hi!
i have a question about net rpc and the rights!
is it possible to grant rights to a group and not only to users?
i use samba 3.0.20a with ldap!
thanks in advance
andreas
--
To unsubscribe from this list go to the following URL and read the
instructions:
I ran into some problems last night upgrading from 3.0.20b
to 3.0.21a. I did my usual build from source, but when I
ran it, winbindd would die on me.
So I invoked it with -d10 -F and watched the progress on the
console. It takes a while reading the winbindd_idmap.tdb
file and then eventually,
Dear Group,
I'm using samba 3 as a pdc. And when I try to syncronize the time from a client
I get:
net time \\cosimo /set
Current time at \\cosimo is 1/13/2006 12:34 AM
Local time (GMT +01:00) at \\cosimo is 1/13/2006 9:34 AM
The Command completed successfully
Now
Allori Lorenzo wrote:
Dear Group,
I'm using samba 3 as a pdc. And when I try to syncronize the time from a client
I get:
net time \\cosimo /set
Current time at \\cosimo is 1/13/2006 12:34 AM
Local time (GMT +01:00) at \\cosimo is 1/13/2006 9:34 AM
The Command completed successfully
Gerald (Jerry) Carter wrote:
Martin Zielinski wrote:
[...]
2nd, (and the true reason) - the add printer command is not really
functional without port handling.
E.g. CUPS wants a device uri like socket://192.168.3.100:9100 to know
the destination of the printjob.
You could use the location
Hello,
we have integrated our samba service in a Windows active directory
domain. Everything running fine.
Now I want to understand the authentification process. What happens when
a Windows client maps a network drive from the samba server?
Does the Windwos client send its kerberos ticket to the
Not a direct answer to the email below but potentially relevant
depending how Andrea decides to go about mapping users around the
place (if at all) *and might save someone else's hair from the
tearing-out session I've had over the last couple of days...
I suggest to samba chiefs that the
As far as I saw, since some microsoft patch for AD, winbind client from
samba 3.0.14 (and prior versions) does not work properly for getting users
and groups from Active Directory. This problem was solved in 3.0.20. I saw
the following text in the samba 3.0.20 changelog:
Disable schannel on the
were running
3.0.21 with Solaris 8
3.0.10 on solaris 6 (couldnt get 3.0.21 working)
and cant get any working at the moment on solaris 2.5.1
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]
Behalf Of Lori Barfield
Sent: 10 January 2006 20:45
To: samba@lists.samba.org
On Fri, 2006-01-13 at 09:28 +0100, Andreas Fladischer wrote:
hi!
i have a question about net rpc and the rights!
is it possible to grant rights to a group and not only to users?
i use samba 3.0.20a with ldap!
Yes, it should work, have you tried? Do you have opposite evidence ?
Simo.
Alex Deiter wrote:
I am trying to install MS Systems Management Server 2003 on Windows
server 2000/2003/2003SP1 in Samba domain. MS SMS 2003 must be installed
on a server in a domain by domain user account.
During install got error:
Setup cannot verify the service account in domain
Pablo,
www.backports.org
has some software from Debian unstable back ported to Debian stable.
You can check there to see if newer versions are available for Debian
stable.
Cheers,
Guru
--
To unsubscribe from this list go to the following URL and read the
instructions:
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Pablo Milano wrote:
As far as I saw, since some microsoft patch for AD, winbind client from
samba 3.0.14 (and prior versions) does not work properly for getting users
and groups from Active Directory. This problem was solved in 3.0.20. I saw
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
simo wrote:
On Fri, 2006-01-13 at 09:28 +0100, Andreas Fladischer wrote:
hi!
i have a question about net rpc and the rights!
is it possible to grant rights to a group and not only to users?
i use samba 3.0.20a with ldap!
Yes, it should
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Martin Zielinski wrote
:
I just tried out to add a port on two MS systems and it *looks* like it
could work with SPOOLSS calls. Unfortunatly some of the packets are not
decoded by Ethereal.
Looks like this:
-- EnumMonitors
-- Response: ...
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Franz Strebel wrote:
I ran into some problems last night upgrading from 3.0.20b
to 3.0.21a. I did my usual build from source, but when I
ran it, winbindd would die on me.
So I invoked it with -d10 -F and watched the progress on the
console.
I'm trying to setup here at my school board an ADS domain member to Windows
2000 Server(s). I've setup Samba, configured nsswitch and /etc/krb5.conf. I'll
be including them on this post. When I run net join ADS
-Uadministrative_user, I'm prompted for the password and I get this error
message:
I had this same problem,
banged my head against desk for 3 hours...
samba 3.0.21a + rhel4, and I had the same krb5.conf setup.
what was strange was that we could get to it by ip address(so Kerberos +
winbind was working, and wbinfo -u, and wbinfo -g worked), yet when we tried by
name, it
Many of the XP systems shipping today come pre-configured to keep their
clocks in sync by communicating with one of Microsoft's SNTP servers,
and will apparently automatically use a local AD server if available,
as well.
The net time command can be used to change the systems to use a local
I found out that I need to use 'fake' 'idmap uid' and 'idmap
gid' to get it to work. Is that a winbind bug? In
Should be fine without either an idmap uid/gid range. Are
you saying that winbindd will not start without these?
I searched bugzilla and found bug 3289, which describes the
Sorry if I'm being dense, but how do I map groups? I can't find
anything in the smb.conf man page about group mapping (except with
idmap, which isn't what I want). I'm using an older version of Samba
-- 3.0.13 -- which is prebuilt for SuSE 9.3, and I'm lazy and didn't
want to build my own. Do I
On Fri, Jan 13, 2006 at 05:56:05PM +0300, Дейтер Александр Валериевич wrote:
Alex Deiter wrote:
I am trying to install MS Systems Management Server 2003 on Windows
server 2000/2003/2003SP1 in Samba domain. MS SMS 2003 must be installed
on a server in a domain by domain user account.
-Original Message-
From: Gerald (Jerry) Carter [mailto:[EMAIL PROTECTED]
Sent: Thursday, January 12, 2006 10:54 PM
To: Ben
Cc: samba@lists.samba.org
Subject: Re: [Samba] setting acls from win XP clients
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
On Thu, 12 Jan 2006, Ben wrote:
I
I have a samba 3 running on a linux box (debian 3.1 sarge) as a PDC. I dont
know if it's possible, but, i need that samba controls the authentication on
some windows machines, like i have a machine A,B and C, and all of them are
part of theont machine A and B, but not in C. And a user brunog that
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Jesse Spangenberger wrote:
Actually, this is not a bug but a security measure I do believe. Win2k and
WinXP will not connect to the same server multiple time using different user
logon information (actually, sorta pointless if you set up
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Jeremy Allison wrote:
Yes, we'll look at this. Can't tell you when we'll have it fixed though -
but ensuring MS server apps work against a Samba PDC is a particular
hobby-horse of mine.
Thanks for the trace, that should help.
Alexander Bokovoy
Maybe. Has far as I know -- weither using Samba as PDC, using NT4 or ADS
domains, it happens. So either it's a bug that will never, ever go away
cause of MS not fixing it.
Besides, I was not talking about Samba, but more towards Windows and the way
windows work. Again, somehow I doubt this
Actually, this is not a bug but a security measure I do believe. Win2k and
WinXP will not connect to the same server multiple time using different user
logon information (actually, sorta pointless if you set up permissions
right). Thus, if John Doe is logged in and Jane wants to reach
Hi All!
We have just solved the problem.
The error resides in the code placed in
/samba-X.X.X/source/lib/util_getent.c between line 275 and 291 . By
default, when you compile samba with solaris support, samba uses
getgrnam function because of the BROKEN_GETRNAM=1 in Makefile. This
function is
Hello all! Can someone please help?
I have a question that is bugging me. I am running a production RedHat
EL3 machine for about a year now with Samba version 3.0.9-1.3E.2
My personal user account stopped working two days ago. I initially thought
my password expired, so I reset it in AD.
But
On Fri, 2006-01-13 at 11:47 -0500, Mason, Roberto wrote:
[libdefaults]
default_realm = MYDOMAIN.QC.CA
default_etypes = des-cbc-crc des-cbc-md5
default_etypes_des = des-cbc-crc des-cbc-md5
2 things:
1) You should get a network sniff of the failed operation - that will
conclusively tell
wbinfo uses the winbindd daemon to query an active directory, if you get
user and group listing output from wbinfo -u/-g then it tells you it's
correctly communicating with the AD. getent is similar, but it appends the
AD accounts to your /etc/passwd and /etc/group files so indicates if the AD
Hi,
this is not a samba-problem, but it might be that samba can help me.
When I copy a workstation to several clients, for example using images
or in my case vmware-vdisks, windows has to join the domain afterwards.
This works for 99% of the time, using sysprep, but sometimes it fails.
For
Roberto,
Check your clocks on both your AD server and samba box. They need to be
as close to eachother as possible.
Also, check your Kerberos connection using kinit and kpasswd. That will
tell you if your Kerberos is setup properly.
Also, what version of samba are you running?
I think that I
Author: metze
Date: 2006-01-13 08:22:21 + (Fri, 13 Jan 2006)
New Revision: 12896
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12896
Log:
IRIX make will fallback to gmake with this,
as normal IRIX make doesn't support shell commands or functions
in $(FOO)
Author: metze
Date: 2006-01-13 08:38:11 + (Fri, 13 Jan 2006)
New Revision: 12897
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12897
Log:
make it possible to use nosync transaction to speed things up,
(just for testing)
metze
Modified:
Author: metze
Date: 2006-01-13 10:26:47 + (Fri, 13 Jan 2006)
New Revision: 12898
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12898
Log:
prepare the 'wins hook' feature, but we only debug out a 'TODO: run script ...'
metze
Added:
Author: metze
Date: 2006-01-13 10:37:14 + (Fri, 13 Jan 2006)
New Revision: 12899
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12899
Log:
- fix warnings on AIX
- fix compilation of auth/kerberos/krb5_init_context.c on AIX
metze
Modified:
Author: gd
Date: 2006-01-13 11:11:23 + (Fri, 13 Jan 2006)
New Revision: 12900
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12900
Log:
Merge from trunk:
Correctly handle the case where users logon with an expired password.
In that case pam_sm_authenticate has
Author: gd
Date: 2006-01-13 11:19:59 + (Fri, 13 Jan 2006)
New Revision: 12901
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12901
Log:
Fix netfileenum returning WERR_BUF_TOO_SMALL.
Guenther
Modified:
branches/SAMBA_3_0/source/rpcclient/cmd_srvsvc.c
Author: abartlet
Date: 2006-01-13 12:48:53 + (Fri, 13 Jan 2006)
New Revision: 12902
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12902
Log:
Fix 'make quicktest'.
Andrew Bartlett
Modified:
branches/SAMBA_4_0/source/script/tests/tests_quick.sh
Changeset:
Author: abartlet
Date: 2006-01-13 12:52:56 + (Fri, 13 Jan 2006)
New Revision: 12903
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12903
Log:
Factor out a new routine libnet_RpcConnectDCInfo, to both connect to
the remote sever, and to query it for domain
Author: gd
Date: 2006-01-13 14:55:08 + (Fri, 13 Jan 2006)
New Revision: 12904
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12904
Log:
Fix #3264, allow to load idmap_ad with idmap backend = ad.
Finally cleanup the way idmap modules are build and loaded,
Author: idra
Date: 2006-01-13 15:40:15 + (Fri, 13 Jan 2006)
New Revision: 12905
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12905
Log:
add some ldap policies
not yet enforced except for the initial connection timeout
Modified:
Author: metze
Date: 2006-01-13 16:27:47 + (Fri, 13 Jan 2006)
New Revision: 12906
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12906
Log:
return the correct nb_flags
metze
Modified:
branches/SAMBA_4_0/source/nbt_server/wins/winsserver.c
Changeset:
Modified:
Author: metze
Date: 2006-01-13 16:44:32 + (Fri, 13 Jan 2006)
New Revision: 12907
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12907
Log:
skip some tests for make quicktest in NBT-WINSREPLICATION
metze
Modified:
Author: metze
Date: 2006-01-13 16:49:00 + (Fri, 13 Jan 2006)
New Revision: 12908
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12908
Log:
use '_' also for indication we want to ask for the localmaster browser,
as '-' make problems with popt
metze
Modified:
Author: metze
Date: 2006-01-13 16:58:04 + (Fri, 13 Jan 2006)
New Revision: 12909
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12909
Log:
add an ldb module for the wins.ldb,
it currently doesn't do much, but it's later
prevent adding corrupted records via
Author: metze
Date: 2006-01-13 17:07:28 + (Fri, 13 Jan 2006)
New Revision: 12910
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12910
Log:
fix bug #3069
metze
Modified:
branches/SAMBA_4_0/source/libcli/util/errormap.c
Changeset:
Modified:
Author: metze
Date: 2006-01-13 17:32:43 + (Fri, 13 Jan 2006)
New Revision: 12911
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12911
Log:
try to fix bug #3365
metze
Modified:
branches/SAMBA_4_0/source/lib/socket/config.m4
Author: jerry
Date: 2006-01-13 18:45:30 + (Fri, 13 Jan 2006)
New Revision: 12912
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12912
Log:
patch from Tony Mountifield [EMAIL PROTECTED] for BUG 3327 (fix bad access to
gencache.tdb after fork() in smbmount
Author: jerry
Date: 2006-01-13 19:38:09 + (Fri, 13 Jan 2006)
New Revision: 12913
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12913
Log:
missed merge to fix BUG 3391; ensure we can lookup account policies
Modified:
branches/SAMBA_3_0/source/passdb/passdb.c
Author: jerry
Date: 2006-01-13 20:24:50 + (Fri, 13 Jan 2006)
New Revision: 12914
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12914
Log:
adding query/set ops for security descriptors on services.
Modified:
branches/SAMBA_3_0/source/include/rpc_svcctl.h
Author: jerry
Date: 2006-01-13 20:26:59 + (Fri, 13 Jan 2006)
New Revision: 12915
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12915
Log:
protect against changing the SCM security descriptor
Modified:
branches/SAMBA_3_0/source/rpc_server/srv_svcctl_nt.c
Author: jerry
Date: 2006-01-13 21:22:25 + (Fri, 13 Jan 2006)
New Revision: 12916
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12916
Log:
use rpcstr_pull() instead of unistr_to_ascii() when validating share names
Modified:
Author: deryck
Date: 2006-01-13 21:34:34 + (Fri, 13 Jan 2006)
New Revision: 887
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=samba-webrev=887
Log:
Added a news item link to an Ubuntu/Samba how to
jerry pointed out.
deryck
Added:
Author: idra
Date: 2006-01-13 22:48:08 + (Fri, 13 Jan 2006)
New Revision: 12917
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12917
Log:
fix decoding of ldap controls
some more work on timeouts
Modified:
branches/SAMBA_4_0/source/ldap_server/ldap_server.c
Author: abartlet
Date: 2006-01-13 22:55:23 + (Fri, 13 Jan 2006)
New Revision: 12918
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12918
Log:
Don't tell the user the difference between 'no such user' and 'wrong
password'.
Andrew Bartlett
Modified:
Author: abartlet
Date: 2006-01-13 23:08:20 + (Fri, 13 Jan 2006)
New Revision: 12919
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12919
Log:
Ensure we never 'extend' the session key length, or fill in past the
length of the (possibly null) pointer.
In reality
Author: jra
Date: 2006-01-13 23:23:09 + (Fri, 13 Jan 2006)
New Revision: 12920
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12920
Log:
Fix for #3401 from Andrew Bartlett. Original fix from
Yau Lam Yiu [EMAIL PROTECTED].
Jeremy.
Modified:
Author: jra
Date: 2006-01-13 23:23:16 + (Fri, 13 Jan 2006)
New Revision: 12921
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12921
Log:
Fix for #3401 from Andrew Bartlett. Original fix from
Yau Lam Yiu [EMAIL PROTECTED].
Jeremy.
Modified:
Author: jra
Date: 2006-01-13 23:54:12 + (Fri, 13 Jan 2006)
New Revision: 12922
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12922
Log:
Fix typo.
Jeremy.
Modified:
branches/SAMBA_3_0/source/libsmb/ntlmssp.c
Changeset:
Modified:
Author: jra
Date: 2006-01-13 23:54:33 + (Fri, 13 Jan 2006)
New Revision: 12923
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12923
Log:
Fix typo.
Jeremy.
Modified:
trunk/source/libsmb/ntlmssp.c
Changeset:
Modified: trunk/source/libsmb/ntlmssp.c
URL: http://build.samba.org/
--- /home/build/master/cache/broken_results.txt.old 2006-01-13
00:00:40.0 +
+++ /home/build/master/cache/broken_results.txt 2006-01-14 00:00:48.0
+
@@ -1,17 +1,17 @@
-Build status as of Fri Jan 13 00:00:02 2006
+Build status as of Sat Jan
Author: gd
Date: 2006-01-14 00:30:48 + (Sat, 14 Jan 2006)
New Revision: 12924
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12924
Log:
Fix LSA enumtrustdom call.
Guenther
Modified:
trunk/source/rpc_server/srv_lsa_nt.c
Changeset:
Modified:
Author: idra
Date: 2006-01-14 01:06:16 + (Sat, 14 Jan 2006)
New Revision: 12925
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12925
Log:
implement client side of ASQ control
Modified:
branches/SAMBA_4_0/source/lib/ldb/include/ldb.h
Author: abartlet
Date: 2006-01-14 01:29:38 + (Sat, 14 Jan 2006)
New Revision: 12926
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12926
Log:
Syncronsise GUIDs on users and domains from the server. These also
appear in DNS, so need to match.
Andrew Bartlett
Author: abartlet
Date: 2006-01-14 01:43:21 + (Sat, 14 Jan 2006)
New Revision: 12927
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12927
Log:
Fix typo.
Modified:
branches/SAMBA_4_0/source/auth/ntlmssp/ntlmssp.c
Changeset:
Modified:
Author: sfrench
Date: 2006-01-14 05:38:59 + (Sat, 14 Jan 2006)
New Revision: 45
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=linux-cifs-clientrev=45
Log:
Fix Samba bug 3301 - allow share mode security for cifs vfs
Modified:
Author: abartlet
Date: 2006-01-14 06:17:24 + (Sat, 14 Jan 2006)
New Revision: 12928
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12928
Log:
This patch improves the interaction between the vampire and provsion code.
Previously, we had to know (or guess) the host
Author: abartlet
Date: 2006-01-14 07:24:15 + (Sat, 14 Jan 2006)
New Revision: 12929
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12929
Log:
Fix more implict global and shadowing variables.
Andrew Bartlett
Modified:
Author: abartlet
Date: 2006-01-14 07:27:01 + (Sat, 14 Jan 2006)
New Revision: 12930
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12930
Log:
Fix ADS join: I wasn't filling in the flag 'realm' variable any more.
Andrew Bartlett
Modified:
Author: abartlet
Date: 2006-01-14 07:46:04 + (Sat, 14 Jan 2006)
New Revision: 12931
WebSVN:
http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=revroot=sambarev=12931
Log:
Remove some prefixes. We have:
Login failed: Login Failed: Logon failure - please try again
In SWAT currently...
73 matches
Mail list logo