Search results

From SambaWiki
  • To use this feature to the full advantage, two hardening steps and then key management are required. By default encryption at rest is enabled. Even without key management (below) this avoids a number of in-memory attacks on our database by separa
    11 KB (1,748 words) - 23:48, 19 June 2023
  • [[4.0. User Management]] On node1 login with root account; the ha.cf file needs to be the same on both nodes.
    7 KB (1,118 words) - 12:50, 12 March 2007
  • [[Image:DC_PDC_emulator.png|thumb|Group Policy Management Console option for PDC]] ...s the FSMO role "PDC Emulator", because you can configure the Group Policy Management Console to connect only to this machine (default), instead of just choosing
    9 KB (1,094 words) - 18:26, 5 October 2021
  • ...our Windows Server 2012 or 2012 installation using the local administrator account. ...join a domain controller (DC) to the domain, like the domain administrator account. Click <code>Next</code>.
    8 KB (1,195 words) - 08:27, 19 July 2023
  • == Microsoft Management Console (MMC) == * SID from an object (e. g. a user, group or computer account) in the same domain: ''S-1-5-21-3134998938-619743855-3616620706''-1121
    14 KB (2,228 words) - 21:06, 24 July 2014
  • ...y disconnected. During this time, if a new security object, such as a user account, is created in both locations, they may get the same [[Terms_and_Abbreviati * Account lockouts are processed by the PDC Emulator.
    8 KB (1,354 words) - 14:56, 4 July 2019
  • ...created in AD, and a new A record added to the DNS zone. This new computer account needs permission to create and modify computer objects in the AD computers # In fover-ad, open the Active Directory Users and Computers management tool
    10 KB (1,355 words) - 14:04, 11 November 2020
  • ...u to edit group policies, such as the AD domain <code>Administrator</code> account. * Open the <code>Group Policy Management Console</code>. If you are not having the Remote Server Administration Tool
    16 KB (2,531 words) - 15:58, 27 October 2023
  • = Process Management = Could not find machine account in secrets database: Failed to fetch machine account password for MYDOMAIN from both secrets.ldb (Could not find entry to match
    8 KB (1,174 words) - 10:32, 26 February 2023
  • ====Group Managed service account client-side features==== samba-tool also allows the creation and management of authentication policies, which are rules about where a user may authenti
    14 KB (2,130 words) - 08:02, 10 May 2024
  • ...to enable guest access. However, guest access is based on the <code>guest account</code> parameter, that is not implemented in the Samba AD mode. When you click in the Group Policy Management Console to a GPO, the following error is displayed:
    17 KB (2,768 words) - 13:42, 11 February 2022
  • ...ever, the above limitation means that '''source routing is not taking into account'''. For most configurations this means that CTDB's TCP ACK/RST packets wil CTDB's management of public IP addresses can affect connectivity to infrastructure (e.g. DNS,
    9 KB (1,397 words) - 03:36, 6 December 2020
  • ...those that supports tkey-gss updates, because parts of Samba (like the DNS management RPC server and the domain join) assume the replicated DNS entries in the AD To create a <code>named</code> account with UID <code>25</code>, primary group <code>named</code>, home directory
    11 KB (1,575 words) - 19:58, 1 November 2023
  • ...and Administering of Group Policy Objects to be used for enterprise fleet management ...he AD databases and adds initial records, such as the domain administrator account and required DNS entries. Samba comes with a built in command lined tool ca
    29 KB (4,035 words) - 15:02, 8 May 2024
  • ...Samba domain controller to map the certificate to an Active Directory user account. Again, make sure that only root (and the user account Samba is running as, if it is different) can access the private key file (w
    55 KB (8,205 words) - 14:19, 17 December 2022
  • ...61 CVE-2019-14861]: Samba AD DC zone-named record Denial of Service in DNS management server (dnsserver). :An authenticated user can crash the DCE/RPC DNS management server by creating records with matching the zone name.
    76 KB (11,334 words) - 15:03, 3 March 2020
  • * NetApi library implements various new calls for User- and Group Account Management.
    20 KB (2,917 words) - 21:09, 26 February 2017
  • ...holds a Kerberos principal in the domain, and has a corresponding machine account in the directory that can be used to make or accept Kerberised network requ * GPO Group Policy Objects An overview of the Group Policy management system is described in [https://docs.microsoft.com/en-us/openspecs/windows_
    130 KB (20,385 words) - 02:43, 9 May 2024
  • Additionally, management tools like net, samba-tool and rpcclient use DCERPC over SMB2/3 connections ...ctory object handles created on a connection created from an Administrator account and re-use them on the now non-privileged connection, compromising the secu
    76 KB (11,563 words) - 22:02, 17 September 2019
  • ...-member-base-dn" option is added to relevant samba-tool user, group and ou management commands to allow operation on just one part of the AD tree, such as a sing ...LY flag for an account will cause Kerberos authentication to fail for that account (see RFC-6649).
    47 KB (7,093 words) - 15:21, 20 September 2021
View ( | ) (20 | 50 | 100 | 250 | 500)