Re: [Samba] configuring Shares, Users with Samba 4.0.5 as an AD DC

2013-05-20 Thread Ulrich Schneider
I created two folders as different win users in a samba share. 1. Folder is testadmin created as user Domain Administrator 2. Folder is testschueler2 created as user schueler2 ls -la drwxrwxr-x+ 2 300 users 4096 Mai 20 09:57 testadmin drwxrwxr-x+ 2 326 users 4096 Mai 20 09:59

Re: [Samba] configuring Shares, Users with Samba 4.0.5 as an AD DC

2013-05-20 Thread Thierry Gonon
Hello Ulrich, It's simply the uid (user id) that are given by samba. You should have a command to find who ius which number, but I don't know it yet (I'm new to samba too !!) Thierry Gonon Archéologue - Administrateur Systèmes et Réseaux Responsable Informatique Chronoterre Archéologie -

Re: [Samba] configuring Shares, Users with Samba 4.0.5 as an AD DC

2013-05-20 Thread Ulrich Schneider
let me rephrase: what do I have to do/install to make this ... valid users = @Domain\Group (windows domain / group) .. work Am 20.05.2013 10:16, schrieb Thierry Gonon: Hello Ulrich, It's simply the uid (user id) that are given by samba. You should have a command to find who ius which

Re: [Samba] configuring Shares, Users with Samba 4.0.5 as an AD DC

2013-05-20 Thread Pekka L.J. Jalkanen
Hi Thierry, that command is called wbinfo. For details, run wbinfo --help. Some examples below: To find the Windows sid of an uid, run: wbinfo -U 300 (or any other uid). That sid can in turn be used to find the username: wbinfo -s S-1-5-32-544 So if you want to combine the whole thing into

Re: [Samba] configuring Shares, Users with Samba 4.0.5 as an AD DC

2013-05-20 Thread Thierry Gonon
Thanks Pekka !! Thierry Gonon Archéologue - Administrateur Systèmes et Réseaux Responsable Informatique Chronoterre Archéologie - Mail original - De: Pekka L.J. Jalkanen pekka.jalka...@vihreat.fi À: samba@lists.samba.org Envoyé: Lundi 20 Mai 2013 10:50:29 Objet: Re: [Samba] configuring

Re: [Samba] configuring Shares, Users with Samba 4.0.5 as an AD DC

2013-05-20 Thread Ulrich Schneider
Hi Try winbind: /etc/nsswitch.conf passwd: files winbind group: files winbind ln -s /usr/local/samba/lib/libnss_winbind.so.2 /lib/libnss_winbind.so ln -s /lib/libnss_winbind.so /lib/libnss_winbind.so.2 ln -s /usr/local/samba/lib/pam_winbind.so /lib/security Does

[Samba] [Samba4] modifying attributes: no write access to self

2013-05-20 Thread Michael De Groote
Hi all *Context:* I'm trying to use the s4bind scripts ( http://linuxcostablanca.blogspot.com.es/p/s4bind.html) k5start is running So far, i've succeeded in * modifying (posixifying) the built-in Domain Users * adding a user to this group and i can login with this user (ssh), create files that

Re: [Samba] configuring Shares, Users with Samba 4.0.5 as an AD DC

2013-05-20 Thread Ulrich Schneider
Getting the error message ... raised the following question ... is it not possible to run samba as an avtive directory domain controller and use winbind/wbinfo at the same time? uli@uli-sd30v10:/data$ sudo /usr/local/samba/sbin/samba -i -M single samba version 4.0.5 started. Copyright Andrew

Re: [Samba] configuring Shares, Users with Samba 4.0.5 as an AD DC

2013-05-20 Thread Rowland Penny
Hi, I think your problem may be that you are are trying to run the standalone winbind daemon at the same time as the samba deamon, you cannot do this, the samba daemon has its own built in winbind. Could you please confirm how you provisioned samba4, post a sanitized version of your smb.conf and

Re: [Samba] configuring Shares, Users with Samba 4.0.5 as an AD DC

2013-05-20 Thread Ulrich Schneider
Could you please confirm how you provisioned samba4, post a sanitized version of your smb.conf and explain just what you are hoping to achieve. Ok, I will do that. I want to use samba4 1. as an active directory domain controller 2. as a file server providing diefferent shares for different

Re: [Samba] configuring Shares, Users with Samba 4.0.5 as an AD DC

2013-05-20 Thread Rowland Penny
Hi, Remove all of this: # security = ads password server = 192.168.25.133 idmap uid = 1-2 idmap gid = 1-2 winbind enum users = yes winbind enum groups = yes winbind cache time = 10 winbind use default domain = yes Then remove this line: valid users =

[Samba] Migrate samba3 to samba4

2013-05-20 Thread Natália Vaz
Hi Everybody I have an environment with Samba3 and ldap in the company and we are studying the migration to Samba4, keeping the user base, groups and workstations registered. I would like to know the best way suited for this migration. One of unsuccessful attempts we had was to establish a trust

Re: [Samba] Migrate samba3 to samba4

2013-05-20 Thread Marc Muehlfeld
Hello Natalia, Am 20.05.2013 19:18, schrieb Natália Vaz: I have an environment with Samba3 and ldap in the company and we are studying the migration to Samba4, keeping the user base, groups and workstations registered. I would like to know the best way suited for this migration. One of

Re: [Samba] samba-tool of delegation of permissions

2013-05-20 Thread Marc Muehlfeld
Hello Andrew, Am 19.05.2013 13:39, schrieb Andrew Bartlett: Have you read the 'Known issues/limitations' on that page (http://wiki.samba.org/index.php/Samba_AD_DC_HOWTO/AD_Delegation#Known_issues.2Flimitations)? You still need 'acl:search=false' in your smb.conf, even if you run the latest

[Samba] Samba 3.6 winbind issues

2013-05-20 Thread David Noriega
I've been using samba for several years now and so my configuration hasnt changed much in that time. We've setup a samba pdc+ldap backend and previously using smbldap-tools. I haven't had to add a new machine in a long while until recently a new user said they couldn't remote desktop to a windows

Re: [Samba] (force) default security ­mask

2013-05-20 Thread ?icro MEGAS
That was a type error in my previous post, the line in my smb.conf is of course: read only = No Вск 19 Май 2013 14:58:39 +0400, ?icro MEGAS написал: Hello folks, Samba 3.5.6 running and I have following share: [public] path = /data/public read onlyXSSCleaned= No

Re: [Samba] [Samba4] modifying attributes: no write access to self

2013-05-20 Thread Michael De Groote
[*update*] I've modified the sssd config to use Administrator as the default principal, and i've also done a *kinit Administrator*... and now i'm able to add and modify group and user attributes... seems like i need to either delegate this to a specific user or keep the administrator does all

Re: [Samba] samba-tool of delegation of permissions

2013-05-20 Thread Andrew Bartlett
On Mon, 2013-05-20 at 20:04 +0200, Marc Muehlfeld wrote: Hello Andrew, Am 19.05.2013 13:39, schrieb Andrew Bartlett: Have you read the 'Known issues/limitations' on that page (http://wiki.samba.org/index.php/Samba_AD_DC_HOWTO/AD_Delegation#Known_issues.2Flimitations)? You still need

Re: [Samba] Samba fsmo/demote/unjoin trouble after crash

2013-05-20 Thread Andrew Bartlett
On Wed, 2013-05-15 at 10:09 +0300, Giedrius wrote: 2013.05.14 18:48, Denis Cardon rašė: Hi Giedrius, i've got initial setup on DC1 (4.0.1)... all working good and flawless Added additional geographically distributed controllers (DC2, DC3, DC4,DC5) with 4.0.5 - no problem.

Re: [Samba] Windows 7 + Samba 3.5.6 = abject misery...

2013-05-20 Thread Stev e Holdoway
The problem is that I'm descending further into the mire. Can't log on to the PC as local administrator account is disabled, can't log on in safe mode without arriving at the domain login screen, can't seem to find anything on the server side to fix this. Remembering well why I chose the dark

Re: [Samba] Windows 7 + Samba 3.5.6 = abject misery...

2013-05-20 Thread Linda Walsh
Stev e Holdoway wrote: The problem is that I'm descending further into the mire. Can't log on to the PC as local administrator account is disabled, can't log on in safe mode without arriving at the domain login screen, can't seem to find anything on the server side to fix this.

Re: [Samba] Continued compilation errors with samba 3.6.15

2013-05-20 Thread Linda W
kiko seis wrote: And got the following error: net_rpc.c:(.text+0xcbc8): undefined reference to `libnetapi_net_init' Then I recompiled with the following parameters set: ./configure --enable-shared-libs=no --enable-external-libtalloc=no --enable-external-libtdb=no

[Samba] Samba 4 Admt to other Domain Windows Server 2008

2013-05-20 Thread wong lmark
Hi, I have a Samba 4 domain created and now I need to transfer all users and groups to other Windows 2008 Domain. How can I use the ADMT? Thanks for your help. Best Regards, Mark -- To unsubscribe from this list go to the following URL and read the instructions:

Re: [Samba] Windows 7 + Samba 3.5.6 = abject misery...

2013-05-20 Thread Stev e Holdoway
I've found a howto to enable local admin via recovery/regedit, and have now enabled it. I can leave and re-join the domain with no problem at all, BUT STILL CAN'T LOG IN, even using the same account that I used to leave/join the domain. Hair long gone ): Steve On 21/05/13 15:06, Dewayne

Re: [Samba] Windows 7 + Samba 3.5.6 = abject misery...

