[Samba] Damnit audit

2003-01-22 Thread Eugene M. Zheganin
Hi, all. It seems like everybody ignore my letters about audit in samba. I wanna ask one simple question- have anyone working audit in samba ? WBR -- Origin:...and your cities will become your tombs(2:5054/63@Fidonet) -- To unsubscribe from this list go to

[Samba] Audit in 2.2.6

2002-10-23 Thread Eugene M. Zheganin
Greetings. I have samba 2.2.6 installed on FreeBSD 4.7-RC, from ports, compiled with audit/syslog/recycle/winbind. I try to use audit via syslogd. I created the following share: ===Cut=== [price] create mask = 664 security mask = 644 directory security mask = 000 directory mask = 755 comment =

Re[2]: [Samba] Audit in 2.2.6

2002-10-23 Thread Eugene M. Zheganin
Hello Gerald. I have samba 2.2.6 installed on FreeBSD 4.7-RC, from ports, compiled with audit/syslog/recycle/winbind. I try to use audit via syslogd. I created the following share: GJC Can you recreate the crash when not using audit.so ? No. No ideas. I saw that message in my logs for the

[Samba] samba 3.5.6, winbindd and getent/id

2010-12-01 Thread Eugene M. Zheganin
Hi. I'm using samba to authenticate squid users in Windows AD, and to provide 'em some statistics on the Internet usage. As this requires the existence of windows users in Unix environment, I use nsswitch.conf and nss_winbind.so to map users in Unix environment via samba as domain member

[Samba] PROBE domain

2010-12-01 Thread Eugene M. Zheganin
Hi. After an upgrade from 3.0.34 to 3.4.x or 3.5.x (I run samba on FreeBSD, and, ufortunately, 3.0.x branch was just removed from FreeBSD ports) I notices that I got a new domain PROBE, not referenced in any of my configs. Previously it was only a BUILTIN domain, now there are two of them.

Re: [Samba] samba 3.5.6, winbindd and getent/id

2010-12-02 Thread Eugene M. Zheganin
Hi. On 02.12.2010 15:02, Christopher Chan wrote: wbinfo -u/-g should work if the configuration is correct. At least they work for me on 3.5.4. Yeah, at least for me it used to work on 3.0.x and 3.4.9. So the configuration was correct and I guess it's highly unlikely that it became incorrect

Re: [Samba] samba 3.5.6, winbindd and getent/id

2010-12-09 Thread Eugene M. Zheganin
Hi. On 04.12.2010 01:18, Volker Lendecke wrote: You are not the first to say that. Many others, including me, are having winbind problems after upgrading to 3.5.x. Interestingly enough, the problems are quite disparate between users; i.e., everyone seems to have a different problem; and

[Samba] winbind and ipv6

2011-06-09 Thread Eugene M. Zheganin
Hi. FreeBSD 8.2-RELEASE Samba 3.4.9 security = ads Samba as domain member. Controllers on Win2008 R2. When using IPv4 all is fine. Today I added IPv6 on controllers, winbind stopped working when using IPv6. I.e. when password server = NAME, which resolves to , winbind says ===Cut=== #

[Samba] winbind and ipv6

2011-06-12 Thread Eugene M. Zheganin
Hi. FreeBSD 8.2-RELEASE Samba 3.4.9 security = ads Samba as domain member. Controllers on Win2008 R2. When using IPv4 all is fine. Today I added IPv6 on controllers, winbind stopped working when using IPv6. I.e. when password server = NAME, which resolves to , winbind says ===Cut=== #

[Samba] winbind group membership

2012-01-27 Thread Eugene M. Zheganin
Hi. FreeBSD 8.2 Samba 3.5.11 from ports I have an issue with group membership. id shows only small part of the groups a user is member of. I'm aware about UNIX max group issue, but this isn't related to it - for example for a user which is member of the 6 griups id shows only 3. Although

Re: [Samba] winbind group membership

2012-01-27 Thread Eugene M. Zheganin
Hi. On 27.01.2012 14:48, Eugene M. Zheganin wrote: Hi. FreeBSD 8.2 Samba 3.5.11 from ports I have an issue with group membership. id shows only small part of the groups a user is member of. I'm aware about UNIX max group issue, but this isn't related to it - for example for a user which

Re: [Samba] winbind group membership

2012-01-29 Thread Eugene M. Zheganin
Hi. On 28.01.2012 15:03, Volker Lendecke wrote: id user can not work reliably without a successful authentication using wbinfo -a before. There are just too many group combinations to take care of, and certain trust scenarios just can never work due to insufficient access to the trusted

[Samba] winbind and group membership

2012-02-15 Thread Eugene M. Zheganin
Hi. FreeBSD 8.2 Samba 3.5.11 from ports I have an issue with group membership. id shows only small part of the groups a user is member of. I'm aware about UNIX max group issue, but this isn't related to it - for example for a user which is member of the 6 griups id shows only 3. Although

[Samba] samba 3.6.16 and kinit

2013-07-22 Thread Eugene M. Zheganin
Hi. When I'm trying to join a machine to a domain via ADS I get kerberos_kinit_password d...@norma.com failed: Looping detected inside krb5_get_in_tkt. In the same time plain kinit d...@norma.com from a console gives me a ticket without errors. Is this a bug (so I should report it) or can this

[Samba] samba 3.6.16 and kinit

2013-07-28 Thread Eugene M. Zheganin
Hi. When I'm trying to join a machine to a domain via ADS I get kerberos_kinit_password d...@norma.com failed: Looping detected inside krb5_get_in_tkt. In the same time plain kinit d...@norma.com from a console gives me a ticket without errors. Is this a bug (so I should report it) or can this

[Samba] samba4 and squid with NTLM auth

2013-08-07 Thread Eugene M. Zheganin
Hi. Samba-4.0.7 FreeBSD 10.0-CURRENT Besides serving files I'm using Samba to authenticate users in the Windows AD with squid. After having issues with samba 3.6.16 I decided to see if samba4 will fit me more. I was surprised, but I found that Samba 4 is fully functional in my environment and is

Re: [Samba] samba4 and squid with NTLM auth

2013-08-08 Thread Eugene M. Zheganin
Hi. On 08.08.2013 11:33, Andrew Bartlett wrote: Certainly this looks like an missing NULL terminator, if if it as you describe. Can you operate ntlm_auth manually (operate one ntlm_auth in client mode, another in squid-2.5-ntlmssp mode and copy the blobs back and forth), and demonstrate it?

Re: [Samba] samba 3.6.16 and kinit

2013-08-16 Thread Eugene M. Zheganin
Hi. On 22.07.2013 16:28, Eugene M. Zheganin wrote: When I'm trying to join a machine to a domain via ADS I get kerberos_kinit_password d...@norma.com failed: Looping detected inside krb5_get_in_tkt. In the same time plain kinit d...@norma.com from a console gives me a ticket without errors