[Samba] smbd/session.c:111(session_claim) Re-using invalid record in Samba logs

2011-03-17 Thread David Harrison
Hi, Just recently the logs of a production Samba server are being populated by the following message: smbd/session.c:111(session_claim) Re-using invalid record Does anyone have any tips for fixing this invalid record? (I believe it is related to the utmp = yes option which is set in

Re: [Samba] Printer drivers installation: files are not deleted

2011-03-17 Thread Laurent Blume
Le 15.03.2011 13:09, Thomas Stegbauer a écrit : i cant imagin, where this permission is set. 1. i apply the driver via apw from windows xp32 as root 2. net rpc rights list root Enter root's password: SePrintOperatorPrivilege 3. i can was able to upload the driver for HP Color LaserJet PS but i

[Samba] ldap idmap backend

2011-03-17 Thread Vladimir Vassiliev
Hi all, i use Samba 3.5.6 in ads mode (Windows 2008R2) with ldap idmap backend. Servers run Centos 4 and 5. I can't cope with next issue for long time. On all servers in domain winbind constantly tries to create mapping for SID-513 and fails because of already existing entry. It just wastes

Re: [Samba] ldap idmap backend

2011-03-17 Thread Frank Mori Hess
On Thursday, March 17, 2011, Vladimir Vassiliev wrote: Hi all, i use Samba 3.5.6 in ads mode (Windows 2008R2) with ldap idmap backend. Servers run Centos 4 and 5. I can't cope with next issue for long time. On all servers in domain winbind constantly tries to create mapping for SID-513

Re: [Samba] ldap idmap backend

2011-03-17 Thread Bruce Richardson
On Thu, Mar 17, 2011 at 04:02:29PM +0300, Vladimir Vassiliev wrote: Hi all, i use Samba 3.5.6 in ads mode (Windows 2008R2) with ldap idmap backend. Servers run Centos 4 and 5. I can't cope with next issue for long time. On all servers in domain winbind constantly tries to create

Re: [Samba] ldap idmap backend

2011-03-17 Thread Vladimir Vassiliev
17.03.2011 16:30, Bruce Richardson пишет: DOMAIN-SID-513 is the Domain Users group. Note thatSID is not SID of main domain but another which name equal to hostname. For example on host FMS in domain CORP I have: wbinfo --all-domains BUILTIN FMS CORP Why have you created a local computer

Re: [Samba] ldap idmap backend

2011-03-17 Thread Vladimir Vassiliev
17.03.2011 16:27, Frank Mori Hess пишет: On Thursday, March 17, 2011, Vladimir Vassiliev wrote: Hi all, i use Samba 3.5.6 in ads mode (Windows 2008R2) with ldap idmap backend. Servers run Centos 4 and 5. I can't cope with next issue for long time. On all servers in domain winbind constantly

Re: [Samba] ldap idmap backend

2011-03-17 Thread Bruce Richardson
On Thu, Mar 17, 2011 at 05:06:03PM +0300, Vladimir Vassiliev wrote: Why have you created a local computer domain, out of interest? I didn't do it, Samba did. Really I dunno how to add extra domain to Samba. How can I delete this domain? Something did it. Was this machine a domain controller

Re: [Samba] ldap idmap backend

2011-03-17 Thread Vladimir Vassiliev
17.03.2011 17:12, Bruce Richardson пишет: On Thu, Mar 17, 2011 at 05:06:03PM +0300, Vladimir Vassiliev wrote: Why have you created a local computer domain, out of interest? I didn't do it, Samba did. Really I dunno how to add extra domain to Samba. How can I delete this domain? Something

[Samba] Shared directory contained within another shared directory

2011-03-17 Thread Rod
Hello, I have Samba server running version 3.0.33-3.29.el5_5.1. The Samba server is a member server of a Windows 2003 domain. Winbind provides authentication. We have a physical directory named hr that is shared as hr and is accessible to the HR department. A subdirectory of the hr directory

Re: [Samba] ldap idmap backend

2011-03-17 Thread Frank Mori Hess
On Thursday, March 17, 2011, Vladimir Vassiliev wrote: 17.03.2011 16:27, Frank Mori Hess пишет: I had that problem. In my case, doing an ldapsearch -x sambaSID=SID-513 found two idmap entries (in different ou). After I deleted one of them with ldapdelete, it stopped having that error

Re: [Samba] Shared directory contained within another shared directory

2011-03-17 Thread Santiago DIEZ
I also thought about doing the same thing. I tested it but never actually did it. In my humble opinion, your config (mostly same as mine) would work without a problem. Cheers --- *Santiago DIEZ Directeur **Portable: +33 6 37 90 81 98 Bureau: +33 9 70 44 77 87* *32 boulevard de Strasbourg, 75010

Re: [Samba] Shared directory contained within another shared directory

2011-03-17 Thread Chris Weiss
On Thu, Mar 17, 2011 at 9:25 AM, Rod securitybas...@gmail.com wrote: and the HR department security group (in AD) as the group.  The file system permissions for the hrshared subdirectory are set for domain admin as owner and the security group that has the people that need access to the

Re: [Samba] Shared directory contained within another shared directory

2011-03-17 Thread Daniel Müller
Hello, why subdirectory!? Just make two simple shares for each group. Bind them together with dfs Ex-tree: +human-resources | +--hr | +--hr_readonly [global] Host msdfs=yes [human-resources] path = /shared/depts/dfsroot msdfs root = yes [hr] comment

Re: [Samba] Shared directory contained within another shared directory

2011-03-17 Thread Bruce Richardson
On Thu, Mar 17, 2011 at 09:50:14AM -0500, Chris Weiss wrote: yes, filesystem permissions do override any share level permissions in the conf. you'll need to adjust hrshared permissions as needed. Pedantically, it's not that one overrides the other; the restrictions in the two different

[Samba] XP Clients not closing file

2011-03-17 Thread Stefan Lubitz
Hi all, since a few weeks we have a very strange behavior. It happens from time to time that some XP Clients are not closing the filehandle on the Samba Server. If I want to rename a file or see the permission of it, my XP Client stops responding. After some minutes or sometimes hours, the File

Re: [Samba] Shared directory contained within another shared directory

2011-03-17 Thread Daniel Müller
IN [global] This could be: follow symlinks = yes wide links = yes in the other groups share make: ln –s /shared/depts/hr/hrshared /where/the/link/isset I think the link is then read only or what you set the permission EDV Daniel Müller Leitung EDV Tropenklinik Paul-Lechler-Krankenhaus

[Samba] enable users to delete print jobs withbout being admin

2011-03-17 Thread Thijs Hakkenberg
Dear list, I have an Samba install 3.2.7-11.6-2057-SUSE-CODE11, and I would like my users to enable to cancel print jobs. Is the option printer admin suitable? And still available? Regards, -- To unsubscribe from this list go to the following URL and read the instructions:

Re: [Samba] enable users to delete print jobs withbout being admin

2011-03-17 Thread TAKAHASHI Motonobu
From: Thijs Hakkenberg th...@hakkenberg.com Date: Thu, 17 Mar 2011 17:03:01 +0100 I have an Samba install 3.2.7-11.6-2057-SUSE-CODE11, and I would like my users to enable to cancel print jobs. What printing system do you use? Can admin user (root or users defined at printer admin) cancel

[Samba] Upgrading system on file server

2011-03-17 Thread Bayardo Rivas - Open Soluciones
Hi, I have an old version of Suse runing a Samba. I will upgrade this box from Suse 9.3 - Suse 11.3. I know that there are a lot of risk but my top fear is about Samba. This is a production server and network users authenticate with this server. We do not have roaming profile, but I know

Re: [Samba] Upgrading system on file server

2011-03-17 Thread Gaiseric Vandal
You should build a 2nd box with Suse 11.3- you can configure it as a DC either in same or test domain to make sure it works OK. If you have LDAP as a backend, configure a BDC is possible. Is the purpose of the upgrade to upgrade Suse or to upgrade Samba? if you just want to upgrade samba

Re: [Samba] Shared directory contained within another shared directory

2011-03-17 Thread Rod
Thanks, everyone. I think I'll just move that particular folder and set up the share. On Thu, Mar 17, 2011 at 11:39 AM, Daniel Müller muel...@tropenklinik.de wrote: IN [global] This could be: follow symlinks = yes  wide links = yes in the other groups share make:  ln –s

Re: [Samba] Upgrading system on file server

2011-03-17 Thread Bayardo Rivas - Open Soluciones
I am using LDAP, we still auth with /etc/passwd and /etc/shadow. We need to upgrade Suse, we were upgrading only Samba but now it's a must to upgrade Suse for other reasons. Why do i have to backup private and lock directories?? Bayardo. El 17/03/2011 12:16 p.m., Gaiseric Vandal

Re: [Samba] Upgrading system on file server

2011-03-17 Thread Gaiseric Vandal
The samba private directory may hold saved passwords used by samba to authenticate with LDAP. the lock directory will hold various TBD files. Some of them are caching files. Some of the them may store group map information (that should be in LDAP) or idmap allocations (if winbind allocated

[Samba] Samba 3.4.7 can't retrieve idmap infor from ldap

2011-03-17 Thread Gaiseric Vandal
I am running Samba 3.4.7on Fedora Core 11 Linux. This is a domain member. My PDC is Samba 3.4.9 on Solaris 10. I have LDAP as a backend (Sun/Oracle Directory Server 6.)I have an OU for user accounts, and an OU for idmap entries. The PDC has already populated some idmap entries. An

Re: [Samba] Samba PDC adding new user, profile dir is not created

2011-03-17 Thread J. Echter
Am 16.03.2011 18:00, schrieb TAKAHASHI Motonobu: From: J. Echter j.ech...@elektro-mayer-echter.de Date: Wed, 16 Mar 2011 17:34:35 +0100 You should show us enough information for us to re-produce such as all content of smb.conf and related settings: In my lab, profile dir is successfully

Re: [Samba] Samba PDC adding new user, profile dir is not created

2011-03-17 Thread J. Echter
sorry, forgot to add my smb.conf [global] printing = bsd workgroup = workgroup map to guest = bad user domain logons = yes add user script = /usr/sbin/useradd -m '%u' -g ntusers -G ntusers -s /bin/false delete user script = /usr/sbin/userdel -r '%u' add group script =

Re: [Samba] XP not obeying Samba file perms

2011-03-17 Thread Rob Mason
The files aren't locked as I can modify them Photoshop? It's only the Rotate shell extension that won't work until _after_ Photoshop has opened and re-written the file. However, I do suspect a locking related problem... --- Original Message --- From: John Drescher dresche...@gmail.com

Re: [Samba] Upgraded to 3.5.8 local users unable to log in AD users can

2011-03-17 Thread FORD Alan
Yes to all. Was the same configuration as the previous version of samba which was working fine. Sent from my iPhone On 15/03/2011, at 4:57 PM, Daniel Müller muel...@tropenklinik.de wrote: You system was trying to authenticate with winbind!? Did Winbind run is your smb.conf configuration to

Re: [Samba] Printer drivers installation: files are not deleted

2011-03-17 Thread Thomas Stegbauer
Hi Daniel, thank you for your response. What is the value of the variable $DRIVER? From documentation i read, this the is driver-name (as listed under advanced in the printer-settings on windows) But if the driver does not get copied over? best regards thomas - Ursprüngliche Mail

Re: [Samba] Printer drivers installation: files are not deleted

2011-03-17 Thread Thomas Stegbauer
Hi Laurent, i cant imagine it is a permission problem. The driver upload runs as root and i added root Also i added root with net rpc rights grant cake\domadm SePrintOperatorPrivilege -U cake/root replaced cake with my domain-name. Also i find a driver which i can upload HP Color

[Samba] Samba4 domain trust to windows 2003 domain

2011-03-17 Thread Luca Zanon
Hi, i have installed Samba4 ALPHA 15 on debian/ubuntu how to described in http://wiki.samba.org/index.php/Samba4/HOWTO all ok i created a domain and i have join pc and member server, etc.. etc... Now i want trust my test domain with a existent windows AD domain, is possible? exist an HOWTO that

[Samba] Authoritative DNS Server

2011-03-17 Thread Jason Buller
When I setup Samba4 I already had a master and slave bind9 server so I copied the relevant dns information to my master server however I don't know how to make my existing server authoritative for the zone. It will send notifies to the slave and allow ddns updates but the slave shows this error:

[Samba] BIG Samba howto for debian only.

2011-03-17 Thread Jan Kruis
-- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

[Samba] Printing: Request to make return connection to client optional samba 3.5.x

2011-03-17 Thread Urs Beckmann
Hi We have a network of Samba print-stations. There are complains from users of slow printing, which can be tracked to the return-connection which samba-server makes to print-client for dynamic update of printer-status. Since samba-servers are on different subnets than print-clients, the

Re: [Samba] Shared directory contained within another shared directory

2011-03-17 Thread Santiago Diez
In my case, the idea was that one departement already had a folder that they were used to and that they wanted to share with the rest. So instead of moving all the files, it looked simplier to just take this very folder (it was a little deeper) and share it somewhere else. Santiago On Thu, Mar

Re: [Samba] [Announce] Samba 3.5.7, 3.4.12 and 3.3.15 Security Releases Available

2011-03-17 Thread Eckert, Robert D
Greetings, Can I go directly from 3.4.7 to the new 3.5.8 without installing any intermediate versions? Or is there a different route I should follow? Thank you for your help, -Bob %% Bob Eckert Principal Applications/Systems Analyst Indiana University Information

[Samba] Mac OS X user having problems connecting to samba running on Ubuntu Server

2011-03-17 Thread Amit More
Hello all, I have installed samba version 3.3.2 on Ubuntu 9.04 server 32-bit following the documentation https://help.ubuntu.com/9.10/serverguide/C/samba-fileserver.html Windows and Ubuntu users can see and mount the shares with no problem at all. Mac OS 10.6.x users can connect to samba

Re: [Samba] Samba4 domain trust to windows 2003 domain

2011-03-17 Thread tms3
Hi, i have installed Samba4 ALPHA 15 on debian/ubuntu how to described in http://wiki.samba.org/index.php/Samba4/HOWTO all ok i created a domain and i have join pc and member server, etc.. etc... Now i want trust my test domain with a existent windows AD domain, is possible? exist an HOWTO

[SCM] Samba Shared Repository - branch master updated

2011-03-17 Thread Günther Deschner
The branch, master has been updated via 717beda s4-smbtorture: more torture_fail usage in raw.write test. from 1d516f0 s3-username: rename static getpwnam_alloc to getpwnam_alloc_cached. http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log

[SCM] Samba Shared Repository - branch master updated

2011-03-17 Thread Günther Deschner
The branch, master has been updated via 1413af9 s3-waf: add --with-pam_smbpass configure option. via 7bc381b s3-waf: move HAVE_LDAP_SASL_WRAPPING define to the HAVE_LDAP block. via 4562a79 s3:net Find uid before using it from 717beda s4-smbtorture: more torture_fail

[SCM] Samba Shared Repository - branch v3-5-test updated

2011-03-17 Thread Karolin Seeger
The branch, v3-5-test has been updated via 5d734a3 s3: Fix the talloc hierarchy in shadow_copy2_connectpath from fca681f WHATSNEW: Update release notes for 3.5.8. http://gitweb.samba.org/?p=samba.git;a=shortlog;h=v3-5-test - Log

[SCM] Samba Shared Repository - branch v3-5-test updated

2011-03-17 Thread Karolin Seeger
The branch, v3-5-test has been updated via dd2e6fd s3: Fix bug 8009 - net rap session cannot get username from 5d734a3 s3: Fix the talloc hierarchy in shadow_copy2_connectpath http://gitweb.samba.org/?p=samba.git;a=shortlog;h=v3-5-test - Log

[SCM] Samba Shared Repository - branch v3-5-test updated

2011-03-17 Thread Karolin Seeger
The branch, v3-5-test has been updated via f5eba15 nsswitch: fix a segfault in the krb5 locator plugin from dd2e6fd s3: Fix bug 8009 - net rap session cannot get username http://gitweb.samba.org/?p=samba.git;a=shortlog;h=v3-5-test - Log

[SCM] Samba Shared Repository - branch v3-6-test updated

2011-03-17 Thread Günther Deschner
The branch, v3-6-test has been updated via 6170738 s3-waf: add --with-pam_smbpass configure option. via b24e02d s3-waf: move HAVE_LDAP_SASL_WRAPPING define to the HAVE_LDAP block. via 2aabdf5 s4-smbtorture: more torture_fail usage in raw.write test. from f76be33

[SCM] Samba Shared Repository - branch master updated

2011-03-17 Thread Simo Sorce
The branch, master has been updated via 5d55ae0 lib-util: put data_blob back in the public library from 1413af9 s3-waf: add --with-pam_smbpass configure option. http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log

[SCM] Samba Shared Repository - branch master updated

2011-03-17 Thread Stefan Metzmacher
The branch, master has been updated via ef07830 s3:Makefile.in: make sure we rebuild bin/smbtorture4 if there where changes from 5d55ae0 lib-util: put data_blob back in the public library http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log

[SCM] Samba Shared Repository - branch v3-6-test updated

2011-03-17 Thread Stefan Metzmacher
The branch, v3-6-test has been updated via e87a232 s3:Makefile.in: make sure we rebuild bin/smbtorture4 if there where changes from 6170738 s3-waf: add --with-pam_smbpass configure option. http://gitweb.samba.org/?p=samba.git;a=shortlog;h=v3-6-test - Log

[SCM] Samba Shared Repository - branch v3-6-test updated

2011-03-17 Thread Jeremy Allison
The branch, v3-6-test has been updated via 701d095 Nulling out the op_mid is never the right thing to do. We depend on this value when searching for specific share mode entries. via 4d79ede s3: Fix Coverity ID 1013, CHECKED_RETURN via 8edf480 s3: Fix Coverity ID 1017,

[SCM] Samba Shared Repository - branch master updated

2011-03-17 Thread Jeremy Allison
The branch, master has been updated via fdb98fb Nulling out the op_mid is never the right thing to do. We depend on this value when searching for specific share mode entries. via 3d6a92a Fix compiler warning in debug message. from ef07830 s3:Makefile.in: make sure we

[SCM] Samba Shared Repository - branch master updated

2011-03-17 Thread Volker Lendecke
The branch, master has been updated via 9bc10bd s3: Expose num_opens via api_RNetSessionEnum from fdb98fb Nulling out the op_mid is never the right thing to do. We depend on this value when searching for specific share mode entries.

[SCM] Samba Shared Repository - branch v3-6-test updated

2011-03-17 Thread Volker Lendecke
The branch, v3-6-test has been updated via c302e0e s3: Expose num_opens via api_RNetSessionEnum from 701d095 Nulling out the op_mid is never the right thing to do. We depend on this value when searching for specific share mode entries.

[SCM] Samba Shared Repository - branch v3-6-test updated

2011-03-17 Thread Jeremy Allison
The branch, v3-6-test has been updated via 527fe12 Fix compiler warning in debug message. (cherry picked from commit 3d6a92a37bead8df3c7704a2f33614cac0201748) via 3fc3602 Fix crash bug on smbd shutdown when using FOPENDIR() found by Volker. from c302e0e s3: Expose

[SCM] Samba Shared Repository - branch v3-6-test updated

2011-03-17 Thread Jeremy Allison
The branch, v3-6-test has been updated via 4463303 The searches struct is still being used and idled in SMB2 - move it to the global section until we decide if we want to idle SMB2 directory handles. from 527fe12 Fix compiler warning in debug message. (cherry picked from commit

[SCM] Samba Shared Repository - branch master updated

2011-03-17 Thread Jeremy Allison
The branch, master has been updated via 066fecd The searches struct is still being used and idled in SMB2 - move it to the global section until we decide if we want to idle SMB2 directory handles. via 4c77d62 Fix crash bug on smbd shutdown when using FOPENDIR() found by Volker.

[SCM] Samba Shared Repository - branch master updated

2011-03-17 Thread Günther Deschner
The branch, master has been updated via de5cec4 s4-smbtorture: add netsessiongetinfo() test. via 26ddcd3 s4-smbtorture: add missing error code check in test_netsessionenum(). via 436b497 s4-libcli/rap: add smbcli_rap_netsessiongetinfo(). via f87a072 rap: add

[SCM] Samba Shared Repository - branch master updated

2011-03-17 Thread Andrew Tridgell
The branch, master has been updated via c4cfffa s4-rootdse: improved operations error messages from de5cec4 s4-smbtorture: add netsessiongetinfo() test. http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log