Re: [Samba] Force user permission in specific folders

2013-08-29 Thread TAKAHASHI Motonobu
possible to force folders/files to be created with certain user/group owner in just that specific folder. I not I can force so that everything is created with a specific user/group, but I want it specific to folders. Please use force user and force group parameters. --- TAKAHASHI Motonobu mo

Re: [Samba] samba4wins install

2013-05-25 Thread TAKAHASHI Motonobu
get samba4wins installed, how does one add static WINS entries to the database? You can add an entry with ldbedit forexample, # ldbedit -H /usr/local/samba4wins/private/wins_config.ldb -a --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu

Re: [Samba] Problems adding domain policies in samba4.0.4

2013-05-06 Thread TAKAHASHI Motonobu
passwordsettings. Samba4 can provide GPO but cannot be a client. --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] Passwording a simple anonymous share

2013-04-10 Thread TAKAHASHI Motonobu
on the network. But I want it to be password protected. Try these settings: [sharename] path=/sharedfiles users = root read only = yes And to set password to root with smbpasswd command. --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu

Re: [Samba] Samba Upgrade 3.0.33 to 3.6.13.

2013-04-03 Thread TAKAHASHI Motonobu
default idmap (tdb) in Samba 3.0.33 and use idmap_rid for domain domain in Samba 3.6.13. If you use same mappings, use same winbindd_idmap.tdb file or manually set the mapping with using wbinfo command. --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com

Re: [Samba] SaMBa 4 - authenticate ftp server

2013-03-12 Thread TAKAHASHI Motonobu
of Samba). --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] Win 7 - Rejecting auth request from client

2013-03-09 Thread TAKAHASHI Motonobu
: netlogon_creds_server_check failed. Rejecting auth request from client MACHINE machine account MACHINE$ Does your issue meet this article? https://lists.samba.org/archive/samba/2013-January/171085.html --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu

Re: [Samba] Cannot logon Samba 4 via plaintext password

2013-03-08 Thread TAKAHASHI Motonobu
At last I filed a bug: https://bugzilla.samba.org/show_bug.cgi?id=9705 From: Benjamin Huntsman bhunts...@mail2.cu-portland.edu Date: Sun, 3 Feb 2013 19:52:02 + So then basically plaintext passwords (and by extension authentication against local UNIX accounts) is completely broken in Samba

Re: [Samba] Samba4 DFS Support

2013-03-05 Thread TAKAHASHI Motonobu
config is working in Samba v. 3.5.6. I spent some time Googling and didn't find much. Do these articles help you? https://lists.samba.org/archive/samba-technical/2013-February/090403.html https://lists.samba.org/archive/samba/2012-October/169512.html --- TAKAHASHI Motonobu mo...@monyo.com

Re: [Samba] OpenLDAP Samba4 Password Sync

2013-03-05 Thread TAKAHASHI Motonobu
.html As far as I read, this python script can export the Hash. -- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] SaMBa 4.0.3 - permissions in mapping

2013-03-02 Thread TAKAHASHI Motonobu
create mask and directory mask are respectively 0744 and 0755. The command testparm [3] reports that the two values are valued 0777. If you set up Samba4 as a DC, these values are forcibly set to 0777. See init_locals() in source3/param/loadparm.c --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo

Re: [Samba] Making Linux and domain users the same

2013-03-02 Thread TAKAHASHI Motonobu
of idmap_tdb (default). idmap_nss picks uid/gid from /etc/passwd or its altinatives (such as NIS), instead of generating its own value. --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu -- To unsubscribe from this list go to the following URL

Re: [Samba] Cross-subnet browsing with LMBs + remote browse sync + samba4WINS

2013-02-26 Thread TAKAHASHI Motonobu
] workgroup = SAMBAxx domain master = yes wins support = yes remote browse sync = x.x.x.x -- - x.x.x.x means the IP address of another peer. - SAMBAxx means the unique workgroup name (for example SAMBA01 and SAMBA02) Then, each Samba box exchanges its browse list. --- TAKAHASHI Motonobu

Re: [Samba] Samba4 as a classic DC

2013-02-25 Thread TAKAHASHI Motonobu
want to retain as DC hoping it is still supported, isn't it? As far as I examined, smbd/nmbd of Samba4 can act as a classic domain controller. --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu -- To unsubscribe from this list go

Re: [Samba] Cross-subnet browsing with LMBs + remote browse sync + samba4WINS

2013-02-25 Thread TAKAHASHI Motonobu
From: vagy v...@freemail.gr Date: Sun, 24 Feb 2013 18:28:03 +0200 On Sun, 24 Feb 2013 17:36:56 +0200, TAKAHASHI Motonobu mo...@monyo.com wrote: From: vagy v...@freemail.gr Date: Sun, 24 Feb 2013 13:34:37 +0200 i am about to implement cross subnet browsing/sharing and I was wondering

Re: [Samba] Cross-subnet browsing with LMBs + remote browse sync + samba4WINS

2013-02-25 Thread TAKAHASHI Motonobu
From: vagy v...@freemail.gr Date: Mon, 25 Feb 2013 23:20:31 +0200 On Mon, 25 Feb 2013 17:40:32 +0200, TAKAHASHI Motonobu mo...@monyo.com wrote: looking the SAMBA docs[1] i realized that remote browse sync means that an LMB will sync its browse list with another LMB. Thus this trick

Re: [Samba] Cross-subnet browsing with LMBs + remote browse sync + samba4WINS

2013-02-24 Thread TAKAHASHI Motonobu
configuration? As far as I examined, remote browse sync did not work as I expected. Sample smb.conf that I examined the behavior is: - [global] workgroup = SAMBAxx domain master = yes wins support = yes remote browse sync = x.x.x.x - Samba has to be WINS server and DMB. --- TAKAHASHI

Re: [Samba] access based shared enum = yes

2013-02-24 Thread TAKAHASHI Motonobu
From: Fabian von Romberg fromberg...@hotmail.com Date: Sat, 16 Feb 2013 17:32:43 -0500 Actually I tried that under the share definition. Please see my smb.conf: Hmmm, as far as I examined, access based share enum does not work against samba binary... [global] workgroup = MYDOMAIN

Re: [Samba] access based shared enum = yes

2013-02-16 Thread TAKAHASHI Motonobu
, it works. My smb.conf is: - [global] # access based share enum = yes [tmp] writeable = yes path = /tmp - Remember that you set tmp share's access rights via Windows GUI (not via Samba parameters such as valid users). -- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo

Re: [Samba] Samba 4 DC log.smd flooded with Conversion error

2013-02-11 Thread TAKAHASHI Motonobu
error in my log floods…… No, you have to set 'dos charset' parameter correctly. In my Japanese environment, same errors occur unless I set dos charset = CP932, which means Japanese. It seems that you use Chinese. --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com

Re: [Samba] Trouble with user who has mixed case login (upper and lower)

2013-02-10 Thread TAKAHASHI Motonobu
be awesome. Have you tried to set username level parameter? Also you may use usename map or username map script for this purpose. See smb.conf(5) for the detail. --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu -- To unsubscribe from this list go

Re: [Samba] removing local policies

2013-02-10 Thread TAKAHASHI Motonobu
without having to reinstall or recreate users, has anyone managed to do that? I think you are using 'System Policy' feature on Samba 3 domain. The settings applied by 'System Policy' are tatooed. It's by design. To search system policy tatoo will show you additional information. --- TAKAHASHI

Re: [Samba] Append/delete permissions

2013-02-10 Thread TAKAHASHI Motonobu
mode/mask, force user/group, inherit owner, inherit permissions, chattr, etc but didn't make any success. I am using Samba 3.5.6 on Linux Debian machine. No, you cannot archive with these parameters. These parameters work in UNIX semantics, which does not have 'can DELETE' flag. --- TAKAHASHI

Re: [Samba] Samba 4 DC log.smd flooded with Conversion error

2013-02-09 Thread TAKAHASHI Motonobu
You had better set 'dos charset' parameter correctly and 'unix charset' parameter if you do not use UTF-8 on Linux. From: Jeremy Allison j...@samba.org Date: Sat, 9 Feb 2013 09:04:47 -0800 On Sat, Feb 09, 2013 at 11:54:26PM +0800, Kinglok, Fong wrote: My machine is running samba 4.0.3 inside a

Re: [Samba] Password Expiration Notice

2013-02-09 Thread TAKAHASHI Motonobu
expiration date. This is Windows 7's matter, not Samba's. See: http://social.technet.microsoft.com/Forums/en-US/w7itprosecurity/thread/fce9e485-67a4-47df-a649-f92632fb6132/ --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu -- To unsubscribe from

Re: [Samba] Cannot logon Samba 4 via plaintext password

2013-02-06 Thread TAKAHASHI Motonobu
-ad-dc option. Also if you compile Samba4 with same method as Samba3, then you can not see samba-tool. --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu -- To unsubscribe from this list go to the following URL and read the instructions: https

Re: [Samba] SaMBa 4 - homedir mapping

2013-02-03 Thread TAKAHASHI Motonobu
4.0.1 and Samba 4.0.0rc5 env and got same result. And to run pdbedit, I saw the home directory setting was applied. --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu -- To unsubscribe from this list go to the following URL and read

Re: [Samba] Cannot logon Samba 4 via plaintext password

2013-02-03 Thread TAKAHASHI Motonobu
client sends a plaintext password, and at last Samba replies logon failure to client. My smb.conf is: - [global] encrypt passwords = no server max protocol = nt1 ntlm auth = yes [tmp] path = /tmp writeable = yes - Hmmm, I think it is a bug... --- TAKAHASHI Motonobu mo

Re: [Samba] require_membership_of is ignored

2013-01-26 Thread TAKAHASHI Motonobu
: 0x7f2a6c630f40] LEAVE: pam_sm_authenticate returning 7 (PAM_AUTH_ERR) - To join the user to samba01g, the user can login. --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu -- To unsubscribe from this list go to the following URL and read

Re: [Samba] Use backends

2013-01-22 Thread TAKAHASHI Motonobu
From: rodrigo tavares rodrigofar...@yahoo.com.br Date: Tue, 22 Jan 2013 05:08:40 -0800 (PST) Can I have two passdb backend in my smb.conf ? Thanks ! After Samba 3.0.23, only one passdb backend is allowed. --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com

Re: [Samba] ldap users with users samba

2013-01-22 Thread TAKAHASHI Motonobu
in smb.conf, latter one is enabled. So you use tdbsam now. --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] How to debug SID problems

2013-01-21 Thread TAKAHASHI Motonobu
SID: S-1-5-12 ACL for $$$PROTO.HIV\AppEvents Owner SID: S-1-5-32-544 Group SID: (NULL SID) DACL: 8 entries: ... - But now, I tried the same command and get errors... I examined profiles bundled in Samba 3.5.6. --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo

Re: [Samba] How to debug SID problems

2013-01-21 Thread TAKAHASHI Motonobu
. Sorry, whoami command appears at Windows Vista / Windows Server 2003. - On Samba side pdbedit user (an user's) profiles (a profile file's) What is the name of a profile file? is it NTUSER.DAT? Yes, but as I answered at another mail, profiles command does not work well. --- TAKAHASHI

Re: [Samba] Users and groups without Winbind

2013-01-19 Thread TAKAHASHI Motonobu
. If you do not use users created by Samba for programs other than Samba, you do not need to configure Winbind to show those uses from programs other than Samba. --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https

Re: [Samba] ldap users with users samba

2013-01-19 Thread TAKAHASHI Motonobu
LDAP users's password, you need to configure pam_smbpass.so correctly. --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] Users and groups without Winbind

2013-01-19 Thread TAKAHASHI Motonobu
users. And if you see those Linux users from programs other than Samba, you have to configure Winbind correctly. --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo facebook.com/takahashi.motonobu -- To unsubscribe from this list go to the following URL and read

Re: [Samba] How to debug SID problems

2013-01-19 Thread TAKAHASHI Motonobu
or the users SIDs. But I'm new to windows and samba so I find it dificult to navigate through this windows mess. You can see SID: - On Windows side whoami /user (an user's) - On Samba side pdbedit user (an user's) profiles (a profile file's) --- TAKAHASHI Motonobu mo...@monyo.com / @damemonyo

Re: [Samba] .recycle folder not showing up

2013-01-02 Thread TAKAHASHI Motonobu
anyone have experience with such an issue??? Much appreciated. AFAIK, Samba recycle bin only affects to files only, not directories. If you set recycle:keeptree = yes, the parent directories on a deleted file are also copied to .recycle when the file is deleted. --- TAKAHASHI Motonobu mo

Re: [Samba] Permissions problem

2012-12-31 Thread TAKAHASHI Motonobu
. Is there a way to forbid this behaviour ? Or is there something wrong in my configuration ? Does unix extensions = no help your problem? --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman

Re: [Samba] Samba 4, Winbind RFC2307

2012-12-16 Thread TAKAHASHI Motonobu
domain member. You may manually set these attributes on S4 DC with the script: http://lists.samba.org/archive/samba-technical/2012-November/089119.html --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https

Re: [Samba] Samba3 and crackcheck

2012-12-12 Thread TAKAHASHI Motonobu
on Ubuntu..., but I do not know why you cannot, sorry. --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] Samba3 and crackcheck

2012-12-11 Thread TAKAHASHI Motonobu
package, and tried to compile crackcheck with a simple make, but all it returns is failure with the following error: crackcheck.c:6:19: fatal error: crack.h: No such file or directory You need to install the library of cracklib. For ubuntu, libcrack2-dev is its package name. --- TAKAHASHI Motonobu

Re: [Samba] Samba3 and crackcheck

2012-12-11 Thread TAKAHASHI Motonobu
From: Dominique dco...@hotmail.com Date: Tue, 11 Dec 2012 16:08:06 +0100 On 11/12/2012 15:43, TAKAHASHI Motonobu wrote: From: Dominique dco...@hotmail.com Date: Tue, 11 Dec 2012 13:45:51 +0100 I've got samba3 on ubuntu 12 up and running with one exception. I try to get password complexity

Re: [Samba] Samba4 and permissions of SYSVOL and NETLOGON

2012-12-11 Thread TAKAHASHI Motonobu
samba-tool ntacl sysvolreset? To run that, ACLs are correctly set and normal users cannot write into these shares. --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] Samba Permissions

2012-12-10 Thread TAKAHASHI Motonobu
to that account helps you? security = share is too old. --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] samba4 rc6 join win2k3 domain failed

2012-12-09 Thread TAKAHASHI Motonobu
I have same problem. Hmmm... From: Innocent Yevide inye...@yahoo.fr Date: Fri, 7 Dec 2012 22:56:12 + (GMT) Hello, I am trying to join samba4 rc6 to win2k3 server, and failing with: descriptor_sd_propagation_recursive: DC=DomainDnsZones,DC=office,DC=local not found under DC=office,DC=local

Re: [Samba] samba4 rc6 join win2k3 domain failed

2012-12-09 Thread TAKAHASHI Motonobu
In my environment, joining to W2K8R2 domain failed on same error. From: TAKAHASHI Motonobu mo...@monyo.com Date: Sun, 09 Dec 2012 23:39:01 +0900 (JST) I have same problem. Hmmm... From: Innocent Yevide inye...@yahoo.fr Date: Fri, 7 Dec 2012 22:56:12 + (GMT) Hello, I am trying to join

Re: [Samba] samba4 and dns + dhcp on windows.

2012-12-08 Thread TAKAHASHI Motonobu
to these you have to manually configure DNS/DHCP server for your machines belonging to B domain to receive B as its domain name. --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options

Re: [Samba] ower and group at linux

2012-12-08 Thread TAKAHASHI Motonobu
creates a file, doesn't appears the username owner of the file, instead of this, always appears root how the owner. How can I, solve this issue? Because of the setting: [global] ... admin users = @PGT\pgt.cxt This setting always set the accessing user root. --- TAKAHASHI Motonobu mo

Re: [Samba] Samba Permissions

2012-12-08 Thread TAKAHASHI Motonobu
From: Baird, Josh jba...@follett.com Date: Fri, 7 Dec 2012 20:58:22 + I thought I had this working correctly, but sometimes it randomly breaks. Here is an example of a share's configuration: [testshare] comment = Test Share path = /test/testshare writeable = yes create mask =

Re: [Samba] Samba3 PDC and Windows 8 RTM

2012-12-03 Thread TAKAHASHI Motonobu
is not applied... --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] Samba3 PDC and Windows 8 RTM

2012-12-03 Thread TAKAHASHI Motonobu
] workgroup = SAMBA366 domain logons = yes passdb backend = tdbsam add machine script = /usr/sbin/useradd -d /dev/null -s /bin/false %u [homes] writeable = yes browseable = no - --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions

Re: [Samba] Samba 3.x Windows 8

2012-11-19 Thread TAKAHASHI Motonobu
join with max protocol = smb2, try: - max protocol = nt1 min protocol = nt1 - as mentioned at: https://lists.samba.org/archive/samba/2012-September/169213.html --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read