2013-05-20 Thread Andrew Bartlett
On Mon, 2013-05-20 at 09:53 +1200, Steve Holdoway wrote: Can anyone help with this? I set it all up a few months ago, the samba side being standard upgrades via debian - configured as a PDC, and the windows 7 clients being clean installs, with the standard lanmanworkstation regedits done.

Re: [Samba] Samba 4 Admt to other Domain Windows Server 2008

2013-05-20 Thread Andrew Bartlett
On Tue, 2013-05-21 at 11:19 +0800, wong lmark wrote: Hi, I have a Samba 4 domain created and now I need to transfer all users and groups to other Windows 2008 Domain. How can I use the ADMT? Why do you want to use ADMT? If you just need to move to Windows, then just join a Windows DC to

Re: [Samba] Samba 4 Admt to other Domain Windows Server 2008

2013-05-20 Thread wong lmark
Hi Andrew, I have tried to transfer fsmo. But I cannot sure that can transfer or not. In windows, I typed netdom query fsmo but it shown parameter is incorrect. And then, I found that my win 08 ad cannot open the GPO. Thanks for your help. Best Regards, Mark 2013/5/21 Andrew Bartlett

Re: [Samba] Samba 4 Admt to other Domain Windows Server 2008

2013-05-20 Thread Andrew Bartlett
On Tue, 2013-05-21 at 12:02 +0800, wong lmark wrote: Hi Andrew, I have tried to transfer fsmo. But I cannot sure that can transfer or not. In windows, I typed netdom query fsmo but it shown parameter is incorrect. Then simply remove the Samba DC using the windows tools, and seize any

Re: [Samba] Windows 7 + Samba 3.5.6 = abject misery...

2013-05-20 Thread Steve Holdoway
On Tue, 2013-05-21 at 13:54 +1000, Andrew Bartlett wrote: On Mon, 2013-05-20 at 09:53 +1200, Steve Holdoway wrote: Can anyone help with this? I set it all up a few months ago, the samba side being standard upgrades via debian - configured as a PDC, and the windows 7 clients being clean

Re: [Samba] Samba 4 Admt to other Domain Windows Server 2008

2013-05-20 Thread Pekka L.J. Jalkanen
On 21.5.2013 6:56, Andrew Bartlett wrote: On Tue, 2013-05-21 at 11:19 +0800, wong lmark wrote: Hi, I have a Samba 4 domain created and now I need to transfer all users and groups to other Windows 2008 Domain. How can I use the ADMT? Why do you want to use ADMT? If you just need to move

Re: [Samba] Windows 7 + Samba 3.5.6 = abject misery...

2013-05-20 Thread Andrew Bartlett
On Tue, 2013-05-21 at 17:32 +1200, Steve Holdoway wrote: On Tue, 2013-05-21 at 13:54 +1000, Andrew Bartlett wrote: On Mon, 2013-05-20 at 09:53 +1200, Steve Holdoway wrote: Can anyone help with this? I set it all up a few months ago, the samba side being standard upgrades via debian -

[SCM] CTDB repository - branch master updated - ctdb-2.1-149-g0c07525

2013-05-20 Thread Amitay Isaacs
The branch, master has been updated via 0c0752515b1ffae24be5f138bd2fab4dec5c (commit) via b0cae7d5a00ef3764bae187affc8e9a252f4b329 (commit) from e143abd16ccde2e0edfe103673d31a5fb06b6aef (commit) http://gitweb.samba.org/?p=ctdb.git;a=shortlog;h=master - Log

[SCM] Samba Shared Repository - branch master updated

2013-05-20 Thread Andrew Bartlett
The branch, master has been updated via 96f9724 ldb_tdb: Warn when reindexing is done via 74fa70c smbtorture: Show the list of cracknames we expect to have and the result via 6c4cf59 smbtorture: fix a warning due to a set but unused var via d42a31d smbtorture: fix

[SCM] Samba Shared Repository - branch master updated

2013-05-20 Thread Kai Blin
The branch, master has been updated via d7708fd talloc: Fix a typo from 96f9724 ldb_tdb: Warn when reindexing is done http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log - commit

[SCM] Samba Shared Repository - branch master updated

2013-05-20 Thread David Disseldorp
The branch, master has been updated via f80d56a s4-torture: No need to disable rpc.spoolss.win test when compiled with MIT kerberos. via 8b7788c selftest: mark the spoolss add print processor tests as knownfail for now. via 00ee6a6 s4-torture: add simple tests for

autobuild: intermittent test failure detected

2013-05-20 Thread autobuild
The autobuild test system has detected an intermittent failing test in the current master tree. The autobuild log of the failure is available here: http://git.samba.org/autobuild.flakey/2013-05-21-0341/flakey.log The samba3 build logs are available here: