Re: [Samba] [Resolved] Reestablishing trust with PDC

2011-01-11 Thread Taso Hatzi
On Wed, Jan 12, 2011 at 6:24 AM, wrote: > > I also tried this to no avail: Disabled the machine password change on all > win7 clients by setting > > HKLM\SYSTEM\CurrentControlSet\Services\Netlogon\Parameters >  DisablePasswordChange = dword:1 If Win 7 is ignoring that setting, it might honor the

Re: [Samba] When is a machine SID created?

2011-01-09 Thread Taso Hatzi
> > First, you have to copy PDC's SID to the BDC with 'net getsid', or > some other ways. > I have done that. The domain SID is present in the secrets.tdb file of both PDC and the BDC. It's just the BDC that has no machine SID. -- To unsubscribe from this list go to the following URL and read the

[Samba] DFS - access shares via \\domain\dfsroot\...

2011-01-09 Thread Taso Hatzi
Is there a trick to being able to access shares via \\domain\dfsroot\.. rather than \\computer\dfsroot\... ? Only the latter works for me - samba 3.0.22 -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

[Samba] When is a machine SID created?

2011-01-09 Thread Taso Hatzi
I have been having a problem with 'net getdomainsid' on a machine that I set up to be a BDC. # net getdomainsid Could not fetch local SID tdbdump shows that there is no machine SID in secrets.db, so I'm thinking that I overlooked the step that creates a machine SID. What creates the machine SID a

[Samba] tdbdump, tdbbackup

2011-01-08 Thread Taso Hatzi
Do these programs still exist? They don't seem to be part of the samba3x package on RHEL5. -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

[Samba] Questions about ldap organizational units

2010-12-29 Thread Taso Hatzi
Environment is Samba as a PDC, OpenLDAP backend, with smbldap-tools providing the scripts to manipulate the data. What are the recommended/mandated organizational units (OU=) for user, computer, group info. I'm pretty sure that groups go in ou=Groups, but I am confused about where user and compu

[Samba] How can one set/reset machine account passwords

2010-12-22 Thread Taso Hatzi
Scenario: a) Samba with an ldap backend. b) The ldap database becomes irretrievably corrupted. c) I roll in a new ldap database from a known good copy. d) Problem is the passwords for the machine accounts are out of date. e) Is it possible to coax Samba & the clients (mostly XP) to resynch the

[Samba] ... mode 0x1b4 failed: Operation not supported

2006-06-22 Thread taso
The complete message is: chmod_acl Production_Files/Deliveries/Met/2005 - 2006/~$6013 BOM.doc mode 0x1b4 failed: Operation not supported I see it for many files. They seem to be some sort of temp file created by MS Word. What does it mean? What is mode 0x1b4? -- To unsubscribe from this lis

Re: [Samba] Log of file delete/create/open/close operations

2006-05-16 Thread taso
ashok cvs wrote: you can turn on vfs objects = audit or extd_audit in the share , so u can log file open/close/create/delete "extd_audit" logs what I want, among other things. "audit" doesn't appear to produce much. "vfs objects" doesn't seem to be all that well documented in smb.conf(5).

[Samba] Log of file delete/create/open/close operations

2006-05-15 Thread taso
Is it possible to log file open/close/create/delete operations without turning on level 10 debug? -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba

Re: [Samba] NT 4 workstation joining Samba domain

2006-01-31 Thread taso
taso wrote: Samba 3.0.21b with LDAP backend The transfer to the Sanba hosted domain appears to work, ie success message, but I can't log on to a domain account from that workstation, complains about missing machine account or incorrect password. Only NT4 workstations seem to be a pr

[Samba] NT 4 workstation joining Samba domain

2006-01-29 Thread taso
Samba 3.0.21b with LDAP backend The transfer to the Sanba hosted domain appears to work, ie success message, but I can't log on to a domain account from that workstation, complains about missing machine account or incorrect password. Only NT4 workstations seem to be a problem, Win2k and XP are O

Re: [Samba] Creating a machine account manually (EMC, Samba PDC)

2006-01-27 Thread taso
Bryan Ragon wrote: Greetings, I am trying to join a EMC Celerra NS502 CIFS server to our Samba 3.0.21a domain controller. According to EMC, I was told that we need to manually create the machine account first. How is the best way to do this? How about <...>/smbldap-useradd -w NS502

Re: [Samba] Need help debugging the printer related "Access denied, unable to connect" message

2006-01-26 Thread taso
Gerald (Jerry) Carter wrote: taso wrote: Gerald (Jerry) Carter wrote: Read the smb.conf(5) man page entry for 'user client driver'. Thanks, someone emailed me to that effect. Is it possible to add that attribute to print shares that are otherwise entirely manufactured by Samba

Re: [Samba] Need help debugging the printer related "Access denied, unable to connect" message

2006-01-20 Thread taso
Gerald (Jerry) Carter wrote: Read the smb.conf(5) man page entry for 'user client driver'. Thanks, someone emailed me to that effect. Is it possible to add that attribute to print shares that are otherwise entirely manufactured by Samba? -- To unsubscribe from this list go to the following

[Samba] Need help debugging the printer related "Access denied, unable to connect" message

2006-01-19 Thread taso
1. The printers are Samba/CUPS. 2. Clients are Windows XP Pro & 2000 Workstations. 3. "Access denied, unable to connect" appears in the printers window on the clients - nearly always. Very occasionally, it displays what it's supposed to. 4. Seems to be a cosmetic problem since it does

Re: RE [Samba] Windows user password changing with Samba + LDAP + smbldap tools

2006-01-17 Thread taso
[EMAIL PROTECTED] wrote: With LDAP, I not use passwd program parameter. Samba modify directly the password attribute and the userPassword if ldap passwd sync = yes That fixed it Stephan. -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samb

[Samba] winbindd processes - how many?

2006-01-17 Thread taso
How many winbindd processes should be running? -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba

[Samba] Windows user password changing with Samba + LDAP + smbldap tools

2006-01-17 Thread taso
smbldap-tools-0.9.1-1 & Samba 3.0.21a This is what I have in my smb.conf: passwd program = /opt/IDEALX/sbin/smbldap-passwd "%u" passwd chat = "*New password :*\n" %n "*new password :*\n" %n unix password sync = Yes According to "man smb.conf", smbldap-passwd is invoked as root so t

[Samba] Who or what is IP client 0.0.0.0?

2006-01-14 Thread taso
Samba 3.0.21a Getting a fair bit of activity logged from IP 0.0.0.0 What does it mean? [2006/01/14 13:42:23, 0] lib/util_sock.c:get_peer_addr(1222) getpeername failed. Error was Transport endpoint is not connected [2006/01/14 13:42:23, 0] lib/access.c:check_access(328) [2006/01/14 13:42:23, 0]

[Samba] How to delete a printer

2006-01-11 Thread taso
What Samba files (other than smb.conf) do I need to edit/delete to remove all trace of a printer? I'm trying to get a handle on why smbd (3.0.21a) is SIGSEGV-ing and I want to start with a clean sheet. -- To unsubscribe from this list go to the following URL and read the instructions: https:

[Samba] Windows 2003 not playing the game by the rules?

2006-01-11 Thread taso
1. Samba 3.0.21a is PDC 2. Windows 2003 Server as a domain member 3. Shared a directory on the Windows 2003 Server. 4. Gave the share name full control to Everyone. 5. Set specific permissions on the shared directory. 6. Windows 2003 Server gives any workstation logged on to the domain full acces

[Samba] net rpc vampire segfault

2006-01-08 Thread taso
Been trying to run this on FC3 pulling stuff off a NT4 PDC - it just segfaults on 3.0.21 & 3.0.21a I'm building the RPMS from the tar ball on the host using the makerpms.sh script Reverted to the 3.0.10 issued by Fedora and no segfault. From what I can see (with strace) it segfaults while readi

Re: [Samba] Samba timekeeping

2005-12-13 Thread Taso Hatzi
Andrew Bartlett wrote: On Sat, 2005-12-03 at 12:57 +1100, taso wrote: Just wondering why Samba time and system time are different. Eg: # net time;date Sat Dec 3 12:56:57 2005 Sat Dec 3 12:56:22 EST 2005 Which server is 'net time' talking to? It should be looking for the PDC I

[Samba] Samba timekeeping

2005-12-02 Thread taso
Just wondering why Samba time and system time are different. Eg: # net time;date Sat Dec 3 12:56:57 2005 Sat Dec 3 12:56:22 EST 2005 -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba

Re: [Samba] Samba docs

2005-05-08 Thread taso
r the smbldap-tools to manage the LDAP directory. Other people are interested in other configurations and would find it easier to contribute stuff that is relevant to what they are doing. I'm sure 'the old man' would find many willing hands out there - the challenge is figuring

Re: [Samba] Samba docs

2005-05-08 Thread taso
truly painful documenting GUI dynamics on printed media. I think it's time we added another string to our documentation fiddle. -- Taso Hatzi tr -d "blewky" <<-QWERTY [EMAIL PROTECTED] QWERTY -- To unsubscribe from this list go to the following URL and read the instructions: https

Re: [Samba] Re: Weird authentication difference between smbclient and smbmount

2005-05-05 Thread taso
is kind of confusing. Just wanting some info. That's the way it works in the Open Source World. Evolution at furious pace and a fiercely hostile environment that ensures only the fittest survive. -- Taso Hatzi tr -d "blewky" <<-QWERTY [EMAIL PROTECTED] QWERTY -- To unsubscribe fro

Re: [Samba] nscd, ldap and the root/Administrator account

2005-05-05 Thread taso
returns the LDAP entry. It never returns more than one entry. What OS/software would that be? -- Taso Hatzi tr -d "blewky" <<-QWERTY [EMAIL PROTECTED] QWERTY -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba

Re: [Samba] nscd, ldap and the root/Administrator account

2005-05-05 Thread taso
:/home:/bin/false Why does LDAP root have uid 998 and what happened to the /ete/password root user? -- Taso Hatzi tr -d "blewky" <<-QWERTY [EMAIL PROTECTED] QWERTY -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba

[Samba] Samba+LDAP on Fedora or Redhat. system-config-athentication / redhat-config-authentication

2005-05-04 Thread taso
u tick the "Use MD5 Passwords" box or not. Whether this is a real problem I don't know. The guide published by the IDEALX guys for setting up Samba+LDAP runs with "pam_password md5", so it must work in a fashion. At this point in time I don't know enough about LDAP t

Re: [Samba] samba3.schema ??

2005-05-04 Thread taso
taso wrote: I am probably not saying anything that you don't already know, but I suggest reviewing all parts of the guide that deal with running the smbldap tools. What I meant was, " reviewing all ... immediately prior to publication." -- To unsubscribe from this list go to the fo

Re: [Samba] samba3.schema ??

2005-05-04 Thread taso
John H Terpstra wrote: > Oh, I am glad you like it. Please report all bugs, errors, defects, and things missing from it so I can correct this before it goes to print. I am probably not saying anything that you don't already know, but I suggest reviewing all parts of the guide that deal with runn

[Samba] exop vs md5

2005-05-03 Thread taso
WHat is the significance to Samba of pam_password exop vs pam_password md5 in ldap.conf? The reason I ask is that, wherever possible, I prefer to use the vendor supplied tools for manipulating config files. With Fedora 3 it's system-config-authentication and it doesn't give you the option of exo

[Samba] samba3.schema ??

2005-05-03 Thread taso
Can I assume that the file 'samba3.schema' mentioned in .../Samba-Guide/happy.html#ch6-slapdconf is the same as the file 'samba.schema' that is distributed with the samba tarball? (I decided to check out the latest version of Chap 6 after muddling my way through the book version - I am glad I di

Re: [Samba] Samba-3 by Example Ch 6

2005-05-01 Thread taso
taso wrote: I am following Chapter 6 of Samba-3 By Example to set up Samba on a Fedora 3 box. It seems to go Ok until page 144 step 5. # net getlocalsid [2005/05/02 00:22:04, 0] lib/smbldap.c:smbldap_search_suffix(1155) smbldap_search_suffix: Problem during the LDAP search: (No such object) SID

[Samba] Samba-3 by Example Ch 6

2005-05-01 Thread taso
I am following Chapter 6 of Samba-3 By Example to set up Samba on a Fedora 3 box. It seems to go Ok until page 144 step 5. # net getlocalsid [2005/05/02 00:22:04, 0] lib/smbldap.c:smbldap_search_suffix(1155) smbldap_search_suffix: Problem during the LDAP search: (No such object) SID for domain S

[Samba] Samba client for Win32?

2005-04-16 Thread taso
On the face of it may sound like a useless thing to have, but a Win32 Samba client does have some merit. It would make the Samba server safe from sabotage by gratuitous protocol changes, and it opens the door to making performance improvements. I see the Samba win32 client sitting alongside whateve

Re: [Samba] Group permissions not working on 3.0.8

2004-12-11 Thread Taso Hatzi
Rodrigo Severo wrote: I saw some messages about group permission related problems down in Samba 3.0.2. Could these issues be related to this same problem? Does "getent group" show the groups that are defined in the LDAP database? -- To unsubscribe from this list go to the following URL and read t