RE: Unable to authenticate with security=ADS

2002-11-14 Thread ZINKEVICIUS,MATT (HP-Loveland,ex1)
Starting up winbindd allows me to login!! I need to make sure that this isn't just letting samba fall back to the old passthru style authentication. Is there a quick way to tell which way it authenticated? Probably I can find it in a debug level 10 log. > [global] > realm = CONSUMOMS.ARANE

RE: Unable to authenticate with security=ADS

2002-11-14 Thread ZINKEVICIUS,MATT (HP-Loveland,ex1)
> -Original Message- > From: José Alberto Patiño Limón [mailto:jalbertop@;aranea.com.mx] > Sent: Wednesday, November 13, 2002 6:43 PM > To: ZINKEVICIUS,MATT " "(HP-Loveland,ex1) > Cc: [EMAIL PROTECTED] > Subject: RE: Unable to authenticate with security=ADS >

RE: Unable to authenticate with security=ADS

2002-11-13 Thread ZINKEVICIUS,MATT (HP-Loveland,ex1)
> -Original Message- > From: José Alberto Patiño Limón [mailto:jalbertop@;aranea.com.mx] > Sent: Wednesday, November 13, 2002 12:05 PM > To: '[EMAIL PROTECTED]' > Subject: Re: Unable to authenticate with security=ADS > > Did you try to run net ads join first and after run the smbd and nmbd

Unable to authenticate with security=ADS

2002-11-12 Thread ZINKEVICIUS,MATT (HP-Loveland,ex1)
Howdy gang, I am trying to use samba 3.0 to authenticate using kerberos/ldap to my ADS server. It's not working. I am mostly going by tridge's ADS-HOWTO. My Setup: - Win2k ADS server (dc-native.home.sln) - Realm name is HOME.SLN - Linux running samba 3.0alpha21cvs from a couple days ago (charlie.h

RE: ACL inheritance mess with win2k clients...

2002-10-02 Thread ZINKEVICIUS,MATT (HP-Loveland,ex1)
I think he would win the quarter :-) Never setting those bits is exactly what tells the client that we're using NT4 style inheritance. See my NT security semantics patch which set these bits when appropriate. --Matt > -Original Message- > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]

RE: Fine points of ACL conversion

2002-08-01 Thread ZINKEVICIUS,MATT (HP-Loveland,ex1)
From: Richard Sharpe [mailto:[EMAIL PROTECTED]] > H, the MSDN article I looked at did not say that, but > does not address > that situation either. It kind of implies that any deny bit > in the set > requested causes a deny. There used to be an MSDN article on "Computing Effective Rights"

RE: Fine points of ACL conversion

2002-07-31 Thread ZINKEVICIUS,MATT (HP-Loveland,ex1)
> 1. If it encounters a DENY (negative) ACE that denies any of the bits > requested, it denies access. Correct > 2. If it encounters ALLOW ACLs that allows any of the bits, > but not all, > it continues? Is this true. Does it accumulate permission > bits until the > requested bits are avail

RE: Draft of branch maintainence and release plans....

2002-07-10 Thread ZINKEVICIUS,MATT (HP-Loveland,ex1)
Yep, that's my code. I had been working with Jeremy to get this integrated but we hit a legal issue. It was recently overcome though he probably doesn't know it yet :-) The patch allows you to plug-in various EA backends, and I had to do some nasty stuff to the VFS in to make that happen. The stac

RE: working with hidden shares 2.2.4

2002-06-13 Thread ZINKEVICIUS,MATT (HP-Loveland,ex1)
Browseable = No --Matt -Original Message- From: Nieminen, Jooel [mailto:[EMAIL PROTECTED]] Sent: Thursday, June 13, 2002 3:58 AM To: '[EMAIL PROTECTED]' Subject: working with hidden shares 2.2.4 the is no documentation on hidden share ability but adding $-sign to end of share it hides

Sendfile() patch

2002-06-07 Thread ZINKEVICIUS,MATT (HP-Loveland,ex1)
Anybody have a recent version of the linux sendfile() patch? TIA! Matt Zinkevicius Software Engineer Network Storage Array Solutions Hewlett-Packard

RE: Precise meaning of container inherit?

2002-05-17 Thread ZINKEVICIUS,MATT (HP-Loveland,ex1)
Welcome to the nightmare ;-) http://msdn.microsoft.com/library/default.asp?url=/library/en-us/security/Se curity/ace_inheritance_rules.asp?frame=true Matt Zinkevicius Software Engineer Network Storage Array Solutions Hewlett-Packard > -Original Message- > From: Richard Sharpe [mailto:[E