
President   +1 206 374 6482 FAX 
Netwrx Consulting Inc.  Jackson, WI USA 
http://www.netwrx1.com
[EMAIL PROTECTED]
ICQ #12862186
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Samba 3.0.23d compile problem under linux

2006-12-27 Thread George R . Kasica
>On Fri, 17 Nov 2006 09:08:56 -0600, you wrote:

>>On Fri, 17 Nov 2006 14:35:30 +0100, you wrote:
>
>>On Thu, Nov 16, 2006 at 01:24:39PM -0600, George R. Kasica wrote:
>>> >What platform is this?  And what LDAP client libs do you
>>> >have installed (if any)?
>>> >
>>> Intel P-III platform, and no LDAP is in use or installed.
>>
>>I think the question was more after what distro you are
>>running exactly. We need to reproduce it somehow to fix it.

>Sorry, it was at one time a Caldera 2.2 install but it is about 5
>years old so its more or less generic at this point.
>
>George


Just curious - any progress on this at all??? Have seen nothing in the
thread or related to it since the mid-November time frame. Still
cannot compile 3.0.23d here.

===[George R. Kasica]===+1 262 677 0766
President   +1 206 374 6482 FAX 
Netwrx Consulting Inc.  Jackson, WI USA 
http://www.netwrx1.com
[EMAIL PROTECTED]
ICQ #12862186
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Samba 3.0.23d & /etc/krb5.keytab

2006-12-15 Thread Gerald (Jerry) Carter
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Michael Schurter wrote:
> I'm new to Kerberos.  I don't understand how Samba uses the system
> keytab (/etc/krb5.keytab) when "use kerberos keytab = true".
> 
> Does Samba use service specific tickets?
> What tickets does Samba add?
> Do I need a cron job to keep them fresh or does 
> Winbind take care of it?

The keytab simply contains the long term keys for the machine's
computer account and is intended for use by Kerberized applications
other than Samba (e.g. Apache, OpenSSH, etc...)





cheers, jerry
=
Samba--- http://www.samba.org
Centeris ---  http://www.centeris.com
"What man is a man who does not make the world better?"  --Balian
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.4.2.2 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFFgvgDIR7qMdg1EfYRAu4wAJ0exk0gTZ8ow0RPxNRkmBN+mFyZJQCdFVn+
yCegV4Ipf5L7qERBMsur50E=
=rpKs
-END PGP SIGNATURE-
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] samba 3.0.23d on ubuntu - ADS member -failed to verify ticket

2006-12-01 Thread sysadm

SOLVED:
Error was on updateing an empty keytab file so:
1. delete keytab file
2. rejoin ads domain 

I lost 3 days for 2 operations... silly me 




sysadm writes: 

I have a server with ubuntu 6.06 LTS with samba 3.0.23d (compiled against 
heimdal krb5) and heimdal-clients0.7.1-1ubuntu3.

I have configured samba as a ADS domain member.
Problem is that when I want to access a samba share from a windows xp 
domain member I am keep asked for user and password and
debug level 3 shows this on log. :  


...
[2006/11/30 12:42:15, 3] 
libads/kerberos_verify.c:ads_secrets_verify_ticket(261)
ads_secrets_verify_ticket: enc type [1] failed to decrypt with error 
Decrypt integrity check failed
[2006/11/30 12:42:15, 3] 
libads/kerberos_verify.c:ads_secrets_verify_ticket(261)
ads_secrets_verify_ticket: enc type [3] failed to decrypt with error 
Decrypt integrity check failed

[2006/11/30 12:42:15, 3] smbd/sesssetup.c:reply_spnego_kerberos(207)
Ticket name is [EMAIL PROTECTED]
...  


my smb.conf:



[global]
 workgroup = APMC
realm = APMC.LOCAL
 server string = %h server (Samba, Ubuntu)
 dns proxy = no  

interfaces = 127.0.0.1/255.0.0.0 192.168.0.0/255.255.255.0 
10.1.0.0/255.255.0.0 10.101.0.0/255.255.0.0  

hosts allow = 10.1. 127.  192.168.0. 192.168.1. 10.101.  


 log file = /var/log/samba/log.%m
 max log size = 1000
 syslog = 0
 panic action = /usr/share/samba/panic-action %d
use kerberos keytab = no
security = ADS
 encrypt passwords = true
password server = pdc.apmc.local
 passdb backend = tdbsam  


 obey pam restrictions = yes
 invalid users = root  


 passwd program = /usr/bin/passwd %u
 passwd chat = *Enter\snew\sUNIX\spassword:* %n\n 
*Retype\snew\sUNIX\spassword:* %n\n *password\supdated\ssuccessfully* .

 load printers = no
 socket options = TCP_NODELAY
idmap uid = 1-2
 idmap gid = 1-2  


[bks$]
browseable = yes
path = /bks
public = yes
writable = yes
write list = root, @'APMC\domain users'  

  


My krb5.conf



[logging]
default = FILE:/var/log/krb5/libs.log
kdc = FILE:/var/log/krb5/kdc.log
admin_server = FILE:/var/log/krb5/admin.log  


[libdefaults]
  default_realm = APMC.LOCAL
default_etypes = des-cbc-crc des-cbc-md5
default_etypes_des = des-cbc-crc des-cbc-md5  


[domain_realms]
.apmc.local = APMC.LOCAL
apmc.local = APMC.LOCAL  


[realms]
APMC.LOCAL = {
   kdc = pdc.apmc.local
  admin_server = pdc.apmc.local
  default_domain = apmc.local
}  

<  



I have also tried samba package from ubuntu dapper distri and MIT krb5 but 
with the same rezult.  

Thank you.  

 


-
This mail was scanned by BitDefender
For more informations please visit http://www.bitdefender.com 



- 


--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba 


-
This mail was scanned by BitDefender
For more informations please visit http://www.bitdefender.com 



- 





-
This mail was scanned by BitDefender
For more informations please visit http://www.bitdefender.com


-

--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Samba 3.0.23d compile problem under linux

2006-11-17 Thread George R . Kasica
>On Fri, 17 Nov 2006 14:35:30 +0100, you wrote:

>On Thu, Nov 16, 2006 at 01:24:39PM -0600, George R. Kasica wrote:
>> >What platform is this?  And what LDAP client libs do you
>> >have installed (if any)?
>> >
>> Intel P-III platform, and no LDAP is in use or installed.
>
>I think the question was more after what distro you are
>running exactly. We need to reproduce it somehow to fix it.
Sorry, it was at one time a Caldera 2.2 install but it is about 5
years old so its more or less generic at this point.

George
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Samba 3.0.23d compile problem under linux

2006-11-17 Thread Volker Lendecke
On Thu, Nov 16, 2006 at 01:24:39PM -0600, George R. Kasica wrote:
> >What platform is this?  And what LDAP client libs do you
> >have installed (if any)?
> >
> Intel P-III platform, and no LDAP is in use or installed.

I think the question was more after what distro you are
running exactly. We need to reproduce it somehow to fix it.

Volker


pgpkZKKH20UHQ.pgp
Description: PGP signature
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba

Re: [Samba] Samba 3.0.23d compile problem under linux

2006-11-16 Thread George R . Kasica
>On Thu, 16 Nov 2006 11:10:44 -0800, you wrote:

>-BEGIN PGP SIGNED MESSAGE-
>Hash: SHA1
>
>George R. Kasica wrote:
>
>> Compiling dynconfig.c
>> In file included from include/includes.h:1067,
>>  from /Linux/samba-3.0.23d/source/dynconfig.c:21:
>> include/proto.h:672: error: expected declaration specifiers or '...'
>> before 'LDAPControl'
>> include/proto.h:672: error: expected declaration specifiers or '...'
>> before 'LDAPControl'
>> make: *** [dynconfig.o] Error 1
>> 
>> I'm not a programmer so I'm not sure how to correct the 
>> problem here, any assistance would be greatly appreciated.
>
>What platform is this?  And what LDAP client libs do you
>have installed (if any)?
>
Intel P-III platform, and no LDAP is in use or installed.

George
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Samba 3.0.23d compile problem under linux

2006-11-16 Thread Gerald (Jerry) Carter
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

George R. Kasica wrote:

> Compiling dynconfig.c
> In file included from include/includes.h:1067,
>  from /Linux/samba-3.0.23d/source/dynconfig.c:21:
> include/proto.h:672: error: expected declaration specifiers or '...'
> before 'LDAPControl'
> include/proto.h:672: error: expected declaration specifiers or '...'
> before 'LDAPControl'
> make: *** [dynconfig.o] Error 1
> 
> I'm not a programmer so I'm not sure how to correct the 
> problem here, any assistance would be greatly appreciated.

What platform is this?  And what LDAP client libs do you
have installed (if any)?





cheers, jerry
=
Samba--- http://www.samba.org
Centeris ---  http://www.centeris.com
"What man is a man who does not make the world better?"  --Balian
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.4.3 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFFXLe0IR7qMdg1EfYRAkCsAKCbl4K+uGkfeT8Id2Il7++LfOeQxACgoK8Q
6taOwXx0e7zpHEIL0edzrEQ=
=l/ik
-END PGP SIGNATURE-
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Samba 3.0.23d Available for Download

2006-11-16 Thread Volker Lendecke
On Thu, Nov 16, 2006 at 10:50:54AM +0300, Peter Trifonov wrote:
> id  command does not show all the groups of the user and the user is not

The id command on my SuSE Linux 10.1 behaves differently if
I ask for just "id", looking at my own groups and "id username",
looking at someone else's group. "id" does work correctly if
I authenticated as that user (su - is different), "id username"
does not.

When you logged in via a full authentication using pam or
something similar, then we might have an issue. If you did a
su -, then it will not reliably work.

This is a restriction imposed to us by Windows btw.

Volker


pgpMmY3gSMMyu.pgp
Description: PGP signature
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba

RE: [Samba] Samba 3.0.23d Available for Download

2006-11-15 Thread Peter Trifonov
Hello,


> Important issues addressed in 3.0.23d include:
> 
>   o Stability fixes for winbindd
>   o Portability fixes on FreeBSD and Solaris operating systems

There is still problem with group handling in 3.0.23d.
Namely, if 
"winbind enum groups" =no:
id  command does not show all the groups of the user and the user is not
able to access the directories owned by his secondary groups.
Furthermore, wbinfo -r shows some spurious GIDs which do not resolve to
SIDs.

If 
"winbind enum groups" =yes:
id does show all the groups of the user and the user is able to access
group-owned directories.
However, there are still spurious GIDs in the output of wbinfo -r


In summary: it is now possible to workaround the group membership
problem by "winbind enum groups" =yes. But is this correct that turning it
off breaks permission handling?

With best regards,
P. Trifonov  


-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Samba 3.0.23d Available for Download

2006-11-15 Thread Chris Smith
On Wednesday 15 November 2006 14:08, Guillermo Gutierrez wrote:
> Woo hoo, will anyone be making an ebuild for it or Gentoo I wonder?

Just rename the 3.0.23c ebuild and update the digest.

Chris
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Samba 3.0.23d Available for Download

2006-11-15 Thread Luis Daniel Lucio Quiroz
I did for Mandriva 2006
Le mercredi 15 novembre 2006 13:08, Guillermo Gutierrez a écrit :
> Woo hoo, will anyone be making an ebuild for it or Gentoo I wonder?
>
> - Guillermo Gutierrez
>
>
> -Original Message-
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED] On
> Behalf Of Gerald (Jerry) Carter
> Sent: Wednesday, November 15, 2006 10:40 AM
> To: [EMAIL PROTECTED]
> Subject: [Samba] Samba 3.0.23d Available for Download
>
> ==
>Here's a new adage for you:
> "Don't let the crazy hacks take over".
>-- Tridge
> ==
> Release Announcements
> =
>
> This is the latest stable release of Samba. This is the version that
> production Samba servers should be running for all current bug-fixes.
> Please read the changes in this section and for the original 3.0.23
> release regarding new features and difference in behavior from previous
> releases.
>
> Important issues addressed in 3.0.23d include:
>
>   o Stability fixes for winbindd
>   o Portability fixes on FreeBSD and Solaris operating systems
>
>
> 
> Download Details
> 
>
> The uncompressed tarballs and patch files have been signed using GnuPG
> (ID 157BC95E).  The source code can be downloaded from:
>
>   http://download.samba.org/samba/ftp/
>
> The release notes are available online at:
>
>   http://www.samba.org/samba/history/samba-3.0.23d.html
>
> Binary packages are available at
>
>   http://download.samba.org/samba/ftp/Binary_Packages/
>
> Our Code, Our Bugs, Our Responsibility.
> (https://bugzilla.samba.org/)
>
>   --Enjoy
>   The Samba Team
>
> --
> To unsubscribe from this list go to the following URL and read the
> instructions:  https://lists.samba.org/mailman/listinfo/samba
--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


RE: [Samba] Samba 3.0.23d Available for Download

2006-11-15 Thread Guillermo Gutierrez
Woo hoo, will anyone be making an ebuild for it or Gentoo I wonder?

- Guillermo Gutierrez


-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On
Behalf Of Gerald (Jerry) Carter
Sent: Wednesday, November 15, 2006 10:40 AM
To: [EMAIL PROTECTED]
Subject: [Samba] Samba 3.0.23d Available for Download

-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

==
   Here's a new adage for you:
"Don't let the crazy hacks take over".
 -- Tridge
==
Release Announcements
=

This is the latest stable release of Samba. This is the version that
production Samba servers should be running for all current bug-fixes.
Please read the changes in this section and for the original 3.0.23
release regarding new features and difference in behavior from previous
releases.

Important issues addressed in 3.0.23d include:

  o Stability fixes for winbindd
  o Portability fixes on FreeBSD and Solaris operating systems



Download Details


The uncompressed tarballs and patch files have been signed using GnuPG
(ID 157BC95E).  The source code can be downloaded from:

http://download.samba.org/samba/ftp/

The release notes are available online at:

http://www.samba.org/samba/history/samba-3.0.23d.html

Binary packages are available at

http://download.samba.org/samba/ftp/Binary_Packages/

Our Code, Our Bugs, Our Responsibility.
(https://bugzilla.samba.org/)

--Enjoy
The Samba Team
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.4.3 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFFW18FIR7qMdg1EfYRAoulAJwMIg0Ymtg6irf1NW7fOe3f4P77vACeIygz
VtvWASmqrPcTlqJ+jvayGKs=
=qMJL
-END PGP SIGNATURE-

--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba
--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba