Re: [Samba] Autocreate user home directories.

2006-02-10 Thread David Shapiro
[homes] root preexec = [ ! -e /home/%U ] && { /bin/cp -a /etc/skel /home/%U; /bin/chown -R %U."%G" /home/%U; } create mask = 0600directory mask = 0700 read only = no valid users = EXAMPLE\%SI think I chopped a piece off, so I am sending again. David Shapiro Unix Team Lead 919-765-201

Re: [Samba] Autocreate user home directories.

2006-02-10 Thread David Shapiro
homes] root preexec = [ ! -e /home/%U ] && { /bin/cp -a /etc/skel /home/%U; /bin/chown -R %U."%G" /home/%U; } create mask = 0600 directory mask = 0700 read only = no valid users = EXAMPLE\%S David Shapiro Unix Team Lead 919-765-2011 >>> "Trimble, Ronald D

[Samba] Samba + ldap, acounts expiring? but pdbedit says otherwise

2006-02-10 Thread jmailand
Apologies if this is a RTFM issue... My first question is: anyone know of code that can assist in going through samba logfiles (looking for errors, etc.)? I have what appears to be a password expiration problem. User X has been able to mount a shared drive off the samba box using his login/pass

[Samba] Failing with LDAP backend

2006-02-10 Thread Wesley Hobbie
Hi, I am using Samba 3.0.20 on Mandriva 2006 x86_64. I am trying to set up Samba to use OpenLDAP backend, I have OpenLDAP configured and running. I used smbpasswd -w [password] to store the password for the LDAP admin dn. My OpenLDAP version is 2.3.6. When I add passwd backend = ldapsam:ldap://my

Re: [Samba] chown DOMAIN+mylogin /dir fails (Please help)

2006-02-10 Thread David Shapiro
What is the KRB5A option going to provide? David Shapiro Unix Team Lead 919-765-2011 >>> Doug VanLeuven <[EMAIL PROTECTED]> 2/10/2006 3:22:37 PM >>> David Shapiro wrote: > I only see winbind_nss_aix.po, but I do not see the .c file. NIS ALL > works, but LDAP and WINBIND both do not. Hi Dave,

Re: [Samba] horrifying slow samba.

2006-02-10 Thread David Shapiro
set enum groups to no might help. David Shapiro Unix Team Lead 919-765-2011 >>> "Martijn Hazenberg" <[EMAIL PROTECTED]> 2/10/2006 9:07:10 AM >>> Hi all, We have a linux data server here, which used to be a workgroup member. Everything was fine then. Now we hav a new sbs server here, so the da

Re: [Samba] Question on AIX 5.2, Samba and NT domains

2006-02-10 Thread David Shapiro
Welcome to the nightmare. Well, I have gleemed the following: After your make install, go into nsswitch directory in source and copy WINBIND to /usr/lib/security. Next, add to /usr/lib/security/methods.cfg WINBIND: programs=/usr/lib/security/WINBIND Make sure this is before PAM: if t

Re: [Samba] chown DOMAIN+mylogin /dir fails (Please help)

2006-02-10 Thread David Shapiro
Thanks for the info. Should I expect su - DOMAIN+mylogin to work? I can now do chown/chgrp commands. When I run su - DOMAIN+mylogin, I get in messages: Feb 10 17:39:59 svcanimp su: BAD SU from root to _010 at /dev/pts/5 and the message: 3004-503 Cannot set process credentials. goes out t

[Samba] problem using 'winbind nss info =' statement

2006-02-10 Thread Jonathan C. Detert
When winbind is configured without the 'winbind nss info =' statement (i.e. such that winbind maintains its own local map of SIDs -> UID/GIDs), the following works fine: # cd ~detertj # getent passwd detertj detertj:x:10008:1:detertj:/home/MSOE/detertj:/bin/bash but whe

[Samba] Re: winbind can see some groups but not others

2006-02-10 Thread Jonathan C. Detert
* detertj [060208 14:45]: > Hello, > > I followed the steps at > http://www.enterprisenetworkingplanet.com/netos/article.php/3487081 > for adding a v3.0.21a samba and winbindd server to a MsAD domain and > configuring nsswitch.conf to find passwd and group info from winbind. > > This seems to ha

Re: [Samba] Fwd: WINBIND security methods does not load

2006-02-10 Thread Doug VanLeuven
David Shapiro wrote: Hmm, I am not sure why this worked, but I moved my WINBIND stanza in /usr/lib/security/methods.cfg up in the file prior to the PAM stanza, and save it. After this, I was able to load the module. Any ideas on why this worked? Because aix will scan methods.cfg sequentially

Re: [Samba] chown DOMAIN+mylogin /dir fails (Please help)

2006-02-10 Thread Doug VanLeuven
David Shapiro wrote: I only see winbind_nss_aix.po, but I do not see the .c file. NIS ALL works, but LDAP and WINBIND both do not. Hi Dave, I'm having to work from memory as the work I did on AIX ended last June. In addidtion, when I formulated the phase transitions from samba 2.x nt40 style

Re: [Samba] POLL: Does anyone actually use multiple passdb backends on the same server?

2006-02-10 Thread Gerald (Jerry) Carter
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Chris wrote: > On Friday 10 February 2006 10:44, Gerald (Jerry) Carter wrote: >> Migration is a concern. The current proposal would to use >> an intermediate form for dumping one passdb to a file. And then >> importing the dump into another. Pretyy

[Samba] Domain controller: LDAP server signing requirements +pam

2006-02-10 Thread Batty, Richard
We have got Samba 3.0.21b working fine when browsing from 2003AD clients works fine. Weve comfigured pam and if we change the setting on the 2003 domain for "Domain controller: LDAP server signing requirements" to none it works fine if its at requires signing pam doesnt work is there anyway

RE: [Samba] Upgraded from 3.0.9 -> 3.0.21b - Now adding machines aproblem

2006-02-10 Thread Daniel Northam
Yes, I had a similar problem when I upgraded from 3.0.9 -> 3.0.21b. After upgrading I could not add machines. It would find the PDC and then prompt me for a user/password, I would enter it and I got user not found error message. If I typed the password incorrect then I would get Username/Password i

[Samba] Upgraded from 3.0.9 -> 3.0.21b - Now adding machines a problem

2006-02-10 Thread Dan
I recently upgraded my samba pdc from version 3.0.9 to version 3.0.21b to try and fix a browse issue with Windows 2003 Server and linux samba servers. The browse issue was fixed, but now I am having problems adding machines to the network. I run slackware 10.0 linux with an openldap backend w

Re: [Samba] POLL: Does anyone actually use multiple passdb backends on the same server?

2006-02-10 Thread Chris
On Friday 10 February 2006 10:44, Gerald (Jerry) Carter wrote: > Migration is a concern. The current proposal would to use > an intermediate form for dumping one passdb to a file. And then > importing the dump into another. Pretyy much the same idea > used by database tools. What about the undo

[Samba] Adding domain computer account to local group

2006-02-10 Thread Marlon Dutra
Hello, I'm trying to add a domain computer account to a local group in a Windows Server 2003. I couldn't do that because I get an error saying that the information returned by the object selector is incomplete. If I add a domain group or user to a local group, it works fine. That W2k3 is a member

[Samba] Using Samba PDC for Policies

2006-02-10 Thread Patrick Zaloum
Hi Does anyone have any experience with a Samba PDC to apply group policies to the computers on the domain? Or know any shortcuts to prevent me from having to apply individual policies at each local machine? (Samba version 2.2.2) Thanks Pat -- To unsubscribe from this list go to the

[Samba] Browse list propagation

2006-02-10 Thread Bob von Knobloch
I am still trying to find out why my WinXP clients don't get a browse list except when they are directly connected to a subnet of the Samba server. I now find that Win2000 clients work fine in this respect. The reason is they request server info over port 139 whether local or in a remote subnet

[Samba] Question on AIX 5.2, Samba and NT domains

2006-02-10 Thread Kent Wick
Environment: AIX 5.2 Samba 3.0.21b (compiled at this site with Visualage C/C++ 6.0) configure was run as: ./configure --prefix=/usr/local/samba --with-pam --with-acl-support --with-aio-support --with-winbind Windows environment is a mix of Windows NT domain and Novell file server

[Samba] Autocreate user home directories.

2006-02-10 Thread Trimble, Ronald D
I am trying to set up our samba server to automatically create a users home directory when they browse to it from a Windows computer. Is there a way to do this? I was looking at the root preexec option to try and do this, but I am not sure how to go about it. Has anybody done this? Can someone p

[Samba] Samba, LDAP, and unix account

2006-02-10 Thread Ether
Hi every one! Until now, I used samba as a simple public share server... and now, I would like to use it with many account. I know it's possible, but I would like something particular: I would like to have SAMBA account independent from the unix account system! Here is how I think my sys

Re: [Samba] POLL: Does anyone actually use multiple passdb backends on the same server?

2006-02-10 Thread Gerald (Jerry) Carter
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Mike Rambo wrote: > I have used 'passdb backend = tdbsam smbpasswd' several times though > only for the purpose of migrating to a different backend. So long as > there is another way to migrate from one backend to another I don't > suppose it would ma

Re: [Samba] POLL: Does anyone actually use multiple passdb backends on the same server?

2006-02-10 Thread Gerald (Jerry) Carter
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Gunther Schlegel wrote: > Gerald, > >> We are discussing removing the capability to chaining passdb >> backends. It's a decent idea but overly complicates things >> IMO and unless it has wide spread use, we'll probably axe it >> soon (voting is start

RE: [Samba] Error Messages in /var/log/messages

2006-02-10 Thread Jesse Spangenberger
Thanks for the information. The ports 139 and 445 are both open. Using SuSE 9.2 Professional. I guess I'll look more information on the FW and see what I can do. -Original Message- From: Craig White [mailto:[EMAIL PROTECTED] Sent: Thursday, February 09, 2006 11:50 PM To: samba@lists.

[Samba] horrifying slow samba.

2006-02-10 Thread Martijn Hazenberg
Hi all, We have a linux data server here, which used to be a workgroup member. Everything was fine then. Now we hav a new sbs server here, so the data server had to be made into a domain member. To do that i followed this manual. The thing is now, that the samba shares on the data server are sl

[Samba] Fwd: WINBIND security methods does not load

2006-02-10 Thread David Shapiro
Hmm, I am not sure why this worked, but I moved my WINBIND stanza in /usr/lib/security/methods.cfg up in the file prior to the PAM stanza, and save it. After this, I was able to load the module. Any ideas on why this worked? David David Shapiro Unix Team Lead 919-765-2011 >>> David Shapiro 2

Re: [Samba] POLL: Does anyone actually use multiple passdb backends on the same server?

2006-02-10 Thread Gerald (Jerry) Carter
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Collen Blijenberg wrote: > Does removing passdb backends include the mysql backend ?? The pdb_*sql modules have already been removed. This has been discussed before. See https://bugzilla.samba.org/show_bug.cgi?id=3375 > or do you mean the

[Samba] smbclient chown and chmod problem

2006-02-10 Thread Fernando Ruza
Hi, I'm trying to change permisions (chmod) or owner (chown) of a file through smbclient conected to a samba server (version: samba-3.0.4-1). I always receive the following error message: Pushing string of 'unlimited' length into non-SMB buffer! hpcinf03:/etc/samba# smbclient //hserint2/HomesU

[Samba] WINBIND security methods does not load

2006-02-10 Thread David Shapiro
I cannot load WINBIND for some reason anymore since some time yesterday morning. I used to not be able to remove WINBIND or copy over it because it would say it is in use, but now I can, which shows it is not in use. In addition, lsuser -R WINBIND does not load the module. What can I do to help

[Samba] Re: Unable to access and browse a DFS tree

2006-02-10 Thread Theo Kanter
I'll will answer my own message in the hope that might be of use to someone else who is also puzzled by the phrase "Users on DFS-aware clients can now browse the DFS tree" at the end of Chapter 18. You cannot *now* browse the DFS tree. This is only true when adding a few extra lines, granting acces

Re: [Samba] chown DOMAIN+mylogin /dir fails (Please help)

2006-02-10 Thread David Shapiro
When I tried to run the commands you suggested, I got the following: lsuser -R WINBIND ALL Invalid -R option "WINBIND" Usage: lsuser [-R load_module] [ -c | -f ] [ -a attr attr ... ] { "ALL" | user1,user2 ... } The WINBIND entry that I copied from the nsswitch directory after the "make insta

[Samba] Upgrade to 3.0.14 breaks NT4 client login

2006-02-10 Thread Richard Ray
Our office is a mix of XP and NT4 clients. I've been running Fedora Core 3 for some time with samba-3.0.10-1.fc3.i386.rpm with no problems. When I upgraded to Fedora Core 4 with samba-3.0.14a-2.i386.rpm NT4 clients can no longer authenticate. [2006/02/08 14:17:22, 5] auth/auth.c:check_ntlm_pas

Re: [Samba] POLL: Does anyone actually use multiple passdb backends on the same server?

2006-02-10 Thread Mike Rambo
Gerald (Jerry) Carter wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Folks, We are discussing removing the capability to chaining passdb backends. It's a decent idea but overly complicates things IMO and unless it has wide spread use, we'll probably axe it soon (voting is starting up on

Re: [Samba] POLL: Does anyone actually use multiple passdb backends on the same server?

2006-02-10 Thread Gunther Schlegel
Gerald, We are discussing removing the capability to chaining passdb backends. It's a decent idea but overly complicates things IMO and unless it has wide spread use, we'll probably axe it soon (voting is starting up on the samba-tecnnical ml now). At least I use it: passdb backend = ldapsam

[Samba] RE: Samba - cups rights problem

2006-02-10 Thread Louis van Belle
Hi, wel, i didn't solve it, i just let my users print multiple times and if they want lots of prints, i print it for them. What you can do, ( i didn't ) is add the Domain users to the printer operators But if 1 users change the printer settings it goes to all users. > I also have people unable to

[Samba] Unable to access and browse a DFS tree

2006-02-10 Thread Theo Kanter
Please help me understand why I am unable to connect to and browse the newly configured DFS tree that I installed on my Samba server according to the instructions found in Chapter 18. "Hosting a Microsoft Distributed File System Tree" of the official how-to. Irrespective of whether I try to access

Re: [Samba] POLL: Does anyone actually use multiple passdb backends on the same server?

2006-02-10 Thread Collen Blijenberg
Does removing passdb backends include the mysql backend ?? or do you mean the capability of useing more then 1 passdb ? L8rz, Collen Gerald (Jerry) Carter wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Folks, We are discussing removing the capability to chaining passdb backends. It's a