Re: [Samba] how to join to AD ?

2009-11-25 Thread Kevin Keane
> -Original Message- > From: samba-boun...@lists.samba.org [mailto:samba- > boun...@lists.samba.org] On Behalf Of mistofeles > Sent: Wednesday, November 25, 2009 1:52 PM > To: samba@lists.samba.org > Subject: Re: [Samba] how to join to AD ? > > > > Jason Gerfen-2 wrote: > > > > ADS serve

Re: [Samba] NAS on 2 sites connected via slow link

2009-11-25 Thread Koen Linders
I hope I'm clear about what I try to do and what I hope would happen :) I thought the data didn't had to be transferred over the link. Lets say Site A: PDC 192.168.1.2/24 Site B: NAS 192.168.5.2/24 I thought I could mount the NAS on a directory defined as share on the PDC. And when mounted that w

Re: [Samba] how to join to AD ?

2009-11-25 Thread Diego Zuccato
Jason Gerfen wrote: auth sufficient pam_winbind.so [...] auth sufficient pam_krb5.so use_first_pass [...] accountsufficient pam_krb5.so ignore_root accountsufficient pam_winbind.so Why are you using both pam_winbind and pam_krb5 ? Shouldn't winbind already handle

Re: [Samba] NAS on 2 sites connected via slow link

2009-11-25 Thread Kevin Keane
Seems like a nightmare in the making... Basically, no matter what you do, the data has to be transferred. How are users going to access the files on site B? If it is through a Web browser, then a caching proxy in Site A might be your best answer. Your best option might be to cache the files on

Re: [Samba] Windows 7 domain issues

2009-11-25 Thread Kevin Keane
> -Original Message- > From: samba-boun...@lists.samba.org [mailto:samba- > boun...@lists.samba.org] On Behalf Of Alex Ferrara > Sent: Wednesday, November 25, 2009 2:17 PM > To: samba@lists.samba.org > Subject: Re: [Samba] Windows 7 domain issues > > The DNS update issue I have resolved by

[Samba] NAS on 2 sites connected via slow link

2009-11-25 Thread Koen Linders
Lets say: 2 sites: 2 subnets connected via slow link (1M) Site A: Samba 3 PDC Site B: NAS for large videofiles People will work with/view the files on site B. Data will grow in time. I want to mount the NAS on the PDC so I can integrate it in a share on site A. Anyone has good/bad experience wit

[Samba] domain printer issues

2009-11-25 Thread Brian May
Hello, As of today we seem to be having printer issues. As in computers that were working fine suddenly decided to stop working. One one computer. No printers won't work at all. For some printers, if I remove and reinstall, it complains that there are no printer drivers on the server (incorrect)

Re: [Samba] samba 3.4.3 DC breaks Windows groups

2009-11-25 Thread Gaiseric Vandal
I think I have found the problem: Samba 3.0.x looks for group mappings in the "ldap group suffix" param. On my systems this is "ldap group suffix = ou=smb_groups." Regular unix groups are just in ou=groups. Initially we had used NIS (then LDAP) for unix groups, and had used tdbsam for the sam

Re: [Samba] samba 3.4.3 DC breaks Windows groups

2009-11-25 Thread Gaiseric Vandal
I have done the following - Added index for sambaSID and other attributes as per the following http://wiki.samba.org/index.php/2.0:_Configuring_LDAP - replaced the samba 3.0 schema file in my LDAP Server (Sun Directory Server) with the 3.2 version - installed samba 3.4.3 package

Re: [Samba] How do I increase the 20000 millisecond timeout?

2009-11-25 Thread Jeremy Allison
On Fri, Nov 13, 2009 at 11:57:46PM -0600, Chris Baker wrote: > > > Perhaps, this issue has already been posted here. However, I have already a > lot of searching on this problem. > > I have Fedora Core 8 with samba-client-3.0.33-0.fc8. > > As you may know, this client has a timeout of 20,000 m

Re: [Samba] Windows 7 domain issues

2009-11-25 Thread Alex Ferrara
The DNS update issue I have resolved by insisting that DHCPD perform the update, and ignore the client request. I found that Windows 7 tells DHCPD that it will perform the DNS update, and by default, DHCPD will then let it. The directive in dhcpd.conf is "deny client-updates". As for the passwo

Re: [Samba] how to join to AD ?

