Re: [Samba] Samba+LDAP problems

2007-10-28 Thread Edmundo Valle Neto
Celodrake escreveu: Hello there... Hi. My name is Marcelo, i am new in this list. I don't know if here is the right place for asking about samba + LDAP, if not, sorry... Yes, it is. I am finishing to implement a samba server with ldap support but, when i want to add some group to the

Re: [Samba] SAMBA+LDAP-How to promote Administrator with all priviliges?

2007-10-15 Thread Torsten
Adam Tauno Williams schrieb: Add them to the domain administrators group. if you have read my initial posting, you would have noticed that this is the problem. the user administrator is member of domain admins but still can't perform administrative tasks. -- To unsubscribe from this

Re: [Samba] Samba + LDAP - now with ldapsam extensions

2007-10-15 Thread Daniel L. Miller
John H Terpstra wrote: On Thursday 11 October 2007 22:57, Daniel L. Miller wrote: Are the IDEALX tools necessary for complete integration with LDAP? Or is the built-in support sufficiently advanced now? Daniel What does complete integration with LDAP mean to you? You are not the

Re: [Samba] Samba + LDAP

2007-10-12 Thread Guenter Kukkukk
Am Freitag, 12. Oktober 2007 06:58 schrieb John H Terpstra: On Thursday 11 October 2007 22:57, Daniel L. Miller wrote: Are the IDEALX tools necessary for complete integration with LDAP? Or is the built-in support sufficiently advanced now? Daniel Daniel, What function do you

Re: [Samba] Samba + LDAP

2007-10-12 Thread Daniel L. Miller
John H Terpstra wrote: On Thursday 11 October 2007 22:57, Daniel L. Miller wrote: Are the IDEALX tools necessary for complete integration with LDAP? Or is the built-in support sufficiently advanced now? Daniel Daniel, What function do you believe the IDEALX tools serve? Why do you

[Samba] SAMBA+LDAP-How to promote Administrator with all priviliges?

2007-10-11 Thread Torsten
Hi, I have setup samba+ldap an almost everything went well, accept the fact, that there was no administrative account from the beginning. So I just created one using smbldap-useradd. samba-pdc:~# /usr/sbin/smbldap-usershow administrator dn: uid=administrator,ou=Users,dc=rhhu,dc=local

Re: [Samba] SAMBA+LDAP-How to promote Administrator with all priviliges?

2007-10-11 Thread Frank Van Damme
On 10/11/07, Torsten [EMAIL PROTECTED] wrote: Hi, I have setup samba+ldap an almost everything went well, accept the fact, that there was no administrative account from the beginning. So I just created one using smbldap-useradd. samba-pdc:~# /usr/sbin/smbldap-usershow administrator dn:

Re: [Samba] SAMBA+LDAP-How to promote Administrator with all priviliges?

2007-10-11 Thread Torsten
Frank Van Damme schrieb: You problem is that the account does not have uid number 0. If it has, it has a root account on your unix box and you're all set. o.k, but uid 0 is reserved for root, isn't it? and it should be possible to have more than one account with administrative

Re: [Samba] SAMBA+LDAP-How to promote Administrator with all priviliges?

2007-10-11 Thread Frank Van Damme
On 10/11/07, Torsten [EMAIL PROTECTED] wrote: Frank Van Damme schrieb: You problem is that the account does not have uid number 0. If it has, it has a root account on your unix box and you're all set. o.k, but uid 0 is reserved for root, isn't it? and it should be possible to have

Re: [Samba] SAMBA+LDAP-How to promote Administrator with all priviliges?

2007-10-11 Thread Torsten
Frank Van Damme schrieb: On 10/11/07, Torsten [EMAIL PROTECTED] wrote: Frank Van Damme schrieb: You problem is that the account does not have uid number 0. If it has, it has a root account on your unix box and you're all set. o.k, but uid 0 is reserved for root, isn't it?

Re: [Samba] SAMBA+LDAP-How to promote Administrator with all priviliges?

2007-10-11 Thread Marcin Giedz
Torsten napisał(a): Frank Van Damme schrieb: You problem is that the account does not have uid number 0. If it has, it has a root account on your unix box and you're all set. o.k, but uid 0 is reserved for root, isn't it? and it should be possible to have more than one account with

Re: [Samba] SAMBA+LDAP-How to promote Administrator with all priviliges?

2007-10-11 Thread Adam Tauno Williams
o.k. I believe you (;-), but still, wthat if I want to promote my assistent and my housekeeper with administrative piviliges? I cant give them all uid0. Add them to the domain administrators group. -- Adam Tauno Williams, Network Systems Administrator Consultant -

Re: [Samba] SAMBA+LDAP-How to promote Administrator with all priviliges?

2007-10-11 Thread adrian sender
SeRestorePrivilege Restore files and directories SeTakeOwnershipPrivilege Take ownership of files or other objects All in the docs. Adrian Sender email message attachment Forwarded Message From: Torsten To: samba@lists.samba.org Subject: [Samba] SAMBA+LDAP

[Samba] Samba/LDAP RID assignment

2007-10-11 Thread E.V. Suprun
We've got SAMBA 3.0.23d / LDAP PDC using smb-ldap-tools. smb.conf contains: add user script = /opt/IDEALX/sbin/smbldap-useradd %u A new user may be added to the domain by various ways, e.g: 1. from a Windows workstation of an administrator: usrmgr.exe; 2. from the server shell:

Re: [Samba] SAMBA+LDAP-How to promote Administrator with all priviliges?

2007-10-11 Thread Daniel L. Miller
Torsten wrote: Frank Van Damme schrieb: On 10/11/07, Torsten [EMAIL PROTECTED] wrote: Frank Van Damme schrieb: You problem is that the account does not have uid number 0. If it has, it has a root account on your unix box and you're all set. o.k, but uid 0 is reserved for root, isn't

[Samba] Samba + LDAP

2007-10-11 Thread Daniel L. Miller
Are the IDEALX tools necessary for complete integration with LDAP? Or is the built-in support sufficiently advanced now? Daniel -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba

Re: [Samba] Samba + LDAP

2007-10-11 Thread John H Terpstra
On Thursday 11 October 2007 22:57, Daniel L. Miller wrote: Are the IDEALX tools necessary for complete integration with LDAP? Or is the built-in support sufficiently advanced now? Daniel Daniel, What function do you believe the IDEALX tools serve? Why do you think these scripts are

[Samba] Samba + LDAP

2007-10-08 Thread Ricardo Manuel Esteves (VI)
Hi, I got samba 3.0.26a on my Fedora 7, and when i try to add users with smbpasswd -a username, it only works if the user exists as a linux user... i got a Centos 4.4 system with samba 3.0.10 and it works even if the user doesn't exists on the system. Can anyone explain me why this happens? is

Re: [Samba] Samba + LDAP

2007-10-08 Thread simo
On Mon, 2007-10-08 at 15:45 +0100, Ricardo Manuel Esteves (VI) wrote: Hi, I got samba 3.0.26a on my Fedora 7, and when i try to add users with smbpasswd -a username, it only works if the user exists as a linux user... i got a Centos 4.4 system with samba 3.0.10 and it works even if the

Re: [Samba] Samba + LDAP

2007-10-08 Thread Mike Eggleston
On Mon, 08 Oct 2007, simo might have said: On Mon, 2007-10-08 at 15:45 +0100, Ricardo Manuel Esteves (VI) wrote: Hi, I got samba 3.0.26a on my Fedora 7, and when i try to add users with smbpasswd -a username, it only works if the user exists as a linux user... i got a Centos 4.4

RE: [Samba] Samba + Ldap: password syn

2007-10-06 Thread adrian sender
Check your slapd.conf ACL options. --Forwarded Message Attachment-- From: [EMAIL PROTECTED] Subject: [Samba] Samba + Ldap: password sync Date: Thu, 4 Oct 2007 15:19:42 -0300 To: samba@lists.samba.org Gentleman, While using

[Samba] Samba + Ldap: password sync

2007-10-04 Thread Fabiano Caixeta Duarte
Gentleman, While using Openldap 2.2.x, password syncronization was working fine. It means that when a user changed his password through MS Windows XP, unixPassword, sambaNTPassword and sambaLMPassword were updated at the same time. Since I migrated Openldap to version 2.3.38 (same compilation

[Samba] Samba+LDAP with real-time share permissions

2007-08-31 Thread Steve Scanavarro
Hello everyone! I'm using samba with LDAP, and everything is working fine. But I'm having problems when I change something in the permissions on the share, for example, I have a share called daily. In this share, the permissions are set to the LDAP group called Daily, where steve is a member.

Re: [Samba] Samba+LDAP with real-time share permissions

2007-08-31 Thread simo
On Fri, 2007-08-31 at 10:16 -0300, Steve Scanavarro wrote: Hello everyone! I'm using samba with LDAP, and everything is working fine. But I'm having problems when I change something in the permissions on the share, for example, I have a share called daily. In this share, the permissions are

Re: [Samba] Samba + LDAP + displayName attribute

2007-08-24 Thread Didster
I don't use nscd myself, for comparison On 8/24/07, John Drescher [EMAIL PROTECTED] wrote: On 23/08/07, Didster [EMAIL PROTECTED] wrote: Thanks, I haven't had any other responses to this :o( So I will try and a read though the archives [i did this before posting, but again wont

Re: [Samba] Samba + LDAP + displayName attribute

2007-08-23 Thread Didster
Thanks, I haven't had any other responses to this :o( So I will try and a read though the archives [i did this before posting, but again wont hurt] Its driving me mad! On 8/21/07, John Drescher [EMAIL PROTECTED] wrote: When signing into Window XP, everything works fine. Clicking on the

Re: [Samba] Samba + LDAP + displayName attribute

2007-08-23 Thread Gavin Henry
On 23/08/07, Didster [EMAIL PROTECTED] wrote: Thanks, I haven't had any other responses to this :o( So I will try and a read though the archives [i did this before posting, but again wont hurt] Its driving me mad! Have you got nscd on? On 8/21/07, John Drescher [EMAIL PROTECTED] wrote:

Re: [Samba] Samba + LDAP + displayName attribute

2007-08-23 Thread John Drescher
On 23/08/07, Didster [EMAIL PROTECTED] wrote: Thanks, I haven't had any other responses to this :o( So I will try and a read though the archives [i did this before posting, but again wont hurt] Its driving me mad! Have you got nscd on? I do have nscd as without it my nfs transfers

Re: [Samba] Samba + LDAP + displayName attribute

2007-08-21 Thread John Drescher
When signing into Window XP, everything works fine. Clicking on the start menu shows whatever is set in displayName at the top as the persons name. However, after an as yet undetermined amount of time [about 20 mins], it switches to displaying the UID. So at the top of the start menu it

[Samba] Samba + LDAP + displayName attribute

2007-08-21 Thread Didster
Hi All, I have a rather strange, if not critical, issue with samba as a NT4 domain controller. We have samba [version 3.0.24] set up as a PDC using LDAP as a backend. Each account was created using the IDEALX scripts, has a displayName set to a users full name, say Joe Bloggs. The actual UID

[Samba] Samba+LDAP: Groups and Groupmappings?

2007-08-17 Thread Hadmut Danisch
Hi, just a question about the representation of Windows Domain groups in LDAP when using the ldapsam backend: What exactly is required to have a Windows Domain group properly configured? Am I correct that there is only a single LDAP object of - objectClasses sambaGroupMapping and posixGroup,

[Samba] samba, ldap changing password

2007-06-12 Thread empirium
HEllo I have a samba 3 with ldap working as a PDC,my mail server also using LDAP database as a authentication. Do you know any web application, script (working with apache) that allow users to change their ldap passwords (smaba passwords and passwd passwords). Usually users can do that from

Re: [Samba] samba, ldap changing password

2007-06-12 Thread Adam Tauno Williams
I have a samba 3 with ldap working as a PDC,my mail server also using LDAP database as a authentication. Do you know any web application, script (working with apache) that allow users to change their ldap passwords (smaba passwords and passwd passwords). Usually users can do that from

Re: [Samba] samba, ldap changing password

2007-06-12 Thread Rune Tønnesen
Hi Adam Try usermin http://www.webmin.com/usermin.html -- Rune Tønnesen Venlig Hilsen/Best Regards -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba

Anyone? :o) Re: [Samba] Samba LDAP Directory Tree details

2007-05-21 Thread [EMAIL PROTECTED]
[EMAIL PROTECTED] schrieb: Hello List, i have set up a samba pdc with ldap, smbldap-tools about one year ago. Now i would like to extend it with OX, squid, etc... After checking out the LDAP Directory tree i was wondering what the Organisation Units DSA and ldmap are good for? My current

[Samba] Samba LDAP Directory Tree details

2007-05-20 Thread [EMAIL PROTECTED]
Hello List, i have set up a samba pdc with ldap, smbldap-tools about one year ago. Now i would like to extend it with OX, squid, etc... After checking out the LDAP Directory tree i was wondering what the Organisation Units DSA and ldmap are good for? My current tree looks like this:

[Samba] Samba/LDAP PDC and member servers

2007-04-29 Thread Julian Pilfold-Bagwell
Hi All, I have a problem with permissions following a migration from tdbsam to LDAP. As I understand it from the documentation, each member server on the domain needs to have 2 SIDs, a domain SID and a local machine SID. After migrating the server to ldap, users can still login and desktops

Re: [Samba] Samba - LDAP - Kerberos

2007-04-05 Thread Andrew Bartlett
On Wed, 2007-04-04 at 15:18 +0200, Jörg Herzinger wrote: The other option is the smbk5pwd module for openldap, and setting 'ldap password sync = yes'. I've not used it myself, but I'm told it works. Hmm, thanks, but this module is just a dirty trick in my eyes and it works just for

Re: [Samba] Samba - LDAP - Kerberos

2007-04-05 Thread Jörg Herzinger
Like Kerberos, Samba needs the password-equivilant values, or some other process that will perform the same calculations on them (like a DC for a member server). There isn't any way around that. Interestingly Heimdal 0.8 includes code to do this in the KDC (we don't have a client for this

Re: [Samba] Samba - LDAP - Kerberos

2007-04-05 Thread Andrew Bartlett
On Thu, 2007-04-05 at 14:35 +0200, Jörg Herzinger wrote: Like Kerberos, Samba needs the password-equivilant values, or some other process that will perform the same calculations on them (like a DC for a member server). There isn't any way around that. Interestingly Heimdal 0.8 includes

Re: Re: [Samba] Samba - LDAP - Kerberos

2007-04-04 Thread Jörg Herzinger
I already thought that this is not possible. Is there no other way of authenticating samba? PAM, SASL, ANYTHING. I mean, I like samba, but in terms of user authentication it really isn't flexible. -- To unsubscribe from this list go to the following URL and read the instructions:

Re: [Samba] Samba - LDAP - Kerberos

2007-04-04 Thread Andrew Bartlett
On Tue, 2007-04-03 at 21:47 -0400, Sean Elble wrote: On 4/3/07 1:20 PM, Jörg Herzinger [EMAIL PROTECTED] wrote: Hello. I'm trying to implement a single-sign-on system with MIT-Kerberos and OpenLDAP. These two are currently working pretty well, but now I'm trying to add samba to this

Re: [Samba] Samba - LDAP - Kerberos

2007-04-04 Thread Jörg Herzinger
The other option is the smbk5pwd module for openldap, and setting 'ldap password sync = yes'. I've not used it myself, but I'm told it works. Hmm, thanks, but this module is just a dirty trick in my eyes and it works just for Heimdal Kerberos but I use MIT-Kerberos. I almost can't believe

[Samba] Samba - LDAP - Kerberos

2007-04-03 Thread Jörg Herzinger
Hello. I'm trying to implement a single-sign-on system with MIT-Kerberos and OpenLDAP. These two are currently working pretty well, but now I'm trying to add samba to this system. I've found a lot of tutorials about samba PDC with LDAP backend, but this is of course not quite what I want. My

Re: [Samba] Samba - LDAP - Kerberos

2007-04-03 Thread Sean Elble
On 4/3/07 1:20 PM, Jörg Herzinger [EMAIL PROTECTED] wrote: Hello. I'm trying to implement a single-sign-on system with MIT-Kerberos and OpenLDAP. These two are currently working pretty well, but now I'm trying to add samba to this system. I've found a lot of tutorials about samba PDC with

[Samba] Samba-LDAP interdomain trust

2007-03-26 Thread Allysson Steve Mota Lacerda
I'm trying to create a trust between two Samba-LDAP domains (on a single server). I'm following Samba Howto Collection (http://us3.samba.org/samba/docs/man/Samba-HOWTO-Collection/NetCommand.html#id335566) but I'm getting the error below. [EMAIL PROTECTED]:~# /usr/local/samba.labi/bin/net rpc

[Samba] samba ldap export account

2007-03-15 Thread Pascal Legrand
Hello i'm trying to export the old passwd/smbpasswd account to the ldap directory with pdbedit : pdbedit -e tdbsam:test pdbedit -i tdbsam:test but when i do that there is no posix informations. what is the way to have those informations ? thank you --

Re: [Samba] samba+Ldap+smbldap-tools

2007-03-14 Thread sato x
Asier was right: you don't need the passwd program line in smb.conf - even it's not smbldap application. The smbldap application that used to change the user password is smbldap-passwd. Please check your ACL in slapd.conf. Mine is access to attr=userPassword,sambaLMPassword,sambaNTPassword

Re: [Samba] samba+Ldap+smbldap-tools

2007-03-12 Thread Asier Baranguán
Chechu escribió: I have aproblem with the smbldap-tools...when I try to change the passwd fron a user in win...I get the error , and I know that the script of smbldap-tools fails when try to execute the next line: [ ... ] This looks mostly an ACL problem in your LDAP server (OpenLDAP?).

[Samba] samba+Ldap+smbldap-tools

2007-03-11 Thread Chechu
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 hi, I have aproblem with the smbldap-tools...when I try to change the passwd fron a user in win...I get the error , and I know that the script of smbldap-tools fails when try to execute the next line: # non-root user if (!defined($oldpass)) {

[Samba] Samba+LDAP wrong domain name

2007-03-09 Thread Luis Filipe Lobo
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi! I am using samba 3.0.24 with backend ldapsam. When i restart samba it tries to create the sambaDomainName entry in ldap with the domain name, the problem is, it does not create the entry with the name specified in workgroup attribute (in

Re: [Samba] samba+ldap: Simu.- login of 2 different users = user rejected

2007-03-09 Thread Tim Boneko
obey pam restrictions = yes pam password change = yes I reconfigured the server at these points (and profile acls = yes). At least it improved the unaccessible profile: One of the 2 concurrent clients gets its profile instantly, the other one has a minute of waiting before getting its data.

Re: [Samba] Samba+LDAP wrong domain name

2007-03-09 Thread Tim Boneko
Luis Filipe Lobo schrieb: [global] workgroup = ALUNOS server string = %h Did you test the behaviour with an unset server string option, i.e. commented out? Or with a netbios name = PUKEBOX timbo -- To unsubscribe from this list go to the following URL and read the instructions:

Re: [Samba] samba+ldap: Simu.- login of 2 different users = user rejected

2007-03-06 Thread Felipe Augusto van de Wiel
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 03/05/2007 02:02 PM, Tim Boneko wrote: Has anybody had this problem before? If not, where should i start digging? By the logs you sent, definetely PAM. :-) I'm running Samba 3.0.24 on Debian stable with slapd-2.2.23 backend.

Re: [Samba] samba+ldap: Simu.- login of 2 different users = user rejected

2007-03-06 Thread Tim Boneko
Felipe Augusto van de Wiel schrieb: PAM: UNKNOWN PAM ERROR is not something nice to see on your longs. That's sad but true... Did you already increase the log level of Samba? I'll check that tomorrow (hopefully). Simultaneously should be interpreted at the exactly same

[Samba] samba+ldap: Simu.- login of 2 different users = user rejected

2007-03-05 Thread Tim Boneko
Has anybody had this problem before? If not, where should i start digging? I'm running Samba 3.0.24 on Debian stable with slapd-2.2.23 backend. smb.conf is attached below. When two different users log in at the same moment, the login process seems to freeze for a minute and the client (win2k)

[Samba] Samba/LDAP PDC problem

2007-01-29 Thread Guillaume
Hi I want to run a Samba PDC with LDAP backend on a FreeBSD 6.2 for Sparc64. And off course, if I send this mail, it is not working ! :-( I have this error message when using smbclient on the PDC itself. The command line is: smbclient -L janus -Uadministrator%toto The result is: session setup

Re: [Samba] SAMBA-LDAP - Group permissions

2007-01-12 Thread Stefan Schmitz
Hi, Do you want them to be admins from out of the Windows Tools Usermanager/Servermanager? Have a look at the privileges. (Samba Howto Collection chapter 15) Another chance is to put some access controll lists in your slapd.conf file and make the admins to use an ldap browser of their choice.

[Samba] SAMBA-LDAP - Group permissions

2007-01-11 Thread Allysson Steve Mota Lacerda
Hi folks. I have a functional Samba-LDAP server running as a PDC with Windows 2003 clients. I'm changing the structure of my LDAP tree and I want to give administrator's permissions to a branch (i.e. ou=teachers,dc=domain,dc=com). Is there a way to do this automatically (i.e. by using an

Re: [Samba] samba+ldap windows problem

2007-01-02 Thread sermodi
Hi! Happy new year to you all, I hade the line passwd program = /usr/bin/smbpasswd -r netbiosname -U %u which seems to work when I force the user to change the password. I tried the line you suggested but without any luck. Thanks for the reply. I have been on holiday until today so now it is back

Re: [Samba] samba+ldap windows problem

2007-01-01 Thread Tim Boneko
Hello Sermodi happy new year to all! sermodi schrieb: The logon is working the only trouble is that I can't get the option for changing the password, when I press the ctrl-alt-del, the change password button is unclickable. I`m looking for the declaration of a password change command in

Re: [Samba] samba+ldap windows problem

2007-01-01 Thread Tim Boneko
Hello Sermodi happy new year to all! sermodi schrieb: The logon is working the only trouble is that I can't get the option for changing the password, when I press the ctrl-alt-del, the change password button is unclickable. I`m looking for the declaration of a password change command in

RE: [Samba] samba+ldap windows problem

2006-12-30 Thread Adrian Sender
/smbldap-usermod -g '%g' '%u' add machine script = /opt/IDEALX/sbin/smbldap-useradd -w '%u' Cheers, Adrian Sender. -Original Message- From: sermodi [mailto:[EMAIL PROTECTED] Sent: Saturday, 23 December 2006 6:58 AM To: samba@lists.samba.org Subject: Re: [Samba] samba+ldap windows problem Hi

Re: [Samba] Samba + LDAP + ¿Kerberos?

2006-12-28 Thread Jim Hogan
Michael, All, I have been going back through the Samba archives looking to see if a Samba+LDAP+Kerberos configuration is possible given my situation. Mostly I see posts that say You can't get there from here., but I don't want to give up too easily. My situation is this: I have a new

Re: [Samba] Samba + LDAP + ¿Kerberos?

2006-12-28 Thread Jim Hogan
To answer my own question. Howard Chu, on the fedora-directory-users list, answered a slightly different version of the same query from me and I think has put me out of my misery :) https://www.redhat.com/archives/fedora-directory-users/2006-December/msg00165.html Now, my University

Re: [Samba] Samba + LDAP + ¿Kerberos?

2006-12-28 Thread Michael Schurter
PS - If you find my advice helpful, in lieu of lunch, I would accept entry into Washinton U's doctoral Computer Science Engineering program with a nice stipend. ;) Sorry - just noticed your e-mail address and since I'm interested in grad studies, I couldn't resist. :) Good luck with

Re: [Samba] samba+ldap windows problem

2006-12-22 Thread Luis Daniel Lucio Quiroz
That sounds more a win issue than a samba/ldap Dont you have a policy on changing password from your old win domain? Regards, LD Le jeudi 21 décembre 2006 10:08, sermodi a écrit : Hi everybody! I don't know if this is a samba or ldap problem, so here is the problem and you decide. I've

Re: [Samba] samba+ldap windows problem

2006-12-22 Thread sermodi
Hi! Thanks for the reply Luis, maybe it is a windows issue but I thought maybe somebody in the mail list had some similar setup and if they had been able to change the password in windows. I got it to work in a previous setup once I changed the password encryption to yes. But in the new

[Samba] samba+ldap windows problem

2006-12-21 Thread sermodi
Hi everybody! I don't know if this is a samba or ldap problem, so here is the problem and you decide. I've installed Samba+LDAP to replace the windows solution. The workstation in the network are w2k so the need to logon to the samba+ldap for all the setting to be fetched. The logon is working

Re: [Samba] Samba + LDAP + ¿Kerberos?

2006-11-25 Thread Michael Schurter
Asier Baranguán wrote: Hi! Perhaps this is not the appropiate list, but I need some advices. I have a working Samba PDC with a LDAP backend over a secure TLS connection, with W2000 and XP clients. I've readed in a lot of places that Kerberos is a very nice thing to have in the setup but I

[Samba] Samba + LDAP + ¿Kerberos?

2006-11-23 Thread Asier Baranguán
Hi! Perhaps this is not the appropiate list, but I need some advices. I have a working Samba PDC with a LDAP backend over a secure TLS connection, with W2000 and XP clients. I've readed in a lot of places that Kerberos is a very nice thing to have in the setup but I cannot see why. I know the

[Samba] Samba-ldap permission and access using Microsoft Management Console - persmission to change folder and file access with MS full accees option

2006-11-02 Thread Silas Wind
Hi I want the following share setup in samba 3.0.10 without the use of POSIX ACL kernel support on the /dev/sdi01 partition: A group should be able to be Windows owner when ever a windows file or folder is created. A group should be able to be have windows full access when ever a file

Re: [Samba] SAMBA + LDAP + TLS

2006-10-17 Thread Zach
Samba is a client to slapd, so it needs a properly configured ldap.conf. On 10/9/06, Net Warrior [EMAIL PROTECTED] wrote: Ok, thanks I'll try that. I did not modify ldap.conf, cause I thought that ldap.conf is a client setting and not a server seting, -- To unsubscribe from this list go to

[Samba] SAMBA + LDAP + TLS

2006-10-09 Thread Net Warrior
Hi there guys, do not know if post this here or in openldap list, sorry if I disturb you. I configured samba+ldap as a PDC and byt now it's working fine, so, I decided to put some security to the stuff. The problem is that I coudl not make it work, here I what I've done. This is what netstat

Re: [Samba] SAMBA + LDAP + TLS

2006-10-09 Thread Guillaume
Net Warrior a écrit : Hi there guys, do not know if post this here or in openldap list, sorry if I disturb you. I configured samba+ldap as a PDC and byt now it's working fine, so, I decided to put some security to the stuff. The problem is that I coudl not make it work, here I what I've done.

Re: [Samba] SAMBA + LDAP + TLS

2006-10-09 Thread Net Warrior
Ok, thanks I'll try that. I did not modify ldap.conf, cause I thought that ldap.conf is a client setting and not a server seting, I'll try that anyway. And one me thing : wha't right like this - passdb backend = ldapsam:ldap://127.0.0.1, or like this - ldaps://127.0.0.1:636 ? Thanks for your

Re: [Samba] Samba/LDAP - using Poledit for security templates.

2006-09-26 Thread Cleber P. de Souza
Have you defined the Samba SID for the new group you created? Are the base SID equal to that in the Samba domain? On 9/24/06, Matthew Thompson [EMAIL PROTECTED] wrote: Hi samba gurus, I have a successful install of samba/LDAP (on FC5) and am looking at applying security templates for different

[Samba] Samba/LDAP - using Poledit for security templates.

2006-09-25 Thread Matthew Thompson
Hi samba gurus, I have a successful install of samba/LDAP (on FC5) and am looking at applying security templates for different groups. I had this successfully working on my old RH9 box running samba (but not using LDAP). Using poledit, I created groups (sales, it, etc) that were the same as my

Re: [Samba] samba ldap pdc w/unix accounts: local unix and ldap unix users can't resolve uids to names on the server

2006-09-12 Thread Noah Dain
On 9/11/06, Cleber P. de Souza [EMAIL PROTECTED] wrote: You'll need setup and start the nscd service on your machine. This solve your problem. well, windbind and nscd don't get along together, as winbind does it's own caching. reference:

Re: [Samba] samba ldap pdc w/unix accounts: local unix and ldap unix users can't resolve uids to names on the server

2006-09-12 Thread Cleber P. de Souza
Try temporally stop winbind and start nscd to look if your problem is solved. On 9/12/06, Noah Dain [EMAIL PROTECTED] wrote: On 9/11/06, Cleber P. de Souza [EMAIL PROTECTED] wrote: You'll need setup and start the nscd service on your machine. This solve your problem. well, windbind and nscd

[Samba] samba ldap pdc w/unix accounts: local unix and ldap unix users can't resolve uids to names on the server

2006-09-11 Thread Noah Dain
* distro: ubuntu breezy ( 6.06 ) * samba version: shipped version with updates ( 3.0.22-1ubuntu3.1 ) * no ssl * openLDAP is running on the same machine as samba, and referenced as localhost/127.0.0.1 where applicable ( 2.2.26-5ubuntu2.1 ) * nscd is not installed, much less running I've set up a

Re: [Samba] samba + ldap query filter

2006-09-04 Thread Felipe Augusto van de Wiel
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 09/03/2006 11:13 AM, Andreas Calvo escreveu: Hi! I've been using samba as PDC with a LDAP backend, and everything seems to work fine but, whenever a user has to auth to samba, it seems that the query that it performs is against the mail

[Samba] samba + ldap query filter

2006-09-03 Thread Andreas Calvo
Hi! I've been using samba as PDC with a LDAP backend, and everything seems to work fine but, whenever a user has to auth to samba, it seems that the query that it performs is against the mail attribute, instead of the uid as I desired. Is there any way to manually specify the query filter to use

[Samba] Samba + ldap documentation

2006-08-23 Thread updatemyself .
Hai All, can anyone give me a proper documentation to do samba + ldap PDC in my environment 50% of machine is in windows and 50% in redhat linux.. winXP and RHEL3 and RHEL4 if anyone can give a proper documentation ... that will be a grate help.. thank you in advance jerrynikky. -- To

Re:[Samba] Samba + ldap documentation

2006-08-23 Thread Jean-Michel Caricand
Hai All, can anyone give me a proper documentation to do samba + ldap PDC in my environment 50% of machine is in windows and 50% in redhat linux.. winXP and RHEL3 and RHEL4 if anyone can give a proper documentation ... that will be a grate help.. thank you in advance jerrynikky. --

Re: [Samba] Samba + ldap documentation

2006-08-23 Thread Matt Richardson
Jean-Michel Caricand wrote: Hai All, can anyone give me a proper documentation to do samba + ldap PDC in my environment 50% of machine is in windows and 50% in redhat linux.. winXP and RHEL3 and RHEL4 if anyone can give a proper documentation ... that will be a grate help.. thank you in

[Samba] samba, ldap and sco.. help please?

