Re: [Samba] AD / new auxiliary class / vb script

2012-05-24 Thread Hervé Hénoch
Hello Matthieu, 1) Yes is a typo sorry. 2) ldbsearch -H ldap://dc_ip --cross-ncs '(ldapdisplayname=iscA)' -U admin%password give (have to authenticate if it is not work) : # record 1 dn: CN=iscA,CN=Schema,CN=Configuration,DC=sc,DC=isc84,DC=org objectClass: top objectClass: classSchema cn:

Re: [Samba] Solaris 11 ZFS - acl_xattr still needed ?

2012-05-24 Thread Pacher Dragos
Then POSIX ACLs are still the way to go for the moment, though ZFS ACL's seems pretty robust. Volker, may I ask what is the trend now: are people switching to ACEs now or still stick with POSIX ? Dragos On Tue, May 22, 2012 at 2:16 PM, Volker Lendecke volker.lende...@sernet.dewrote: On Tue,

[Samba] Samba4 : Problem setting folder and file permissions from windows box

2012-05-24 Thread micmac
Hi, this is my first message here. I need help, the reason is in the title. The version running is SAMBA_4.0.0ALPHA18_DEVELOPERBUILD It was running just fine until I had (for some reason) had to transfer all the system (ubuntu 11.10 server) to another clean hard drive. I used rsync -rltgoHDv

[Samba] Samba as member of multi domain AD (nss/pam)

2012-05-24 Thread Marcel Ritter
Hi list, I'm looking for someone out there, using samba as a member server in a multi-domain Active Directory forest (maybe even with nss_/pam_winbind for unix users/groups). It took quite a long time to get things working at all here, and we're still not really comfortable with our current

Re: [Samba] Samba as member of multi domain AD (nss/pam)

2012-05-24 Thread steve
On 24/05/12 10:06, Marcel Ritter wrote: Hi list, I'm looking for someone out there, using samba as a member server in a multi-domain Active Directory forest (maybe even with nss_/pam_winbind for unix users/groups). It took quite a long time to get things working at all here, and we're still

Re: [Samba] multi home dir locations

2012-05-24 Thread Collen
On 23-5-2012 19:50, steve wrote: On 05/23/2012 07:22 PM, Muhammad Yousuf Khan wrote: check this. [ProfileShare] comment = Roaming Profile Share path = /nas/users/%D/%U valid users = %U read only = No guest ok = No browseable = yes root preexec = /scripts/smbmkdir.sh %D %U create mask = 4770

Re: [Samba] Samba4 : Problem setting folder and file permissions from windows box

2012-05-24 Thread François Moyson
I have just tried to set permissions on folders present inside profiles share, and there it works! I can add users, change permissions and so on. The ownership of /usr/local/samba/var/profiles is also root:users with same rights as my /home/windows folder (which is homes share). So I don't get

Re: [Samba] Samba4 : Problem setting folder and file permissions from windows box

2012-05-24 Thread micmac
Ok it seems I have to also copy the extended attributes from the original folders. Does anybody know how to copy xattr from some file/folder to another ? (I think it's still in the subject and could be useful to anyone wanting to move files to another drive, right ?)... The ideal would be

Re: [Samba] Restricting access to [homes]

2012-05-24 Thread steve
On 05/23/2012 09:39 PM, NdK wrote: On 23/05/2012 15:30, steve wrote: If the gidNumber for the gid is stored in AD (as the 2008 and samba4 schema allow) then there can be no clash. It is then no problem in extracting it and applying it using normal /etc/nsswitch.conf format. The AD schema is

Re: [Samba] Restricting access to [homes]

2012-05-24 Thread steve
On 05/23/2012 11:46 PM, Jonathan Buzzard wrote: NdK wrote: On 23/05/2012 15:30, steve wrote: If the gidNumber for the gid is stored in AD (as the 2008 and samba4 schema allow) then there can be no clash. It is then no problem in extracting it and applying it using normal /etc/nsswitch.conf

[Samba] Samba 4 Re-provisioning

2012-05-24 Thread Mike Howard
What's best practice when it comes to changing a samba4 provision, without screwing current domain objects (users, computers, policy etc)? If, for example, I wanted to change the DNS from internal to external bind9, is it just a case of re-running 'provision' with the different command line

Re: [Samba] mount.cifs Is it possible to have a file owned by the user who creates the file?

2012-05-24 Thread Jeff Layton
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On Thu, 17 May 2012 14:37:00 +0200 steve st...@steve-ss.com wrote: On 05/17/2012 02:34 AM, Jeff Layton wrote: On Wed, 16 May 2012 17:30:23 +0200 stevest...@steve-ss.com wrote: On 05/16/2012 02:56 PM, steve wrote: Hi e.g. mount.cifs

[Samba] Linux to Windows Interoperability

2012-05-24 Thread Knecht, Matthew J (AS)
Hello, Currently using a freely available MS Windows file system driver, Ext2Fsd, to communicate (read/write) with external media formatted EXT3 (Linux volume) from within MS Windows. Curious to know if Samba is able to support communication (read/write) with external media formatted EXT3

Re: [Samba] Linux to Windows Interoperability

2012-05-24 Thread John Drescher
Curious to know if Samba is able to support communication (read/write) with external media formatted EXT3 (Linux volume) from within the MS Windows environment? I am not sure samba works on a windows machine. I mean you would have to disable the Server service and probably a few more since

Re: [Samba] Linux to Windows Interoperability

2012-05-24 Thread Gala Dragos
If you are thinking about storing the files on a linux ext3 partition, then it is possible, but the access will be case sensitive. From: John Drescher dresche...@gmail.com To: Knecht, Matthew J (AS) matthew.kne...@ngc.com Cc: samba@lists.samba.org

Re: [Samba] Samba compilation issue - trick

2012-05-24 Thread Gaiseric Vandal
In fact, that makes sense- why recompile multiple times if you don't need to do. It should be fine as long as the dependent libraries versions (e.g. glibc, openldap, kerberos etc) are the same or at least close enough. If you had a library mismatch you would probably find that out as soon

[Samba] cannot execute .exe files from a share

2012-05-24 Thread BeavieS
Hello, i've seen this error on the mailing list but no solutions. Problem: No user can execute an .exe file from a group share under any windows version (wXP til Windows 7). Permisions: Every user can read, write, delete, etc in that share. I've chmoded 777 the file but for nothing. The user can

Re: [Samba] Samba4 : Problem setting folder and file permissions from windows box

2012-05-24 Thread micmac
I found a Python script that can copy the xattr from one file to another, sadly it didn't help at all... I'm completely desperate about a solution... and apparently people don't care at all about what I'm saying on this list. Here is the script, if it can be of use to some:

[Samba] Samba / LDAP : map uid to another field ?

2012-05-24 Thread Sylvain
Hi ! I have an OpenLDAP where users DN are in the form « uid=P1234,ou=people,dc=example,dc=com » and where the login is in the « eduPersonPrincipalName » attribute (ex : jdoe). I have configured my system (Debian Squeeze) to authenticate against LDAP (libpam-ldapd + libnss-ldapd with a mapping

Re: [Samba] cannot execute .exe files from a share

2012-05-24 Thread Daniel Müller
Try to set the sticky bit for the group on this share. Good Luck Danel --- EDV Daniel Müller Leitung EDV Tropenklinik Paul-Lechler-Krankenhaus Paul-Lechler-Str. 24 72076 Tübingen Tel.: 07071/206-463, Fax: 07071/206-499 eMail: muel...@tropenklinik.de

Re: [Samba] Linux to Windows Interoperability

2012-05-24 Thread Chris Weiss
On Wed, May 23, 2012 at 9:13 AM, Knecht, Matthew J (AS) matthew.kne...@ngc.com wrote: Hello, Currently using a freely available MS Windows file system driver, Ext2Fsd, to communicate (read/write) with external media formatted EXT3 (Linux volume) from within MS Windows. Curious to know if

Re: [Samba] Samba / LDAP : map uid to another field ?

2012-05-24 Thread miguelmedalha
I am not sure if you can act on the samba side. Maybe you should think the other way around. You can map one attribute to another inside the LDAP server. You would use the map attribute directive to map eduPersonPrincipalName to uid. Both logins would then authenticate against uid.

Re: [Samba] cannot execute .exe files from a share

2012-05-24 Thread Moray Henderson
-Original Message- From: BeavieS [mailto:beav...@gmail.com] Sent: 24 May 2012 14:31 Hello, i've seen this error on the mailing list but no solutions. Problem: No user can execute an .exe file from a group share under any windows version (wXP til Windows 7). Permisions: Every

Re: [Samba] Samba 3.5 to 3.6

2012-05-24 Thread manfred
same problem here with a pc not in the same workgroup/domain we had no problems to access the server with user/password from other workgroup since update to 3.6.3 - now the user can't access and samba log's the error: [2012/05/24 15:54:12.124757, 1] auth/server_info.c:391(samu_to_SamInfo3)

Re: [Samba] cannot execute .exe files from a share

2012-05-24 Thread Denis Witt
On 24.05.2012 15:30, BeavieS wrote: Problem: No user can execute an .exe file from a group share under any windows version (wXP til Windows 7). Check your Internet Explorer (yes, IE) Security-Settings and if you are connecting to the share via the server IP add the IP to the IE trusted

Re: [Samba] Samba4 : Problem setting folder and file permissions from windows box

2012-05-24 Thread steve
On 05/24/2012 03:39 PM, micmac wrote: I found a Python script that can copy the xattr from one file to another, sadly it didn't help at all... I'm completely desperate about a solution... and apparently people don't care at all about what I'm saying on this list. Here is the script, if it can

Re: [Samba] Samba / LDAP : map uid to another field ?

2012-05-24 Thread Sylvain
Unfortunaly, I cannot do this since the two attributes are different meaning and are used in another applications so maybe with a local LDAP replica and use of your tricks will works. I will try if there are no Samba solutions. Thanks :) 2012/5/24 miguelmeda...@sapo.pt I am not sure if you

[Samba] Lots of NT_STATUS_OBJECT_NAME_COLLISION errors, harmless?

2012-05-24 Thread Paul Elliott
Hello all, I'm attempting to setup a small Windows network using Samba as the PDC (and the only server involved). Clients are running Windows 7 (x86_64) and the server is running Debian Squeeze with samba 3.5.6. For now I'm just using tdmsam as the passwd backend. The problem I have is that

Re: [Samba] Samba 4 Re-provisioning

2012-05-24 Thread Charles Tryon
If all you are trying to do is rebuild (or migrate) your DNS without boffing the rest of your current domain, you should be able to use: /usr/local/samba/sbin/samba_upgradedns --dns-backend=BIND9_DLZ --verbose I just used this to convert my flat-file back-end over to DLZ. I DON'T know if it

[Samba] exported LDAP DB file smbpasswd?

2012-05-24 Thread aurfalien
Hi all, I am using OpenLDAP and over have ~800 users in its DB. I would like to simply use Samba as a file server, no PDC. I have been able to export my LDAP DB to a file containing hashes of users passwords. Is there a way I can import this file to smbpasswd or other file that Samba

Re: [Samba] exported LDAP DB file smbpasswd?

2012-05-24 Thread Gaiseric Vandal
Presumably with the PGINA/LDAP solution, the has method is something unix-compatible (e.g. unix crypt+md5, or SSHA) that is hard to break with a password cracking program? Are the LDAP transmissions done in the clear? If so, you could sniff the traffic and capture the passwords. (You may

Re: [Samba] exported LDAP DB file smbpasswd?

2012-05-24 Thread aurfalien
Hi Gaiseric, I tried w/o success in configuring Samba + PAM last night. Do you know now of any documentation that would help? - aurf On May 24, 2012, at 5:35 PM, Gaiseric Vandal wrote: Presumably with the PGINA/LDAP solution, the has method is something unix-compatible (e.g. unix

Re: [Samba] exported LDAP DB file smbpasswd?

2012-05-24 Thread Gaiseric Vandal
Just what is in the documentation on samba.org. Anything involving plain-text authentication seems to be discouraged. On 05/24/12 17:56, aurfalien wrote: Hi Gaiseric, I tried w/o success in configuring Samba + PAM last night. Do you know now of any documentation that would help? - aurf

[SCM] Samba Shared Repository - branch master updated

2012-05-24 Thread Andrew Bartlett
The branch, master has been updated via e33bf32 selftest: Run only the samba3 tests on builds without the AD DC via 9633ec0 WHATSNEW: Move to document changes for beta1 via abb2c7f s4-provision: Make s3fs the default way to install a new Samba4 DC via 22cd4bc

[SCM] Samba Shared Repository - branch master updated

2012-05-24 Thread Stefan Metzmacher
The branch, master has been updated via a95b2ba s3:smbd/msdfs: pass allow_broken_path to resolve_dfspath_wcard() via 758d612 s3:smbd/msdfs: pass 'allow_broken_path' to get_referred_path() via a92f717 s3:smbd/msdfs: let create_conn_struct() also fake the

[SCM] Samba Shared Repository - branch master updated

2012-05-24 Thread Alexander Bokovoy
The branch, master has been updated via b452fb3 waf: for MIT krb5 build require kerberos version above 1.9 via 72029d5 s3-smbldap: Add API for external callback to perform LDAP bind in smbldap via 838435ab3 s4/scripting: in MIT build do not install samba-tool, it is not

[SCM] Samba Shared Repository - branch master updated

2012-05-24 Thread Stefan Metzmacher
The branch, master has been updated via b5e9ece s3:smbd: remove global 'smbd_server_conn' !!! via 288a75d s3:smbd: only call file_init_global() in the parent smbd via 9e45885 s3:smbd/files: split file_init_global() out of file_init() via 48e62f2 s3:smbd: remove

[SCM] Samba Shared Repository - branch master updated

2012-05-24 Thread Stefan Metzmacher
The branch, master has been updated via 64ddb66 s3:smbd/signing: use smbd_server_connection as talloc parent for its smb1 signing state via 074991c s3-passdb: Fix negative SID-uid/gid/both cache handling from b5e9ece s3:smbd: remove global 'smbd_server_conn' !!!

[SCM] Samba Shared Repository - branch master updated

2012-05-24 Thread Andrew Bartlett
The branch, master has been updated via eec4f80 move VERSION to alpha22 via 9ccbe16 WHATSNEW: update for alpha21, and mark as release via 7891ad4 wintest: s3fs is now the default in provision via 1876d63 doc: Explain our build systems for Samba 4.0 from

[SCM] CTDB repository - branch 1.13 updated - ctdb-1.43-5-gc8886ad

2012-05-24 Thread Ronnie Sahlberg
The branch, 1.13 has been updated via c8886ad41c80c45619d5eb6e2f95d652b171ca1e (commit) via ea073ef2f73343247e653c7c39f2e0f5e34a0c39 (commit) from b8260448c192c3866bffb99b475a4b3de57f38b3 (commit) http://gitweb.samba.org/?p=ctdb.git;a=shortlog;h=1.13 - Log

[SCM] CTDB repository - branch master updated - ctdb-1.13-183-g03fa2a5

2012-05-24 Thread Ronnie Sahlberg
The branch, master has been updated via 03fa2a517247eb2adfba67248e2466f17ea14418 (commit) via 1f262deaad0818f159f9c68330f7fec121679023 (commit) from 6cf6a9b071bd8dd730717ca07ff73bf247bb (commit) http://gitweb.samba.org/?p=ctdb.git;a=shortlog;h=master - Log

[SCM] Samba Shared Repository - annotated tag samba-4.0.0alpha21 created

2012-05-24 Thread Andrew Bartlett
The annotated tag, samba-4.0.0alpha21 has been created at 881090d61f3d6ffe3fc6be0ee716affa3db5e21d (tag) tagging 9ccbe1660c466f6c45f6b61a32f6ec5813ccf380 (commit) replaces samba-4.0.0alpha20 tagged by Andrew Bartlett on Fri May 25 14:53:57 2012 +1000 - Log