Search results

From SambaWiki
  • This is the Samba 4 Active Directory TODO list as assembled by metze. For making samba4 compatible with the Active Directory Schema
    28 KB (4,369 words) - 21:18, 11 December 2008
  • This page attempts to document the "Dollar Ticket Attack" on Active Directory servers and targets (Kerberos enabled services). ...operates after [https://support.microsoft.com/en-us/topic/kb5008102-active-directory-security-accounts-manager-hardening-changes-cve-2021-42278-5975b463-4c95-45
    9 KB (1,249 words) - 22:20, 14 July 2022
  • [[Category:Active Directory]]
    2 KB (305 words) - 20:37, 26 February 2017
  • * Active Directory (AD) domain controllers (DC) ...ave been built with ACL support enabled. A Samba host working as an Active Directory (AD) domain controller (DC), is always enabled with extended ACL support.
    14 KB (2,101 words) - 14:37, 25 April 2024
  • ...e RPC interfaces are generally for DCE/RPC protocols implemented by Active Directory and internal messaging. They are often stubbed and allow manual implementat ...own patches. Although this forms a critical component of the Samba Active Directory implementation, a number of the components in the Heimdal code base which w
    13 KB (2,089 words) - 04:48, 28 April 2021
  • On an Active Directory (AD) domain controller (DC), Samba uses an external application to provide ...> file is stored in Samba's <code>private</code> directory. To locate this directory:
    8 KB (1,139 words) - 08:08, 2 February 2023
  • = Schema Extension in Samba Active Directory = Samba AD supports the same kind of schema extensions as Microsoft Active Directory. Schema updates in AD are a sensitive action and you must be prepared to do
    10 KB (1,486 words) - 09:54, 30 March 2024
  • [[Category:Active Directory]] = Active Directory Domain member =
    16 KB (2,478 words) - 00:58, 13 April 2021
  • ...<tt>/usr/local/samba/labdom/</tt>), if you wanted to. We'll refer to this directory a lot in the next few commands, so let's set it as a bash variable. The new lab domain will contain all of the [[Active Directory Sites|AD Sites]] in your production domain, but none of the production DCs.
    9 KB (1,571 words) - 11:41, 1 June 2021
  • directory and it's own zone file(s). # Samba DLZ and Active Directory Zones (default source installation)
    3 KB (545 words) - 18:54, 2 November 2023
  • Technically DFS provides access to a shared directory that contains no files, The main use of this is to create an alternative name space (directory tree view),
    5 KB (827 words) - 15:25, 7 September 2023
  • Active Directory (AD) uses SRV records to locate services, such as Kerberos and LDAP. To ver
    2 KB (295 words) - 12:11, 6 March 2022
  • ...domain services, such as an NT4 primary domain controller (PDC) or Active Directory (AD) domain controller (DC). == Preparing a Domain Member to Join an Active Directory Domain ==
    19 KB (3,152 words) - 14:59, 5 March 2024
  • ...me.cgi?name=CVE-2014-8143 CVE-2014-8143] (Elevation of privilege to Active Directory). ...me=CVE-2013-6442 CVE-2013-6442] (smbcacls will remove the ACL on a file or directory when changing owner or group owner).
    8 KB (1,002 words) - 09:41, 16 September 2016
  • If you are planning to set up a Samba Active Directory (AD) domain controller (DC) using the <code>BIND9_DLZ</code> back end, you ...because the <code>BIND9_DLZ</code> must be able to access the Samba Active Directory (AD) database files directly.
    11 KB (1,575 words) - 19:58, 1 November 2023
  • ...run more than one DC: Never restore a DC from a backup. You'll corrupt the directory as the replication meta data will get out of sync! ...sn't installed by 'make install'. You need to you copy it from the sources directory (source4/scripting/bin/samba_backup) to somewhere like /usr/sbin, and set s
    7 KB (1,158 words) - 16:20, 18 February 2022
  • ...ki>[[Category:BLAH]]</nowiki> tags as appropriate, e.g. [[:Category:Active Directory]], [[:Category:Printing]], etc. For a list of possible categories, see [[Sp
    2 KB (329 words) - 05:22, 13 September 2018
  • Proceed to install the '''Active Directory Domain Services''' and '''iSCSI target server''' roles: Once roles are installed, provision the Active Directory domain following the Wizard:
    10 KB (1,355 words) - 14:04, 11 November 2020
  • ...ag on the appropriate schema object in the database as per standard Active Directory. Active Directory domain controller databases using the older indexing scheme will need to be
    8 KB (1,321 words) - 02:10, 31 July 2019
  • ...iguration file (smb.conf) to make sure that the server is set as an Active Directory Domain Controller (AD DC). If the server is not, the user is prompted to se * Display a Computer Active Directory object
    10 KB (1,438 words) - 14:54, 20 August 2023
  • ...upport for using the BIND DNS server as the DNS back end on a Samba Active Directory (AD) domain controller (DC). The <code>BIND9_DLZ</code> back end is recomme ...e>BIND9_DLZ</code> module is a BIND9 plugin that accesses the Samba Active Directory (AD) database directly for registered zones. For this reason:
    15 KB (2,327 words) - 13:10, 3 June 2022
  • |Sors directory content alphabetically before sending the entries to the client. |Moves files to a temporary directory rather than deleting them immediately.
    6 KB (881 words) - 11:48, 18 May 2018
  • ...ocumentation is valid for every type of Samba installation, like an Active Directory (AD) domain controller (DC), a domain member (AD and NT4 domain), an NT4 PD Change into the directory with the extracted sources:
    11 KB (1,660 words) - 10:41, 4 August 2023
  • [[Category:Active Directory]]
    3 KB (401 words) - 18:07, 5 March 2023
  • ...me.cgi?name=CVE-2014-8143 CVE-2014-8143] (Elevation of privilege to Active Directory). ...me=CVE-2013-6442 CVE-2013-6442] (smbcacls will remove the ACL on a file or directory when changing owner or group owner).
    9 KB (1,149 words) - 14:36, 8 September 2015
  • ...ou have a Samba NT4-style domain, that you want to upgrade to Samba Active Directory!''' ...ovides a way to migrate an existing NT4-style domain to a new Samba Active Directory. The following guide describes the upgrade scenario. It is suitable for upg
    20 KB (3,145 words) - 13:14, 18 July 2020
  • No, this only impacts on the Samba Active Directory DC. No, this only impacts on the Samba Active Directory DC.
    7 KB (1,125 words) - 11:00, 14 March 2018
  • ...through a configuration option (grace_period), to pause turning a file or directory read-only for a defined time. The grace period is based on the change time [[Category:Active Directory]]
    4 KB (679 words) - 15:59, 1 November 2017
  • [[Category:Active Directory]]
    3 KB (387 words) - 13:26, 6 October 2021
  • ...workstation. Since then, Microsoft incorporated Policies into it's Active Directory Service and renamed them to Group Policy Objects. When this happened the bi Currently Samba, the Free Software SMB Server, does not implement Active Directory functionality when using it as a Primary Domain Controller. If you deploy a
    14 KB (2,384 words) - 21:59, 28 April 2008
  • Picking an Active Directory domain name is one of the most important steps in setting up a domain. And = What is an Active Directory domain? =
    23 KB (3,912 words) - 08:31, 8 August 2023
  • ...troubleshoot problems users can encounter when running Samba as an Active Directory (AD) domain controller (DC). If you have any problems with your Active Directory (AD) domain controller (DC) after updating Samba, see: [[Updating_Samba#Not
    8 KB (1,174 words) - 10:32, 26 February 2023
  • ...s into names in one request. This was done for performance reasons: Active Directory domain controllers can do multiple SID to name translations in one RPC call
    2 KB (320 words) - 11:41, 2 November 2020
  • ===Virtual Directory=== #Client locates it's own DC in Active Directory with CLDAP
    9 KB (1,583 words) - 12:26, 27 February 2009
  • [[Category:Active Directory]]
    3 KB (377 words) - 08:53, 15 April 2020
  • ...parts of Samba3 and Samba4 to form '''Franky''' - a complete Samba Active Directory server that is also a performant file server and a print server. = The Idea - A Hybrid Samba Active Directory Controller =
    7 KB (1,102 words) - 08:01, 9 May 2012
  • * The Kerberos key distribution center (KDC) on an Active Directory (AD) domain controller (DC) logs an <u>authentication</u> event when a user [[Category:Active Directory]]
    7 KB (1,075 words) - 23:00, 13 January 2023
  • To create a PSO using the Windows GUI, open Active Directory Administrative Center, then navigate to System -> Password Settings Contain [[Category:Active Directory]]
    7 KB (1,135 words) - 23:50, 28 March 2019
  • Example of where you need this: You want Apache to permit access to a directory on your webserver just for AD users that are members of a defined AD group * Add the following to your .htaccess or your httpd.conf (vHost/directory/... directive):
    9 KB (1,359 words) - 21:52, 26 February 2017
  • Similarly, the KDC will use it's directory knowledge (presumably the Active Directory has a growing array of different ways that it can be
    11 KB (1,813 words) - 06:08, 23 February 2009
  • ...ory as Tracker stores its database and configuration inside the users home directory. ...command '''gsettings''', but this requires a '''user''' dbus session to be active:
    11 KB (1,491 words) - 10:53, 11 May 2023
  • The following example describes how a Windows Active Directory (AD) domain member downloads and applies group policy objects (GPO):
    4 KB (612 words) - 20:33, 6 May 2017
  • [[Category: Active Directory]]
    3 KB (528 words) - 04:56, 28 May 2019
  • ...e user and system <code>xattr</code> name space enabled. On a Samba Active Directory (AD) domain controller (DC), <code>samba-tool</code> verifies this setting
    3 KB (464 words) - 20:35, 25 August 2023
  • ...as the home directory if this user is misconfigured to have an empty home directory in /etc/passwd. ====Winbind and Active Directory Integration:====
    15 KB (2,180 words) - 21:09, 26 February 2017
  • Active Directory uses the LDAP (Lightweight Directory Access Protocol) for read and write access. By default LDAP connections are * Change into the directory you want to store the key and certificate
    11 KB (1,639 words) - 19:10, 26 November 2021
  • ...commend setting up Samba as an [[Active_Directory_Domain_Controller|Active Directory (AD) domain controller (DC)]], because Microsoft officially stopped the sup : Omit the <code>-M</code> parameter if the user requires a home directory on this host. For Samba access, the account does not require a valid shell.
    5 KB (804 words) - 16:07, 14 July 2022
  • ...mba_as_an_Active_Directory_Domain_Controller|Setting up Samba as an Active Directory Domain Controller]] page.
    3 KB (470 words) - 19:34, 29 March 2023
  • [[Category:Active Directory]]
    4 KB (598 words) - 02:58, 6 January 2023
  • ...realm's filepath, e.g. sysvol/samba.example.com/Policies. A default sysvol directory is also created using the new realm's filepath, e.g. sysvol/new.renamed.com [[Category:Backup]] [[Category:Active Directory]]
    5 KB (825 words) - 11:20, 28 July 2019
  • There are two ways to obtain a keytab from an Active Directory Domain with Samba:
    3 KB (501 words) - 13:34, 9 October 2016
  • ...often do not want to set up an [[Active_Directory_Domain_Controller|Active Directory]] or [[NT4_Domains|NT4 domain]]. :Omit the <code>-M</code> parameter if the user requires a home directory on this host. For Samba access, the account does not require a valid shell.
    9 KB (1,399 words) - 13:24, 3 February 2023
  • ...t one DC in the domain is still working. The replication could mix up your directory! [[Category:Active Directory]]
    7 KB (1,080 words) - 21:04, 25 March 2019
  • * Create the directory: | text = When setting up a Samba print server on an Active Directory (AD) domain controller (DC), you cannot use POSIX access control lists (ACL
    16 KB (2,458 words) - 09:17, 5 March 2023
  • created directory /usr/local/samba/var/locks/sysvol... ...really your SysVol folder, because the command will replicate to the given directory and removes everything in it that isn't also on the source! You could damag
    9 KB (1,094 words) - 18:26, 5 October 2021
  • ...ires MIT 1.21 when built against a system MIT Krb5 and acting as an Active Directory DC. This addresses the issues that were fixed in [https://cve.mitre.org/cg ...Samba for major distributions are found in the bootstrap/generated-dists/ directory of a Samba source tree. While there will be some differences - due to feat
    13 KB (1,967 words) - 08:44, 28 March 2024
  • ...it easy to write Python client code that exercises the server-side Active Directory behaviour.
    4 KB (644 words) - 05:14, 4 June 2020
  • ...he access is denied. As a result, a user cannot access shares or query the directory. ...The time daemon must have read permissions in the <code>ntp_signed</code> directory. To list the permissions, enter:
    16 KB (2,531 words) - 15:58, 27 October 2023
  • [[Category:Active Directory]]
    4 KB (587 words) - 05:21, 1 May 2019
  • ...and the slave when adding additional replicas. It is also no longer under active development. Change to the openldap directory.
    25 KB (3,433 words) - 03:56, 21 September 2007
  • ...samba4 on Debian/Ubuntu Server, please see [[Setting up Samba as an Active Directory Domain Controller]].<BR> ...eradius_against_Active_Directory, Authenticating Freeradius against Active Directory]
    13 KB (1,793 words) - 07:05, 20 April 2020
  • ...dateOnActiveDirectoryIntegration.pdf An update on Samba and FreeIPA Active Directory integration], Alexander Bokovoy (Red Hat), Andreas Schneider (Red Hat) ...DirectoryUsersAndGroupsIn.pdf Handling POSIX attributes for trusted Active Directory users and groups in FreeIPA], Alexander Bokovoy (Red Hat)
    41 KB (5,336 words) - 12:59, 18 June 2020
  • In general, there are two ways to upgrade or downgrade a Samba Active Directory (AD) Domain Controller (DC): ...er to operate correctly (for example, in v4.8 the location of the bind-dns directory changed).
    11 KB (1,744 words) - 21:11, 12 November 2022
  • ...really your SysVol folder, because the command will replicate to the given directory and sync everything in it that isn't also on the source! You could damage y [[Category:Active Directory]]
    6 KB (955 words) - 09:43, 9 March 2022
  • ** If you use Exchange in your on-premises Active Directory instance, you can also enable hybrid deployments in Exchange. Enable this o
    4 KB (641 words) - 04:35, 6 April 2023
  • LDAP, Active Directory Domain Controller, and a cross platform file server
    5 KB (610 words) - 13:47, 1 April 2021
  • ...ole used by Samba 3 and needed for FreeIPA cross-forest trusts with Active Directory Currently Samba 4 is developed from the perspective of building an Active
    13 KB (2,189 words) - 17:54, 18 February 2014
  • [[Category:Active Directory]]
    4 KB (700 words) - 04:03, 31 July 2019
  • The future of Samba is changing to Active Directory; we keep this in mind when creating the database so it can be an easier upg description: Directory Manager
    22 KB (2,932 words) - 12:49, 14 March 2007
  • You now use rsync to create the directory structure with extended attributes [[Category:Active Directory]]
    6 KB (935 words) - 08:13, 1 January 2024
  • This page describe Samba4 Active Directory installation on CentOS 7. The environment is composed by 2 DCs with replica
    4 KB (588 words) - 13:32, 15 December 2015
  • There are not that many ways to correlate data across the directory by default, and maintaining this data is quite difficult because of the lac [[Category:Active Directory]]
    7 KB (1,098 words) - 03:41, 13 May 2019
  • ...g from version 4.0 (released in 2012,) Samba is able to serve as an Active Directory (AD) domain controller (DC). Samba operates at the forest functional level ...C_to_an_Existing_Active_Directory|Joining a Samba DC to an Existing Active Directory]].
    29 KB (3,995 words) - 12:03, 30 November 2023
  • :* [https://bugzilla.samba.org/show_bug.cgi?id=12421 BUG 12421]: Fake directory create times has no effect. ...blished behaviour of Microsoft's Active Directory) when Samba is an Active Directory Domain Controller.
    25 KB (3,618 words) - 08:34, 28 March 2024
  • Smart card logon was added in macOS Sierra 10.12 and Directory logon in macOS High Sierra 10.13. ...mba_as_an_Active_Directory_Domain_Controller|Setting up Samba as an Active Directory Domain Controller]] page using Debian.
    31 KB (4,000 words) - 15:15, 3 July 2023
  • ...n the other hand if it concerns things related to authentication or Active Directory protocols it's often better to do the tracing from the server as most of th
    5 KB (820 words) - 08:00, 9 August 2017
  • ...ge or to store data in a local network. It can be used to set up an active-active filesystem cluster with failover and loadbalancing via DNS-round robin. Tog ...asy to get a stupid form of split brain. Node A is shut down and node B is active, updating information in persistent databases (perhaps id-mapping info?).
    16 KB (2,563 words) - 17:19, 22 February 2020
  • * To create the spool directory, enter: [[Category:Active Directory]]
    8 KB (1,297 words) - 21:30, 25 July 2023
  • ...late hours were spent face-deep in Microsofts documentation on how Active Directory works, the protocols, how the server is employed, and what happens with GPO ...es, password configurations). This project entailed many aspects of Active Directory, Linux, git, and wireshark that I was unaware of prior to doing this projec
    12 KB (2,069 words) - 08:30, 17 November 2021
  • [[Category:Active Directory]]
    6 KB (1,008 words) - 21:52, 26 February 2017
  • ...applies to Samba used as domain controller only (most seriously the Active Directory DC, but also the classic/NT4-style DC).
    6 KB (957 words) - 17:10, 18 September 2020
  • ...e backup, login on the DC you're backing up, and simply specify the target-directory location to write the backup-file to. E.g. Note that the target-directory specified must be empty (or non-existent). This means it's not practical to
    24 KB (4,038 words) - 09:39, 17 March 2021
  • [[Category: Active Directory]]
    7 KB (1,118 words) - 00:43, 5 June 2019
  • ...dependencies you will find a directory <code>/etc/ctdb</code>. Inside tis directory you need some configuration files for CTDB. ...will have no local path in the share-configuration. The share points to a directory on your gluster-volume, so CTDB can`t check the path. So if you going to us
    28 KB (4,203 words) - 09:46, 2 February 2023
  • ...as the home directory if this user is misconfigured to have an empty home directory in /etc/passwd. * Splitting of library directory into library directory and separate modules directory.
    20 KB (2,917 words) - 21:09, 26 February 2017
  • :* [https://bugzilla.samba.org/show_bug.cgi?id=12421 BUG 12421]: Fake directory create times has no effect. ...blished behaviour of Microsoft's Active Directory) when Samba is an Active Directory Domain Controller.
    34 KB (4,920 words) - 08:33, 28 March 2024
  • * '''showrepl''' - Displays the replication partners for each directory partition on the specified domain controller ===Fix 'net vampire' and other python commands in 'net' to run in installed directory===
    24 KB (4,087 words) - 23:01, 18 June 2014
  • ...functionality working on Windows 7/8 clients that are joined to an Active Directory domain hosted by a Samba 4 AD domain controller. The Active Directory domain was provisioned as follows:
    55 KB (8,205 words) - 14:19, 17 December 2022
  • ...LDAP compliance where possible, although Samba’s higher priority is Active Directory compliance. We do aim for LDAP compliance where it doesn’t conflict. ...ons around the world to manage their, well, organisation – eg all of their directory services (things such as person information, IT information (machine detail
    51 KB (7,097 words) - 15:59, 9 December 2019
  • |Te3st whether a tarred directory structure can be untarred |test rename for various directory sizes
    22 KB (3,043 words) - 02:08, 23 July 2022
  • ...led memory overwrite. ndr_pull_dnsp_name parses data from the Samba Active Directory ldb database. Any user who can write to the dnsRecord attribute over LDAP ...nection to an insecure one may allow an attacker to take control of Active Directory object handles created on a connection created from an Administrator accoun
    76 KB (11,563 words) - 22:02, 17 September 2019
  • ::A Samba Active Directory DC will issue weak rc4-hmac session keys for use between modern clients and ::On Samba Active Directory DCs and members 'kerberos encryption types = legacy' would force rc4-hmac a
    43 KB (6,283 words) - 12:59, 6 September 2023
  • ...ry Domain Controller or man-in-the-middle attacker impersonating an Active Directory Domain Controller could achieve root-level access by compromising the winbi ...75] (ACLs are not checked on opening an alternate data stream on a file or directory) .
    41 KB (6,189 words) - 21:09, 26 February 2017
  • :* [https://bugzilla.samba.org/show_bug.cgi?id=15313 BUG 15313]: Large directory optimization broken for non-lcomp path elements. ....org/show_bug.cgi?id=15283 BUG 15283]: vfs_virusfilter segfault on access, directory edgecase (accessing NULL value).
    47 KB (6,842 words) - 08:32, 28 March 2024
  • ...2017-2619 CVE-2017-2619]: Symlink race permits opening files outside share directory. ...2017-2619 CVE-2017-2619]: Symlink race permits opening files outside share directory.
    78 KB (11,799 words) - 22:01, 17 September 2019
  • ...stem that is always available ?, A system that integrates with your Active Directory, supports SMB2 protocol and ACL's. Then read on... Next create the directory /usr/local/var
    17 KB (2,682 words) - 06:25, 17 September 2018
  • ...e.cgi?name=CVE-2015-3223 CVE-2015-3223] (Denial of service in Samba Active Directory server) ...-2015-8467 CVE-2015-8467] (Denial of service attack against Windows Active Directory server)
    80 KB (11,979 words) - 22:04, 17 September 2019
  • ::A Samba Active Directory DC will issue weak rc4-hmac session keys for use between modern clients and ::On Samba Active Directory DCs and members 'kerberos encryption types = legacy' would force rc4-hmac a
    57 KB (8,418 words) - 16:59, 9 March 2023
  • ...2017-2619 CVE-2017-2619]: Symlink race permits opening files outside share directory. ...2017-2619 CVE-2017-2619]: Symlink race permits opening files outside share directory.
    61 KB (8,962 words) - 21:57, 17 September 2019
  • * An Active Directory Domain Controller, which provides directory-based network authentication (as well as all the Samba file server function ...ools for Linux-based clients to access Windows-based file shares or Active Directory services. Samba also provides Domain Member and NT4-like Domain Controller
    129 KB (20,269 words) - 04:00, 1 June 2023
View ( | ) (20 | 50 | 100 | 250 | 500)