Re: [Samba] Samba + LDAP + TLS

2005-10-24 Thread Gerald (Jerry) Carter
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Jukka Hienola wrote: | So, our name server was unavailable this morning due | to OS update. Division's Samba and LDAP services are | running on same server, and Samba is using TLS in | connecting to LDAP service. Because some of the network | names

[Samba] Samba + LDAP + TLS

2005-10-24 Thread Jukka Hienola
Hi! I'm a bit new to Samba+LDAP integration, and most likely because of that I experienced this morning something I can't fully understand. I would appreciate if someone could explain to me what was really wrong. So, our name server was unavailable this morning due to OS update. Division's S

Re: [Samba] Samba+LDAP Groups resolving problem

2005-10-20 Thread robert . walland
ed (18). I know that this error means object not found or something like that. "Oliver Schulze L." <[EMAIL PROTECTED]> Sent by: [EMAIL PROTECTED] 20.10.2005 17:37 To samba@lists.samba.org cc Subject Re: [Samba] Samba+LDAP Groups resolving problem Does: net gr

Re: [Samba] Samba+LDAP Groups resolving problem

2005-10-20 Thread Oliver Schulze L.
Does: net groupmap list works? Oliver [EMAIL PROTECTED] wrote: Hi, I have managed to configure Samba+LDAP+smbldap-tools. Everything works fine, except one strange problem is appearing. When I connect with Windows tool UserManagerForDomains or I want to create a share on a Wndows box I can

[Samba] Samba+LDAP Groups resolving problem

2005-10-20 Thread robert . walland
Hi, I have managed to configure Samba+LDAP+smbldap-tools. Everything works fine, except one strange problem is appearing. When I connect with Windows tool UserManagerForDomains or I want to create a share on a Wndows box I can see the users but no groups. With UserManagerForDomains is see fo

[Samba] Samba + LDAP Login problem

2005-09-29 Thread Yehuda Gilbaum
Sorry if something wrong with this question - i'm pretty new in the field... But i really need some help or link... I have strange problem: Linux by Fedora 3 with latest updates Samba 3.0.14a LDAP 2.2.13 idealix small 10-users server without any security needs. 2 users of them sometimes fail to

Re: [Samba] Samba+LDAP (How to Expires an Account on Specified date)

2005-09-27 Thread Michael Gasch
you must change sambakickofftime, e.g. by smbldap-usermod ... from idealx greez Arun Sharma wrote: Hi Everybody, Structure of my server environment : Using Samba 3.0.20, Openldap V3 My requiremnt : 1) How to expire an user Account on a specified date.? Thanks all -- Michael Gasch Max

[Samba] Samba+LDAP (How to Expires an Account on Specified date)

2005-09-26 Thread Arun Sharma
Hi Everybody, Structure of my server environment : Using Samba 3.0.20, Openldap V3 My requiremnt : 1) How to expire an user Account on a specified date.? Thanks all -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/

[Samba] Samba+LDAP (How to Expires an user Account on Specified date)

2005-09-26 Thread Arun Sharma
Hi Everybody, Structure of my server environment : Using Samba 3.0.20, Openldap V3 My requiremnt : 1) How to expire an user Account on a specified date.? Thanks all -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/sam

RE: [Samba] Samba+LDAP+IdealX - Can't add to domain

2005-09-11 Thread Louis van Belle
une/107615.html part 2 Louis >-Oorspronkelijk bericht- >Van: [EMAIL PROTECTED] >[mailto:[EMAIL PROTECTED] >Namens Pau Garcia i Quiles >Verzonden: zondag 11 september 2005 21:22 >Aan: samba@lists.samba.org >Onderwerp: [Samba] Samba+LDAP+IdealX - Can't add to do

Re: [Samba] Samba+LDAP+IdealX - Can't add to domain

2005-09-11 Thread Tomasz Chmielewski
Pau Garcia i Quiles schrieb: Hello, I am running Samba 3.0.14a under Debian Sarge with a LDAP backend (OpenLDAP) following the IdealX guide. I am using smbldap-tools, too. Everything seems to work fine, except when I try a machine to join the domain: Windows XP SP2 says it cannot find the user.

[Samba] Samba+LDAP+IdealX - Can't add to domain

2005-09-11 Thread Pau Garcia i Quiles
Hello, I am running Samba 3.0.14a under Debian Sarge with a LDAP backend (OpenLDAP) following the IdealX guide. I am using smbldap-tools, too. Everything seems to work fine, except when I try a machine to join the domain: Windows XP SP2 says it cannot find the user. I have tried joining the domai

RE: [Samba] Samba + LDAP over the WAN

2005-09-07 Thread Bruno Guerreiro
Gasch [mailto:[EMAIL PROTECTED] >Sent: quarta-feira, 7 de Setembro de 2005 15:07 >To: Collins, Kevin >Cc: samba@lists.samba.org >Subject: Re: [Samba] Samba + LDAP over the WAN > > >hi, > >there were several threads about this topic and what cares >myself is th

Re: [Samba] Samba + LDAP over the WAN

2005-09-07 Thread Michael Gasch
hi, there were several threads about this topic and what cares myself is the following extract from this thread "[Samba] BDC, documentation, Machine Accounts Keep Expiring" /* if this next call fails, then give up. We can't do password changes on BDC's --jerry */ this is code fro

Re: [Samba] Samba + LDAP over the WAN

2005-09-07 Thread Robert Schetterer
Collins, Kevin schrieb: Since we're on the subject of Samba over the WAN (BTW, I'm running three offices with a Samba 3.0.9 PDC and two Samba 3.0.9 BDCs over an FreeSwan based WAN and it works just fine. The WINS server is a must in my book though.) Last Thursday and Friday, one of the

Re: [Samba] Samba + LDAP over the WAN

2005-09-06 Thread Adam Tauno Williams
Since we're on the subject of Samba over the WAN (BTW, I'm running three offices with a Samba 3.0.9 PDC and two Samba 3.0.9 BDCs over an FreeSwan based WAN and it works just fine. The WINS server is a must in my book though.) We have a fifteen site WAN with sites linked via Frame Relay, p

[Samba] Samba + LDAP over the WAN

2005-09-06 Thread Collins, Kevin
Since we're on the subject of Samba over the WAN (BTW, I'm running three offices with a Samba 3.0.9 PDC and two Samba 3.0.9 BDCs over an FreeSwan based WAN and it works just fine. The WINS server is a must in my book though.) Last Thursday and Friday, one of the remove office's WAN lines w

[Samba] Samba+ldap : can't join to domain

2005-08-31 Thread info . neufchatel
Hello, I'm using Samba3.0.14a and openldap from Debian/Sarge. I used some doc to make it work and this one in particular : http://us3.samba.org/samba/docs/man/Samba-Guide/happy.html I am using root with uidnumber=O, samba.conf from idealx samba3-ldap howto and everything looks too work fine exce

[Samba] Samba LDAP PDC - SVRTOOLS.exe

2005-08-21 Thread Adrian Sender
Hello List, I am using Samba 3.14a with LDAP as a primary domain controller - works very well. I have been using several different applications to add users & groups to manipulate and administer the domain; I have found that SVRTOOLS to be the most effective. Recently however I am getting

Re: [Samba] samba-ldap

2005-08-17 Thread Anthony Hess
Do you have any entries showing up in your log.smbd or your ldap error/access logs that look applicable? Tony On 8/17/05 6:32 PM, "Scott Mayo" <[EMAIL PROTECTED]> wrote: > Well, I am still having problems with my samba server. For some reason, > I cannot add all of the users in. I am running a

[Samba] samba-ldap

2005-08-17 Thread Scott Mayo
Well, I am still having problems with my samba server. For some reason, I cannot add all of the users in. I am running a batch useradd program. I can get about 450 or so added in, then it gives me an error that the user does not exist when I go to add the last 60 or so. My batch program ac

[Samba] samba ldap pdc - admin using svrtools.exe

2005-08-13 Thread adrian
Hello Guys, I have been using svrtools.exe to manage my samba ldap domain controller. I have used many different methods to manage users/groups such as LAM, PHPLDAPADMIN, while these are ok, I found SVRTOOLS.exe to be the best. Svrtools.exe was working fine, now however when I open USRMGR I get

[Samba] samba ldap cups recyle acl kix usrmgr etc... example

2005-08-10 Thread Louis van Belle
For everybody who wants a nice example you can download it from this location. http://www.ratio-benelux.nl/sambaldap.rar.gz this set includes. samba 3.0.14a example with cups, acl, recycle and ldap smbldap-tools example ldap config example libnss_ldap config pam_ldap config poledit.exe with the

[Samba] Samba / Ldap / Unix / Sendmail passwords when changing via windows client.

2005-07-21 Thread Neil Marjoram
I have just installed RHEL 4 with Samba 3.0.10 and samba tools 0.9.1.1. All works very well until a user changes the password using a windows client. All the correct changes occur in ldap and everything looks fine, the user can login with the new password to windows and unix, the problem is t

[Samba] Samba + LDAP slave

2005-07-15 Thread Anthony Chavez
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 I just came across the following in the Samba HOWTO: It is important that all LDAP IDMAP clients use only the master LDAP server because the idmap backend facility in the smb.conf file does not correctly handle LDAP redirects.

Re: [Samba] Samba LDAP timeout

2005-07-11 Thread Ian Smith-Heisters
Adam Tauno Williams wrote: I've never used Ubuntu; but I'd be surprised your Samba is really built without SSL support, in fact, I think it is really your libldap that is in question. Are you setting " ldap ssl = start_tls" ??? Don't use an "ldaps:///" URL. If you LDAP server is local j

RE: [Samba] SAMBA LDAP PDC - LAM LDAP ACCOUNT MANAGER

2005-07-10 Thread Doug Campbell
Adrian, > I really have ran out of options here, and I don't know how to resolve > this issue. I have a Samba LDAP primary domain controller. I have been > using LAM - LDAP Account Manager to manage the accounts. The command > line appears to be working correctly ie - getent passwd, getent group,

[Samba] SAMBA LDAP PDC - LAM LDAP ACCOUNT MANAGER

2005-07-10 Thread Adrian Sender
Hello members I really have ran out of options here, and I don't know how to resolve this issue. I have a Samba LDAP primary domain controller. I have been using LAM - LDAP Account Manager to manage the accounts. The command line appears to be working correctly ie - getent passwd, getent group

[Samba] SAMBA+LDAP PDC (LAM LDAP ACCOUNT MANAGER NOT WORKING)

2005-07-10 Thread Adrian Sender
The LDAP server is working fine as I said it works fine in the command line. Anymore suggestions? email me: [EMAIL PROTECTED] Thanks Adrian Hello members I really have ran out of options here, and I don't know how to resolve this issue. I have a Samba LDAP primary domain controller. I

Re: [Samba] Samba LDAP timeout

2005-07-06 Thread Ian Smith-Heisters
Adam Tauno Williams wrote: I've never used Ubuntu; but I'd be surprised your Samba is really built without SSL support, in fact, I think it is really your libldap that is in question. ldd /usr/lib/libldap.so reveals that it is not linked to libssl, while it is on the server that has th

Re: [Samba] Samba LDAP timeout

2005-07-06 Thread Adam Tauno Williams
> It now works without SSL. With SSL is a different issue. > [2005/07/06 10:48:24, 1] lib/smbldap.c:another_ldap_try(990) >Connection to LDAP server failed for the 10 try! > [2005/07/06 10:48:25, 1] lib/smbldap.c:another_ldap_try(990) >Connection to LDAP server failed for the 11 try! > [200

Re: [Samba] Samba LDAP timeout

2005-07-06 Thread Ian Smith-Heisters
Adam Tauno Williams wrote: [2005/07/06 09:26:35, 0] lib/smbldap.c:smbldap_connect_system(812) ldap_connect_system: Failed to retrieve password from secrets.tdb <- Did you set the LDAP bind password? Yes! That did the trick. Thank you very much. I shouldn't have overlook

Re: [Samba] Samba LDAP timeout

2005-07-06 Thread Adam Tauno Williams
> [2005/07/06 09:26:35, 0] lib/smbldap.c:smbldap_connect_system(812) > ldap_connect_system: Failed to retrieve password from secrets.tdb > <- Did you set the LDAP bind password? -- To unsubscribe from this list go to the following URL and read the instructions: https://list

RE: [Samba] Samba LDAP timeout

2005-07-06 Thread Bruno Guerreiro
Hi, Have you stored your bind DN ldap password with smbpasswd -w ? Best regards, Bruno Guerreiro -Original Message- From: Ian Smith-Heisters [mailto:[EMAIL PROTECTED] Sent: quarta-feira, 6 de Julho de 2005 15:12 To: samba@lists.samba.org Subject: [Samba] Samba LDAP timeout Hello, I&#

[Samba] Samba LDAP timeout

2005-07-06 Thread Ian Smith-Heisters
Hello, I'm having trouble configuring an Ubuntu Hoary Samba server to use LDAP for authentication (the server is named "dixie"). I'm basing my configuration on another server here at work that connects just fine. When I try to just list samba shares on dixie with $ smbclient -L dixie -U faker It

Re: [Samba] Samba/LDAP

2005-06-23 Thread kalasala
also http://www.unav.es/cti/ldap-smb-howto.html is pretty good howto. On 6/22/05, Tomasz Chmielewski <[EMAIL PROTECTED]> wrote: > > Jason Greene schrieb: > > I've been pulling my teeth out trying to get SAMBA/LDAP configured. > > > > Before I ask my questions... > > > > Is this the right place to

Re: [Samba] Samba/LDAP

2005-06-22 Thread Tomasz Chmielewski
Jason Greene schrieb: I've been pulling my teeth out trying to get SAMBA/LDAP configured. Before I ask my questions... Is this the right place to ask about the necessary attributes to put in LDAP for SAMBA to authenticate against? Generally it's a good place to ask such questions. But befor

[Samba] Samba/LDAP

2005-06-22 Thread Jason Greene
I've been pulling my teeth out trying to get SAMBA/LDAP configured. Before I ask my questions... Is this the right place to ask about the necessary attributes to put in LDAP for SAMBA to authenticate against? -- Regards. In Christ, Jason Greene Angelus Press IT Manager 2915 Forest Avenue

Re: [Samba] Samba + LDAP NSS resolving

2005-06-14 Thread Geert Stappers
On Tue, Jun 14, 2005 at 01:58:52PM -0700, linuxlady wrote: > I'm sure it's not the docs, just me. I used the other docs from > idealx because I had problems with the smbldap-tools - but I managed > to solve those problems and add entries. > > I went back and checked the configuration for nss_lda

Re: [Samba] Samba + LDAP NSS resolving

2005-06-14 Thread linuxlady
I'm sure it's not the docs, just me. I used the other docs from idealx because I had problems with the smbldap-tools - but I managed to solve those problems and add entries. I went back and checked the configuration for nss_ldap and pam_ldap - but it still didn't work. I'm using Chapter 5 of th

Re: [Samba] Samba + LDAP NSS resolving

2005-06-13 Thread John H Terpstra
On Monday 13 June 2005 19:58, linuxlady wrote: > I'm using the howto from idealx and the samba-guide to configure a > samba server with LDAP backend. I am the author of the Samba-Guide. Frankly, if my documentation does not solve your problem then it is broken and useless! You should not need mo

[Samba] Samba + LDAP NSS resolving

2005-06-13 Thread linuxlady
I'm using the howto from idealx and the samba-guide to configure a samba server with LDAP backend. The config works fine until I get to the step: getent passwd | grep root It doesn't query any of the LDAP entries that were added with smbldap-populate or smbldap-useradd - it only returns local en

Re: RE [Samba] samba ldap problem

2005-06-10 Thread Laradji nacer
[EMAIL PROTECTED] wrote: What is your guest user in smb.conf ? check if is not nobody, the guest acoutn is used by samba for first connection. Yes it s nobody user . I have modify this with guest user in ldap directory . -- Laradji nacer ovea http://www.ovea.com Tél : +33 4 6767

RE [Samba] samba ldap problem

2005-06-10 Thread spu
What is your guest user in smb.conf ? check if is not nobody, the guest acoutn is used by samba for first connection. --- Stéphane PURNELLE [EMAIL PROTECTED] Service Informatique Corman S.A. Tel : 00 32 087/342467 [EMAIL PR

[Samba] samba ldap cannot modify account

2005-06-10 Thread Laradji nacer
Hi, I have 2 problem on samba 3 with ldap : Some stuff before : Debian sarge ii samba 3.0.14a-3 1 /i cannot modify user with usrmgr with a account member of domain admin : I have this error : op_sec_ctx (1000, 1000) - sec_ctx_stack_ndx = 0 [2005/06/10 18:24:28, 0] lib/smbldap.c:smbld

[Samba] samba ldap problem

2005-06-10 Thread Morgan Hallgren
I have tried to create a samba domain with a ldap backend. This is how my ldap structure looks like. # example.com dn: dc=example,dc=com objectClass: dcObject objectClass: organization o: example dc: example # groups, example.com dn: ou=groups,dc=example,dc=com objectClass: organizationalUnit ou

Re: [Samba] Samba & LDAP primary domain controller

2005-06-08 Thread Geert Stappers
On Wed, Jun 08, 2005 at 01:34:40PM +1000, Adrian Sender wrote: > Please Help. > > I have sucsessfully configured samba3 & ldap primary domain controller, > however I have the following issue. inline quoted my some what educated guess > > [EMAIL PROTECTED] sbin]# su bbong > su: user bbong does

[Samba] Samba & LDAP primary domain controller

2005-06-07 Thread Adrian Sender
Please Help. I have sucsessfully configured samba3 & ldap primary domain controller, however I have the following issue. [EMAIL PROTECTED] sbin]# su bbong su: user bbong does not exist [EMAIL PROTECTED] sbin]# ./smbldap-useradd -m -a bbong ./smbldap-useradd: user bbong exists [EMAIL PROTECTED]

[Samba] samba-ldap and cyrillic

2005-05-26 Thread Jerome Tournier
Hi all, i installed a new linux with russian support. I now want to configure Samba and OpenLDAP, but i have many problems for users and groups accounts. Can i create a user account with cyrillic caracter (as i can on Windows) ? It looks that i can't as memberUid attribute need to be in ASCII mode.

[Samba] Samba+LDAP PDC working, but without groups

2005-05-18 Thread Thiago Vinhas de Moraes
Hi, I'm running a Samda+LDAP PDC, and it's working flawless. The problem is that I cannot have any domain admins. When I run "net groupmap list" , I have nothing... it's clean. So I tried the following command: samba:~ # net groupmap add ntgroup="Domain Admins" unixgroup=wheel rid=512 Which

SOLVED RE: [Samba] Samba+ldap, Getent and AD (aka the good bad and the downright ugly)

2005-05-09 Thread sysrm
e last problem, but im a heck of way further than I was 20 mins ago :) Cheers Ross -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of sysrm Sent: 09 May 2005 10:51 To: Samba Subject: [Samba] Samba+ldap,Getent and AD (aka the good bad and the downright ugly)

[Samba] Samba+ldap, Getent and AD (aka the good bad and the downright ugly)

2005-05-09 Thread sysrm
Hi all. I have managed to join my samba server to an AD domain. I can now join using the net command and get various other bits of info. Wbinfo -u /g/t etc works nps Getent however doesn't. This is my question: By reading various emails over the last 2 weeks and various howtos etc In order t

[Samba] Samba LDAP PDC, BDC + Shared Interdomain Trust secret

2005-05-06 Thread Robert Kelly
Hi there, I have a Samba PDC and BDC migrated from NT4 using ldapsam with an interdomain trust to a 2k3 domain. The trust is established both ways and was made from the pdc. Using samba 3.0.14a-sernet on Suse 9.1 The trust is working. I can pull users from the trusted domain and apply them to acls

[Samba] Samba+LDAP on Fedora or Redhat. system-config-athentication / redhat-config-authentication

2005-05-04 Thread taso
This is just a note for people who prefer using system/redhat-config-athentication to editing authentication related config file by hand. The context is Fedora 3, samba-3.0.14a-1, and smbldap-tools-0.8.8-1. The SambaGuide for setting up Samba with LDAP says to use "pam_password exop" in ldap.con

[Samba] SAMBA + LDAP configuration problem

2005-04-26 Thread Ivan Wills
Hi I have a problem with my samba ldap configuration. I can view users and groups with smbldap-usershow and smbldap-groupshow with out any problems. But when I go to add a user to a group with smbldap-groupmod -m USER "GROUP" I get an error that the group does not exist. Any suggestions for wha

[Samba] samba ldap filter

2005-04-26 Thread tom burkart
Hi, I have an interesting issue on 3.0.13: the ldap filter insists on having ...&(objectclass=smabaSamAccount)... as part of the filter. Of course at the same time the "smbldap-useradd -w ..." initially does not add in this objectclass... (the chicken and egg issue) Yet, on another system (diffe

Re: [Samba] Samba/LDAP Administrator taking over root

2005-04-11 Thread Paul Gienger
After installing LDAP and setting up as PDC my unix user root shows up as Administrator. When I do an ls on anything that was owned by root now shows ups being owned by Administrator How do I get root back? The system seems to function OK? Sounds like you for some reason set your Administrato

[Samba] Samba/LDAP Administrator taking over root

2005-04-11 Thread Samba User
After installing LDAP and setting up as PDC my unix user root shows up as Administrator. When I do an ls on anything that was owned by root now shows ups being owned by Administrator How do I get root back? The system seems to function OK? -- To unsubscribe from this list go to the following UR

Re: [Samba] Samba-LDAP TLS problems with inofficial Debian OpenLDAP 2.2 packages

2005-03-23 Thread Tony Earnshaw
Paul Coray: > Three days ago I switched our domain from a NT 4 domaincontroller to > Samba-OpenLDAP, controlled by a Debian Sarge system. I installed the > following inofficial Debian OpenLDAP 2.2 packages (I know these are not > supported, but TLS with OpenSSL is essential to us...): > > Package

[Samba] Samba-LDAP TLS problems with inofficial Debian OpenLDAP 2.2 packages

2005-03-23 Thread Paul Coray
Dear Torsten, dear samba list reader Three days ago I switched our domain from a NT 4 domaincontroller to Samba-OpenLDAP, controlled by a Debian Sarge system. I installed the following inofficial Debian OpenLDAP 2.2 packages (I know these are not supported, but TLS with OpenSSL is essential to u

Re: [Samba] Samba LDAP replication weirdness...

2005-03-22 Thread Craig White
On Tue, 2005-03-22 at 20:35 -0600, Mccrory, Kevin B wrote: > I have the PDC/BDC with a master slave LDAP directory set up and > operating. > > One problem is that I've only been able to get the LDAP Master/Slave > replication working if I use Manager as the binddn for the replication. > I'm using

[Samba] Samba LDAP replication weirdness...

2005-03-22 Thread Mccrory, Kevin B
I have the PDC/BDC with a master slave LDAP directory set up and operating. One problem is that I've only been able to get the LDAP Master/Slave replication working if I use Manager as the binddn for the replication. I'm using the IDEALX smbldap tools. If I use another user I get a ERROR: Insuffi

Re: [Samba] samba ldap bind problems.

2005-03-08 Thread HK
I'm just getting started with samba-ldap myself, on linux. <\warning> Check your ldap.conf file for the correct binddn and bindpw. If it's correct, is ldap.conf readable by the user Samba runs as? Hudson --- Barry Haycock <[EMAIL PROTECTED]> wrote: > I have a solaris 9 box that I am configuring

[Samba] samba ldap bind problems.

2005-03-07 Thread Barry Haycock
I have a solaris 9 box that I am configuring to be a PDC using the latest version of samba authenticating off of an Openldap db. This machine uses the same ldap server to authenticate the unix users but after following documentation for setting up samba/ldap PDC. Using smbldap-populate populated

Re: [Samba] SAMBA + LDAP : Unable to Login on a domain

2005-02-28 Thread Didier ALBENQUE
Le Thu, 24 Feb 2005 09:47:53 +0100, Olivier BONHOMME <[EMAIL PROTECTED]> écrivait : > But the problem is when I try to log into the domain with an account. > Samba says that authentication is OK but windows says that username or > password is incorrect. > > Does anybody has a solution for this s

Re: [Samba] SAMBA+LDAP

2005-02-24 Thread Mark Roach
On Thu, 2005-02-24 at 15:27 -0800, Roger Morris wrote: >I don't want to integrate into AD, I have a SAMBA server running the >latest and greatest that comes with Redhat AS4 (Samba 3.0.10-1.4E). >All I want to do is to be able to authenticate against an existing >LDAP server. You might want to t

[Samba] SAMBA+LDAP

2005-02-24 Thread Roger Morris
Yep, I know there's documentation out there. I don't want to integrate into AD, I have a SAMBA server running the latest and greatest that comes with Redhat AS4 (Samba 3.0.10-1.4E). All I want to do is to be able to authenticate against an existing LDAP server. The LDAP server is running iPlanet (

Re: [Samba] Samba-LDAP PDC, problem with smbldap-tools

2005-02-24 Thread sania maro
Hi all, Thanks a lot Jerome for your help!!! The problem was that I didn't put the right password for the Manager in the file smbldap_bind.conf (I let slavePw="secret" and masterPw="secret"). Now, the smbldap-populate script works fine, it adds entries but it displayes the following message: [EMA

Re: [Samba] Samba-LDAP PDC, problem with smbldap-tools

2005-02-24 Thread sania maro
--- Jerome Tournier <[EMAIL PROTECTED]> a écrit : > Le Thu, Feb 24, 2005 at 09:03:20AM +0100, sania maro > a ecrit: > > failed to add entry: modifications require > > authentication at /usr/local/sbin/smbldap-populate > did you also configured smbldap_bind.conf ? Did you > check that the accoun

Re: [Samba] Samba-LDAP PDC, problem with smbldap-tools

2005-02-24 Thread Jerome Tournier
Le Thu, Feb 24, 2005 at 09:03:20AM +0100, sania maro a ecrit: > failed to add entry: modifications require > authentication at /usr/local/sbin/smbldap-populate did you also configured smbldap_bind.conf ? Did you check that the account defined in this file has write access to the directory ? -- J

[Samba] SAMBA + LDAP : Unable to Login on a domain

2005-02-24 Thread Olivier BONHOMME
Hi Everybody, I am writing here this mail because I have a strange problem using SAMBA with authentication by LDAP. The OS is a Linux Debian Sarge 3.1 with a SAMBA 3.0.10-Debian. Communication between LDAP and SAMBA works fine. So I can access to SAMBA shares in workgroup mode using LDAP account

[Samba] Samba-LDAP PDC, problem with smbldap-tools

2005-02-24 Thread sania maro
Good morning, I need your help please: I installed samba 3.0.11 as a PDC with OpenLDAP 2.1.22 and smbldap-tools 0.8.7. When I tried to initialise the LDAP directory using smbldap-ppopulate scrit, I received the following message: failed to add entry: modifications require authentication at /usr

[Samba] Samba-LDAP PDC: smbldap-populate failer

2005-02-23 Thread sania maro
Hi every body, I installed samba 3.0.11 as PDC with OpenLDAP 2.1.22 and smbldap-tools 0.8.7. when I tried to initialise the LDAP directory using smbldap-ppopulate scrit, I received the following message: failed to add entry: modifications require authentication at /usr/local/sbin/smbldap-populat

Re: [Samba] samba+ldap machine account bug workaround?

2005-02-17 Thread Craig White
On Thu, 2005-02-17 at 11:30 -0600, John Hawley wrote: > Hi. > > I've used Samba for years, but just this week I decided to try to figure > out how to use it with LDAP. > > I've got everything working to the point that I can now log in on a W98 > machine, but not on a W2k .. problem with the machi

[Samba] samba+ldap machine account bug workaround?

2005-02-17 Thread John Hawley
Hi. I've used Samba for years, but just this week I decided to try to figure out how to use it with LDAP. I've got everything working to the point that I can now log in on a W98 machine, but not on a W2k .. problem with the machine account. I understand that there is a bug which has been fixed i

[Samba] samba + ldap + pdc

2005-02-14 Thread Márcio Luciano Donada
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi. I am configuring the samba to legalize in ldap (PDC) of my network. I am with the problem in the hour to legalize the domain see logs: [ 2005/02/14 15:07:31, 0 ] passdb/pdb_ldap.c:ldapsam_search_one_group(1982) ldapsam_search_one_group: Problem duri

Re: [Samba] Samba/LDAP documentation

2005-02-13 Thread John H Terpstra
On Sunday 13 February 2005 07:41, Tony Earnshaw wrote: > Craig White to JHT: > > [...] > > > You are a kind, warm and generous person and the thought that I might > > have said anything that wounds you bothers me. Any criticism that I may > > have offered was only offered to make the documentation

Re: [Samba] Samba/LDAP documentation

2005-02-13 Thread Craig White
On Sun, 2005-02-13 at 22:06 +0100, Tony Earnshaw wrote: > Craig White: > > My Win XP prof machine accepts any RID whatsoever for Administrator. > Maybe a Win 2000 machine wouldn't. Moreover, using USRMGR/SRVMGR it > issues out-of-context RIDS (e.g. 513 for a computer). It coexists with > and acce

Re: [Samba] Samba/LDAP documentation

2005-02-13 Thread Tony Earnshaw
Craig White: [...] >> > Please bear in mind that Samba interfaces between MS Windows and >> > UNIX-like >> > platforms. The issues we are touching on here are deeper than the >> > cosmetics of user names and group names. To change the behaviour will >> > require changes deep inside the smbd sour

Re: [Samba] Samba/LDAP documentation

2005-02-13 Thread Craig White
On Sun, 2005-02-13 at 14:13 -0500, Adam Tauno Williams wrote: > > The problem that apparently both Tonni and I had was coming to terms > > with the net group map command. It mucked with the DSA attributes of > > 'displayName' 'sambaSID' 'objectclass' - > > I'm confused by this statement. The att

Re: [Samba] Samba/LDAP documentation

2005-02-13 Thread Adam Tauno Williams
> The problem that apparently both Tonni and I had was coming to terms > with the net group map command. It mucked with the DSA attributes of > 'displayName' 'sambaSID' 'objectclass' - I'm confused by this statement. The attributes displayName and sambaSID are not relevant to a POSIX group, so t

Re: [Samba] Samba/LDAP documentation

2005-02-13 Thread Craig White
On Sun, 2005-02-13 at 16:16 +0100, Tony Earnshaw wrote: > John H Terpstra: > > [...] > > > FYI. I run Samba training classes around the world. I use SuSE Linux > > Enterprise Server 9 and SuSE Linux 9.2 Professional to host Samba. All > > classes are run using OpenLDAP 2.2 and the Idealx scripts.

Re: [Samba] Samba/LDAP documentation

2005-02-13 Thread Tony Earnshaw
Craig White to JHT: [...] > You are a kind, warm and generous person and the thought that I might > have said anything that wounds you bothers me. Any criticism that I may > have offered was only offered to make the documentation better. Seconded. That's obvious from the official HOWTO, which is

Re: [Samba] Samba/LDAP documentation

2005-02-13 Thread Tony Earnshaw
John H Terpstra: [...] > FYI. I run Samba training classes around the world. I use SuSE Linux > Enterprise Server 9 and SuSE Linux 9.2 Professional to host Samba. All > classes are run using OpenLDAP 2.2 and the Idealx scripts. > > I have deployed Samba-3 and OpenLDAP 2.2.x in several large sites

Re: [Samba] Samba/LDAP documentation

2005-02-13 Thread Tony Earnshaw
John H Terpstra: > The Samba-HOWTO-Collection and Samba-Guide documentation has worked for > many people, but I am quick to admit that it can be significantly > improved. There is little benefit in my continuously pounding this list > with requests for patches and updates - even though we have dem

Re: [Samba] Samba/LDAP documentation

2005-02-13 Thread Craig White
On Sat, 2005-02-12 at 15:38 -0700, John H Terpstra wrote: > > Interestingly enough, I used Gerry Carter's LDAP book which deals with > > LDAP first and then how to integrate samba (of course, this was 2.2 when > > book was published) which is clearly the approach that you and I have > > taken. >

Re: [Samba] Samba/LDAP documentation

2005-02-12 Thread John H Terpstra
On Saturday 12 February 2005 14:39, Craig White wrote: > I am pretty much in agreement with your assessments, both in this > message and on previous messages but it's probably an exaggeration to > call the HOWTO with respect to groups as worthless. > > What I find that I have issue with - an appare

Re: [Samba] Samba/LDAP documentation

2005-02-12 Thread Craig White
On Sat, 2005-02-12 at 19:18 +0100, Tony Earnshaw wrote: > List, documenters; > > I'd like to exchange notes about the official Samba 3 LDAP doco. > > I'd like to do this off list, since doing it on list would simply confuse > and confound users wit perfectly working systems. > > Background: > >

Re: [Samba] Samba/LDAP documentation

2005-02-12 Thread John H Terpstra
Tonni, Folks, The Samba-HOWTO-Collection and Samba-Guide documentation has worked for many people, but I am quick to admit that it can be significantly improved. There is little benefit in my continuously pounding this list with requests for patches and updates - even though we have demonstrate

[Samba] Samba/LDAP documentation

2005-02-12 Thread Tony Earnshaw
List, documenters; I'd like to exchange notes about the official Samba 3 LDAP doco. I'd like to do this off list, since doing it on list would simply confuse and confound users wit perfectly working systems. Background: Me, Samba relative newbie, though I can get *everything* Samba-orientated t

[Samba] Samba+LDAP users can't su

2005-02-01 Thread Choudary Mumtaz
I am authenticating RedHat Fedora box against a Samba+Openldap server. Users can login on console and ssh to the Fedora box using their ldap credentials, but they can't su. For example, I can ssh to Fedora box as user A, but I can't su - A. Su and login under pam.d seem to be same. Thank you.

[Samba] Samba LDAP PDC Admin and other minor problems.

2005-01-25 Thread David Sonenberg
So I've got my PDC LDAP up and running and replicating over to the slave BDC, and I'm just trying to fix some minor problems. I've added my self to the "Domain Admins" group but I still can't open the windows usrmgr program with my account. I even set it up so my default group is "Domain Admin

RE: [Samba] Samba LDAP and add machine script problems

2005-01-24 Thread Tony Earnshaw
Geoff Scott: [...] >>> tell us what happens. >> >> What happens is, that RHAS3 gets all mixed upo (Openldap 2.2.20) as to >> what's root and what's administrator. >> >> This is a *LOUSY* solution and worthy by all men of utter condemnation. [...] > hmmm. I was just quoting from JHT's book samb

[Samba] SAMBA + LDAP + add machine script bug?

2005-01-24 Thread Keith Robertson
Recently I was having some trouble getting the "add machine" script to work with samba-3.0.10. Initially, I attempted to add a Windoze XP box (i.e. Control Panel ->System -> Computer Name tab) to my domain with a user ID of "root". This would always fail because there was no user named "root" in

RE: [Samba] Samba LDAP and add machine script problems

2005-01-23 Thread Geoff Scott
> Geoff Scott: > > [...] > > > tell us what happens. > > What happens is, that RHAS3 gets all mixed upo (Openldap 2.2.20) as to > what's root and what's administrator. > > This is a *LOUSY* solution and worthy by all men of utter condemnation. > > --Tonni hmmm. I was just quoting from JHT's

RE: [Samba] Samba LDAP and add machine script problems

2005-01-23 Thread Tony Earnshaw
Geoff Scott: [...] > tell us what happens. What happens is, that RHAS3 gets all mixed upo (Openldap 2.2.20) as to what's root and what's adminisrtator. Thids is a *LOUSY* solution and worthy by all men oif utter condemnation. --Tonni -- mail: [EMAIL PROTECTED] http://www.billy.demon.nl --

RE: RE: [Samba] Samba LDAP and add machine script problems

2005-01-21 Thread Keith Robertson
I have done some further investigation and this is what I found. If I change the uidNumber of "uid=Administrator,ou=Users,dc=somedomain,dc=org" to 0 Samba will add a computer to ou=Computers. However, it will still return an error to the XP machine that is attempting to join the domain. The erro

RE: [Samba] Samba LDAP and add machine script problems

2005-01-20 Thread Geoff Scott
> > I'm trying to integrate Openldap with Samba version 3.0.10. I have > populated > my LDAP server via smbldap-populate.pl and I've gotten PAM to recognize > LDAP > as an authentication mechanism. Thus, I can add a user with smbldap- > useradd.pl > and su to that user. Can you do a straight lo

[Samba] Samba LDAP and add machine script problems

2005-01-20 Thread Keith Robertson
I'm trying to integrate Openldap with Samba version 3.0.10. I have populated my LDAP server via smbldap-populate.pl and I've gotten PAM to recognize LDAP as an authentication mechanism. Thus, I can add a user with smbldap-useradd.pl and su to that user. The problem I am having is when I attemp

Re: [Samba] Samba + LDAP Computers OU

2005-01-10 Thread Adam Tauno Williams
> I would like to put Computer accounts in a different OU from the user > accounts. > Is this possible ? YES. And it has been discussed many times. The archives should provide you with a variety of answers. > I read that there is a bug regarding this and that Computer accounts can > only be cr

<    1   2   3   4   5   6   7   8   9   >