[Samba] Samba 3.6 File server with W2k3 DC
Hi, I've been fighting against a file server with samba 3.6.9-151.el6 authenticating from a windows 2003 server. I've read a thousand posts and howtos with all kind of samba versions without success. It looks like windbind is not processing things right. I've set the unix permissions on the folder to CANAL4\graficos right and the parent folder is world readable so this should not be the problem. Any hints are appreciate. This is the samba log for a client: [2013/08/12 13:56:21.449931, 3] lib/access.c:338(allow_access) Allowed connection from 192.168.2.118 (192.168.2.118) [2013/08/12 13:56:21.450014, 3] smbd/oplock.c:922(init_oplocks) init_oplocks: initializing messages. [2013/08/12 13:56:21.450084, 3] smbd/oplock_linux.c:239(linux_init_kernel_oplocks) Linux kernel oplocks enabled [2013/08/12 13:56:21.450175, 3] smbd/process.c:1662(process_smb) Transaction 0 of length 159 (0 toread) [2013/08/12 13:56:21.450217, 3] smbd/process.c:1467(switch_message) switch message SMBnegprot (pid 27114) conn 0x0 [2013/08/12 13:56:21.450509, 3] smbd/negprot.c:598(reply_negprot) Requested protocol [PC NETWORK PROGRAM 1.0] [2013/08/12 13:56:21.450555, 3] smbd/negprot.c:598(reply_negprot) Requested protocol [LANMAN1.0] [2013/08/12 13:56:21.450587, 3] smbd/negprot.c:598(reply_negprot) Requested protocol [Windows for Workgroups 3.1a] [2013/08/12 13:56:21.450621, 3] smbd/negprot.c:598(reply_negprot) Requested protocol [LM1.2X002] [2013/08/12 13:56:21.450663, 3] smbd/negprot.c:598(reply_negprot) Requested protocol [LANMAN2.1] [2013/08/12 13:56:21.450701, 3] smbd/negprot.c:598(reply_negprot) Requested protocol [NT LM 0.12] [2013/08/12 13:56:21.450734, 3] smbd/negprot.c:598(reply_negprot) Requested protocol [SMB 2.002] [2013/08/12 13:56:21.450767, 3] smbd/negprot.c:598(reply_negprot) Requested protocol [SMB 2.???] [2013/08/12 13:56:21.450857, 3] smbd/negprot.c:419(reply_nt1) using SPNEGO [2013/08/12 13:56:21.450894, 3] smbd/negprot.c:704(reply_negprot) Selected protocol NT LM 0.12 [2013/08/12 13:56:21.480917, 3] smbd/process.c:1662(process_smb) Transaction 1 of length 1500 (0 toread) [2013/08/12 13:56:21.481068, 3] smbd/process.c:1467(switch_message) switch message SMBsesssetupX (pid 27114) conn 0x0 [2013/08/12 13:56:21.481122, 3] smbd/sesssetup.c:1333(reply_sesssetup_and_X) wct=12 flg2=0xc807 [2013/08/12 13:56:21.481159, 2] smbd/sesssetup.c:1279(setup_new_vc_session) setup_new_vc_session: New VC == 0, if NT4.x compatible we would close all old resources. [2013/08/12 13:56:21.481193, 3] smbd/sesssetup.c:1065(reply_sesssetup_and_X_spnego) Doing spnego session setup [2013/08/12 13:56:21.481240, 3] smbd/sesssetup.c:1107(reply_sesssetup_and_X_spnego) NativeOS=[] NativeLanMan=[] PrimaryDomain=[] [2013/08/12 13:56:21.481306, 3] smbd/sesssetup.c:660(reply_spnego_negotiate) reply_spnego_negotiate: Got secblob of size 1354 [2013/08/12 13:56:21.501097, 3] libads/authdata.c:332(decode_pac_data) Found account name from PAC: Graficos [Graficos] [2013/08/12 13:56:21.501177, 3] auth/user_krb5.c:50(get_user_from_kerberos_info) Kerberos ticket principal name is [grafi...@montecarlotv.com.uy] [2013/08/12 13:56:21.502480, 3] smbd/password.c:298(register_existing_vuid) register_existing_vuid: User name: CANAL4\graficosReal name: Graficos [2013/08/12 13:56:21.502527, 3] smbd/password.c:308(register_existing_vuid) register_existing_vuid: UNIX uid 10002 is UNIX user CANAL4\graficos, and will be vuid 101 [2013/08/12 13:56:21.502606, 3] smbd/password.c:238(register_homes_share) Adding homes service for user 'CANAL4\graficos' using home directory: '/home/CANAL4/graficos' [2013/08/12 13:56:21.502674, 3] param/loadparm.c:6582(lp_add_home) adding home's share [graficos] for user 'CANAL4\graficos' at '/home/CANAL4/graficos' [2013/08/12 13:56:21.503302, 3] smbd/process.c:1662(process_smb) Transaction 2 of length 118 (0 toread) [2013/08/12 13:56:21.503371, 3] smbd/process.c:1467(switch_message) switch message SMBtconX (pid 27114) conn 0x0 [2013/08/12 13:56:21.503491, 3] lib/access.c:338(allow_access) Allowed connection from 192.168.2.118 (192.168.2.118) [2013/08/12 13:56:21.503540, 3] ../libcli/security/dom_sid.c:208(dom_sid_parse_endp) string_to_sid: SID CANAL4\Datos is not in a valid format [2013/08/12 13:56:21.504880, 2] smbd/service.c:627(create_connection_session_info) user 'CANAL4\graficos' (from session setup) not permitted to access this share (Datos) [2013/08/12 13:56:21.504930, 1] smbd/service.c:805(make_connection_snum) create_connection_session_info failed: NT_STATUS_ACCESS_DENIED [2013/08/12 13:56:21.504969, 3] smbd/error.c:81(error_packet_set) error packet at smbd/reply.c(803) cmd=117 (SMBtconX) NT_STATUS_ACCESS_DENIED [2013/08/12 13:56:21.505345, 3] smbd/process.c:1662(process_smb) Transaction 3 of length 43 (0 toread) [2013/08/12 13:56:21.505412, 3] smbd/process.c:1467(switch_message) switch message SMBulogoffX (pid 27114) conn 0x0
Re: [Samba] Slave DNS for a DLZ zone
Hi Germano, As far as I know, the slave stuff is quite in progress. I'm trying to set primary and second DCs and as far as I get it, you have to set named as master in both boxes and it's samba the responsible of updating the records as you change something in the domain. This is my understanding of this, but may be wrong. Regards, Juan Pablo Lorier On 21/06/12 07:14, Arnold Krille wrote: On 07.06.2012 10:13, German Molano wrote: Can I setup a slave server for dlz zone create with samba4 installation ? I can't give a definitive answer due to a lack of experience with s4, but I have successfully slaved a linux bind9 to a win-ad, so I think at least using the windows admin tools you should be able to allow enslaving your bind to s4-dns. Have fun, Arnold -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] Setting up DNS on a joined samba4 DC to W2003 Domain
Hi, I've installed s4 succesfully on two servers to replace the w2003 domain controllers, but to do that, I need to get DNS to work and I can't find documentation on how to set up bind to import DNS from AD as the how to is to set up and provision a domain or the docs on joining as DC are outdated and have bearly no info on doing this. Can anyone help me on this? Regards, Juan Pablo -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] Can't join samba4 as domain controller
Hi, I'm trying to join samba 4 alpha 20 to my windows 2003 AD domain and I get this error: Adding SPNs to CN=SAMBADC1,OU=Domain Controllers,DC=montecarlotv,DC=com,DC=uy Setting account password for SAMBADC1$ Enabling account Calling bare provision Join failed - cleaning up checking sAMAccountName Deleted CN=SAMBADC1,OU=Domain Controllers,DC=montecarlotv,DC=com,DC=uy Deleted CN=NTDS Settings,CN=SAMBADC1,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy Deleted CN=SAMBADC1,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy ERROR(exceptions.NameError): uncaught exception - global name 'all' is not defined File /usr/local/samba/lib64/python2.4/site-packages/samba/netcmd/__init__.py, line 160, in _run return self.run(*args, **kwargs) File /usr/local/samba/lib64/python2.4/site-packages/samba/netcmd/domain.py, line 179, in run machinepass=machinepass) File /usr/local/samba/lib64/python2.4/site-packages/samba/join.py, line 964, in join_DC ctx.do_join() File /usr/local/samba/lib64/python2.4/site-packages/samba/join.py, line 870, in do_join ctx.join_provision() File /usr/local/samba/lib64/python2.4/site-packages/samba/join.py, line 598, in join_provision dns_backend=NONE) File /usr/local/samba/lib64/python2.4/site-packages/samba/provision/__init__.py, line 1704, in provision sitename=sitename, rootdn=rootdn) File /usr/local/samba/lib64/python2.4/site-packages/samba/provision/__init__.py, line 507, in guess_names if not valid_netbios_name(netbiosname): File /usr/local/samba/lib64/python2.4/site-packages/samba/__init__.py, line 310, in valid_netbios_name return all([is_valid_netbios_char(x) for x in name]) It's on a Centos 5.6 server. I've removed everything from samba3 as told by a post I found with the same error, but still nothing. Any one had already this problem? Where can I get more info on the join failed part to find out what is failing? Regards, Juan Pablo -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] Can't join samba4 as domain controller
Hi, I'm trying to join samba 4 alpha 20 to my windows 2003 AD domain and I get this error: Adding SPNs to CN=SAMBADC1,OU=Domain Controllers,DC=montecarlotv,DC=com,DC=uy Setting account password for SAMBADC1$ Enabling account Calling bare provision Join failed - cleaning up checking sAMAccountName Deleted CN=SAMBADC1,OU=Domain Controllers,DC=montecarlotv,DC=com,DC=uy Deleted CN=NTDS Settings,CN=SAMBADC1,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy Deleted CN=SAMBADC1,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy ERROR(exceptions.NameError): uncaught exception - global name 'all' is not defined File /usr/local/samba/lib64/python2.4/site-packages/samba/netcmd/__init__.py, line 160, in _run return self.run(*args, **kwargs) File /usr/local/samba/lib64/python2.4/site-packages/samba/netcmd/domain.py, line 179, in run machinepass=machinepass) File /usr/local/samba/lib64/python2.4/site-packages/samba/join.py, line 964, in join_DC ctx.do_join() File /usr/local/samba/lib64/python2.4/site-packages/samba/join.py, line 870, in do_join ctx.join_provision() File /usr/local/samba/lib64/python2.4/site-packages/samba/join.py, line 598, in join_provision dns_backend=NONE) File /usr/local/samba/lib64/python2.4/site-packages/samba/provision/__init__.py, line 1704, in provision sitename=sitename, rootdn=rootdn) File /usr/local/samba/lib64/python2.4/site-packages/samba/provision/__init__.py, line 507, in guess_names if not valid_netbios_name(netbiosname): File /usr/local/samba/lib64/python2.4/site-packages/samba/__init__.py, line 310, in valid_netbios_name return all([is_valid_netbios_char(x) for x in name]) It's on a Centos 5.6 server. I've removed everything from samba3 as told by a post I found with the same error, but still nothing. Any one had already this problem? Where can I get more info on the join failed part to find out what is failing? Regards, -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] Samba 4 member of AD, help
Thanks Volker I'll gine that a shot. Regards -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] Samba 4 member of AD, help
Hi, I've posted a couple of times in the list with pour results. Maybe I'm not in the right place. If this is the place then I'm copying the text of my first post: Hi there, I'm a newy at samba 4 and I'm trying to joing a samba 4 alpha 17 box to our domain as a DC so I can drain the domain info and use the linux box to test samba without disturbing the domain itself. The thing is that I get an error when trying to join the server : [root@vpdc samba]# bin/samba-tool domain join montecarlotv.com.uy DC -Uadministrador --realm=montecarlotv.com.uy Finding a writeable DC for domain 'montecarlotv.com.uy' Found DC srv-mm.montecarlotv.com.uy Password for [WORKGROUP\administrador]: workgroup is CANAL4 realm is montecarlotv.com.uy checking samaccountname Adding CN=VPDC,OU=Domain Controllers,DC=montecarlotv,DC=com,DC=uy Adding CN=VPDC,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy Adding CN=NTDS Settings,CN=VPDC,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy DsAddEntry failed with status (5, 'WERR_ACCESS_DENIED') info (8567, 'WERR_DS_INCOMPATIBLE_VERSION') Join failed - cleaning up checking samaccountname Deleted CN=VPDC,OU=Domain Controllers,DC=montecarlotv,DC=com,DC=uy Deleted CN=VPDC,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy ERROR(runtime): uncaught exception - DsAddEntry failed File /usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/__init__.py, line 167, in _run return self.run(*args, **kwargs) File /usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/domain.py, line 162, in run machinepass=machinepass) File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 949, in join_DC ctx.do_join() File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 854, in do_join ctx.join_add_objects() File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 467, in join_add_objects ctx.join_add_ntdsdsa() File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 416, in join_add_ntdsdsa ctx.DsAddEntry([rec]) File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 379, in DsAddEntry raise RuntimeError(DsAddEntry failed) The only thing that calls my atention is that instead of asking for CANAL4\administrador password is asking WORKGROUP\administrador. Any Ideas? Thanks, -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] To Andrew Barlett regarding 'WERR_ACCESS_DENIED'
Dear Andrew, I know you may not have time for this, but I found a list message from you in August ([cifs-protocol] Errors when doing a DsAddEntry ) where you show quite the same error I get when I try to join Samba 4a17 to a W2003 domain. I get to add partialy the server to the domain, but fails with WERR_ACCESS_DENIED at some point. I've searchead the web without finding a solution and posted in the list also with not much help. The output is this: [root@vpdc samba]# bin/samba-tool domain join montecarlotv.com.uy DC -Uadministrador --realm=montecarlotv.com.uy Finding a writeable DC for domain 'montecarlotv.com.uy' Found DC ads1.montecarlotv.com.uy Password for [CANAL4\administrador]: workgroup is CANAL4 realm is montecarlotv.com.uy checking samaccountname Deleted CN=RID Set,CN=VPDC,OU=Domain Controllers,DC=montecarlotv,DC=com,DC=uy Deleted CN=VPDC,OU=Domain Controllers,DC=montecarlotv,DC=com,DC=uy Deleted CN=NTDS Settings,CN=VPDC,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy Deleted CN=VPDC,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy Adding CN=VPDC,OU=Domain Controllers,DC=montecarlotv,DC=com,DC=uy Adding CN=VPDC,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy Adding CN=NTDS Settings,CN=VPDC,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy DsAddEntry failed with status (5, 'WERR_ACCESS_DENIED') info (8567, 'WERR_DS_INCOMPATIBLE_VERSION') Join failed - cleaning up checking samaccountname Deleted CN=VPDC,OU=Domain Controllers,DC=montecarlotv,DC=com,DC=uy Deleted CN=VPDC,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy ERROR(runtime): uncaught exception - DsAddEntry failed File /usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/__init__.py, line 167, in _run return self.run(*args, **kwargs) File /usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/domain.py, line 162, in run machinepass=machinepass) File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 949, in join_DC ctx.do_join() File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 854, in do_join ctx.join_add_objects() File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 467, in join_add_objects ctx.join_add_ntdsdsa() File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 416, in join_add_ntdsdsa ctx.DsAddEntry([rec]) File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 379, in DsAddEntry raise RuntimeError(DsAddEntry failed) If I can find help you with some more data, please, don't hesitate in asking. Regards, -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] Samba4 error joining W2003 DC
Hi, While I wait someone to give me a hand, I've been serching and searching and trying to find a workarround for my problem. I've tryied to vampire from the windows 2003 server and it could get some part of the tree, but bearly 98 records from 533 that I can see with ldapsearch. Also, the servers are not replicating to the samba server and when I do samba-tool drs kcc -Uadministrator windowsdc.samba.example.com (with the proper data) I get # bin/samba-tool drs kcc -Uadministrador montecarlotv.com.uy Password for [CANAL4\administrador]: Failed to bind to uuid e3514235-4b06-11d1-ab04-00c04fc2dcd2 for e3514235-4b06-11d1-ab04-00c04fc2dcd2@ncacn_ip_tcp:montecarlotv.com.uy[1024,seal] NT_STATUS_NET_WRITE_FAULT ERROR(class 'samba.drs_utils.drsException'): DRS connection to montecarlotv.com.uy failed - drsException: DRS connection to montecarlotv.com.uy failed: (-1073741614, 'NT_STATUS_NET_WRITE_FAULT') File /usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/drs.py, line 42, in drsuapi_connect (ctx.drsuapi, ctx.drsuapi_handle, ctx.bind_supported_extensions) = drs_utils.drsuapi_connect(ctx.server, ctx.lp, ctx.creds) File /usr/local/samba/lib64/python2.6/site-packages/samba/drs_utils.py, line 56, in drsuapi_connect raise drsException(DRS connection to %s failed: %s % (server, e)) So, I'm still stucked needing a helping hand Thanks, JPL -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] Samba4 error joining W2003 DC
Hi Felix, Thanks for your post. I have no smb.conf as the compiler don't create one after install, I was just commenting a previous answer to my question. I was looking further at the joining process and I see that the script is trying to create entries in the AD at a strange CN. Maybe it's right, but I don't know how to browse into the AD to check if it's correct that the script tries to create an entrie there. Here is the weird output line: Adding CN=VPDC,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy translated this should be something like: Adding CN=VPDC,CN=Servers,CN=name-default-first-site,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy Maybe the problem is with the script not dealing with the AD in spanish... Regards, -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] Samba4 error joining W2003 DC
Hi Geza Thanks for your help. I've followed the how to from samba wiki and there's no example of the smb.conf in it. Can you help me configure it? I only know about samba 3 and have no idea about samba 4 options. The how to is at https://wiki.samba.org/index.php/Samba4_joining_a_domain Regards, JPL -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] Samba4 error joining W2003 DC
Hi there, I'm a newy at samba 4 and I'm trying to joing a samba 4 alpha 17 box to our domain as a DC so I can drain the domain info and use the linux box to test samba without disturbing the domain itself. The thing is that I get an error when trying to join the server : [root@vpdc samba]# bin/samba-tool domain join montecarlotv.com.uy DC -Uadministrador --realm=montecarlotv.com.uy Finding a writeable DC for domain 'montecarlotv.com.uy' Found DC srv-mm.montecarlotv.com.uy Password for [WORKGROUP\administrador]: workgroup is CANAL4 realm is montecarlotv.com.uy checking samaccountname Adding CN=VPDC,OU=Domain Controllers,DC=montecarlotv,DC=com,DC=uy Adding CN=VPDC,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy Adding CN=NTDS Settings,CN=VPDC,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy DsAddEntry failed with status (5, 'WERR_ACCESS_DENIED') info (8567, 'WERR_DS_INCOMPATIBLE_VERSION') Join failed - cleaning up checking samaccountname Deleted CN=VPDC,OU=Domain Controllers,DC=montecarlotv,DC=com,DC=uy Deleted CN=VPDC,CN=Servers,CN=Nombre-predeterminado-primer-sitio,CN=Sites,CN=Configuration,DC=montecarlotv,DC=com,DC=uy ERROR(runtime): uncaught exception - DsAddEntry failed File /usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/__init__.py, line 167, in _run return self.run(*args, **kwargs) File /usr/local/samba/lib64/python2.6/site-packages/samba/netcmd/domain.py, line 162, in run machinepass=machinepass) File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 949, in join_DC ctx.do_join() File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 854, in do_join ctx.join_add_objects() File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 467, in join_add_objects ctx.join_add_ntdsdsa() File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 416, in join_add_ntdsdsa ctx.DsAddEntry([rec]) File /usr/local/samba/lib64/python2.6/site-packages/samba/join.py, line 379, in DsAddEntry raise RuntimeError(DsAddEntry failed) The only thing that calls my atention is that instead of asking for CANAL4\administrador password is asking WORKGROUP\administrador. Any Ideas? Thanks, -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] FreeIPA + samba 4, any news?
Hi people, I'm trying to move from windows PDC to samba, and I'm waiting a bit until samba 4 gets a little more mature. What I also want to use is FreeIPA as I need an LDAP+Kerberos environment not only for samba but also for the rest of the services. Here is where I quite don't know really what is in samba's developers mind, so I don't know if I can use samba's ldap for multipurpose or need to build an ldap for the other services and then get samba to use it. Any one to spread some light on this? Regards, -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba