Re: [Samba] tkey-gssapi-credential and bind (Samba4)

2011-06-22 Thread Marcel Ritter
Hi Mauricio, the easiest way to find out, where named fails may be to do an strace -f /usr/sbin/named ... (don't forget to set/export the keytab environment variables before doing so). Check the output of strace for accesses to the keytab file and you will get some hints about what's wrong. You

Re: [Samba] Lost performance between Samba 3.0.24 and 3.5.8 with high number of concurrent connections

2011-06-22 Thread juan david
2011/6/13 juan david jd.alar...@gmail.com Hi, We are trying upgrade our roaming profile sever from Debian Etch to Debian Squeeze. That's means a upgrade from Samba 3.0.24 to Samba 3.5.8. Our production environment has above 600 concurrent users without problem. After upgrade to Samba 3.5.8,

Re: [Samba] net ads user info .vs. wbinfo -g ?

2011-06-22 Thread John McNulty
That's really useful thanks. John On 21 June 2011 12:25, Robert Freeman-Day pres...@gmail.com wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 06/20/2011 12:44 PM, John McNulty wrote: The group names from these two commands display differently. For example: $ net ads user

Re: [Samba] Restricting logins using pam_winbind require_membership_of ?

2011-06-22 Thread John McNulty
pam_access actually worked very well and is the most powerful / flexible of all the choices, so that's the one I'm going with. Thanks to everyone who replied. John On 20 June 2011 18:35, TAKAHASHI Motonobu mo...@monyo.com wrote: On 06/17/2011 12:28 PM, John McNulty wrote: Hi. I have

[Samba] Different permissions displayed in security tab and advanced tab

2011-06-22 Thread David Roid
Hello everyone, Got a weird ACL issue: First of all, my Linux host is fully ACL enabled (kernel support, file system support, mount with xattr, library support, samba compilation support, all set). Then a share is created with vfs acl_xattr and ea support on, got mounted on a Windows client as

[Samba] getent group fails

2011-06-22 Thread Dermot
Hi, I've been debugging this for a day now and I am on the edge of my understanding and could use some help. I have a smbd 3.5.6 running as a PDC (smb.conf below) with an openldap backend. If I run `getent passwd` I get all the users (local and Domain) and computer accounts that I've imported

Re: [Samba] Samba 3.3.15 Ignoring Logon Path and Logon Home to Disable Roaming Profiles

2011-06-22 Thread TAKAHASHI Motonobu
From: Charles Kozler char...@fixflyer.com Date: Mon, 20 Jun 2011 13:53:40 -0400 I had tried that already and it still did not work. I tried creating new users after setting the aforementioned configuration settings to Samba but it still did not work. You are using smbldap-tools, so you

Re: [Samba] Different permissions displayed in security tab andadvanced tab

2011-06-22 Thread Dale Schroeder
David, Samba does not have the ability to change the permissions of directories on the security tab, and many times they will not be displayed either. As you have already discovered, permissions on directories are changed in Advanced. The permissions of files can be manipulated on the

Re: [Samba] Samba 3.3.15 Ignoring Logon Path and Logon Home to Disable Roaming Profiles

2011-06-22 Thread TAKAHASHI Motonobu
From: Charles Kozler char...@fixflyer.com Date: Wed, 22 Jun 2011 12:52:35 -0400 As I had previously noted, if there is an LDAP entry for a profile path specified, will Windows try to force load a roaming profile and Samba options ignored? In modern passdb such as ldapsam and tdbsam (not

[Samba] getting winbindd errors on OS X Server 10.6.6

2011-06-22 Thread Michael Porter
All, I am attempting to resolve an issue that our OS X Server is having. It's running 10.6.6 and samba 3.0.28a-apple. In the last two weeks we've been rebooting this server multiple times a day because it stops responding to smb requests. A look at the logs reveal the following two error

[SCM] Samba Shared Repository - branch master updated

2011-06-22 Thread Andrew Tridgell
The branch, master has been updated via 9e766f0 samba-tool: added missing GUID component checks to dbcheck via 505dce2 pyldb: added methods to get/set extended components on DNs via 202f0a4 pydsdb: added get_syntax_oid_from_lDAPDisplayName() via 341884c ldb: added

[SCM] Samba Shared Repository - branch master updated

2011-06-22 Thread Stefan Metzmacher
The branch, master has been updated via ede3046 s4:auth/kerberos: protect kerberos_kinit_password_cc() against old KDCs via e5378e6 s4:auth/kerberos: remove one indentation level in kerberos_kinit_password_cc() via b98428e s4:auth/kerberos: reformat

[SCM] Samba Shared Repository - branch master updated

2011-06-22 Thread Andreas Schneider
The branch, master has been updated via 21af0af s3: Added missing includes to .clang_complete. from ede3046 s4:auth/kerberos: protect kerberos_kinit_password_cc() against old KDCs http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log

[SCM] Samba Shared Repository - branch master updated

2011-06-22 Thread Andrew Tridgell
The branch, master has been updated via a353b49 s4-dsdb: bypass validation when relax set via 6d1fe05 samba-tool: allow for running dbcheck against a remove ldap server via ff8cdee samba-tool: expanded dbcheck DN checking via c42aeb7 s4-dsdb: prioritise GUID in

[SCM] Samba Shared Repository - branch master updated

2011-06-22 Thread Jim McDonough
The branch, master has been updated via d4c30a5 Update eDirectory schema from a353b49 s4-dsdb: bypass validation when relax set http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log - commit

[SCM] Samba Shared Repository - branch master updated

2011-06-22 Thread Stefan Metzmacher
The branch, master has been updated via 5a8ac84 s4:ntvfs/cifs: add option to use S4U2Proxy via 033f337 s4:auth/kerberos: protect kerberos_kinit_password_cc() against old KDCs via b9e095f s4:auth/kerberos: add S4U2Proxy support to kerberos_kinit_password_cc() from

[SCM] Samba Shared Repository - branch master updated

2011-06-22 Thread Stefan Metzmacher
The branch, master has been updated via ae6a7f9 s4:winbind/wb_init_domain: use DCERPC_SCHANNEL_128 in order to work against w2k8r2 from 5a8ac84 s4:ntvfs/cifs: add option to use S4U2Proxy http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log

[SCM] Samba Shared Repository - branch master updated

2011-06-22 Thread Matthieu Patou
The branch, master has been updated via a9e4592 s4-dbcheck: fix uninitialized errstr in err_dn_target_mismatch via ef7940f s4-dbcheck: remove unused include via 4d51ddb s4-schema: avoid segfaulting if id3.guid is NULL via 249fbd8 s4-samba_dnsupdate: set environment

[SCM] Samba Shared Repository - branch master updated

2011-06-22 Thread Matthieu Patou
The branch, master has been updated via 4f7f143 dfsreferral: search client's site and use it from a9e4592 s4-dbcheck: fix uninitialized errstr in err_dn_target_mismatch http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log