[Samba] samba 3 and valid chars

2003-09-12 Thread Alex Murphy
Hello ! im use samba 3 cvs, in smb.conf setting
dos charset = 866
unix charset = koi8-r
all ok, 
except that some symbols is not possible in name of the 
files (the sign of the Number - , for instance). Earlier, 
there was parameter valid chars, presently his(its) no - 
will not prompt who output from given situations ?  


RESPECTFULLY YOURS, Aleksey.

--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] LDAP base samba group

2003-04-01 Thread Alex Murphy
How do you do !!!
  Prompt please, possible use reception to information on group from LDAP 
directory? That is to say without use the utility smbgroupedit (Samba 3.22a), 
simple accompaniment in LDAP name of the group ? 
The Respect, Aleksey.
--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] test

2003-04-01 Thread Alex Murphy
test
--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] migration of samba 3.22a to Samba 3.23a - 2 possible bugs

2003-04-01 Thread Alex Murphy
How do you do !!!
  Pereshel with samba 3.22a on samba 3.23a (for support LDAP mapping group), 
did not change the config file - has installed in the same directory, has 
noticed 2 possible bugs:
1. after performing
root# pdbedit -i tdbsam -e ldapsam -g
 the groups were orderly exported in LDAP directory, but with full absence 
privelege:

[EMAIL PROTECTED] bin]# ./smbgroupedit -l
ldapsam_open_connection: connection opened
ldap_connect_system: succesful connection to the LDAP server
ldapsam_setsampwent: 12 entries in the base!
Entry found for group: 1002
Attribute description not found
 
System Operators
SID   : S-1-5-32-549
Unix group: System Operators
Group type: Domain group
Comment   :
Privilege : No privilege

Replicators
SID   : S-1-5-32-552
Unix group: Replicators
Group type: Domain group
Comment   :
Privilege : No privilege

Guests
SID   : S-1-5-32-546
Unix group: Guests
Group type: Domain group
Comment   :
Privilege : No privilege

Domain Admins
SID   : S-1-5-21-1174496667-1382807048-3288504375-512
Unix group: Domain Admins
Group type: Domain group
Comment   :
Privilege : No privilege

Domain Guests
SID   : S-1-5-21-1174496667-1382807048-3288504375-514
Unix group: Domain Guests
Group type: Domain group
Comment   :
Privilege : No privilege

Power Users
SID   : S-1-5-32-547
Unix group: Power Users
Group type: Domain group
Comment   :
Privilege : No privilege

Print Operators
SID   : S-1-5-32-550
Unix group: Print Operators
Group type: Domain group
Comment   :
Privilege : No privilege

Administrators
SID   : S-1-5-32-544
Unix group: Administrators
Group type: Domain group
Comment   :
Privilege : No privilege

Account Operators
SID   : S-1-5-32-548
Unix group: Account Operators
Group type: Domain group
Comment   :
Privilege : No privilege

Domain Users
SID   : S-1-5-21-1174496667-1382807048-3288504375-513
Unix group: Domain Users
Group type: Domain group
Comment   :
Privilege : No privilege

Backup Operators
SID   : S-1-5-32-551
Unix group: Backup Operators
Group type: Domain group
Comment   :
Privilege : No privilege

Users
SID   : S-1-5-32-545
Unix group: Users
Group type: Domain group
Comment   :
Privilege : No privilege
As be ? Privelege do not allow to use these groups for conferring user 
authority manager and etc.

2. On samba 3.22a user could remove attribut Read with file or files, now file 
ALWAYS ReadOnly i.e. attribut Read to remove not possible - that to do ?  
--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] Samba as ADS

2003-03-18 Thread Alex Murphy
Hi everyone !!!

  Will Not prompt who, possible install and adjust Samba as ADS
controller domain (PDC) ?  If yes then if what examples or documentation
?

RESPECTFULLY YOURS, Aleksey.


--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] Samba as ADS

2003-03-18 Thread Alex Murphy
Hi everyone !!!

  Will Not prompt who, possible install and adjust Samba as ADS
controller domain (PDC) ?  If yes then if what examples or documentation
?

RESPECTFULLY YOURS, Aleksey.

--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] Samba ADS Error

2003-03-13 Thread Alex Murphy
How do you do !!!
  Already several days are beaten with such problem:
 Beside me Windows 2000 Domain - with server Windows 2000 in own mode,
 want to install samba as BDC, came to conclusion that necessary to use Samba 
3 + ADS.
Has Compiled samba-3.0alpha22 with with the following option:
./configure --with-ads --with-ldap --with-pam --with-pam_smbpass 
--with-ldapsam --with-tdbsa --with-quotas --with-libsmbclient 
--with-acl-support --with-sendfile-support --with-winbind
Has Installed, created the smb.conf file:
[global]
passdb backend = smbpasswd
use sendfile = Yes
update encrypted = Yes
ldap server = 192.168.1.5
ldap port = 389 #636
ldap suffix = dc=lan,dc=sgtp,dc=ru
ldap machine suffix = CN=Computers,DC=lan,DC=sgtp,DC=ru
ldap user suffix = dc=lan,dc=sgtp,dc=ru
ldap filter = ((sAMAccountName=%u)(objectclass=user))
ldap admin dn = CN=murphy AM. murphy,CN=Users,DC=lan,DC=sgtp,DC=ru
ldap ssl = No
ldap passwd sync = yes
ldap trust ids = No
profile acls = No
realm = LAN.SGTP.RU
client NTLMv2 auth = Yes
hide local users = Yes
ADS server = 192.168.1.5
dos charset = 866
unix charset = KOI8-R
encrypt passwords = true
winbind uid = 1-65000
winbind gid = 1-65000
winbind separator = +
template homedir = /home/%D/%U
template shell = /bin/sh
winbind cache time = 5
netbios name = sana
workgroup = SGTP
server string = Samba Server
log file = /usr/local/samba/var/log.%m
max log size = 50
security = ADS
socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
local master = no
os level = 3
domain master = no
preferred master = no
domain logons = yes
name resolve order = wins lmhosts bcast
wins server = 192.168.1.5
inherit acls = yes

# Share Definitions ==
[homes]
   comment = Home Directories
   browseable = no
   writable = yes

[printers]
   comment = All Printers
   path = /var/spool/samba
   browseable = no
   guest ok = no
   writable = no
   printable = yes

[test]
path = /mnt/xfs/samba
writeable = yes
force group = root

[netlogon]
comment = Network Logon Service
path = /usr/local/samba/lib/netlogon
guest ok = yes
writable = no
share modes = no

It Was Registered in domain: kinit [EMAIL PROTECTED]
has Prescribed in domain: net ads join
has Started smbd,nmbd,winbindd
has Done wbinfo -p - all have fine Done
wbinfo -u - has got list of the groups has Done
./wbinfo -t
checking the trust secret via RPC calls failed
error code was NT_STATUS_NO_TRUST_SAM_ACCOUNT (0xc18b)
Could not check secret

Restart computer - has Started smbd,nmbd,winbindd
wbinfo -u
Error looking up domain users

If once again execute net ads join and restart all samba services, that all 
ok.
That to do in given situations ?  

RESPECTFULLY YOURS, Aleksey.

--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] Samba ADS Error

2003-03-13 Thread Alex Murphy
How do you do !!!
  Already several days are beaten with such problem:
 Beside me Windows 2000 Domain - with server Windows 2000 in own mode,
 want to install samba as BDC, came to conclusion that necessary to use Samba 
3 + ADS.
Has Compiled samba-3.0alpha22 with with the following option:
./configure --with-ads --with-ldap --with-pam --with-pam_smbpass 
--with-ldapsam --with-tdbsa --with-quotas --with-libsmbclient 
--with-acl-support --with-sendfile-support --with-winbind
Has Installed, created the smb.conf file:
[global]
passdb backend = smbpasswd
use sendfile = Yes
update encrypted = Yes
ldap server = 192.168.1.5
ldap port = 389 #636
ldap suffix = dc=lan,dc=sgtp,dc=ru
ldap machine suffix = CN=Computers,DC=lan,DC=sgtp,DC=ru
ldap user suffix = dc=lan,dc=sgtp,dc=ru
ldap filter = ((sAMAccountName=%u)(objectclass=user))
ldap admin dn = CN=murphy AM. murphy,CN=Users,DC=lan,DC=sgtp,DC=ru
ldap ssl = No
ldap passwd sync = yes
ldap trust ids = No
profile acls = No
realm = LAN.SGTP.RU
client NTLMv2 auth = Yes
hide local users = Yes
ADS server = 192.168.1.5
dos charset = 866
unix charset = KOI8-R
encrypt passwords = true
winbind uid = 1-65000
winbind gid = 1-65000
winbind separator = +
template homedir = /home/%D/%U
template shell = /bin/sh
winbind cache time = 5
netbios name = sana
workgroup = SGTP
server string = Samba Server
log file = /usr/local/samba/var/log.%m
max log size = 50
security = ADS
socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
local master = no
os level = 3
domain master = no
preferred master = no
domain logons = yes
name resolve order = wins lmhosts bcast
wins server = 192.168.1.5
inherit acls = yes

# Share Definitions ==
[homes]
   comment = Home Directories
   browseable = no
   writable = yes

[printers]
   comment = All Printers
   path = /var/spool/samba
   browseable = no
   guest ok = no
   writable = no
   printable = yes

[test]
path = /mnt/xfs/samba
writeable = yes
force group = root

[netlogon]
comment = Network Logon Service
path = /usr/local/samba/lib/netlogon
guest ok = yes
writable = no
share modes = no

It Was Registered in domain: kinit [EMAIL PROTECTED]
has Prescribed in domain: net ads join
has Started smbd,nmbd,winbindd
has Done wbinfo -p - all have fine Done
wbinfo -u - has got list of the groups has Done
./wbinfo -t
checking the trust secret via RPC calls failed
error code was NT_STATUS_NO_TRUST_SAM_ACCOUNT (0xc18b)
Could not check secret

Restart computer - has Started smbd,nmbd,winbindd
wbinfo -u
Error looking up domain users

If once again execute net ads join and restart all samba services, that all 
ok.
That to do in given situations ?  

RESPECTFULLY YOURS, Aleksey.

--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


RE: [Samba] Winbindd Error

2003-03-12 Thread Alex Murphy
 try turning off kerberos

I can not switch off kerberos, since beside me Win2000Domain, but Samba
in him as BDC, problem sooner whole in grow old ticket from KDC,
possible somehow force Samba recharge ticket or save him(it) beside
itself? After all Win2000 do not require after rebooting the relogs and
domain.

  Hello !! Please Help me !!
Im execute command ./net ads join, start winbindd,smbd,nmbd - all

is

Ok !
  (wbinfo -g - Ok, wbinfo -u - Ok)
Reboot me mashine - start winbindd,smbd,nmbd - wbinfo -u - Error
lookup
  Users
 
   In log file :
  [2003/03/11 15:48:07, 1] libsmb/clikrb5.c:krb5_mk_req2(256)
krb5_cc_get_principal failed (No credentials cache found)
 
 
  What is it ??
 
   Senks, Alexei.
  --
  To unsubscribe from this list go to the following URL and read the
  instructions:  http://lists.samba.org/mailman/listinfo/samba


--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] Winbindd Error

2003-03-11 Thread Alex Murphy
Hello !! Please Help me !!
  Im execute command ./net ads join, start winbindd,smbd,nmbd - all is Ok ! 
(wbinfo -g - Ok, wbinfo -u - Ok)
  Reboot me mashine - start winbindd,smbd,nmbd - wbinfo -u - Error lookup 
Users

 In log file :
[2003/03/11 15:48:07, 1] libsmb/clikrb5.c:krb5_mk_req2(256)
  krb5_cc_get_principal failed (No credentials cache found)


What is it ??

 Senks, Alexei.
--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] ACL with Samba 3.22 + xfs with acl

2003-03-10 Thread Alex Murphy
The Regard!
Faced a problem distributions acl in SAMBA 3.22.
Ispolizetsya ADS+WINBINDD, PDC-Win2000, Samba - Server (xfs+acl).
When making the file in share resource are assigned authorities:
all - for all
domain users - winbindd considers the main by group domain users user - a 
name of the creator of the file At marks beside all authorities skim!
Do the attempt to put(deliver) the marks beside any one of 
afore-mentioned, appear else two authorities : owner-group and owner-user, 
for which already it is impossible nothing change.
The Question: possible what hide owner-group and owner-user ?   

Alex.
--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] ADS PDC Samba 3

2003-03-09 Thread Alex Murphy
Hello !!!
Possible create on Samba 3 as PDC ADS domain (LDAP+DNS+ADS)?
 RESPECTFULLY YOURS, Aleksey?

--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] Help !!!!

2003-03-06 Thread Alex Murphy
Hello !!!
   Please help me, im compile samba-3.0alpha22 from source, and start net 
command:
[2003/03/06 15:41:59, 0] param/params.c:OpenConfFile(530)
  params.c:OpenConfFile() - Unable to open configuration file 
/usr/local/samba/lib/smb.conf:
No such file or directory
ADS support not compiled in

kerbeos it is established what to do(make)?  ADS it is necessary.

Alex.
--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] Samba+Winbindd

2003-03-03 Thread Alex Murphy
How do you do !!!
  Compile samba-2.2.7a with -with-winbind -with-acl-support, has adjusted 
smb.conf
 [global]
netbios name = server
workgroup = sgtp
server string = Samba Server
max log size = 50
security = domain
wins support = yes
password server = DOM MULT *
encrypt passwords = yes
log level = 3
log file = /usr/local/samba/var/log.%m
client code page = 866
character set = KOI8-R
smb passwd file = /usr/local/samba/private/smbpasswd
username map = /usr/local/samba/lib/smbusers
winbind uid = 1-65000
winbind gid = 1-65000
winbind separator = +
winbind use default domain = yes
winbind enum users = yes
winbind enum groups = yes
template homedir = /home/%D/%U
template shell = /bin/sh
winbind cache time = 5
has prescribed in nsswitch.conf:
passwd: files winbind
group: files winbind
shadow: files

execute ./smbpasswd -j SGTP -r dom -Uadmin - all ok.
Now when entering from the other machines domain enter as nobody, rather then 
as user, received with controller domain (domain on Win2000Server), in ravine 
file winbindd.
For test execute: cd ~sgtp+dgk (~domain+user) - error.
[2003/03/04 10:33:30, 3] nsswitch/winbindd_cm.c:cm_get_dc_name(163)
  cm_get_dc_name: Returning DC DOM (192.168.1.5) for domain SGTP
[2003/03/04 10:33:30, 3] nsswitch/winbindd_cm.c:cm_get_ipc_userpass(194)
  IPC$ connections done anonymously
[2003/03/04 10:33:30, 3] libsmb/cliconnect.c:cli_full_connection(974)
  Connecting to host=DOM share=IPC$
[2003/03/04 10:33:30, 3] lib/util_sock.c:open_socket_out(845)
  Connecting to 192.168.1.5 at port 445
[2003/03/04 10:33:31, 1] nsswitch/winbindd_util.c:init_domain_list(148)
  Added domain SGTP (S-1-5-21-746137067-176339-682003330)
[2003/03/04 10:33:31, 1] nsswitch/winbindd_util.c:init_domain_list(152)
  getting trusted domain list
[2003/03/04 10:33:37, 3] nsswitch/winbindd_user.c:winbindd_endpwent(314)
  [ 4381]: endpwent
[2003/03/04 10:33:37, 3] nsswitch/winbindd_user.c:winbindd_endpwent(314)
  [ 4381]: endpwent
[2003/03/04 10:33:45, 3] nsswitch/winbindd_user.c:winbindd_getpwnam(104)
  [ 3326]: getpwnam sgtp+dgk
[2003/03/04 10:33:45, 3] libsmb/namequery.c:resolve_lmhosts(768)
  resolve_lmhosts: Attempting lmhosts lookup for name SGTP0x1b
[2003/03/04 10:33:45, 3] libsmb/namequery.c:resolve_wins(709)
  resolve_wins: Attempting wins lookup for name SGTP0x1b
[2003/03/04 10:33:45, 3] libsmb/namequery.c:resolve_wins(727)
  resolve_wins: WINS server == 192.168.1.5
[2003/03/04 10:33:45, 3] lib/util_sock.c:open_socket_in(813)
  bind succeeded on port 0
[2003/03/04 10:33:45, 2] libsmb/namequery.c:name_query(421)
  Got a positive name query response from 192.168.1.5 ( 192.168.1.5 )
[2003/03/04 10:33:45, 3] lib/util_sock.c:open_socket_in(813)
  bind succeeded on port 0
[2003/03/04 10:33:45, 3] nsswitch/winbindd_cm.c:cm_get_dc_name(163)
  cm_get_dc_name: Returning DC DOM (192.168.1.5) for domain SGTP
[2003/03/04 10:33:45, 3] nsswitch/winbindd_cm.c:cm_get_ipc_userpass(194)
  IPC$ connections done anonymously
[2003/03/04 10:33:45, 3] libsmb/cliconnect.c:cli_full_connection(974)
  Connecting to host=DOM share=IPC$
[2003/03/04 10:33:45, 3] lib/util_sock.c:open_socket_out(845)
  Connecting to 192.168.1.5 at port 445
[2003/03/04 10:33:46, 1] nsswitch/winbindd_user.c:winbindd_getpwnam(147)
  error getting user info for user '[SGTP]\[dgk]'
[2003/03/04 10:33:46, 3] nsswitch/winbindd_user.c:winbindd_endpwent(314)
  [ 3326]: endpwent

what see - can not get information of the user? Where error?

Addons information:
[EMAIL PROTECTED] bin]# ./wbinfo -p
'ping' to winbindd succeeded
[EMAIL PROTECTED] bin]# ./wbinfo -a dgk%pass
plaintext password authentication succeeded
[EMAIL PROTECTED] bin]# ./wbinfo -u
0xc017
[EMAIL PROTECTED] bin]# ./wbinfo -g
0xc001
[EMAIL PROTECTED] bin]# ./wbinfo -n dgk
S-1-5-21-746137067-176339-682003330-1127 1
[EMAIL PROTECTED] bin]# ./wbinfo -s S-1-5-21-746137067-176339-682003330-1127
SGTP+dgk 1

--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba