Re: [Samba] PDC broke after upgrade

2011-01-17 Thread Mat Enders
On Mon, Jan 17, 2011 at 5:15 AM, Mat Enders mat.end...@gmail.com wrote: On Mon, Jan 17, 2011 at 2:24 AM, Helmut Hullen hul...@t-online.de wrote: Hallo, Mat, Du meintest am 16.01.11: I upgraded from Debian Lenny (Samba 3.2.5) to Squeeze (Samba 3.5.6) and now my PDC does not work. In

Re: [Samba] Winbind uselessly using up Idmap range in ldap

2011-01-17 Thread Alex Crow
Apologies, typo in the below corrected (was trying to hide the real ldap suffix in my post and failed!): Here is the relevant part of the DMS smb.conf: idmap backend = ldap:ldap://pdc idmap uid = 1-2 idmap gid = 1-2 ldap admin dn = cn=manager,dc=my,dc=net ldap suffix =

[Samba] Winbind uselessly using up Idmap range in ldap

2011-01-17 Thread Alex Crow
Hi, We have just managed to get winbind behaving correctly in a Samba domain with Samba member servers with help from Sernet. It is now not adding spurious entries for the own domain. However, a member server keeps trying to add group mappings that already exist in the LDAP idmap ou. This

Re: [Samba] smbldap-tools and phpldapadmin

2011-01-17 Thread Dimitri Yioulos
On Saturday 15 January 2011 4:26:03 pm William Brown wrote: If I enter the command smbldap-useradd -a -m -M juser -g Domain Users -G Domain Admins -G Administrators -c Joe User juser (beginning and ending parens for clarity), I do indeed create the type of user I'm trying to create.

Re: [Samba] another question about account locking

2011-01-17 Thread Kevin Taylor
I'm not making much progress over here. I agree with the pam_deny item you list below. Putting the pam_deny line in the account settings will definitely prevent me from letting the windows users authenticate. But the issue remains where if the account is locked through the LDAP server,

Re: [Samba] PDC broke after upgrade

2011-01-17 Thread Helmut Hullen
Hallo, Mat, Du meintest am 17.01.11: Samba 3.5.6 uses tdbsam, earlier versions have used smbpasswd; you should look which file (smbpasswd or passdb.tdb) your old version has used. For converting you can use pdbedit. Danke, I will check this I am sure that is the problem as

Re: [Samba] PDC broke after upgrade

2011-01-17 Thread mat . enders
Thanks Helmut I will check the time stamps later. I was using smbpasswd and that is what is called for in my smb.conf file. Sent on the Sprint® Now Network from my BlackBerry® -Original Message- From: Helmut Hullen hul...@t-online.de Sender: samba-boun...@lists.samba.org Date: 17 Jan

[Samba] Yet another question about account locking

2011-01-17 Thread Kevin Taylor
Let me try asking something different. The field 'sambaKickoffTime' in LDAP (if set to a correct time) will prevent a user from logging into a windows system. The time format for 'pwdaccountlockedtime' is acceptable for the sambaKickoffTime field as well. If I modify the samba source,

[Samba] samba shares fail after active directory reboot

2011-01-17 Thread Hong K Phooey
We have a samba server that uses active directory security. We have three active directory servers and use a dfs namespace (test.local) to encompass those three servers. We currently are using password server = TEST.local, but have had all three AD servers listed, but it has not helped.

[Samba] Samba 3.4 / 3.5: Printer settings not available for normal users

2011-01-17 Thread Marc Muehlfeld
Hello, since samba 3.4 we have the problem, that printer options, preconfigured by the admin (number of paper trays, output etc.), are not available for normal users. They only see the default settings. Domain Admins and users with SePrintOperatorPrivilege doesn't have this problem.

[Samba] samba not knowing new users

2011-01-17 Thread Hajo Locke
Hello, sometime i have the problem that samba ist not knowing my new created users. i can see the users in my smb.conf but login fails with: NT_STATUS_NO_SUCH_USER i know samba is reading conf for ervery 60 seconds but also a manual reload is not working. only thing which helps is restart of

Re: [Samba] samba not knowing new users

2011-01-17 Thread Gaiseric Vandal
What do you mean users are in smb.conf? How are you creating the users? Can you see the user or users with pdbedit? On 01/17/2011 11:06 AM, Hajo Locke wrote: Hello, sometime i have the problem that samba ist not knowing my new created users. i can see the users in my smb.conf but

Re: [Samba] Winbind uselessly using up Idmap range in ldap

2011-01-17 Thread Gaiseric Vandal
I started on samba 3.0.x and upgrades to 3.4.x.Still having only partial success myself.I have different ou objects in ldap for the allocation range and each trusted domain . My smb.conf (editted somewhat) is below. I would that the idmapping would be created in the correct OU for

[Samba] Auth on OpenLDAP with idmap without Windows

2011-01-17 Thread Scald Master
Hi, Let me know if this scenario is possible: I want a samba server authenticating on OpenLDAP with IDMAP, without creating any local user on server. My environment is: many linux clients, a OpenLDAP server and some services authenticating against it. We don't use Active Directory nor we have

Re: [Samba] Auth on OpenLDAP with idmap without Windows

2011-01-17 Thread TAKAHASHI Motonobu
2011/1/18 Scald Master scaldmas...@gmail.com: Let me know if this scenario is possible: I want a samba server authenticating on OpenLDAP with IDMAP, without creating any local user on server. (snip) So my question is: It's possible to auth users on a samba server against a OpenLDAP server

Re: [Samba] Samba 3.4 / 3.5: Printer settings not available for normal users

2011-01-17 Thread Jack Downes
Marc Muehlfeld wrote: Hello, since samba 3.4 we have the problem, that printer options, preconfigured by the admin (number of paper trays, output etc.), are not available for normal users. They only see the default settings. Domain Admins and users with SePrintOperatorPrivilege doesn't have

Re: [Samba] samba shares fail after active directory reboot

2011-01-17 Thread Jack Downes
Hong K Phooey wrote: We have a samba server that uses active directory security. We have three active directory servers and use a dfs namespace (test.local) to encompass those three servers. We currently are using password server = TEST.local, but have had all three AD servers listed, but

Re: [Samba] Auth on OpenLDAP with idmap without Windows

2011-01-17 Thread Jack Downes
Filepe, have you considered using FUSE? with it you could use SSH to mount most any directory on the target server, and it's fine to have multiple connections like that. I don't know if your performance would be good or not... But you could then just set up PAM to use the openldap for auth.

Re: [Samba] SAMBA / CUPS Printserver

2011-01-17 Thread Jack Downes
Well, not perfectly. I don't know what this issue is, however the way I configured my Samba server doesn't quite get along with Windows APW for adding printers. I don't know what I've missed but my symptoms are: I step through the APW, Keep the existing driver, no test print page, hit Finish.

Re: [Samba] Samba 3.4 / 3.5: Printer settings not available for normal users

2011-01-17 Thread Marc Muehlfeld
Hello, Jack Downes schrieb: We also have this problem however we take advantage of it. Maybe you can add yourself to the bug report I in my previous post. I think if the developers see, that more people having this problem, the change to get it fixed is bigger. What kind of drivers you're

Re: [Samba] PDC broke after upgrade

2011-01-17 Thread Mat Enders
On Mon, Jan 17, 2011 at 9:05 AM, mat.end...@gmail.com wrote: Thanks Helmut I will check the time stamps later. I was using smbpasswd and that is what is called for in my smb.conf file. Sent on the Sprint® Now Network from my BlackBerry® -Original Message- From: Helmut Hullen

Re: [Samba] Samba 3.4 / 3.5: Printer settings not available for normal users

2011-01-17 Thread Jack Downes
On 01/17/2011 15:45, Marc Muehlfeld wrote: Hello, Jack Downes schrieb: We also have this problem however we take advantage of it. Maybe you can add yourself to the bug report I in my previous post. I think if the developers see, that more people having this problem, the change to get it

[Samba] Question on how to get Samba to use larger pread/write calls.

2011-01-17 Thread Chris Duffy
We are testing Samba 3 (and 4) on Fedora Core 13, 10Gbit connection with a Mac OS 10.6.4 system as the client. We will be adding some Windows machines sooner or later with 10Gbit interfaces. We are seeing 100-150MBytes/sec read or write performance between the Mac and the FC13 system over 10Gbit

Re: [Samba] Question on how to get Samba to use larger pread/write calls.

2011-01-17 Thread Volker Lendecke
On Mon, Jan 17, 2011 at 10:14:04AM -0600, Chris Duffy wrote: We are testing Samba 3 (and 4) on Fedora Core 13, 10Gbit connection with a Mac OS 10.6.4 system as the client. We will be adding some Windows machines sooner or later with 10Gbit interfaces. We are seeing 100-150MBytes/sec read

[SCM] Samba Shared Repository - branch master updated

2011-01-17 Thread Stefan Metzmacher
The branch, master has been updated via 528bced s3:build: don't use librpc/gen_ndr/cli_echo.[ch] anymore via 494e57d s3:torture: use dcerpc_echo_X() functions via 85db5c9 s3:rpcclient: use dcerpc_echo_X() functions from d3abc90 s3: Avoid a few calls to cli_errstr

[SCM] Samba Shared Repository - branch v3-6-test updated

2011-01-17 Thread Volker Lendecke
The branch, v3-6-test has been updated via 7d63763 s3: Avoid a few calls to cli_errstr via 4e21d00 s3: Remove some unused code via 7ce911f s3: Convert cli_lock64 to cli_smb via 9b0054a s3: Convert cli_lock to use cli_locktype via 59c9d39 s3: Convert

[SCM] Samba Shared Repository - branch master updated

2011-01-17 Thread Nadezhda Ivanova
The branch, master has been updated via 3ecce7f s4-tools: Added a --sort-aces option to ldapcmp from 528bced s3:build: don't use librpc/gen_ndr/cli_echo.[ch] anymore http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log

[SCM] Samba Shared Repository - branch master updated

2011-01-17 Thread Volker Lendecke
The branch, master has been updated via 9b94f36 s3: Make sure we call wbcAuthenticateUserEx correctly from 3ecce7f s4-tools: Added a --sort-aces option to ldapcmp http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log

[SCM] Samba Shared Repository - branch v3-6-test updated

2011-01-17 Thread Volker Lendecke
The branch, v3-6-test has been updated via 9d0f33a s3: Make sure we call wbcAuthenticateUserEx correctly from 7d63763 s3: Avoid a few calls to cli_errstr http://gitweb.samba.org/?p=samba.git;a=shortlog;h=v3-6-test - Log

[SCM] Samba Shared Repository - branch master updated

2011-01-17 Thread Andreas Schneider
The branch, master has been updated via 93da0aa s3-rpc_client: Fixed status check of dcerpc_lsa_lookup_sids_noalloc. via 296a958 s3-rpc_client: Fixed return values of dcerpc_lsa_lookup_sids_generic. via ad65605 s3-auth: Fixed account lockout check. from 9b94f36 s3:

[SCM] Samba Shared Repository - branch v3-4-test updated

2011-01-17 Thread Karolin Seeger
The branch, v3-4-test has been updated via a215aad WHATSNEW: Update changes since 3.4.9. from ad45087 Revert s3-printing: update parent smbd pcap cache http://gitweb.samba.org/?p=samba.git;a=shortlog;h=v3-4-test - Log

[SCM] Samba Shared Repository - branch master updated

2011-01-17 Thread Nadezhda Ivanova
The branch, master has been updated via 622ef6a s4-provision: Fixed owner/group for hard-coded Sites descriptor. via 35d8b80 s4-tools: Fixed a bug in ldapcmp - DACL was not retrieved correctly if the object had no SACL. from 93da0aa s3-rpc_client: Fixed status check of

[SCM] Samba Shared Repository - branch v3-6-test updated

2011-01-17 Thread Volker Lendecke
The branch, v3-6-test has been updated via a0f277f s3-rpc_client: Fixed status check of dcerpc_lsa_lookup_sids_noalloc. via 43e8c8e s3-rpc_client: Fixed return values of dcerpc_lsa_lookup_sids_generic. from 9d0f33a s3: Make sure we call wbcAuthenticateUserEx correctly

[SCM] Samba Shared Repository - branch v3-6-test updated

2011-01-17 Thread Andreas Schneider
The branch, v3-6-test has been updated via b561963 s3-auth: Fixed account lockout check. (cherry picked from commit ad6560564350616b2925d097460876bd56555acf) from a0f277f s3-rpc_client: Fixed status check of dcerpc_lsa_lookup_sids_noalloc.

[SCM] Samba Shared Repository - branch master updated

2011-01-17 Thread Kamen Mazdrashki
The branch, master has been updated via 1667ff7 s4-ldb_ldif: Take into account LDB_FLG_SHOW_BINARY via fb0df53 s4-ldb_ldif: Don't check for LDB_FLG_SHOW_BINARY in ldb_should_b64_encode from 622ef6a s4-provision: Fixed owner/group for hard-coded Sites descriptor.

[SCM] CTDB repository - branch 1.2 updated - ctdb-1.9.1-299-g3bdb296

2011-01-17 Thread Ronnie Sahlberg
The branch, 1.2 has been updated via 3bdb29692460693dfd0f5ffeea0a28eb3eb419fb (commit) via 80f0aa9efee9990f4a2c375907548cbd444c7b38 (commit) via f6998e3cba970308e7f418821188469cff57cd80 (commit) via bc395f82117cd8234ea3d0abfb36a83087808129 (commit) via

[SCM] CTDB repository - branch 1.2-nodeflags updated - ctdb-1.9.1-282-gae0825d

2011-01-17 Thread Ronnie Sahlberg
The branch, 1.2-nodeflags has been updated via ae0825d2c3fd6753405295db8ae35bb709995bbc (commit) via 36ff1c83b091a600c18b12401041ceb22518f14d (commit) via 4cf71233d21b02bdc525f5809741bb5a4e9da4e0 (commit) via c4a6c62e10bf649a9888510454bf810827dc2010 (commit)

[SCM] CTDB repository - branch master updated - ctdb-1.10-76-g52ee2b3

2011-01-17 Thread Ronnie Sahlberg
The branch, master has been updated via 52ee2b3ce822344d0f55ac040fe25f6ec5c0d7c2 (commit) via d09fa845bd848d04507853809acf42e0471b44bf (commit) via ac2afe9c25753b837d5f6396020e0f3c65ef3628 (commit) via fd8d54292f10b35bc4960d64cfa6843ce9aba225 (commit) from

[SCM] Samba Shared Repository - branch master updated

2011-01-17 Thread Stefan Metzmacher
The branch, master has been updated via d5173ca pidl:wscript: don't warn about pidl gammar file changes for now from 1667ff7 s4-ldb_ldif: Take into account LDB_FLG_SHOW_BINARY http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log