[Samba] samba ldap domain member server with cifs and nfs

2012-02-27 Thread Guilhem Souque
Hi samba lists, we have a samba-ldap domain running on a debian squeeze (samba 3.5.6)server (pdc and bdc). I try to configure a domain member server on an other debian squeeze that will serve as cifs and nfs server. My Debian server member use winbind (on ldap) for mapping the users windows

[Samba] Proposal to change security=share in Samba 4.0

2012-02-27 Thread Andrew Bartlett
I recently proposed on samba-technical that for Samba 4.0, that we change security=share to have the following semantics: - All connections are made as the guest user - No passwords are required, and no other accounts are available. Naturally, full user-name/password authentication remain

[Samba] samba ldap domain member server with cifs and nfs

2012-02-27 Thread Guilhem Souque
Hi samba lists, we have a samba-ldap domain running on a debian squeeze (samba 3.5.6)server (pdc and bdc). I try to configure a domain member server on an other debian squeeze that will serve as cifs and nfs server. My Debian server member use winbind (on ldap) for mapping the users windows

Re: [Samba] samba ldap domain member server with cifs and nfs

2012-02-27 Thread steve
On 27/02/12 12:01, Guilhem Souque wrote: t's seems that in samba 3.0.24 (debian etch) the uid in the idmap OU was the same that those in the USERS OU because i have some entry that are correct and i had domain member server in this samba version. Is there a way to synchronize unix uids with

Re: [Samba] Proposal to change security=share in Samba 4.0

2012-02-27 Thread John H Terpstra
On 02/27/2012 04:58 AM, Andrew Bartlett wrote: I recently proposed on samba-technical that for Samba 4.0, that we change security=share to have the following semantics: - All connections are made as the guest user - No passwords are required, and no other accounts are available.

Re: [Samba] samba 3.5.6 as PDC LDAP - roaming profile problem

2012-02-27 Thread Adam Sienkiewicz
Hi all; I discovered thet from unknow reason %userprofile% varianle on both win xp anf win 7 is empt. But why ??? LDAP ?? Have any seen those kind of issue ? Cheers Adam 2012/2/27 Adam Sienkiewicz adamsienkiewic...@gmail.com Hi; nscd is not installed in my system. I thing mapping of users

[Samba] samba 4 how to enable winbindd

2012-02-27 Thread Alain Toussaint
Hello, I configured a domain controller on a ubuntu server using samba 4 alpha 15 using ubuntu's distribution packages and followed this howto: https://wiki.samba.org/index.php/Samba4/Winbind to have unix account for domain users but winbindd is not running; these two commands from the

Re: [Samba] samba 3.5.6 as PDC LDAP - roaming profile problem

2012-02-27 Thread Adam Sienkiewicz
Hi again Seems to be solved now - I changed Do not check owner of roaming profile in gpedit.msc on win xp and win7 and now is working but loading of roaminf profile in win7 is very slow. I will try to do some tuning this. Anyway thanks for help for all !!! 2012/2/27 Adam Sienkiewicz

Re: [Samba] samba ldap domain member server with cifs and nfs

2012-02-27 Thread TAKAHASHI Motonobu
From: Guilhem Souque gsou...@artprice.com Date: Mon, 27 Feb 2012 12:01:50 +0100 I try to configure a domain member server on an other debian squeeze that will serve as cifs and nfs server. (snip) The unix uids provided by winbind are not the same than those used by the system

Re: [Samba] Unix users/groups and the Windows ACL editor

2012-02-27 Thread TAKAHASHI Motonobu
From: Victor Sudakov v...@mpeks.tomsk.su Date: Sun, 26 Feb 2012 23:23:04 +0700 TAKAHASHI Motonobu wrote: There is a samba compiled --without-winbind --with-acl-support; the Windows GUI ACL editor Security tab shows multiple users and groups as Unix User\joe and Unix

Re: [Samba] Error accessing others domains in forest

2012-02-27 Thread NdK
Il 23/02/2012 15:36, NdK ha scritto: Hi all. Noone have an idea? I'm still banging my head against the wall (and some cracks in the concrete are becoming quite large...). After last update (from winbind-3.5.3 and krb5-1.8.1 to winbind-3.5.10 and krb5-1.9.1) users from a trusted domain can't

[Samba] Limit of mapped users

2012-02-27 Thread Helmut Schneider
Hi, I have a list of 57 Active Dicretory users mapped to a single local samba user (username map). The 58th is unable to access the samba share. I can shuffle the users at will, #58 loses. Any ideas? Usernames are between 7 and 8 characters long. 3.4.2-1.1.3.1-2229-SUSE-SL11.2 Thanks, Helmut

Re: [Samba] STATUS_ACCESS_DENIED with NTCreateAndX if Access Mask has System Security bit set

2012-02-27 Thread Jeremy Allison
On Fri, Feb 24, 2012 at 09:00:36AM -0700, Tom Lee wrote: I've been trying to run a .NET app on Windows 2008 against a Samba v3.6.1 server running on OpenSuse x64 v12.1 but keep running into problems. What the .NET app is doing is trying to read the ACL for a directory using UNC path pointing

Re: [Samba] Proposal to change security=share in Samba 4.0

2012-02-27 Thread Jeremy Allison
On Mon, Feb 27, 2012 at 09:58:44PM +1100, Andrew Bartlett wrote: I recently proposed on samba-technical that for Samba 4.0, that we change security=share to have the following semantics: - All connections are made as the guest user - No passwords are required, and no other accounts are

[Samba] Fwd: STATUS_ACCESS_DENIED with NTCreateAndX if Access Mask has System Security bit set

2012-02-27 Thread Tom Lee
-- Forwarded message -- From: Tom Lee tlee2...@gmail.com Date: Mon, Feb 27, 2012 at 3:10 PM Subject: Re: [Samba] STATUS_ACCESS_DENIED with NTCreateAndX if Access Mask has System Security bit set To: Jeremy Allison j...@samba.org Jeremy thanks for your response. I didn't actually

Re: [Samba] Proposal to change security=share in Samba 4.0

2012-02-27 Thread Stefan (metze) Metzmacher
Am 27.02.2012 13:39, schrieb John H Terpstra: On 02/27/2012 04:58 AM, Andrew Bartlett wrote: I recently proposed on samba-technical that for Samba 4.0, that we change security=share to have the following semantics: - All connections are made as the guest user - No passwords are required,

Re: [Samba] Proposal to change security=share in Samba 4.0

2012-02-27 Thread Andrew Bartlett
On Mon, 2012-02-27 at 06:39 -0600, John H Terpstra wrote: On 02/27/2012 04:58 AM, Andrew Bartlett wrote: I recently proposed on samba-technical that for Samba 4.0, that we change security=share to have the following semantics: - All connections are made as the guest user - No

Re: [Samba] Proposal to change security=share in Samba 4.0

2012-02-27 Thread Andrew Bartlett
On Mon, 2012-02-27 at 17:53 -0500, David Collier-Brown wrote: Am I correct in thinking this would make all shares have the same password as the guest user, or do you mean there really is no password at all, or alternatively that one would specify the share, provide it's password and be logged

Re: [Samba] Proposal to change security=share in Samba 4.0

2012-02-27 Thread simo
On Tue, 2012-02-28 at 10:16 +1100, Andrew Bartlett wrote: On Mon, 2012-02-27 at 17:53 -0500, David Collier-Brown wrote: Am I correct in thinking this would make all shares have the same password as the guest user, or do you mean there really is no password at all, or alternatively that

Re: [Samba] Fwd: STATUS_ACCESS_DENIED with NTCreateAndX if Access Mask has System Security bit set

2012-02-27 Thread Jeremy Allison
On Mon, Feb 27, 2012 at 03:12:49PM -0700, Tom Lee wrote: -- Forwarded message -- From: Tom Lee tlee2...@gmail.com Date: Mon, Feb 27, 2012 at 3:10 PM Subject: Re: [Samba] STATUS_ACCESS_DENIED with NTCreateAndX if Access Mask has System Security bit set To: Jeremy Allison

Re: [Samba] Fwd: STATUS_ACCESS_DENIED with NTCreateAndX if Access Mask has System Security bit set

2012-02-27 Thread Tom Lee
I'll see if I can pull down the sources and build with the added code and test. Thanks Jeremy. On Mon, Feb 27, 2012 at 5:55 PM, Jeremy Allison j...@samba.org wrote: On Mon, Feb 27, 2012 at 03:12:49PM -0700, Tom Lee wrote: -- Forwarded message -- From: Tom Lee

[Samba] Coredump when trying to mount share on Linux

2012-02-27 Thread Dylan Semler
Hello, I'm looking for help troubleshooting my samba setup. I've tried to make it as basic as possible but I cannot get a working setup. I have a Linux machine (Fedora 16) and am attempting to mount a share on the same machine that it's hosted: mount -t cifs -o username=Sam,password=[redacted]

Re: [Samba] Proposal to change security=share in Samba 4.0

2012-02-27 Thread Andrew Bartlett
On Mon, 2012-02-27 at 19:45 -0500, simo wrote: On Tue, 2012-02-28 at 10:16 +1100, Andrew Bartlett wrote: On Mon, 2012-02-27 at 17:53 -0500, David Collier-Brown wrote: Am I correct in thinking this would make all shares have the same password as the guest user, or do you mean there

Re: [Samba] Unix users/groups and the Windows ACL editor

2012-02-27 Thread Victor Sudakov
TAKAHASHI Motonobu wrote: [dd] And if you see an user as Unix User\foo, the user is not mapped to a Samba user. If an user is mapped to a Samba user, then you see the user as COMPUTERNAME\foo in your Security tab. All my domain users are mapped to Unix users by samba, e.g. a

Re: [Samba] Proposal to change security=share in Samba 4.0

2012-02-27 Thread simo
On Tue, 2012-02-28 at 12:19 +1100, Andrew Bartlett wrote: On Mon, 2012-02-27 at 19:45 -0500, simo wrote: On Tue, 2012-02-28 at 10:16 +1100, Andrew Bartlett wrote: On Mon, 2012-02-27 at 17:53 -0500, David Collier-Brown wrote: Am I correct in thinking this would make all shares have

[Samba] windows and nfs4 acls

2012-02-27 Thread steve
Hi everyone We're really struggling with nfs4 -- windows acls. Scenario Samba4 share -- cifs -- win7. No problem Samba4 share -- nfs4 -- Linux. acls not inherited Neither is there inheritance vica versa. e.g. It is not possible to create files with group rw on a umask 0022 nfs4 share.

[SCM] Samba Shared Repository - branch master updated

2012-02-27 Thread Andrew Bartlett
The branch, master has been updated via b6fcac6 s3-selftest: avoid running LOCAL- tests twice via c318c94 s3-param: Align lp_{max,min}protocol with lib/param names via d21f778 torture: don't check the NOINDEXED bit in attribute comparison via 3b3066f selftest:

[SCM] Samba Shared Repository - branch master updated

2012-02-27 Thread Andrew Bartlett
The branch, master has been updated via 8a0e420 dbwrap: changed log level for information about lock order via dc677b3 selftest: up the default log level in s3 from b6fcac6 s3-selftest: avoid running LOCAL- tests twice

[SCM] Samba Shared Repository - branch master updated

2012-02-27 Thread Stefan Metzmacher
The branch, master has been updated via 615c41c libcli/smb/smb2_signing: pass down 'protocol' to smb2_signing_[sign|check]_pdu() via 7309e11 libcli/smb/smb2_signing: rename session_key to signing_key via 910251e libcli/smb/smbXcli: remove unused if statement from

[SCM] Samba Shared Repository - branch master updated

2012-02-27 Thread Stefan Metzmacher
The branch, master has been updated via b8407c2 s3:torture/test_smb2: show that a session is not valid for path based calls during reauth via f8cd6e8 s3:torture/test_smb2: show that a session is valid during a multi-leg reauth via 1444d49 s3:torture/test_smb2: fix

[SCM] CTDB repository - branch 1.2.39 updated - ctdb-1.9.1-498-g6f6dac2

2012-02-27 Thread Ronnie Sahlberg
The branch, 1.2.39 has been updated via 6f6dac21f93c38c3abcbebc1b786b4da2ef9f563 (commit) via e86e0e8547593eb8ea2d5c65892de81eac694783 (commit) via abd73b5494906c915c3379852524495957a1bf50 (commit) from 1260c1b9f301dccd497be8b818be5463858f0603 (commit)

[SCM] CTDB repository - branch 1.2.40 updated - ctdb-1.9.1-541-ga02fa85

2012-02-27 Thread Ronnie Sahlberg
The branch, 1.2.40 has been updated via a02fa85678cc5061042ab6d448b8a3f5993f2d70 (commit) via 710b0c7b949cc4f93f64c3a02c24fbda1f71 (commit) from 7bbd5f6c68f0a816249eddbbc64f34bd929c43d3 (commit) http://gitweb.samba.org/?p=ctdb.git;a=shortlog;h=1.2.40 - Log

[SCM] Samba Shared Repository - branch master updated

2012-02-27 Thread Jeremy Allison
The branch, master has been updated via 5ebbd46 s3-winbindd: Close netlogon connection if the status returned by the NetrSamLogonEx call is timeout in the pam_auth_crap path from b8407c2 s3:torture/test_smb2: show that a session is not valid for path based calls during reauth

[SCM] Samba Shared Repository - branch master updated

2012-02-27 Thread Michael Adam
The branch, master has been updated via 62d8d03 s4:selftest: skip smb2.session testsuite via a87e3ec s4:selftest: remove old samba4.smb2.persistent.handle1 from knownfail - test does not exist via 60a4095 s4:torture:smb2: add new session testsuite starting with a

[SCM] CTDB repository - branch master updated - ctdb-1.12-222-g49791db

2012-02-27 Thread Ronnie Sahlberg
The branch, master has been updated via 49791db7dc74cffd7e88bd73091590cdc1909328 (commit) via 4340263b219d75c39f8de22abe3f6f1c1ee63ea2 (commit) from 02b62482164a3c69715949074feb7f191a29d534 (commit) http://gitweb.samba.org/?p=ctdb.git;a=shortlog;h=master - Log

[SCM] Samba Shared Repository - branch master updated

2012-02-27 Thread Michael Adam
The branch, master has been updated via d92b955 s4:torture:smb2:durable-open: fix a silly access-after-free panic from 43dd033 s3:torture/test_smb2: test a tree_connect during reauth http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log