2009-11-25 Thread mistofeles
Jason Gerfen-2 wrote: > > ADS server type will allow domain authentication for samba directories > You will need Samba which provides winbindd, sasl, openldap, kerberos. > Samba should be configured with ads, acl, ldap, kerberos, pam, winbind > options if you are building from source. > I would

Re: [Samba] Serious grief with a Samba connection

2009-11-25 Thread Gaiseric Vandal
encrypted passwords should be the default- no reason to turn that off. On 11/25/09 16:22, Dan White wrote: Thanks for the reply ! I can try those commands on Monday -- long Thanksgiving holiday weekend. I do not have admin on the Sun box, but my tech lead does. The link says to turn off passw

Re: [Samba] Serious grief with a Samba connection

2009-11-25 Thread Dan White
Thanks for the reply ! I can try those commands on Monday -- long Thanksgiving holiday weekend. I do not have admin on the Sun box, but my tech lead does. The link says to turn off password encryption. I cannot do that. The network people (government run network) will not allow that. The sam

Re: [Samba] Serious grief with a Samba connection

2009-11-25 Thread Gaiseric Vandal
My guess is that they may have required NTLMv2 or something thing similar on the Win machines. If these machines are part of an Active Directory domain, it would be relatively easy for this to be done. http://www.dennek.com/2009/03/system-error-1240-the-account-is-not-authorized-to-login-from

Re: [Samba] Samba + LDAP error in windows xp while ACL

2009-11-25 Thread D.Rajan
r...@sangam:~# pdbedit -Lv ldapsam_setsampwent: LDAP search failed: Size limit exceeded r...@sangam:~# testpartm -sv   Output *** [Global] dos charset = 850 unix charset = ISO8859-1 display charset = LOCALE workgroup = RAYALA realm = netbios

[Samba] Serious grief with a Samba connection

2009-11-25 Thread Dan White
The server is on a Sun box (uname says SunOS 5.8) I do not know what version of samba is running For the last year and a half, I have made a daily connection from a Windows XP box with the following command: new use G: \\server\volume /USER:userid password This makes a "G" network drive that

Re: [Samba] samba 3.4.3 DC breaks Windows groups

2009-11-25 Thread Gaiseric Vandal
I added the index. (The Sun DS Admin guide has pretty simple instructions on doing this.) I also added some additional indexes as per the following http://wiki.samba.org/index.php/2.0:_Configuring_LDAP Unfortunately did not resolve the problem. It does look like I have the 3.0 schema instal

Re: [Samba] Remove atributes from user

2009-11-25 Thread Gaiseric Vandal
Apache Directory Studio (Windows and Linux) is pretty good too. On 11/25/09 11:27, Nick Pappin wrote: Check out luma it is a graphical ldap editor that allows you to only delete a certain attribute. -- W. Nick Pappin On Wed, Nov 25, 2009 at 6:53 AM, Bruno Steven wrote: Hello I need re

Re: [Samba] Remove atributes from user

2009-11-25 Thread Nick Pappin
Check out luma it is a graphical ldap editor that allows you to only delete a certain attribute. -- W. Nick Pappin On Wed, Nov 25, 2009 at 6:53 AM, Bruno Steven wrote: > Hello > > I need remove the follow atributes from my user bruno > > sambaHomePath: \\PDC-SRV\root > sambaHomeDrive: H: > sa

Re: [Samba] reverse name resolving of winbind 3.4.x

2009-11-25 Thread Alexander Födisch
Hi, unfortunately the hole logfile is filled with: [2009/11/25 15:59:20, 2] winbindd/winbindd.c:878(remove_client) final write to client failed: Broken pipe what is that?? our winbind-config: idmap backend = rid:EVAN=1-5 idmap gid = 1-5 idmap uid =

[Samba] static compile of samba ?

2009-11-25 Thread Frank Bonnet
Hello Is it possible to compile Samba with ALL librairies linked statically into the smbd nmbd binaries ? I tried to use the --disable-shared option of the configure script but it failed. Thanks a lot -- To unsubscribe from this list go to the following URL and read the instructions: http

[Samba] Remove atributes from user

2009-11-25 Thread Bruno Steven
Hello I need remove the follow atributes from my user bruno sambaHomePath: \\PDC-SRV\root sambaHomeDrive: H: sambaProfilePath: \\PDC-SRV\profiles\root I don´t found any option using smbldap-usermod , somebody have any idea ? Thanks .. -- Bruno Steven - Administrador de sistemas. LPIC-1 -

Re: [Samba] how to join to AD ?

2009-11-25 Thread Jason Gerfen
mistofeles wrote: We have a small Ubuntu 9.10 file server in a large Win 2003/2008 domain. There is no X nor web browser in the server. I have rights to join machines to the domain, but I'm not an Administrator There is about 10 users in this server, who want to authenticate with domain password

[Samba] how to join to AD ?

2009-11-25 Thread mistofeles
We have a small Ubuntu 9.10 file server in a large Win 2003/2008 domain. There is no X nor web browser in the server. I have rights to join machines to the domain, but I'm not an Administrator There is about 10 users in this server, who want to authenticate with domain passwords when they mount t

Re: [Samba] Moving a PDC

2009-11-25 Thread Charles Marcus
> We're running a Debian Etch Server with Samba 3.0.24 as primary domain > controller for a XP dominated network. For various reasons, we're > migrating our server to a new machine running on Centos 5.4 (and Samba > 3.0.33). Additionally, I decided to get rid of our messy LDAP setup, > as it is qui

Re: [Samba] reverse name resolving of winbind 3.4.x

2009-11-25 Thread Robert LeBlanc
On Wed, Nov 25, 2009 at 6:15 AM, Alexander Födisch wrote: > Does nobody have the same problem? Same behaviour w/ 3.4.3 > It also takes a "long" time resolving names: > > # date; id ; date > Mi Nov 25 14:08:55 CET 2009 > uid=<...> Gruppen=<...> > Mi Nov 25 14:09:01 CET 2009 > > Sometimes it tooks m

Re: [Samba] reverse name resolving of winbind 3.4.x

2009-11-25 Thread Alexander Födisch
Does nobody have the same problem? Same behaviour w/ 3.4.3 It also takes a "long" time resolving names: # date; id ; date Mi Nov 25 14:08:55 CET 2009 uid=<...> Gruppen=<...> Mi Nov 25 14:09:01 CET 2009 Sometimes it tooks more than 10 seconds... Sometimes users get an error message "Access denie

Re: [Samba] Unknown panic actions

2009-11-25 Thread Michael Wood
Hi 2009/11/24 Ralph Kutschera : > Hallo again, > >  Well, after installing logwatch I found the following. Maybe this can help? > > TIA, >  Ralph > >  lib/fault.c:dump_core(168)  unable to change to > /var/log/samba/cores/smbdrefusing to dump core : 9 Time(s) Make sure /var/log/samba/cores/smbd e

[Samba] Need proper steps for correct use of net setlocalsid

2009-11-25 Thread David Whitney
Hi, all. I have discovered that I botched a migration from a 2.2.8a Samba PDC to Samba 3.3.4; in particular the domain sid was not preserved. Users of the domain have been authenticating presumably against cached local machine credentials, mapping them to their old domain SIDS. That's ultimately h

Re: [Samba] Windows 7 domain issues

2009-11-25 Thread Kevin Keane
> -Original Message- > From: samba-boun...@lists.samba.org [mailto:samba- > boun...@lists.samba.org] On Behalf Of Alex Ferrara > Sent: Tuesday, November 24, 2009 8:33 PM > To: samba@lists.samba.org > Subject: [Samba] Windows 7 domain issues > > I am running Windows 7 Professionaly 64-bit w

[Samba] Fetching DOMAIN database Failed

2009-11-25 Thread Nobody ist perfect
I am trying to migrate our Windows NT 4 Domain to Samba 3.4.3 and got the error message below when I run the command: "net join -S myPDC -I 172.30.1.1 -U administrator%mypasswd" worked ok "net rpc vampire -S myPDC -U administrator%mypasswd" Fetching DOMAIN database Failed to fetch domain databas

Re: [Samba] Moving a PDC

2009-11-25 Thread Dominik Rau
Hi Gaiseric. Thanks for your input. Gaiseric Vandal schrieb: RVNET\A and RVNET2\A will be completely separate users.But unless the SID is stored with-in one files itself I would think it would be just a matter of changing the file permissions on the profile as you described. Yes, the f

Re: [Samba] samba-swat

2009-11-25 Thread John Doe
From: muhammad wasim > m facing problem installing swat on redhat enterprise 5.3 samba is > already installed > some body help me m new in linux And what would be this problem...? What about: yum install samba-swat JD -- To unsubscribe from this list go to the following URL and read th