Re: [Samba] Share permission problem if user is member in more than 16 groups on AD

2010-07-14 Thread Mārcis Lielturks
On 15 July 2010 00:28, Jeremy Allison wrote: > On Thu, Jul 15, 2010 at 12:26:05AM +0300, Mārcis Lielturks wrote: > > Thanks, machine wont provide NFS or ssh login services, so fiddling with > max > > groups should do no harm! > > > > I googled a bit at found that samba should be recompiled to tak

Re: [Samba] Share permission problem if user is member in more than 16 groups on AD

2010-07-14 Thread Jeremy Allison
On Thu, Jul 15, 2010 at 12:26:05AM +0300, Mārcis Lielturks wrote: > Thanks, machine wont provide NFS or ssh login services, so fiddling with max > groups should do no harm! > > I googled a bit at found that samba should be recompiled to take advantage > of new NGROUPS_MAX. "./configure" logs also

Re: [Samba] Share permission problem if user is member in more than 16 groups on AD

2010-07-14 Thread Mārcis Lielturks
Thanks, machine wont provide NFS or ssh login services, so fiddling with max groups should do no harm! I googled a bit at found that samba should be recompiled to take advantage of new NGROUPS_MAX. "./configure" logs also suggested that NGROUPS_MAX is evaluated only at compile time. Can anybody s

Re: [Samba] samba3 domain client not auth some users

2010-07-14 Thread Dirk Kleinhesselink
On Mon, 12 Jul 2010, Gaiseric Vandal wrote: It's a samba server that is a member of a samba domain. That is, it uses the PDC to authenticate users. My user with the problem is trying to do something like this: smbclient //linux-client/share -U user He gets the error: NT_STATUS_NO_LOGIN_SER

Re: [Samba] RAW_ACLS smbtorture test

2010-07-14 Thread Nagaraj Shyam
Test results inline as the mailserver pulled out the attachment. Please read the first post about the thread to get context. ===samba test results= test: ACLS TESTING SETFILEINFO EA_SET a

Re: [Samba] Failed in "net ads join"

2010-07-14 Thread Jeremy Allison
On Wed, Jul 14, 2010 at 09:30:04AM +0800, John wrote: > Use "net ads join" to join a Windows AD, But it fails.  It is some error > message. >   >   > libnet_join_ok: failed to get schannel session key from server > wscc-s-003040.westshore.edu for domain WSCCNET. Error was > NT_STATUS_ACCESS_DEN

[Samba] cannot delete or rename after upgrade to 3.5.4

2010-07-14 Thread Gary Casterline
After upgrading samba from 3.4.8 to 3.5.4, we find that for some of our shares, we cannot delete or rename files or folders. Windows mappings to the [home] share can create new folders and files but when we try to delete or rename we get an error messages like: You need permissio

[Samba] RAW_ACLS smbtorture test

2010-07-14 Thread Nagaraj Shyam
Hi All, I wanted to check the state of the ACL evaluation engine in samba. I have configured my linux sles 10, samba version 3.5.1-3.3-2332 with "ea support = yes", "store dos attributes=yes", "vfs objects = acl_xattr" and get lots of error + some failure messages. I attached the results of r

Re: [Samba] Share permission problem if user is member in more than 16 groups on AD

2010-07-14 Thread Gaiseric Vandal
Here is the catch (at least for some people.) This can break NFS stuff.On my PDC I made a similar change. Home directories are not on the PDC. This fixed the problem of people getting login failures when logging into windows if they had more than 16 groups. But if a user tries to ss

Re: [Samba] smbldap-groupmod problem

2010-07-14 Thread Björn Jacke
On 2010-07-12 at 11:29 -0300 Leonardo Carneiro - Veltrac sent off: > Hi, i'm having a problem with the smbldap-groupmod. I tried to > change the users of some groups, i get an error message. The action > indeed execute, as the users was removed or added from the group, > but an error is throwed in

Re: [Samba] two PDCs

2010-07-14 Thread Tamás Pisch
As I see, when I send a reply, and I leave [samba] in the subject, the SaMBa archive get confused. My topic is in several threads. Sorry. Look, I'm not sure if my emails are getting through or not, but drop this > multi PDC thing. It's just more complexity. > > Dropped :) > You need some sort o

[Samba] Share permission problem if user is member in more than 16 groups on AD

2010-07-14 Thread Marcis Lielturks
Hi! Running OpenSolaris snv_134 with Samba 3.0.37. Samba is successfully joined to AD domain. AD user "user1" is member in 17 AD groups including "group1", but he cannot access Samba share which have read permissions for "group1". If user account is modified and "group1" becomes users primary

[Samba] Samba4 + existing OpenLDAP possible?

2010-07-14 Thread Sebastian Hoffmann
Hello list, I've got an already running OpenLDAP-Server with online configuration through cn=config. Is it possible to use the existing OpenLDAP with Samba4 alpha12? For the existing openldap ps aux gives me /usr/sbin/slapd -h ldap:/// ldapi:/// -g openldap -u openldap -F /etc/ldap/slapd.d/

Re: [Samba] winbind and authentication with local accounts

2010-07-14 Thread Philipp Braband
Hi Rob, thank you for your answer. >Depends on where you're talking about your users authenticating My users should authenticate when they try to access a samba share. I don’t want to reconfigure every mapped samba share on the clients, because of this I want to use the "old" local accounts (l