Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-28 Thread steve
On Thu, 2013-06-27 at 17:28 +0400, Vladimir A Fomkin wrote: > How add one parameter by ldbedit without interactive editor? (for > scripting) ldbmodify There are scripts here: http://linuxcostablanca.blogspot.com.es/p/s4bind.html hth -- To unsubscribe from this list go to the following URL and

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-27 Thread Vladimir A Fomkin
How add one parameter by ldbedit without interactive editor? (for scripting) 2013/6/27 steve > On 27/06/13 13:58, Vladimir A Fomkin wrote: > >> Hi! >> samba-tool don't work with --uid-number option! >> > Hi > It only works with the development version. > > Why not add the uidNumber to the user

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-27 Thread steve
On 27/06/13 13:58, Vladimir A Fomkin wrote: Hi! samba-tool don't work with --uid-number option! Hi It only works with the development version. Why not add the uidNumber to the user using ldbedit or ldbadd? Steve -- To unsubscribe from this list go to the following URL and read the instructions:

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-27 Thread Vladimir A Fomkin
Hi! samba-tool don't work with --uid-number option! root@bdc:/usr/local/samba/var/profiles# ../../bin/samba-tool user add repl4 --uid-number=313 Usage: samba-tool user add [] [options] samba-tool user add: error: no such option: --uid-number and internal help for this command does not hav

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-26 Thread steve
On Wed, 2013-06-26 at 15:06 +0400, Vladimir A Fomkin wrote: > Hi again! > I configured my AD samba PDC and BDC for applying uid from uidNumber > line in AD LDAP. > But I have a problem - "uidNumber" is not a creating automaticaly. I > must create this for each user by hands. How to solve this probl

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-26 Thread Vladimir A Fomkin
Hi again! I configured my AD samba PDC and BDC for applying uid from uidNumber line in AD LDAP. But I have a problem - "uidNumber" is not a creating automaticaly. I must create this for each user by hands. How to solve this problem? Thx! root@pdc:/usr/local/samba/etc# cat smb.conf # Global para

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-19 Thread Rowland Penny
Hi Steve, yes I agree with you, the problem is that people still try to set up an S4 AD server as if it was S3, this will never work. What people need to realise is that an S4 AD server is for all intents and purposes a windows AD server clone and to set it up the same It might be easier for the O

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-19 Thread steve
On Wed, 2013-06-19 at 10:34 +0100, Rowland Penny wrote: > The problem is that you are mixing up how samba 4 works with how samba > 3 works, samba 4 winbind does not work the same as the samba 3 > winbind. > > What you need to do is give your linux users a uidNumber and groups > like Domain Users a

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-19 Thread steve
On Wed, 2013-06-19 at 12:59 +0400, Vladimir A Fomkin wrote: > Hi! > > I'm tried to change idmap backend from tdb to rid and setting up idmap > range, but samba uses old type of UIDs. > What am I doing wrong? > > > [global] > workgroup = TEST > realm = test.local > netbios name = BDC

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-19 Thread Rowland Penny
The problem is that you are mixing up how samba 4 works with how samba 3 works, samba 4 winbind does not work the same as the samba 3 winbind. What you need to do is give your linux users a uidNumber and groups like Domain Users a gidNumber, how you do this is up to you, it can be done from windows

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-19 Thread Vladimir A Fomkin
Hi! I'm tried to change idmap backend from tdb to rid and setting up idmap range, but samba uses old type of UIDs. What am I doing wrong? [global] workgroup = TEST realm = test.local netbios name = BDC-SAMBA server role = active directory domain controller dns forwarder = 192.

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-17 Thread Vladimir A Fomkin
Hi! root@debian-samba4:/usr/local/samba/private# /usr/local/samba/bin/ldbsearch --url=/usr/local/samba/private/sam.ldb | grep tester4 sAMAccountName: tester4 userPrincipalName: tester4@test.local root@debian-samba4:/usr/local/samba/private# And I found there UID is saved - /usr/local/samba/bin/l

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-17 Thread steve
On Mon, 2013-06-17 at 14:50 +0400, Vladimir A Fomkin wrote: > HI! > root@bdc-samba:~# /usr/local/samba/bin/samba-tool user add tester4 > New Password: > Retype Password: > ERROR(ldb): Failed to add user 'tester4': - samldb: Account name > (sAMAccountName) 'tester4' already in use! > root@bdc-sam

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-17 Thread Vladimir A Fomkin
Hi! All users created from windows exist here! root@bdc-samba:~# /usr/local/samba/bin/samba-tool user list tester4 vaf tester tester2 tester3 Administrator krbtgt Guest root@bdc-samba:~# 2013/6/17 Vladimir A Fomkin > HI! > root@bdc-samba:~# /usr/local/samba/bin/samba-tool user add tester4 > N

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-17 Thread Vladimir A Fomkin
HI! root@bdc-samba:~# /usr/local/samba/bin/samba-tool user add tester4 New Password: Retype Password: ERROR(ldb): Failed to add user 'tester4': - samldb: Account name (sAMAccountName) 'tester4' already in use! root@bdc-samba:~# 2013/6/17 steve > Hi > Just try adding the user anyway and let's

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-17 Thread steve
On Mon, 2013-06-17 at 12:27 +0200, steve wrote: > Hi > Just try adding the user anyway and let's see what happens: > > samba-rool user add tester4 > * samba-tool sorry -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-17 Thread steve
Hi Just try adding the user anyway and let's see what happens: samba-rool user add tester4 -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-17 Thread steve
On 17/06/13 08:57, Vladimir A Fomkin wrote: Good day! What is "DN"? Hi Make sure that you have the rfc2307 line in both the DC's. Add: uidNumber: 322 to the the DN of the user on one of the DC's. Wait a few minutes. Now create a file. It will have uid 322 no matter

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-16 Thread Vladimir A Fomkin
Good day! What is "DN"? smb.conf on PDC: root@debian-samba4:/usr/local/samba/etc# cat smb.conf # Global parameters [global] workgroup = TEST realm = TEST.LOCAL netbios name = DEBIAN-SAMBA4 server role = active directory domain controller dns forwarder = 192.168.1.102 idmap_

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-14 Thread steve
On Fri, 2013-06-14 at 18:05 +0400, Vladimir A Fomkin wrote: > Hello Marc! > Thank you for response! > I added this string in smb.conf on PDC and BDC, but after sync BDC again do > not give access. I see UID for files created for one user via PDC - 322 > and via BDC - 319 Hi Make sure that

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-14 Thread Vladimir A Fomkin
Hello Marc! Thank you for response! I added this string in smb.conf on PDC and BDC, but after sync BDC again do not give access. I see UID for files created for one user via PDC - 322 and via BDC - 319 2013/6/14 Marc Muehlfeld > Hello Vladimir, > > Am 14.06.2013 14:18, schrieb Vladimir

Re: [Samba] The problem with setting up AD domain to Samba 4

2013-06-14 Thread Marc Muehlfeld
Hello Vladimir, Am 14.06.2013 14:18, schrieb Vladimir A Fomkin: On PDC server has created a network folder for portable user profiles and synchronized it to the BDC through csync2 . My problem that the PDC and the BDC on the same user names has different UID and users can not access their networ

[Samba] The problem with setting up AD domain to Samba 4

2013-06-14 Thread Vladimir A Fomkin
Good day! I set up a domain controller AD (PDC and BDC) by Samba 4 on Debian Wheezy. I took a configuration from examples. After setting the PDC I configured a second controller(BDC) and connected it to the domain. On PDC server has created a network folder for portable user profiles and synchroniz

[Samba] The problem with setting up AD domain to Samba 4

2013-06-14 Thread Vladimir A Fomkin
Good day! I set up a domain controller AD (PDC and BDC) by Samba 4 on Debian Wheezy. I took a configuration from examples. After setting the PDC I configured a second controller(BDC) and connected it to the domain. On PDC server has created a network folder for portable user profiles and synchroniz