Hi
Is there anything special about accounts ending in $?
I ask because I've just installed the whole of Samba 3.6 just to get the
net command to join a Linux box to a Samba 4 domain. Afterwards, the
machine will be using Samba 4 for authentication and filesharing with
win 7 clients. net ads
only ou=users, need i a second one for hosts? can i do this belated?
yes to (1) and I think yes to (2)...
--
To unsubscribe from this list go to the following URL and read the
instructions: https://lists.samba.org/mailman/options/samba
is nss_ldap configured to search for posix accounts in ou=hosts?
Sven Buchstaller wrote:
Hi list
samba3-3.0.31-36
openldap2-2.3.43-1.1
my problem is i have stop my working openldap and restart it again, in
the Log i see now = pdb_get_group_sid: Failed to find Unix account
for ... a lot of
Hi list
samba3-3.0.31-36
openldap2-2.3.43-1.1
my problem is i have stop my working openldap and restart it again, in
the Log i see now = pdb_get_group_sid: Failed to find Unix account
for ... a lot of machine accounts.
Whats wrong? i must now all accounts rejoin to domain?
example from a host
/etc/ldap.conf
are you including a line like
nss_base_passwd ou=hosts,dc=server,dc=intern?one
/etc/nsswitch.conf
does it include the following?
passwd: files ldap
shadow: files ldap
group: files ldap
This is how machine accounts in ldap become 'unix accounts' or that's
An: Sven Buchstaller a...@quickline.de
Kopie: samba@lists.samba.org
Betreff: Re: [Samba] samba machine accounts problem
Datum: Wed, 15 Apr 2009 06:13:21 -0700
/etc/ldap.conf
are you including a line like
nss_base_passwd ou=hosts,dc=server,dc=intern?one
/etc/nsswitch.conf
does it include
Hi,
It's the acl's in ldap again!
I've adjusted the acl's to allow the machine accounts to be visible on the DMS.
pdbedit -L shows the correct (and unique) uid's for both users and machine
accounts now.
Thanks Tom! ;-)
I'm still having trouble connecting though if anyone has any ideas? The
Hi,
Well I partially fixed the problem myself but I'm still having trouble
connecting.
On the PDC I had to adjust the LDAP acl's to allow the DMS read access to the
ldap databases.
On the DMS I used system-config-authentication to adjust /etc/nsswitch.conf, the
pam settings and
Hi,
I've a problem with samba and ldap but it's the first time that samba
works so bad.
I made a network with samba and a few of windows client. Since four
months (the networks was made on january) and every 10/12 days the
workstations go out from the domain.
The user can't log, and when i try
Greetings.
I was wondering if anyone else was experienceing this problem. If so, how to
remedy it.
We're using SaMBa 2.2.7 (I know it's EOL, but it's the only one available from
the IBM AIX Toolbox download site). After some length of time (seems to be
weeks or months), the machine
I 'm trying to figure out why my samba box can 't get any information about
trusted w2k ad domains. The linux samba server is a domain member of a w2k
domain. Everything is fine with this domain, but I can 't get sequence
numbers, nor users, nor groups from others domains in the active directory.
Hello list,
I'm running into a strange problem: about a month ago I migrated my
Samba password backend from tdb to LDAP. The whole process was very
comfortable and everything went smoothly.
But now it happens every now and then that one of the PCs complains
about not being able to find the
Hi all
How can I prevent my Samba PDC from setting the D flag (Disabled) in
SambaAcctFlags of all machine accounts created on the fly?
smbldap-useradd -w from Idealx which is called by the add machine script
directive doesn't do that, so i must be Samba...
I use Samba 3.0.7, Debian Sarge,
Last night, I upgraded from 3.0.7 to 3.0.8. This morning, I got the call that
most (not all) of the machine couldn't logon to the domain. This was in the logs
for those workstations that couldn't login:
[2004/11/12 07:04:02, 0, pid=3088, effective(65534, 65534), real(65534, 0)]
Hi all,
I'm wondering what about machine accounts (WinXP) by migrating from
Samba 2.2.8 with authentication backend /etc/smbpasswd to Samba 3.0.4
with ldapsam.
Is it possible just to take NT hash from smbpasswd and paste it to
ldap record as sambaNTPassword?
I'm not able to login from
Problem: Cannot get Windows XP client to logon onto domain when
using on the fly machine provisioning
Version:SAMBA version 3.0.3-5
OS: Fedora 2 (and other Redhat flavours)
Workaround: Change the name of your workstation to ALL BE lower case
Notes:
Hi,
Trying to run Samba3 and OpenLDAP.. and have a problem with adding computers
to domain
while checking logs i found that samba is doing such search :
smbldap_search: base = [dc=forbis,dc=lt], filter =
[((uid=test$)(objectclas
s=sambaSamAccount))], scope = [2]
[2004/04/26 09:45:46, 4]
]
|
|cc :
|
|Objet : [Samba] Machine Accounts in Samba3 and OpenLDAP
On Sat, 2004-03-27 at 17:42, Beast wrote:
* Andrew Bartlett [EMAIL PROTECTED] menulis:
'net rpc samdump' should do what you need
Wew, it can dump all sam without asking for admin password ;-)
Only because it already has a BDC account.
However, it always gives segmentation fault
* Andrew Bartlett [EMAIL PROTECTED] menulis:
Well, congratulations.
most likely you need to rejoin all of your clients before running
rpc vampire.
After this step is complete, you can then login from client to
samba domain without rejoining again.
You should *never* have to
On Sat, 2004-03-27 at 00:36, Beast wrote:
* Andrew Bartlett [EMAIL PROTECTED] menulis:
Well, congratulations.
most likely you need to rejoin all of your clients before running
rpc vampire.
After this step is complete, you can then login from client to
samba domain without
* Andrew Bartlett [EMAIL PROTECTED] menulis:
1. Machine has valid passwords (NT+LANMAN) in PWDUMP but only 1
NThash on rpc-Vampire, passwd is different.
2. Valid PWD, only NThash on VMP, but NTHASH in VMP is *same* as
LANMANHASH in PWD.
3. No valid hash in PWD (only ), but has valid
On Sat, 2004-03-27 at 13:12, Beast wrote:
* Andrew Bartlett [EMAIL PROTECTED] menulis:
1. Machine has valid passwords (NT+LANMAN) in PWDUMP but only 1
NThash on rpc-Vampire, passwd is different.
2. Valid PWD, only NThash on VMP, but NTHASH in VMP is *same* as
LANMANHASH in PWD.
* Andrew Bartlett [EMAIL PROTECTED] menulis:
1. In which tools we trust the output? pwdump or rpc vampire? why
the output is different?
Well, I understand how 'net rpc vampire' functions, and as it makes
*exactly* the same calls that an NT BDC makes, I consider it to be
the'correct'
On Sat, 2004-03-27 at 15:55, Beast wrote:
* Andrew Bartlett [EMAIL PROTECTED] menulis:
1. In which tools we trust the output? pwdump or rpc vampire? why
the output is different?
Well, I understand how 'net rpc vampire' functions, and as it makes
*exactly* the same calls that an NT
* Andrew Bartlett [EMAIL PROTECTED] menulis:
'net rpc samdump' should do what you need
Wew, it can dump all sam without asking for admin password ;-)
However, it always gives segmentation fault error after retrieveing
groups. Nevermind, it already get all acounts anyway...
I'll try it on
Greetings everyone
I finally succeeded in doing the seemingly most difficult thing, following
directions. I got my act together configuring the smb.conf and migrating using net
rpc vampire into tdbsam. There are issues with this migration in which computer
netbios names which are obviously all
* M Saqib Ilyas [EMAIL PROTECTED] nulis:
Greetings everyone
I finally succeeded in doing the seemingly most difficult thing, following
directions. I got my act together configuring the smb.conf and migrating using net
rpc vampire into tdbsam. There are issues with this migration in which
On Sat, 2004-03-20 at 20:02, Beast wrote:
* M Saqib Ilyas [EMAIL PROTECTED] nulis:
Greetings everyone
I finally succeeded in doing the seemingly most difficult thing, following
directions. I got my act together configuring the smb.conf and migrating using
net rpc vampire into tdbsam.
Using Samba 3.0.1 as PDC with LDAP backend under SuSE 8.2.
When I try to add a machine account at my windows NT workstation using
user 'root' and password, - which I have added to ldap using:
smbldap-useradd.pl -a root -u 0
I get message on NT 'The machine account for this computer either does not
I'm running Linux from my home. I've been running Samba 2.27a for a while
now. I've just recently upgraded my system to Fedora Core 1. With that,
sAmba has been upgraded to 3.0015.
I've included my smb.conf file. I can't seem to create a machine account.
I get unknown user or password. I do have
are you saying you can't do smbpasswd -a -m user or that you can't add
windows 2000/xp to a domain?
Roberto Mason wrote:
I'm running Linux from my home. I've been running Samba 2.27a for a while
now. I've just recently upgraded my system to Fedora Core 1. With that,
sAmba has been upgraded to
I'm not using smbpasswd -a... , but trying through xp to add the machine
to the domain. When in Computer Name Changes window I specify the domain
MEPHISTOPHELES, and then I'm prompted for the administrator
username/password MEPHISTOPHELES\root and passwd I get the unkown
username/password
Hi,
I get this error when I'm trying to create a machine acount with
pdbedit:
# pdbedit -a -m -u machine
ldapsam_modify_entry: Failed to add user dn=
uid=machine$,ou=Computers,dc=mydomain,dc=org with: Object class
violation
object class 'sambaSamAccount' requires attribute
Yay, I finally got my samba 3 PDC working!
Following a variety of indirect hints I used the root account to join,
rather than trying to mess around with various groups and group
mappings. I had done this before, with no good effect, but checked more
carefully this time and found that it was my
Hi, I'm trying to configure a Samba 3.0 as a PDC. I've problems with
users on Win2k, probably because of machine accounts. I'm using tdbsam
(when it works, I'll try ldapsam). I can add users with
pdbedit -a, if users are in /etc/passwd. If an user is not in /etc/passwd,
I can't add it with
Can someone clarify how do I add machine accounts and user accounts?
Do they have to exist already in /etc/passwd?
Pdbedit is reading your smb.conf and specially the backend you
choose. What is your backend in smb.conf ? I think your are using
ldapbackend.
Machine account
Mensaje citado por Michael Gasch [EMAIL PROTECTED]:
a short answer
yes, you always need this posix-account - no matter which backend you use
i'm using ldap with this structure
users in ou=users,... (posix and samba)
machines in ou=machines,... (posix and samba)
and i'm not able to add
I got some problems with Samba/Winbind in a WINNT-Domain.How could I get the
machine-accounts to my samba-server?
Winbind including this feature? How could I activate this?
best regards
nieloo
Diese Mail wurde im Hause SCHMIEDER it-solutions GmbH auf Viren überprüft !
--
To unsubscribe from
Original Message -
From: Operator (SCHMIEDER it-solutions) [EMAIL PROTECTED]
To: [EMAIL PROTECTED]
Sent: Monday, March 17, 2003 3:13 PM
Subject: [Samba] machine accounts
I got some problems with Samba/Winbind in a WINNT-Domain.How could I get
the
machine-accounts to my samba-server
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Dmitry Melekhov wrote:
| Hello!
|
| How to add computers into domains if I have several domains and several
| ldap servers (one is master, other are slaves), each server on domain
| controller?
|
| As I understand samba can't go to master ldap server
Thomas Stegbauer wrote:
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Dmitry Melekhov wrote:
| Hello!
|
| How to add computers into domains if I have several domains and several
| ldap servers (one is master, other are slaves), each server on domain
| controller?
|
| As I understand
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
hi,
Dmitry Melekhov wrote:
| Thomas Stegbauer wrote:
|
| Dmitry Melekhov wrote:
| | Hello!
| |
| | How to add computers into domains if I have several domains and several
| | ldap servers (one is master, other are slaves), each server on domain
| |
Thomas Stegbauer wrote:
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
hi,
|
| As I see samba uses simple bind and has no support for sasl bind.
yes this was a choice (if not yet done) to a developer :) also the 2nd
part from choice 2.
| May be there is another decigion?
| For
Hello!
How to add computers into domains if I have several domains and several
ldap servers (one is master, other are slaves), each server on domain
controller?
As I understand samba can't go to master ldap server for doing updates
like adding
accounts or change passwords? :-(
--
To
45 matches
Mail list logo