2006-08-07 Thread David Korsgen
The subject pretty much sums it up. SCO, Samba and LDAP.. only, we're not using LDAP. I got dropped into the middle of this project with little information about much of anything and I'm not a native to SCO and I'm unfamiliar with Samba, however I will be as informative as possible. # uname -a

[Samba] samba ldap / password (smbpasswd)

2006-07-23 Thread oly
hi i have set up samba as a pdc with ldap but i am having problems with passwords they do not seem to be taken from ldap instead i have to run smbpasswd username to allow a user to login. this directory will have around 800 users when complete and the ldap is also used for other authentication

Re: [Samba] samba ldap / password (smbpasswd)

2006-07-23 Thread Doug VanLeuven
oly wrote: hi i have set up samba as a pdc with ldap but i am having problems with passwords they do not seem to be taken from ldap instead i have to run smbpasswd username to allow a user to login. this directory will have around 800 users when complete and the ldap is also used for other

[Samba] samba + ldap

2006-06-05 Thread Márcio Luciano Donada
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Staff, I am with a problem in the hour to make the connection with the samba and ldap, in the hour to carry through the sharing, the same says that the password of the users died, already changes the password of user and exactly thus the problem

Re: [Samba] samba + ldap

2006-06-05 Thread Marcin Giedz
Márcio Luciano Donada napisał(a): -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi, Staff, I am with a problem in the hour to make the connection with the samba and ldap, in the hour to carry through the sharing, the same says that the password of the users died, already changes the

[Samba] Samba/LDAP User add problem...

2006-06-05 Thread listserv . traffic
I think I've got everything setup, and when i try to add a user to samba, I get the following error. --- smbldap-useradd -a -m -c Greg Sloop gregs Error: SID not set for unix group 513 check if your unix group is mapped to an NT group --- When I view the Domain Users group in the LDAP tree, the

[Samba] samba ldap: deleting then adding a machine account

2006-05-31 Thread Philippe Strauss
Hello samba users, I've set up a test PDC samba server, using LDAP backend. It worked fine during the firsts tests, but for trying purpose, I deleted the client machine account using smbldap-userdel. re-adding the machine account, I cannot login anymore using the win2k client. What can be done?

Re: [Samba] samba ldap domain join

2006-05-17 Thread lenny
still haven't found any resolution for this problem. I tried using a -t parameter with smbldap-passwd, but that didn't make any difference. The debug output still shows that it simply can't find the created computer account, eventhough it creates it the right ou. I wish there was a way to no have

Re: [Samba] samba ldap domain join

2006-05-11 Thread lenny
I got passed this by permitting anonymous writes to sambadomain and ou=computers in LDAP ( not ideal, but I really want this to work already ). Now I'm running into another problem. It seems that eventhough the machine accounts get created upon successful authentication, it fails to find that

Re: [Samba] samba ldap domain join

2006-05-11 Thread lenny
You don't need to give anonymous write access. You just need to give the ldap admin you set in smb.conf write access to the tree and properly set the ldap password with smbpasswd -w Thank you, but this isn't really the issue for me right now. The rest of the message described the problem I

Re: [Samba] samba ldap domain join

2006-05-09 Thread lenny
Still can't figure this one out. I get Error: Insufficient 'write' privilege to the 'uidNumber' attribute of entry 'sambadomainname=ldapauth,dc=mydomain,dc=com'.[2006/05/09 10:29:16, 0] rpc_server/srv_samr_nt.c:(2415) _samr_create_user: Running the command `/usr/local/samba/bin/smbldap-useradd

[Samba] samba ldap domain join

2006-05-04 Thread lenny
All LDAP authentciation works just fine, windows passwords can be set LDAP users. Windows workstations can connect to the machine's shares using windows passwords stored in LDAP LDAP tools are configured with the right LDAP credentials and DN settings, for people and computers. The logs show

[Samba] Samba+Ldap: Properties Dialog doesn't show owner, only groups, shares have R attribute set

2006-04-27 Thread Andreas Buchler
Hi all, I have a samba PDC on linux (kernel 2.6.16-gentoo-r3, amd64, 2cpu's, samba 3.0.22). My passdb backend is an ldap-server on a different machine. I did an update from a slower machine. The configuration files on the old and new machines are equal. After the update all seems to be OK. I

[Samba] samba+ldap: authentication probelm.

2006-04-24 Thread balijepalli srikrishnamohan
Hello Group, I am using RH9, samba-3.-.22. And i have openldap-2.3.11. on another machine. Using mkntpwd i got NT/LM passwords and gave it's output in the ldif file for sambaNTPassword and sambaLMPassword attribute types. when i tried to authenticate by giving the username and plain text

<    1   2   3   4   5   6   7   8   9   >