Re: [Samba] Windows 8 Pro no domain logon possible

2012-09-24 Thread TAKAHASHI Motonobu
/bin/createSambaMachineAccount.php %u (snip) Perhaps smb ports = 139 causes your problem. Port 139 is a port for old services. Recent services use port 445 instead. Adding smb pors = 139 to my simple smb.conf, I see the same problem as you see. --- TAKAHASHI Motonobu mo...@monyo.com

Re: [Samba] Windows 8 Pro no domain logon possible

2012-09-23 Thread TAKAHASHI Motonobu
runs Windows 8 Professional 32bit modified registries same as Windows 7. If you could, please test same smb.conf? --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] Windows 8 Pro no domain logon possible

2012-09-20 Thread TAKAHASHI Motonobu
(squeeze) Of course I examined that after rebooting some domain accounts can logon into Samba domain on Windows 8 box. -- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] security level = user

2012-09-09 Thread TAKAHASHI Motonobu
. --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] samba 3.0.14a works with ldapsam backend but not 3.5.10-125.el6

2012-08-21 Thread TAKAHASHI Motonobu
,cn=accounts,dc=sri,dc=utoronto,dc=ca = --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] net ads user add: Can we prompt for a password?

2012-08-21 Thread TAKAHASHI Motonobu
created by net ads user add always becomes disabled at first. --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] samba ADS security mode not accesible by work group computer

2012-05-07 Thread TAKAHASHI Motonobu
and correct password, you would access without any security changes. See map untrusted to domain parameter in smb.conf(5) --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] configuring a backup domain server

2012-05-04 Thread TAKAHASHI Motonobu
servers the steps are: include folders in BDC smb.conf. windows XP clients will use the path \\domain-pdc\sharedfolder is correct? So you can access to shared folders on BDC like \\domain-bdc\sharedfolder. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go

Re: [Samba] configuring a backup domain server

2012-05-04 Thread TAKAHASHI Motonobu
and BDC are completely different servers at the view of a file server. If you want to synchronize/share files on both server, you have to do outside Samba. 2012/5/4 TAKAHASHI Motonobu mo...@monyo.com From: deconya elmailperso...@gmail.com Date: Fri, 4 May 2012 13:46:23 +0200 Im looking

Re: [Samba] template homedir and idmap_ad

2012-05-04 Thread TAKAHASHI Motonobu
something wrong. JAB. What version of Samba do you use? And how have you set winbind nss info parameter. In recently Samba3, this parameter determines if template homedir parameter is used or not. idmap_ad module determines where the UID and GID are retrieved. --- TAKAHASHI Motonobu mo

Re: [Samba] Login Attempt Resets Password in smbpasswd

2012-05-04 Thread TAKAHASHI Motonobu
authentication cache. Basically reboot is not required. --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] samba ldap domain member server with cifs and nfs

2012-02-27 Thread TAKAHASHI Motonobu
. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] Unix users/groups and the Windows ACL editor

2012-02-27 Thread TAKAHASHI Motonobu
From: Victor Sudakov v...@mpeks.tomsk.su Date: Sun, 26 Feb 2012 23:23:04 +0700 TAKAHASHI Motonobu wrote: There is a samba compiled --without-winbind --with-acl-support; the Windows GUI ACL editor Security tab shows multiple users and groups as Unix User\joe and Unix Group\foo

Re: [Samba] Unix users/groups and the Windows ACL editor

2012-02-26 Thread TAKAHASHI Motonobu
the GUI if I wish to. Is there a way to _add_ Unix groups and users via the ACL editor? If your file system has ACL feature, you can manupulate these groups to map them to Samba groups with net groupmap add. Also you can add users who map to Samba user. --- TAKAHASHI Motonobu mo...@samba.gr.jp

Re: [Samba] Unix users/groups and the Windows ACL editor

2012-02-26 Thread TAKAHASHI Motonobu
From: Victor Sudakov v...@mpeks.tomsk.su Date: Sun, 26 Feb 2012 22:18:40 +0700 TAKAHASHI Motonobu wrote: There is a samba compiled --without-winbind --with-acl-support; the Windows GUI ACL editor Security tab shows multiple users and groups as Unix User\joe and Unix Group\foo. I can

Re: [Samba] rpoblem: after renaming a directory permissions are changed

2012-02-18 Thread TAKAHASHI Motonobu
mask = 0770 inherit acls = Yes I re-produced your issue at my lab. You set directory mask = 0770 at sys. directory mask or such parameters is applied not only when creating directories but when manuplating directories. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from

Re: [Samba] Set primary group of file on samba share from windows

2012-01-09 Thread TAKAHASHI Motonobu
ML about improving Samba feature. In Samba4, group ownership is supported because Samba4 abandoned to keep interoperability with permission/ACL of UNIX filesystem in order to get full-compatibility with Windows NTFS. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go

Re: [Samba] Set primary group of file on samba share from windows

2012-01-08 Thread TAKAHASHI Motonobu
From: Hubert Kario h...@qbs.com.pl Date: Sun, 8 Jan 2012 19:42:54 +0100 On Sunday 08 of January 2012 08:41:18 TAKAHASHI Motonobu wrote: From: Hubert Kario h...@qbs.com.pl Date: Thu, 5 Jan 2012 23:36:58 +0100 Unfortunately, I'm unable to set the primary group using windows file

Re: [Samba] samba share permission

2012-01-07 Thread TAKAHASHI Motonobu
user using writable/write list/..., but not per files/directories. If your jobs are running on RHEL server, you have to set correctly permissions in your jobs. --- TAKAHASHI Motonobu mo...@monyo.com -- To unsubscribe from this list go to the following URL and read the instructions: https

Re: [Samba] Set primary group of file on samba share from windows

2012-01-07 Thread TAKAHASHI Motonobu
or other method? Have you correctly set set primary group script? And your Samba joined AD and run Winbind? As far as I examined we can change primary group via Samba under certain environment. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL

Re: [Samba] The Group Policy Client service failed the logon. Access is denied.

2012-01-04 Thread TAKAHASHI Motonobu
met same issue when I re-used passdb.tdb from old machine, because old machine's SID and new machine's SID was not same. Or to edit all users' SID manually, the issue will be solved, I think. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read

Re: [Samba] The Group Policy Client service failed the logon. Access is denied.

2012-01-04 Thread TAKAHASHI Motonobu
owner and group of files. I do not create the Samba users I have it set so when I create a new Linux user the Samba user is created. If it where the tdb wouldn't their be problems when logging in to an XP machine. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go

Re: [Samba] limiting netbios browsing

2012-01-03 Thread TAKAHASHI Motonobu
From: Chris Smith smb...@chrissmith.org Date: Mon, 2 Jan 2012 14:29:43 -0500 Given a DC environment where very few (1-3) hosts actually need to be discovered via browsing is there a good way to limit what is browseable? To set browse list = no solves your issue? --- TAKAHASHI Motonobu mo

Re: [Samba] samba file hierarcy issue

2011-12-30 Thread TAKAHASHI Motonobu
with no password and other folders w,y,z inside folder x with password. So users can enter and view x folder content but cant view w,y,z folder contents without password. (snip) Is it possible to create a folder hierarcy in samba server for clients No, also can't for Windows. --- TAKAHASHI Motonobu mo

Re: [Samba] maximum password age question

2011-12-27 Thread TAKAHASHI Motonobu
3.0.21, those policies are stored in LDAP, but before 3.0.21, they were always stored in local tdb file. I guess that you have to manually create those account policies on your LDAP directory. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read

Re: [Samba] incorrect profiles

2011-12-27 Thread TAKAHASHI Motonobu
= No Have you tried to set profile acls = yes at profiles share? --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] Samba + acl,user_xattr

2011-12-18 Thread TAKAHASHI Motonobu
HAVE_FSETXATTR HAVE_LSETXATTR HAVE_SETXATTR --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] nmblookup failures

2011-12-18 Thread TAKAHASHI Motonobu
) + R --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] question regarding samba permissions

2011-12-18 Thread TAKAHASHI Motonobu
) feature. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] All read and write

2011-12-17 Thread TAKAHASHI Motonobu
. And I think that these features are probably not tested with security = share, so you had better set security = user and proper settings. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman

Re: [Samba] ADS Domain Member smb.conf using idmap_ad

2011-12-11 Thread TAKAHASHI Motonobu
From: Freeman f...@email.unc.edu Date: Wed, 23 Nov 2011 10:37:05 -0500 On 11/23/2011 08:44 AM, TAKAHASHI Motonobu wrote: From: Freemanf...@email.unc.edu Date: Wed, 23 Nov 2011 08:17:55 -0500 Have you already set values into UNIX attributes for every user you want to activate under

Re: [Samba] Configure samba to not look for domain master browser

2011-12-06 Thread TAKAHASHI Motonobu
a master browser (or a domain master browser) or will try to become a master browser by myself? If yes, this is expected behavior. If not, something will be wrong. Can you show the spamming messages? --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL

Re: [Samba] cant access shares on members of samba domain from windows domain

2011-12-03 Thread TAKAHASHI Motonobu
on domain B, to specify correct user and whose password will make them access. Otherwise, you have to set up domain trustrelationship between domain A and B, and set correct permissions on every share you want to enable access from other domain's users. --- TAKAHASHI Motonobu mo...@samba.gr.jp

Re: [Samba] File names with unusual characters and linux smbfs clients

2011-12-02 Thread TAKAHASHI Motonobu
via smbfs or cifs that it causes problems. Have you set iocharset (and codepage if smbfs) properly? Both smbfs and cifs are not part of Samba, they are part of Linux kernel. Does the same problem occur when you you access an U+2014 filename on Windows share via smbfs/cifs? --- TAKAHASHI Motonobu

Re: [Samba] offline logon with AD

2011-11-29 Thread TAKAHASHI Motonobu
with cached_login parameter to auth type. See pam_winbind(8) --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] Problem with 3.6 Samba

2011-11-23 Thread TAKAHASHI Motonobu
I must configured Samba to can start/stop via the command : /etc/init.d/winbind start /etc/init.d/winbind start /etc/init.d/smb start You need to create/modify those scripts suitable for your installation. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go

Re: [Samba] ADS Domain Member smb.conf using idmap_ad

2011-11-23 Thread TAKAHASHI Motonobu
-1236058 SID_USER (1) uid/gid does not have nothing to do with SID/RID. If you want to keep some relationship between RID and uid, use idmap_rid(8) instead. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https

Re: [Samba] ADS Domain Member smb.conf using idmap_ad

2011-11-23 Thread TAKAHASHI Motonobu
to configure. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] I can browse but can't modify or create files

2011-11-15 Thread TAKAHASHI Motonobu
. To remove read list line would solve your problem... --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] user access to samba files

2011-11-14 Thread TAKAHASHI Motonobu
be managed on Winbind or Windows. Unix-based group membership (including yp, /etc/group and etc...) is ignored. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] Samba-3.6.1 release IPV6 issue

2011-11-13 Thread TAKAHASHI Motonobu
: network name is not available. Have you used a global IPv6 address (not link/site local) ? --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] move to Idmap with ldap

2011-11-11 Thread TAKAHASHI Motonobu
accounts and group listings as expected. If you are building Samba as PDC, Idmap is never used unless you use ldapsam:editposix (with Winbind) instead of smbldap-tools. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions

Re: [Samba] Problem with kerberos method attribut

2011-11-11 Thread TAKAHASHI Motonobu
and a samba version 3.0.36-0.5.5. Q : how resolve this problem ? Both kerberos method and dedicated keytab file are introduced at Samba 3.4.0. You use too old version. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions

Re: [Samba] Samba-3.6.1 release IPV6 issue

2011-11-11 Thread TAKAHASHI Motonobu
' design. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

Re: [Samba] Permissions in printer share

2011-11-07 Thread TAKAHASHI Motonobu
If you use Winbind, you have to specify @domain\group style by default. Also you can configure printers' permissions by ACL via Windows. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman

Re: [Samba] win 7 join domain error

2011-11-05 Thread TAKAHASHI Motonobu
. --- TAKAHASHI Motonobu mo...@samba.gr.jp I changed that but no luck. The logs give this: Nov 5 08:27:18 hh1 smbd[7285]: [2011/11/05 08:27:18.540172, 0] passdb/pdb_interface.c:348(pdb_default_create_user) Nov 5 08:27:18 hh1 smbd[7285]: _samr_create_user: Running the command `/usr/sbin/useradd

Re: [Samba] win 7 join domain error

2011-11-04 Thread TAKAHASHI Motonobu
/nobody -s /bin/false %m$ (snip) Use simple %u instead of %m$, see smb.conf(5) for details. --- TAKAHASHI Motonobu mo...@samba.gr.jp -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

  1   2   3   4   >