From a google search it looks like that is how it was intended.
http://thr3ads.net/samba/2013/03/2189446-Samba4-File-ownership-for-Domain-Admins-members
Thanks for your help.
- Pramod
On Aug 13, 2013, at 9:18 AM, Pramod Venugopal wrote:
> Even stranger.
>
> This happens only when the user i
Even stranger.
This happens only when the user is a member of the domain admins group. When I
removed the user from "Domain Admins" , the uid is correct.
On Aug 13, 2013, at 9:06 AM, Pramod Venugopal wrote:
> That did not work. But on the bright side, it looks like it is doing that
> only fo
That did not work. But on the bright side, it looks like it is doing that only
for one user and only via smb.
Other services which use the same winbind authentication seem to work fine for
that user such ftp and afp. I am going to recreate the user and see if it
resolves the issue.
Thanks for
On 12/08/13 13:04, Pramod Venugopal wrote:
Hello everyone,
I am running Samba 4.0.8 on Arch Linux (installed from the Arch Repo)
I have winbind authentication configured and working. I am able to login via
ssh, and at the machine console with my samba credentials. I also have a
Windows 8 clie
Typo?
idmap config THRACE : backed = rid
should be
idmap config THRACE : backend = rid
I also suggest that you remove these lines
password server = livia bkdc
Socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
ldap ssl = no
Rowland
On 24 J
Hello,
I just wanted to answer my question in case anybody has the same problem
and is looking for an answer...
On Sun, 02 Dec 2012 22:46, I wrote:
> I have a problem with samba / winbind PAM authentication. Domain
> controller is samba4, machines users log on to via PAM are samba 3.6
> (all
On 02/13/2012 10:48 AM, Oliver Weinmann wrote:
Hi All,
I'm struggling since weeks to get samba winbind and a kerberized nfs mount
running. We have a Netapp SAN exporting the nfs share with sec=krb5 and a Linux
Client Ubuntu 10.04 Server trying to access the exported share. Accessing the
share
From: "Diego Vera"
Date: Tue, 25 Oct 2011 12:38:20 -0300
> Hi,
>
> Why does samba+winbind ignore the local unix groups ?
That's by design, I think.
And unix group cannot support joining global / universal group to the
unix group, storing SID value and other Windows specific features.
> but w
On Mon, Mar 28, 2011 at 05:26:30PM +1300, s f wrote:
> Google as I might, I cannot find any recent discussions on solving this
> problem, many times asked, but no solutions have worked for me.
Try "username map script = /bin/echo".
Volker
--
SerNet GmbH, Bahnhofsallee 1b, 37081 Göttingen
phone:
Hi, thanks very much for your feeback.
I now have it working in my Virtualbox lab and will make the changes in
production shortly.
The trick was to rely on kerberos only thanks for the winbind tip, it was
confusing me horribly.
I disabled winbind and did more testing, now anyone who has aut
Hi,
Original-Nachricht
> Why does samba+winbind ignore the local unix groups ?
>
> I have joined my samba server to Windows AD.
>
> I have configured a share with the values:
> [public_share]
> #Perms are 777
> path= /home/pub_share
> comment
2011/1/11 Dan Burkland :
>I have everything
> working however I have noticed when I boot a RHEL client or restart the
> Samba & Winbind services (in that order) I get a bunch of log entries in
> /var/log/messages like the following:
>
> Jan 11 08:04:27 mn4s34052 winbindd[10980]: ERROR: Initializa
onntag, 24. Oktober 2010 17:20
To: Oliver Weinmann
Cc: samba@lists.samba.org
Subject: Re: [Samba] Samba-winbind 3.5.4 primary group is always
domainusers!!!???
On Sun, Oct 24, 2010 at 2:46 PM, Andrew Lyon wrote:
>> -Original Message-
>> From: Andrew Lyon [mailto:andrew.l
On Sun, Oct 24, 2010 at 2:46 PM, Andrew Lyon wrote:
>> -Original Message-
>> From: Andrew Lyon [mailto:andrew.l...@gmail.com]
>> Sent: Freitag, 22. Oktober 2010 11:50
>> To: Oliver Weinmann
>> Cc: samba@lists.samba.org
>> Subject: Re: [Samba] Samba-w
> -Original Message-
> From: Andrew Lyon [mailto:andrew.l...@gmail.com]
> Sent: Freitag, 22. Oktober 2010 11:50
> To: Oliver Weinmann
> Cc: samba@lists.samba.org
> Subject: Re: [Samba] Samba-winbind 3.5.4 primary group is always
> domainusers!!!???
>
> On We
samba@lists.samba.org
Subject: Re: [Samba] Samba-winbind 3.5.4 primary group is always
domainusers!!!???
On Wed, Oct 20, 2010 at 12:36 PM, Oliver Weinmann
wrote:
> Hi,
>
> Any news regarding this problem? I have testet samba 3.5.6 and the
> problem still persists. I had to downgrad
On Wed, Oct 20, 2010 at 12:36 PM, Oliver Weinmann
wrote:
> Hi,
>
> Any news regarding this problem? I have testet samba 3.5.6 and the
> problem still persists. I had to downgrade to 3.3 on a few machines now.
>
> Regards,
> Oliver
>
> -Original Message-
> From: samba-boun...@lists.samba.or
Hi,
Any news regarding this problem? I have testet samba 3.5.6 and the
problem still persists. I had to downgrade to 3.3 on a few machines now.
Regards,
Oliver
-Original Message-
From: samba-boun...@lists.samba.org
[mailto:samba-boun...@lists.samba.org] On Behalf Of Oliver Weinmann
Sent
s [mailto:m...@campbell-lange.net]
> Sent: maandag 23 augustus 2010 18:50
> To: Heijden W.A. van der (Walter)
> Cc: samba@lists.samba.org; jel...@samba.org
> Subject: Re: [Samba] Samba/Winbind issue
>
> Have you tried to escape it with \ ?
>
> On Wed, Aug 11, 2010 at
lange.net]
Sent: maandag 23 augustus 2010 18:50
To: Heijden W.A. van der (Walter)
Cc: samba@lists.samba.org; jel...@samba.org
Subject: Re: [Samba] Samba/Winbind issue
Have you tried to escape it with \ ?
On Wed, Aug 11, 2010 at 03:13:49PM +0200, walter.van.der.heij...@nl.abnamro.com
wrote:
> Hi,
&g
Have you tried to escape it with \ ?
On Wed, Aug 11, 2010 at 03:13:49PM +0200, walter.van.der.heij...@nl.abnamro.com
wrote:
> Hi,
>
> I have an issue with Samba using winbind. We have Active Directory groups
> with underscores (for example sambagroup_underscore). But an underscore in
> Samba (
il.com
CC:samba@lists.samba.org
Subject: Re: [Samba] Samba + Winbind + Windows 2003 AD
Hi Micheal
Sorry for not sending that information in the first place, but I though
that it was so basic that it wasn't necessary.
My nsswitch.conf:
# cat /etc/nsswitch.conf
# /etc/nsswitch.conf
#
# Example configuration
l Register: Amtsgericht Ingolstadt, HRB 4365
Message sent from handheld via BlackBerry Server.
Von: Michael Lyon
An: Mucke, Tobias, FCI4; samba@lists.samba.org
Gesendet: Mon Jul 19 14:22:37 2010
Betreff: Re: [Samba] Samba + Winbind + Windows 2003 AD
I'm in
ome other method) to keep the clocks in sync.
Hopefully, that helps some.
> Date: Mon, 19 Jul 2010 11:22:15 -0500
> From: mjl...@gmail.com
> To: samba@lists.samba.org
> Subject: Re: [Samba] Samba + Winbind + Windows 2003 AD
>
> In all honesty, this is my first time using a
held via BlackBerry Server.
>
> ____
>
> Von: Michael Lyon
> An: Mucke, Tobias, FCI4; samba@lists.samba.org
> Gesendet: Mon Jul 19 14:22:37 2010
> Betreff: Re: [Samba] Samba + Winbind + Windows 2003 AD
>
>
> I'm in a 2k8 r2 domain with SFU and
from handheld via BlackBerry Server.
Von: Michael Lyon
An: Mucke, Tobias, FCI4; samba@lists.samba.org
Gesendet: Mon Jul 19 14:22:37 2010
Betreff: Re: [Samba] Samba + Winbind + Windows 2003 AD
I'm in a 2k8 r2 domain with SFU and home shells managed throug
üngliche Nachricht-
> Von: samba-boun...@lists.samba.org [mailto:samba-boun...@lists.samba.org]
> Im Auftrag von Necos Secon
> Gesendet: Montag, 19. Juli 2010 01:50
> An: samba@lists.samba.org
> Betreff: Re: [Samba] Samba + Winbind + Windows 2003 AD
>
>
> I accidentally
g [mailto:samba-boun...@lists.samba.org] Im
Auftrag von Necos Secon
Gesendet: Montag, 19. Juli 2010 01:50
An: samba@lists.samba.org
Betreff: Re: [Samba] Samba + Winbind + Windows 2003 AD
I accidentally deleted the first set of messages in my email for this thread,
but does your DNS resolve properly? What d
order for getent to function properly. There is a corresponding option for
groups as well. Look at them and let us know.
> Date: Mon, 19 Jul 2010 01:12:41 +0200
> From: h...@semark.dk
> To: esiot...@gmail.com
> CC: samba@lists.samba.org
> Subject: Re: [Samba] Samba + Winbind + Win
Hi Micheal
Sorry for not sending that information in the first place, but I though
that it was so basic that it wasn't necessary.
My nsswitch.conf:
# cat /etc/nsswitch.conf
# /etc/nsswitch.conf
#
# Example configuration of GNU Name Service Switch functionality.
# If you have the `glibc-doc-ref
On 18 July 2010 01:34, Henrik Dige Semark wrote:
> Hey out there.
>
> I have to join my UNIX server with an existing Win2k3 AD network.
>
> My system info:
> Debian Lenny
> Samba - 3.4.8
> Winbind - 3.4.8
>
> Windows Server 2003 with 2000-style-AD
>
> My problem is that, I have en UNIX server th
Hi Tobias
To be honest I don't really know that mutch about the Windows AD, I'm
not an Windows guy, when I talked with the Windows AD Administrator he
told my that it was an RFC2307 schema and not an old SFU, but I have
just now logged on to the AD server and it doesn't seams like any
schema
Hi Henrik,
I am also fighting with Winbind for a few days now experiencing some weird
behaviour.
Regarding your explanation I assume you have SFU running in your AD Domain. Do
you really have a RFC2307 complaint schema in AD or do you still stick to SFU
schema?
For debugging the winbind it wa
Hi all,
i came to know the difference between DL and Security group . previously i
was searching for a DL with wbonfo -g .:) wbinfo -g is showing corrrect
results .
now i am having the only problem that samba is not accessible with hostname
and it works with IP address.. i have added following li
, 2010 at 6:44 PM, wrote:
>
>
>
> --- Original message ---
> *Subject:* Re: [Samba] samba winbind problem with trusted domains
> *From:* *...@ppu
> *To:*
> *Date:* Friday, 25/06/2010 4:09 AM
>
> hi
>
> yes netbios is active on windows machines and
--- Original message ---
Subject: Re: [Samba] samba winbind problem with trusted domains
From: *...@ppu
To:
Date: Friday, 25/06/2010 4:09 AM
hi
yes netbios is active on windows machines and i m able to ping samba
server with .domain.extension. it is asking for user authentiation but
SNIP
thanks for your reply .Those are trusted domains and wbinfo-m is
showing all the trusted domains.
Anyways I have resolved the problem with Likewise open backend
authentication tool. :) . But now I am facing another problem . i am
not able to access samba shares using netbios name
Hi TMS,
thanks for your reply .Those are trusted domains and wbinfo-m is showing all
the trusted domains.
Anyways I have resolved the problem with Likewise open backend
authentication tool. :) . But now I am facing another problem . i am not
able to access samba shares using netbios name even wit
r%password
I'm attaching my smb.conf.
/JB
> -Original Message-
> From: Robert Freeman-Day [mailto:pres...@gmail.com]
> Sent: den 2 februari 2010 15:31
> To: Kris Kaido
> Cc: Bergstrom Johan; samba@lists.samba.org
> Subject: Re: [Samba] Samba/winbind with Active Dir
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Kris and Johan,
Both of you have not appended your smb.conf files. Maybe doing that
would help as well.
- From what I am seeing, the pam stack Kris gave was authenticating via
winbind which would use either plaintext, lanman, ntlm or ntlmv2 and not
On Tue, Jan 19, 2010 at 08:23:45AM +0400, Alexander R. Fahrutdinov wrote:
> В сообщении от Понедельник 18 января 2010 19:33:00 автор Kris Kaido написал:
> > Hi List,
> >
> > I'm installing a Samba server with the intended purpose of serving files to
> > Windows users with seamless authentication o
В сообщении от Понедельник 18 января 2010 19:33:00 автор Kris Kaido написал:
> Hi List,
>
> I'm installing a Samba server with the intended purpose of serving files to
> Windows users with seamless authentication on the smb server.
> For that, I've been reading and following every single google se
The simplest solution is called RID. See:
http://www.samba.org/samba/docs/man/Samba-HOWTO-Collection/idmapper.html#id2606608
Dale
On 01/18/2010 4:09 AM, JC wrote:
Hi,
I actually have to install another samba server connected to Active
directory by using winbind.
All works ok, but i have a li
On Mon, Jan 18, 2010 at 3:09 AM, JC wrote:
> Hi,
>
> I actually have to install another samba server connected to Active
> directory by using winbind.
>
> All works ok, but i have a little problem.
>
> In fact if i use getent |grep user on server1, the output is the following:
> server1:~# getent
On Mon, 2010-01-18 at 16:33 +0100, Kris Kaido wrote:
> Hi List,
>
> I'm installing a Samba server with the intended purpose of serving files to
> Windows users with seamless authentication on the smb server.
> For that, I've been reading and following every single google search result
> regarding
, 2009 12:49 AM
> To: samba@lists.samba.org
> Subject: Re: [Samba] Samba + Winbind + AD homes does not work
>
> Am Dienstag, 30. Juni 2009 schrieb d...@briannassaladdressing.com:
> > Florian,
> >
> > Try "valid users = DOM+%S".
>
> the more general
Am Dienstag, 30. Juni 2009 schrieb d...@briannassaladdressing.com:
> Florian,
>
> Try "valid users = DOM+%S".
the more generalized form would be:
"valid users = %D%w%S"
#%D domain or workgroup name
#%w winbind separator
#%S current service name
Some distros use this one
Florian,
Try "valid users = DOM+%S".
Should that fail, also ensure that the home directories exist (as defined in
"template homedir ="), and that these directories have the correct permissions.
Dale
-Original message-
From: florian.engelm...@bt.com
Date: Tue, 30 Jun 2009 10:19:05 -05
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Tobias Skytte wrote:
> Hi,
>
> I have set up samba to join a windows domain (and everything works
> great, domain users can authenticate on the linux box, it even creates
> their home dirs and so on) but it seems to require joining to the domain
> eve
On 8/23/07, Kevin Gutch <[EMAIL PROTECTED]> wrote:
> I am trying to set up Samba joining Active Directory. I have done this
> successfully before and have most of my previous files.
>
> Here is the issue I am seeing.
>
> I can "kinit [EMAIL PROTECTED]"
>
> I cannot "net ads join -U administrator"
0n Fri, Aug 10, 2007 at 02:23:37PM -0400, Mark Campbell wrote:
>when I run wbinfo -u or -g it returns users and groups from AD.
>When I do a getent passwd I get the results for /etc/passwd and nothing
from AD.
>When I auth to the samba server the permissions set based on groups d
On Fri, Aug 10, 2007 at 02:23:37PM -0400, Mark Campbell wrote:
> When I do a getent passwd I get the results for /etc/passwd and nothing
> from AD.
That's planned. See "winbind enum users" / "winbind enum
groups".
> When I auth to the samba server the permissions set based on groups do
> not wo
Hi Mark,
Is nscd running? If so, stop it and try again.
Please post a sanitized smb.conf if this was not the problem.
Joshua M. Miller - RHCE, VCP
Ditree Consulting
http://ditree.com/
Mark Campbell wrote:
> I have a Solaris 10 box running samba. I have it joined to a windows
> 2003 domain.
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
On 09/05/2006 06:28 PM, Randy Skaggs escreveu:
> I am attempting to setup a RHEL4 client to authenticate against
> a Windows 2003 R2 Active Directory Domain Controller. I am
> following the Samba HowTo Chapter 24 on Winbind, and everything
> works unt
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Nolan Garrett wrote:
> Since upgrading to 3.0.23, my logins to my Linux boxes joined
> to a W2K3 AD domain require me to type the same password
> twice. My /etc/pam.d/system-auth looks like this:
Fixed in 3.0.23a.
cheers, jerry
===
Hi Thomas,
> Try to:
>
> - stop winbindd
> - remove the winbindd_cache.tdb file
> - start winbindd again.
This did not do it.
> If it doesn't help:
> - what samba version are you running?
> - what errors do you see in the log.winbindd and log.wb* log files?
Upgrading from samba_3.0.14a-3 to sam
Joost Kraaijeveld wrote:
After functioning correctly for more than 6 months suddenly
Samba died : the users and usergroups are not recognized
anymore. Restarting the Windows 2000 ADS (mixed mode) server
and/or the Debian Samba server does not help. I even re-added the
server to the domain:
net
> After functioning correctly for more than 6 months suddenly
> Samba died : the users and usergroups are not recognized
> anymore. Restarting the Windows 2000 ADS (mixed mode) server
> and/or the Debian Samba server does not help. I even re-added the
> server to the domain:
>
> net rpc join -U A
Thanks Thomas.
Here is the info required. I have modified some names for privacy reasons!
Hope it helps!
Regards
[EMAIL PROTECTED] samba]# more smb.conf
[global]
workgroup = MYDOMAIN
netbios name = HYDRA
winbind separator = +
idmap uid = 1-2
idmap gid = 1-2
winbind enum users =
Hi Vincent,
On Thu, Mar 09, 2006 at 05:02:50PM +1300, Vincent Commarieu wrote:
> Hi,
>
> Just compiled latest version of samba and trying to get Samba to work with AD.
>
> I am at the point where I wbinfo -t, wbinfo -u, wbinfo -g and wbinfo
> -ausername%password work, but I cannot get getent pas
Vincent Commarieu wrote:
I am at the point where I wbinfo -t, wbinfo -u, wbinfo -g and wbinfo
-ausername%password work, but I cannot get getent passwd and getent
group to gather any AD info.
We'd need to see your global smb.conf settings (especially those related
to winbind and idmap) as well
This did fix my problem in samba-3.0.0-14.3E. Thanks Mike!!
> This problem went away for me in Samba 3.0.1. A workaround in 3.0.0 is
> to set
>
> winbind use default domain = no
>
> in the smb.conf.
>
> Mike
>
> [EMAIL PROTECTED] wrote:
> > Hello all,
> >
> > I am having some serious proble
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
On Fri, 23 Jan 2004, Ganguly, Sapan wrote:
> One thing has changed since I installed 3.0.2rc1, before I could do the
> following -
>
> id -a windowuser
>
> And I would get a list of all the windows groups that windows user is a
> member of, but no
> This problem went away for me in Samba 3.0.1. A workaround in 3.0.0 is
> to set
>
> winbind use default domain = no
>
> in the smb.conf.
This did in fact solve the group resolution problem on samba-3.0.0-14.3E.
I have not tried 3.0.1 yet but will this week and will post the results.
Thanks v
To: 'ww m-pubsyssamba'; Ganguly, Sapan ; '[EMAIL PROTECTED]'
Subject: RE: [Samba] Samba Winbind and LDAP backend
Andy,
Thanks for clearing that up, I didn't think I needed to setup up the LDAP
client, everything I've done so far has indicated that winbind is puttin
t could be.
I'll try compiling using a different compiler.
Oh, one other thing, I'm not using Active Directory, this is all on an old
NT4 domain.
-Original Message-
From: ww m-pubsyssamba [mailto:[EMAIL PROTECTED]
Sent: 23 January 2004 16:09
To: Ganguly, Sapan ; [EMAIL PROT
Firstly, no you definitely don't need to setup LDAP native client in Solaris,
SAMBA/winbind does all the LDAP reads for Solaris and Solaris talks direct to winbind.
I've had this work with solaris 8 now, have you verified that the idmap data is
written into the idmap ou specified in smb.conf (pr
This problem went away for me in Samba 3.0.1. A workaround in 3.0.0 is
to set
winbind use default domain = no
in the smb.conf.
Mike
[EMAIL PROTECTED] wrote:
Hello all,
I am having some serious problems getting winbind to recognize secondary group memberships. I have a samba server version s
Hello,
I have a similar problem with a RH9 using the kernel 2.4.20-20.9.1 with ACL
patchs. I have updated some source (/include/linux/limits.h and
/include/asm/param.h) to increase the maximum number of groups value before
compiling this kernel.
My samba is the 3.0.1-2 (compiled with "--with-winb
On Mon, 16 Jun 2003, Chip Bell wrote:
> AND, when I run a testparm, I get
>
> Winbind uid is deprecated
> Winbind gid is deprecated
Replaced by:
idmap uid
idmap gid
both of which require a range as per the old scheme.
- John T.
>
> -Original Message-
> From: Chip Bell
AND, when I run a testparm, I get
Winbind uid is deprecated
Winbind gid is deprecated
-Original Message-
From: Chip Bell
Sent: Monday, June 16, 2003 3:55 PM
To: [EMAIL PROTECTED]
Subject: [Samba] Samba+winbind
I have Kerberos, Samba (3beta) and winbind all running.
1. wbinfo
On Wednesday, 23. Oktober 2002 18:49 Hugues Ferron - NEXXSiS wrote:
> Hi.
>
> I'm looking for samba 2.2.5 or 2.2.6 binary package to use with squid.
> So I need a version compile with option --with-winbind-auth-challenge
> and the one provide with red hat 8 doesn't have it. I tried to compile
> it
72 matches
Mail list logo