Re: [Samba] Organization of Users in Samba4

2013-01-23 Thread Matthieu Patou
On 01/23/2013 03:20 PM, Andrew Martin wrote: Hello, I am working on migrating from OpenLDAP using the inetOrgPerson schema to Samba4. I would like to continue to provide backwards compatibility with our existing authentication service. In OpenLDAP, users are all contained inside the People or

Re: [Samba] Organization of Users in Samba4

2013-01-23 Thread Christian Hailer
Hi Andrew, you can create the user in another OU if you want: samba-tool user add User3 passw3rd --userou=OrgUnit --userou=USEROU Alternative location (without domainDN counterpart) to default CN=Users in which new user object will be creat

Re: [Samba] Samba4 Classicupgrade Failed

2013-01-23 Thread Mario Codeniera
Hi, I used to solved this problem, hope that it will helps for others who will encountered the same issue which took me days to figure it out. As you can see the logs it is using python 2.4 (see for example File "/usr/local/samba/lib/*python2.4/*site-packages/samba/netcmd/__init__.py", line 142, i

[Samba] Ubuntu compile/install location

2013-01-23 Thread Gregory Sloop
Ok, while I'm usually more comfortable installing an RPM or DEB package and having the package maintainer handle all the details for me - I don't get a choice here. The latest Ubuntu 12.04 package is the Alpha18 release. So, I've compiled my own copy of Samba4.01 - and surprise, surprise, it wen

Re: [Samba] [Samba 4] Issues with uidNumber and gidNumber in AD for Linux clients

2013-01-23 Thread Andrew Bartlett
On Wed, 2013-01-23 at 18:29 +0100, Fred F wrote: > 2013/1/22 Gémes Géza : > > I don't agree, because users can be members of multiple groups, not just the > > group identified as their primary group > Well, yes. That is not the point. Users can still be members of > multiple groups (e.g. CN=Domain

Re: [Samba] MS AD Tools

2013-01-23 Thread Andrew Bartlett
On Wed, 2013-01-23 at 18:18 -0600, Michael Ray wrote: > Hello all, > > I'm in the process of trying to get Samba4 up and running as AD for my > company. It's been a bumpy, but productive road. However, one thing > that I'd like clarification on before we go live (which hopefully > isn't too far o

[Samba] MS AD Tools

2013-01-23 Thread Michael Ray
Hello all, I'm in the process of trying to get Samba4 up and running as AD for my company. It's been a bumpy, but productive road. However, one thing that I'd like clarification on before we go live (which hopefully isn't too far out), is the use of MS Administrative Tools. The wiki mentione

[Samba] Organization of Users in Samba4

2013-01-23 Thread Andrew Martin
Hello, I am working on migrating from OpenLDAP using the inetOrgPerson schema to Samba4. I would like to continue to provide backwards compatibility with our existing authentication service. In OpenLDAP, users are all contained inside the People organizational unit and referenced by uid, for ex

Re: [Samba] problem joining AD domain

2013-01-23 Thread Nico Kadel-Garcia
On Wed, Jan 23, 2013 at 7:13 AM, Paolo Supino wrote: > Hi Nico > > It's not up to me to decide (and implement) the OS updates :-( and > thus cannot do anything about the status of security of the systems. > Though I completely agree with you :-) > > Now to the Samba ADS integraztion problem. I onl

Re: [Samba] Logging denied connections from outside LAN

2013-01-23 Thread Gregory Carter
On 01/23/2013 02:09 PM, Jeff Boyce wrote: Greetings - I have an interesting issue that I am trying to understand. This may not be a direct Samba related issue, but the results of the issue are showing up in the Samba log, so I thought I would start here. Please direct me elsewhere if there

[Samba] Remove samba4 server from Domain

2013-01-23 Thread Caleb O'Connell
I initially setup a samba4 domain with three servers. The first server I setup was of course the SOA server for the DNS. I need to now remove this server from the group and pass along it's roles to another server. I updated the operations master to the new server but aside from that I Cannot

[Samba] Logging denied connections from outside LAN

2013-01-23 Thread Jeff Boyce
Greetings - I have an interesting issue that I am trying to understand. This may not be a direct Samba related issue, but the results of the issue are showing up in the Samba log, so I thought I would start here. Please direct me elsewhere if there is a better forum for this question. I hav

Re: [Samba] [Samba 4] Issues with uidNumber and gidNumber in AD for Linux clients

2013-01-23 Thread Fred F
2013/1/22 Gémes Géza : > I don't agree, because users can be members of multiple groups, not just the > group identified as their primary group Well, yes. That is not the point. Users can still be members of multiple groups (e.g. CN=Domain Admins,CN=Users,CN=DOMAIN), through the "member" attributes

[Samba] Strange winbindd messages

2013-01-23 Thread John Center
Hi, We are running samba v3.6.3 on Ubuntu 12.04 server. This is being used with FreeRADIUS for wireless authentication with AD. We just logged a set of messages from winbindd that I don't understand: Jan 23 10:35:28 as3 winbindd[25371]: [2013/01/23 10:35:28.056846, 0] rpc_client/cli_netlo

[Samba] Samba4: internal DNS orphaned dnsNode objects with no dnsRecord

2013-01-23 Thread Dominic Evans
I was having some problems with certain entries in my internal DNS server refusing to be updated via nsupdate. The updates would always be rejected. After investigating further I noticed that this seemed to correspond with dnsNode entries in the sam.ldb that didn't actually contain a dnsRecord attr

[Samba] windows ADS and inter domain trusts

2013-01-23 Thread paul harford
Hi Guys i was wondering could someone clarify whats needed with SAMBA and Windows ad I have setup a samba on rhel6 its not a pdc, it will have to share with an app on the samba server that users will access but the users authenticate through Windows AD when i do net ads join all goes ok if i do

Re: [Samba] problem joining AD domain

2013-01-23 Thread Paolo Supino
Hi Nico It's not up to me to decide (and implement) the OS updates :-( and thus cannot do anything about the status of security of the systems. Though I completely agree with you :-) Now to the Samba ADS integraztion problem. I only need to execute the net ads command, I need the windows domain m

Re: [Samba] How to debug SID problems

2013-01-23 Thread Knut Olav Bøhmer
2013/1/21 TAKAHASHI Motonobu : > From: Knut Olav Bøhmer > Date: Sun, 20 Jan 2013 15:03:25 +0100 > >>> - On Windows side >>> whoami /user (an user's) >> >> I could not find the command whoami. Where should it be located? >> I also installed powershell to see if it was required, but there was >> n

Re: [Samba] How to set ACLs with Samba4 AD?

2013-01-23 Thread Adam Sienkiewicz
Hi all; I posted similar question few weeks ago but nobody answer yet. It seems that everyone set perm from windows side. But I need to know how to do that from linux side - Could someone explain how to do that via command line in linux? Thanks in advance !!! 2013/1/21 Lukas Gradl > > Zitat von