icated keytab file = FILE:/<.>/samba.keytab
>>>>>>> create krb5 conf = no
>>>>>>> security = user
>>>>>>> encrypt passwords = true
>>>>>>> passdb backend = ipasam:ldaps://youripa.test.net
>>>>
>> From: "Matt ." <yamakasi....@gmail.com>
>>> To: Youenn PIOLET <piole...@gmail.com>
>>> Cc: Christopher Lamb/Switzerland/IBM@IBMCH,
>>> "freeipa-users@redhat.com" <freeipa-users@redhat.com>
>>> Dat
@redhat.com
Date: 20.08.2015 08:12
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
HI Guys,
Anyone still a working clue/test here ?
I didn't came further as it seems there need to be some domain join /
match following the freeipa devs.
Thanks!
Matt
2015-08-13 13:09
To: Christopher Lamb/Switzerland/IBM@IBMCH,
freeipa-users@redhat.com freeipa-users@redhat.com
Date: 09.08.2015 21:17
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against
IPA
Hi,
Yes I know about anything but which way did you use now ?
2015-08
: Christopher Lamb/Switzerland/IBM@IBMCH,
freeipa-users@redhat.com freeipa-users@redhat.com
Date: 20.08.2015 08:12
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
HI Guys,
Anyone still a working clue/test here ?
I didn't came further as it seems
. yamakasi@gmail.com
To: Youenn PIOLET piole...@gmail.com
Cc: Christopher Lamb/Switzerland/IBM@IBMCH,
freeipa-users@redhat.com freeipa-users@redhat.com
Date: 20.08.2015 08:12
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
HI Guys,
Anyone still
. yamakasi@gmail.com
To: Christopher Lamb/Switzerland/IBM@IBMCH,
freeipa-users@redhat.com freeipa-users@redhat.com
Date: 10.08.2015 10:03
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi Chris,
Okay this is good to hear.
But don't
/Switzerland/IBM@IBMCH,
freeipa-users@redhat.com freeipa-users@redhat.com
Date: 09.08.2015 21:17
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against
IPA
Hi,
Yes I know about anything but which way did you use now ?
2015-08-09 20:56 GMT+02:00
: 10.08.2015 10:03
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against
IPA
Hi Chris,
Okay this is good to hear.
But don't we want a IPA managed Scheme ?
When I did a ipa-adtrust-install --add-sids it also wanted a local
installed Samba and I wonder why
. yamakasi@gmail.com
To: Christopher Lamb/Switzerland/IBM@IBMCH,
freeipa-users@redhat.com freeipa-users@redhat.com
Date: 10.08.2015 10:03
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi Chris,
Okay this is good to hear.
But don't we want
,
freeipa-users@redhat.com freeipa-users@redhat.com
Date: 09.08.2015 21:17
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi,
Yes I know about anything but which way did you use now ?
2015-08-09 20:56 GMT+02:00 Christopher Lamb
christopher.l...@ch.ibm.com:
Hi Matt
On Fri, Aug 07, 2015 at 11:49:24PM +0200, Matt . wrote:
Hi Alexander,
Yes I'm on the same path, but for now I would like to get it working
on Ubuntu for the time being.
Are you sure Ubuntu is no MIT ? We have discusses that some time ago
on IRC and it seemed to be that Ubuntu was build
Hi,
Yes that is known for SSSD, but there must be another way maybe ?
I wonder what the future is there, as it seems there is non when this
is not changed I guess.
2015-08-09 9:11 GMT+02:00 Jakub Hrozek jhro...@redhat.com:
On Fri, Aug 07, 2015 at 11:49:24PM +0200, Matt . wrote:
Hi
On Sun, Aug 09, 2015 at 10:23:50AM +0200, Matt . wrote:
Hi,
Yes that is known for SSSD, but there must be another way maybe ?
I wonder what the future is there, as it seems there is non when this
is not changed I guess.
The future is MIT according to the recent development and commits to
: 06.08.2015 16:19
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi Chris,
OK, than we might create two different versions of the wiki, I think
this is nice.
I'm still figuring out why I get that:
IPA Error 4205: ObjectclassViolation
missing attribute sambaGroupType
: 09.08.2015 16:45
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi Chris,
This sounds great!
What are you using now, both CentOS ? So Samba and FreeIPA ?
Maybe it's good to explain which way you used now in steps too, so we
can combine or create multiple
From: Alexander Bokovoy aboko...@redhat.com
To: Christopher Lamb/Switzerland/IBM@IBMCH
Cc: Matt . yamakasi@gmail.com, freeipa-users@redhat.com
freeipa-users@redhat.com
Date: 07.08.2015 23:09
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
On Fri, 07 Aug 2015, Matt . wrote:
Hi Alexander,
Yes this is know, but it's not usable yet, at least not on an Ubuntu
Samba server as far as I know ?
If so, maybe you can help us out here to clear this up how to do it.
Sorry, I cannot help you with Ubuntu setup, you need to figure it out
Hi Alexander,
Yes this is know, but it's not usable yet, at least not on an Ubuntu
Samba server as far as I know ?
If so, maybe you can help us out here to clear this up how to do it.
Thanks!
Matt
2015-08-07 23:09 GMT+02:00 Alexander Bokovoy aboko...@redhat.com:
On Thu, 06 Aug 2015,
Hi Alexander,
Yes I'm on the same path, but for now I would like to get it working
on Ubuntu for the time being.
Are you sure Ubuntu is no MIT ? We have discusses that some time ago
on IRC and it seemed to be that Ubuntu was build against MIT.
Cheers,
Matt
2015-08-07 23:37 GMT+02:00 Alexander
@redhat.com
Date: 06.08.2015 14:42
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi,
OK, this sounds already quite logical, but I'm still refering to the
old howto we found earlier, does that one still apply somewhere or not
at all ?
Thanks,
Matt
2015-08-06 12:23 GMT+02
,
freeipa-users@redhat.com freeipa-users@redhat.com
Date: 06.08.2015 14:42
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi,
OK, this sounds already quite logical, but I'm still refering to the
old howto we found earlier, does that one still apply somewhere
On Thu, 06 Aug 2015, Christopher Lamb wrote:
Hi Matt
As far as I can make out, there are at least 2 viable Samba / FreeIPA
integration paths.
The route I took is suited where there is no Active Directory involved: In
my case all the Windows, OSX and Linux clients are islands that sit on the
freeipa-users@redhat.com
Date: 05.08.2015 14:51
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi guys,
Thank you so much your previous answers.
I realised my SID were stored in ipaNTsecurityidentifier, thanks to
ipa-adtrust-install --add-sids
I found
: 05.08.2015 14:51
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi guys,
Thank you so much your previous answers.
I realised my SID were stored in ipaNTsecurityidentifier, thanks to
ipa-adtrust-install --add-sids
I found an other way to configure smb
: Christopher Lamb/Switzerland/IBM@IBMCH
To: Matt . yamakasi@gmail.com
Cc: freeipa-users@redhat.com freeipa-users@redhat.com
Date: 05.08.2015 07:31
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Sent by:freeipa-users-boun...@redhat.com
Hi
: Christopher Lamb/Switzerland/IBM@IBMCH,
freeipa-users@redhat.com freeipa-users@redhat.com
Date: 05.08.2015 14:51
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi guys,
Thank you so much your previous answers.
I realised my SID were stored
@gmail.com
Cc: Christopher Lamb/Switzerland/IBM@IBMCH,
freeipa-users@redhat.com freeipa-users@redhat.com
Date: 05.08.2015 14:51
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi guys,
Thank you so much your previous answers.
I realised my SID were
: 04.08.2015 13:32
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi Chris,
Thanks for the heads up, indeed local is 4 I see now when I add a
group from the GUI, great thanks!
But do you use Directory Manager as ldap admin user or some other
admin account ?
I'm not sure id DM
@redhat.com freeipa-users@redhat.com
Date: 04.08.2015 13:32
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi Chris,
Thanks for the heads up, indeed local is 4 I see now when I add a
group from the GUI, great thanks!
But do you use Directory Manager as ldap admin user
. yamakasi@gmail.com
To: Christopher Lamb/Switzerland/IBM@IBMCH
Cc: freeipa-users@redhat.com freeipa-users@redhat.com
Date: 04.08.2015 15:33
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi Chris,
A puppet run added another passdb backend, that was causing my
01:01
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi Chris,
I'm at the right path, but my issue is that:
ldapmodify -Y GSSAPI EOF
dn: cn=ipaconfig,cn=etc,dc=domain,dc=tld
changetype: add
add: ipaCustomFields
ipaCustomFields: Samba Group Type,sambagrouptype,true
EOF
...@gmail.com, freeipa-users@redhat.com
freeipa-users@redhat.com
Date:05.08.2015 01:01
Subject: Re: [Freeipa-users] Ubuntu Samba Server Auth against
IPA
Hi Chris,
I'm at the right path, but my issue is that:
ldapmodify -Y GSSAPI EOF
dn: cn=ipaconfig,cn=etc
,
freeipa-users@redhat.com freeipa-users@redhat.com
Date: 04.08.2015 18:56
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi there,
I have difficulties to follow you at this point :)
Here is what I've done and what I've understood:
## SMB Side
- Testparm OK
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi Chris,
A puppet run added another passdb backend, that was causing my issue.
What I still experience is:
[2015/08/04 15:29:45.477783, 3]
../source3/auth/check_samsec.c:399(check_sam_security
: 04.08.2015 18:56
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi there,
I have difficulties to follow you at this point :)
Here is what I've done and what I've understood:
## SMB Side
- Testparm OK
- I've got the same NT_STATUS_NO_SUCH_USER when I try to connect.
- pdbedit
To: Christopher Lamb/Switzerland/IBM@IBMCH
Cc: freeipa-users@redhat.com freeipa-users@redhat.com
Date: 04.08.2015 15:33
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Hi Chris,
A puppet run added another passdb backend, that was causing my issue.
What
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Sent by:freeipa-users-boun...@redhat.com
Chris,
Are you doing this on 3.x or also 4.x ?
As the following already exists:
ldapmodify -Y GSSAPI EOF
dn: cn=ipaconfig,cn=etc,dc=domain,dc=tld
changetype: add
add
find any notes from the time we did the
integration.
Chris
From: Matt . yamakasi@gmail.com
To:
Cc: freeipa-users@redhat.com freeipa-users@redhat.com
Date: 02.08.2015 13:33
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Sent by:freeipa-users-boun
=silly,dc=example,dc=com
ldap_add: Already exists (68)
Chris
From: Matt . yamakasi@gmail.com
To:
Cc: freeipa-users@redhat.com freeipa-users@redhat.com
Date: 02.08.2015 13:33
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Sent by:freeipa-users-boun
=com
ldap_add: Already exists (68)
Chris
From: Matt . yamakasi@gmail.com
To:
Cc: freeipa-users@redhat.com freeipa-users@redhat.com
Date: 02.08.2015 13:33
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Sent by:freeipa-users-boun...@redhat.com
/freeipa-users/2014-May/msg00137.html
Chris
From: Matt . yamakasi@gmail.com
To:
Cc: freeipa-users@redhat.com freeipa-users@redhat.com
Date: 03.08.2015 12:45
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Sent by:freeipa-users-boun...@redhat.com
: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Sent by:freeipa-users-boun...@redhat.com
In my previous reply, I ment no group.js at all .
2015-08-03 12:17 GMT+02:00 Matt . yamakasi@gmail.com:
Hi Chris,
Thanks for that verification!
It seems that:
/usr/share/ipa/ui
.
Chris
From: Matt . yamakasi@gmail.com
To:
Cc: freeipa-users@redhat.com freeipa-users@redhat.com
Date: 31.07.2015 16:58
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Sent by:freeipa-users-boun...@redhat.com
Hi,
This is nice to have
-users@redhat.com
Date: 31.07.2015 16:58
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Sent by:freeipa-users-boun...@redhat.com
Hi,
This is nice to have confirmed.
Is it possible for you to descrive what you do ? It might be handy to
add this to the IPA
problems with
the attribute SambaPwdLastSet.
Chris
From: Matt . yamakasi@gmail.com
To:
Cc: freeipa-users@redhat.com freeipa-users@redhat.com
Date: 31.07.2015 16:58
Subject:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Sent by:freeipa-users-boun...@redhat.com
Hi Guys,
I'm really struggeling getting a NON AD Samba server authing against a
FreeIPA server:
Ubuntu 14.04 - Samba (no AD) / SSD 1.12.5
CentOS 7.1 - FreeIPA 4.1
Now this seems to be the way:
https://www.freeipa.org/page/Howto/Integrating_a_Samba_File_Server_With_IPA
But as this, which I
Hi,
I asked the very same question a few weeks ago, but no answer yet.
http://comments.gmane.org/gmane.linux.redhat.freeipa.user/18174
The only method I see is to install samba extensions in FreeIPA's LDAP
directory, and bind samba with LDAP. There may be a lot of difficulties
with password
-users] Ubuntu Samba Server Auth against IPA
Sent by:freeipa-users-boun...@redhat.com
Hi,
I asked the very same question a few weeks ago, but no answer yet.
http://comments.gmane.org/gmane.linux.redhat.freeipa.user/18174
The only method I see is to install samba extensions
Hi Lucas,
Thank you for this reply.
In this case it simply should work as it shoul by creating the
symlinks, Or are there other issues we might get ?
Thanks,
Matt
2015-07-31 17:21 GMT+02:00 Lukas Slebodnik lsleb...@redhat.com:
On (31/07/15 16:03), Matt . wrote:
Hi Guys,
I'm really
:Re: [Freeipa-users] Ubuntu Samba Server Auth against IPA
Sent by:freeipa-users-boun...@redhat.com
Hi,
I asked the very same question a few weeks ago, but no answer yet.
http://comments.gmane.org/gmane.linux.redhat.freeipa.user/18174
The only method I see is to install samba
On (31/07/15 18:15), Matt . wrote:
Hi Lucas,
Thank you for this reply.
In this case it simply should work as it shoul by creating the
symlinks, Or are there other issues we might get ?
1st problem: current samba version of libwbclient need to be moved ot other
place.
2nd problem: manualy
52 matches
Mail list logo