Re: [Samba] Fwd: About samba 3.0.28 trust AD

2013-07-30 Thread Wong siu yu
Redhat given me the samba-3.6.6 with samba-winbind-3.6.6.
I can setup the trust relationship with my AD.
Thanks for your supporting.


2013/7/29 Nico Kadel-Garcia nka...@gmail.com

 On Sun, Jul 28, 2013 at 5:39 PM, Marc Muehlfeld sa...@marc-muehlfeld.de
 wrote:
  Hello,
 
  Am 06.07.2013 15:26, schrieb Wong siu yu:
 
  I had a RedHat 5.2 need to trust domain the Windows Server 2008 R2
 (forest
  level 2003).
  Which package I need to install first? I am using samba-3.0.28 but I
 have
  no samba-winbind.
  May I know procedures of trust setting in Linux?
 
 
  Please have a look here first:
 
 
 http://wiki.samba.org/index.php/FAQ#How_to_do_or_fix_..._in_an_outdated_Samba_version.3F

 Red Hat 5.2 (which is amazingly old now), or RHEL 5.2 (which is only 5
 years old)? If RHEL 5.2, you should at least remove the samba-*
 packages and replace them with the samba3x-* packages, which include
 samba3x-winbind and are version 3.6.6, instead of the much older
 samba-3.0.33 which is the last update from a licensed RHEL host.

 If your RHEL license has expired, you can also consider using the
 CentOS or Scientific Linux versions of the package. And if you really
 need them, I've been publishing clean tools for building samba-3.6.12
 RPM's at https://github.com/nkadel/samba-3.6.12-srpm.

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


Re: [Samba] Fwd: About samba 3.0.28 trust AD

2013-07-29 Thread Nico Kadel-Garcia
On Mon, Jul 29, 2013 at 2:26 AM, Wong siu yu lmark1834...@gmail.com wrote:
 Redhat given me the samba-3.6.6 with samba-winbind-3.6.6.
 I can setup the trust relationship with my AD.
 Thanks for your supporting.

Good! And seriously consider updating from RHEL 5.2 to RHEL 5.9. There
are inevitable security and performance patches from any OS that was
released 5 years ago, like RHEL 5.2. As long as you haven't building
too much funky software locally, it should be just a yum update,
then a reboot.
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


[Samba] Fwd: About samba 3.0.28 trust AD

2013-07-28 Thread Wong siu yu
Hi,

I had a RedHat 5.2 need to trust domain the Windows Server 2008 R2 (forest
level 2003).
Which package I need to install first? I am using samba-3.0.28 but I have
no samba-winbind.
May I know procedures of trust setting in Linux?

Thanks for your help.

Warm Regards,
MW
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


Re: [Samba] Fwd: About samba 3.0.28 trust AD

2013-07-28 Thread Marc Muehlfeld

Hello,

Am 06.07.2013 15:26, schrieb Wong siu yu:

I had a RedHat 5.2 need to trust domain the Windows Server 2008 R2 (forest
level 2003).
Which package I need to install first? I am using samba-3.0.28 but I have
no samba-winbind.
May I know procedures of trust setting in Linux?


Please have a look here first:

http://wiki.samba.org/index.php/FAQ#How_to_do_or_fix_..._in_an_outdated_Samba_version.3F



Regards,
Marc

--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


Re: [Samba] Fwd: About samba 3.0.28 trust AD

2013-07-28 Thread Nico Kadel-Garcia
On Sun, Jul 28, 2013 at 5:39 PM, Marc Muehlfeld sa...@marc-muehlfeld.de wrote:
 Hello,

 Am 06.07.2013 15:26, schrieb Wong siu yu:

 I had a RedHat 5.2 need to trust domain the Windows Server 2008 R2 (forest
 level 2003).
 Which package I need to install first? I am using samba-3.0.28 but I have
 no samba-winbind.
 May I know procedures of trust setting in Linux?


 Please have a look here first:

 http://wiki.samba.org/index.php/FAQ#How_to_do_or_fix_..._in_an_outdated_Samba_version.3F

Red Hat 5.2 (which is amazingly old now), or RHEL 5.2 (which is only 5
years old)? If RHEL 5.2, you should at least remove the samba-*
packages and replace them with the samba3x-* packages, which include
samba3x-winbind and are version 3.6.6, instead of the much older
samba-3.0.33 which is the last update from a licensed RHEL host.

If your RHEL license has expired, you can also consider using the
CentOS or Scientific Linux versions of the package. And if you really
need them, I've been publishing clean tools for building samba-3.6.12
RPM's at https://github.com/nkadel/samba-3.6.12-srpm.
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


Re: [Samba] Fwd: About samba 3.0.28 trust AD

2013-07-28 Thread Jonathan Buzzard

On 29/07/13 00:48, Nico Kadel-Garcia wrote:

On Sun, Jul 28, 2013 at 5:39 PM, Marc Muehlfeldsa...@marc-muehlfeld.de  wrote:

Hello,

Am 06.07.2013 15:26, schrieb Wong siu yu:


I had a RedHat 5.2 need to trust domain the Windows Server 2008 R2 (forest
level 2003).
Which package I need to install first? I am using samba-3.0.28 but I have
no samba-winbind.
May I know procedures of trust setting in Linux?



Please have a look here first:

http://wiki.samba.org/index.php/FAQ#How_to_do_or_fix_..._in_an_outdated_Samba_version.3F


Red Hat 5.2 (which is amazingly old now), or RHEL 5.2 (which is only 5
years old)? If RHEL 5.2, you should at least remove the samba-*
packages and replace them with the samba3x-* packages, which include
samba3x-winbind and are version 3.6.6, instead of the much older
samba-3.0.33 which is the last update from a licensed RHEL host.



That requires something much more recent than RHEL5.2. As I recall 
samba3x first came with RHEL 5.6



If your RHEL license has expired, you can also consider using the
CentOS or Scientific Linux versions of the package.


He needs to do more than that. The version of RHEL he is running has 
more than one remote root exploit, with Samba being one of them. Just 
replacing the Samba packages with something more recent is insufficient 
to secure that machine. As a matter of some urgency the box should be 
upgraded to latest, and if the RHEL license has expired then switched 
to CentOS/Scientific Linux. Personally my choice is CentOS because a 
range of third part software e.g. all the Dell firmware updates 
recognize CentOS and work where they consider Scientific Linux as 
unsupported without fiddling with things.



JAB.

--
Jonathan A. Buzzard Email: jonathan (at) buzzard.me.uk
Fife, United Kingdom.
--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba