[Samba] samba, kerberos, encryption types

2011-11-22 Thread Vladimir Vassiliev
krb5.conf"? And last question: would samba use system krb5.conf if I set "create krb5 conf=no"? -- Vladimir Vassiliev -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] ldap idmap backend

2011-03-21 Thread Vladimir Vassiliev
It's known bug https://bugzilla.samba.org/show_bug.cgi?id= fixed in 3.5.8 Thanks to Christian PERRIER who pointed it out in his announcement. -- Vladimir Vassiliev -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/op

Re: [Samba] ldap idmap backend

2011-03-17 Thread Vladimir Vassiliev
17.03.2011 17:12, Bruce Richardson пишет: On Thu, Mar 17, 2011 at 05:06:03PM +0300, Vladimir Vassiliev wrote: Why have you created a local computer domain, out of interest? I didn't do it, Samba did. Really I dunno how to "add" extra domain to Samba. How can I delete this doma

Re: [Samba] ldap idmap backend

2011-03-17 Thread Vladimir Vassiliev
17.03.2011 16:27, Frank Mori Hess пишет: On Thursday, March 17, 2011, Vladimir Vassiliev wrote: Hi all, i use Samba 3.5.6 in ads mode (Windows 2008R2) with ldap idmap backend. Servers run Centos 4 and 5. I can't cope with next issue for long time. On all servers in domain winbind const

Re: [Samba] ldap idmap backend

2011-03-17 Thread Vladimir Vassiliev
local group. -513 already has its own mapping with gid=10001 but Samba tries to use values 20043 and higher for new mappings. -- Vladimir Vassiliev -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

[Samba] ldap idmap backend

2011-03-17 Thread Vladimir Vassiliev
15:37:28.387538, 0] winbindd/idmap_ldap.c:1473(idmap_ldap_set_mapping) ldap_set_mapping_internals: Error was: (Already exists) Can someone experienced in Samba comment how to deal with this issue? Thanks. -- Vladimir Vassiliev -- To unsubscribe from this list go to the following URL and rea

Re: [Samba] samba constantly creating mapping

2011-02-04 Thread Vladimir Vassiliev
Can someone explain why samba wants to create this mapping even if it already exists? 03.02.2011 13:30, Vladimir Vassiliev пишет: Hi all, I have Samba server joined Active Directory domain based on win2008r2, using LDAP as idmap backend. Recently I upgraded from 3.3.x to 3.5.x (Sernet RPMs

[Samba] samba constantly creating mapping

2011-02-03 Thread Vladimir Vassiliev
how: with "net sam createlocalgroup" or "net sam createdomaingroup" or "net sam createbuiltingroup"? I don't understand SAM well, please advice me how to do this. Thanks. -- Vladimir Vassiliev -- To unsubscribe from this list go to the following URL and read the

Re: [Samba] domain controller's unavailability

2010-12-14 Thread Vladimir Vassiliev
14.12.2010 21:32, TAKAHASHI Motonobu пишет: 2010/12/14 Vladimir Vassiliev: Is there any way to reliably setup winbind user and group resolution (in either smb.conf or nsswitch.conf) so that domain controller's unavailability doesn't cause slowdown of the whole system? That slowdown

[Samba] domain controller's unavailability

2010-12-14 Thread Vladimir Vassiliev
en when it doesn't need domain users. I have winbind cache time = 1800 in smb.conf but it doesn't work reliably for some reason. Also I would try nscd but some sources claim it's not compatible with winbind. Is that true? Thanks. -- Vladimir Vassiliev -- To unsubscribe from this

Re: [Samba] samba caching group memberships

2010-10-21 Thread Vladimir Vassiliev
back in. It's annoying @ times. Having been a Novell NetWare user in my ancient past, it was something of a shock to me too. Brian C. -- Vladimir Vassiliev -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

[Samba] samba caching group memberships

2010-10-20 Thread Vladimir Vassiliev
Hi all, our setup is Samba 3.3 in W2K8 domain. It seems samba cache group memberships somewhere and after adding user to a new group it's necessary to relogin for that user to get new memberships. Is it possible to eliminate that nasty procedure? Thanks. -- Vladimir Vassiliev

[Samba] map to guest option in ads mode

2010-09-27 Thread Vladimir Vassiliev
prisingly I got list of shares, i.e. samba mapped user "vova" to guest. And now smbclient -U vova -L // Error returning browse list: NT_STATUS_ACCESS_DENIED i.e. how "map to guest=bad user" should behave. Please, can someone clarify how option "map to guest" works?

[Samba] migrating from Samba 3 PDC to W2008 AD

2010-09-08 Thread Vladimir Vassiliev
et solution and clean answer. Is this possible to join Samba to AD domain while saving local uids and gids? Or it's easier to just "rechown" all files on server? Thank you all. -- Vladimir Vassiliev -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba