Search results

From SambaWiki

Page title matches

Page text matches

  • ...lication via DFS-R (Distributed File System Replication) or the older FRS (File Replication Service) used in Windows Server 2000/2003 for Sysvol replicatio ...sed SysVol replication workaround]] (Samba DCs only): Quick setup, easy to configure.
    2 KB (255 words) - 15:57, 6 December 2023
  • ...lation on CentOS 7. The environment is composed by 2 DCs with replication, and one fileserver. ...lation is based on '''CentOS7 Minimal ISO''', you should update the system and install basic tools.
    4 KB (588 words) - 13:32, 15 December 2015
  • Setting up a Windows cluster requires at least three virtual machines and two networks. These instructions assume KVM and libvirt are used. Windows version is Server 2019.
    10 KB (1,355 words) - 14:04, 11 November 2020
  • ...is running as an AD DC. OpenLDAP can also be used to control mail delivery and other things. You can find OpenLDAP at [[http://www.openldap.org]] LAM [http://lam.sf.net/] - A web frontend to maintain accounts for unix and samba in an ldap server<br>
    5 KB (780 words) - 19:40, 9 November 2018
  • ...tions between the Samba testenv DCs. Each DC has a 127.0.0.<id> IP address and socket wrapper uses the '<id>' to work out which DC to pass the packets to. ...tenvs. This uses a mix of network namespaces in the kernel, for isolation, and veth tunnel interfaces, to connect together the separate testenv namespaces
    4 KB (599 words) - 05:20, 10 June 2019
  • ...Portfile in MacPorts to build Bind 9.9.0 for Samba 4 dynamic updates. The file is located at /opt/local/var/macports/sources/rsync.macports.org/release/ta configure.args --mandir=${prefix}/share/man \
    3 KB (426 words) - 22:49, 22 October 2016
  • FRS (File Replication Service) is used to replicate SYSVOL in Windows Server 2000 and 2003. It is slowly being replaced
    5 KB (827 words) - 15:25, 7 September 2023
  • =Azure AD Connect cloud sync - Agent installation and configuration= * Sign in to the Azure portal, and then go to Azure Active Directory
    3 KB (453 words) - 04:34, 6 April 2023
  • ...a-gpupdate command. Certificate Auto Enrollment is available in Samba 4.16 and above. '''Prerequisite''': An Active Directory domain and a Samba domain member already joined.
    7 KB (796 words) - 07:16, 8 May 2024
  • | text = It has been pointed out that using rsync without SSH is insecure and could lead to a 'M-I-M' attack, whilst this is probably unlikely for most u ...ost is the one that contains the FSMO role "PDC Emulator", because you can configure the Group Policy Management Console to connect only to this machine (defaul
    9 KB (1,094 words) - 18:26, 5 October 2021
  • = Downloading the Network Interface Card Driver and MS Client = : If you run FreeDOS in a VM, use the following NIC models and NDIS2 drivers for DOS:
    6 KB (917 words) - 21:01, 26 February 2017
  • ...amba 3 and Samba 4 together. The --enable-merged-build option for Samba3's configure no longer exists. Use the regular configure script in the current Git master branch.''
    7 KB (1,102 words) - 08:01, 9 May 2012
  • This page is meant to give an overview about compiling and configuring Samba with support for OS X [http://en.wikipedia.org/wiki/Spotl ...ki.gnome.org/Projects/Tracker Gnome Tracker] as search engine, search tool and metadata storage system.
    11 KB (1,491 words) - 10:53, 11 May 2023
  • ...c doesn't preserve the file system access control lists (ACL) across Linux and Windows. This documentation describes a workaround for SysVol replication t * quick and easy setup
    4 KB (565 words) - 15:34, 28 June 2023
  • ...mbers of a defined AD group (I used group "test" in the example). Username and password should be validated against AD. ...configuration, the username is searched for just in the "Users" container and below. If you want to search in any OU of your domain, then you have to add
    9 KB (1,359 words) - 21:52, 26 February 2017
  • == Samba and the Editposix/Trusted Ldapsam extension == ...d group account storage. This optimization _requires_ that all samba users and group accounts store their posix account information in the ldap tree.
    7 KB (1,046 words) - 12:59, 7 May 2017
  • ...by generalizing a GPO and returning an XML entity file that can be edited and fed back into the tool. The backup process reads the GPO configuration files and stores them as generalized XML files, as well as storing a binary duplicate
    7 KB (1,206 words) - 09:13, 17 November 2021
  • ...cause the rpm/deb/pkg has been compiled with the 'disable-isc-spnego' flag and/or without bind-dlz support at all. Samba4 and up require for BIND DLZ at least --with-dlz-ldap , --with-dlz-filesystem=y
    7 KB (1,009 words) - 08:45, 1 May 2021
  • have waf build rules for libreplace, talloc, tdb, tevent and ldb. * building and configuring is fast
    25 KB (4,095 words) - 22:43, 14 March 2020
  • =Creating a Samba Cluster with CTDB and GPFS on CENTOS= ...system that integrates with your Active Directory, supports SMB2 protocol and ACL's. Then read on...
    17 KB (2,682 words) - 06:25, 17 September 2018
  • ...er (DC) using the <code>BIND9_DLZ</code> back end, you have to install and configure the BIND DNS server first. ...ey-gss updates, because parts of Samba (like the DNS management RPC server and the domain join) assume the replicated DNS entries in the AD Database are t
    11 KB (1,575 words) - 19:58, 1 November 2023
  • ...4.7 and later supports logging of authentication and authorization events, and Samba 4.9 supported logging of AD DC database changes. This enables you to ...entralized syslog server, configure Samba to log to the syslog daemon, and configure the syslog daemon to send the logs to the centralized server. For details,
    7 KB (1,075 words) - 23:00, 13 January 2023
  • Configure clustered Samba using a CTDB cluster ...ectly relevant to clustering Samba. The documentation is being cleaned up and restructured.
    10 KB (1,554 words) - 15:59, 13 November 2023
  • ...terface. For details, see [[Configure_Samba_to_Bind_to_Specific_Interfaces|Configure Samba to Bind to Specific Interfaces]]. == getent not Finding Domain Users and Groups ==
    9 KB (1,357 words) - 12:44, 24 August 2023
  • ...It can be used to set up an active-active filesystem cluster with failover and loadbalancing via DNS-round robin. Together with CTDB it is possible to bui ...replicated volume with 2GB diskspace, so it will be easy to reproduce the setup.
    16 KB (2,563 words) - 17:19, 22 February 2020
  • ...onally, Windows applies preconfigured driver settings, such as paper sizes and the number of trays. ...et up automatic printer driver download, configure Samba as a print server and share a printer. For details, see [[Setting_up_Samba_as_a_Print_Server|Sett
    18 KB (2,757 words) - 09:53, 10 May 2024
  • ...s nodes of a cluster. This allows CTDB to perform failover of connections and load balance between nodes. Public IP addresses allow a cluster of nodes t ...r will always be available to the clients even when some nodes have failed and become unavailable.
    9 KB (1,397 words) - 03:36, 6 December 2020
  • ...r example, Kerberos requires correct time stamps to prevent replay attacks and the AD uses the time to resolve replication conflicts. The default maximum ...ny.tuxfamily.org/ . The daemon synchronises the time with external sources and enables clients to retrieve the time from the server running the daemon.
    16 KB (2,531 words) - 15:58, 27 October 2023
  • ...domain member is a Linux machine joined to a domain that is running Samba and does not provide domain services, such as an NT4 primary domain controller * Use domain users and groups in local ACLs on files and directories.
    19 KB (3,152 words) - 14:59, 5 March 2024
  • ...mba specific configuration please follow the various sections under [[CTDB and Clustered Samba]]. ...repo and do a 'yum -y install cman lvm2-cluster gfs2-utils' for my cluster and it pulls everything in automatically. */
    18 KB (2,946 words) - 06:26, 17 September 2018
  • * zones are stored and replicated within the directory. | text = If you are using the internal DNS server and wish to use Bind9 instead, see [[Changing_the_DNS_Back_End_of_a_Samba_AD_DC
    15 KB (2,327 words) - 13:10, 3 June 2022
  • * Monitor nodes in the cluster and services running on each node. ...gh-availability (HA) environment for services such as clustered Samba, NFS and other services.
    28 KB (4,203 words) - 09:46, 2 February 2023
  • There are a few different flavours of backup, which work in different ways and achieve different things: ...C and which is not included in online backups. It can also create a backup file when the DC is offline (i.e. the <code>samba</code> process is not actually
    24 KB (4,038 words) - 09:39, 17 March 2021
  • ...KDC included in Samba. For further details about Samba using the MIT KDC, and why it is experimental see [[Running a Samba AD DC with MIT Kerberos KDC]]. * Hosting and Administering of Group Policy Objects to be used for enterprise fleet manag
    29 KB (4,035 words) - 15:02, 8 May 2024
  • The xfstest suite has been updated to make it easier to test cifs (and smb3). For up-to-date build instructions see the official setup guide in the source tree, xfstests-dev/README
    16 KB (1,821 words) - 16:16, 16 October 2023
  • ...ntime. Samba is actively developed and new minor versions fix several bugs and major versions additionally include new features. If you cannot update to t If you are running a Samba version shipped with your distribution and that is no longer supported by Samba, contact your distribution's support f
    17 KB (2,768 words) - 13:42, 11 February 2022
  • This HowTo describes how to configure isc DHCP to update Samba dns records in AD. It has now been tested with the Samba AD internal DNS server and BIND9_DLZ.
    22 KB (2,942 words) - 13:11, 11 August 2023
  • ...ilize rotating LVM snapshots. The snapshots can then be exported via Samba and the Volume Shadow Copy interface to Windows clients (remember to install th </pre> This is assuming that your LVM volume is /dev/prod0/source and it is formatted with XFS. For other filesystems you should omit the ";,nouu
    14 KB (1,881 words) - 00:21, 6 September 2019
  • ...ave been significant changes between Samba 3.x (and earlier) and Samba 4.0 and above, I thought I would start a new document on this topic rather than try # Two Types of File Systems contains a discussion of the two types of file systems that you might interact with.
    46 KB (7,484 words) - 15:03, 17 July 2018
  • * In this HOWTO, the private keys are generated in software, stored on disk and then loaded onto the smart card. Some might prefer to generate the keys on ...d no others. How to select among the many Windows-compatible smart card(s) and reader(s) available is a topic outside the scope of this HOWTO.
    55 KB (8,205 words) - 14:19, 17 December 2022
  • ...er is a non-trivial task. There have been religious debates on this issue, and MS recommendations have changed over time. ...ers. Active Directory Domain names are controlled by the same set of rules and principles, that govern traditional [[Terms_and_Abbreviations#Domain_Name_S
    23 KB (3,912 words) - 08:31, 8 August 2023
  • :* a module in the '''VFS''' (Virtual File System) Layer of Samba ...stions into SQL statements from the user. They are also running networked, and can be run on a complete different system where the SQL storage exists.
    78 KB (11,906 words) - 11:47, 25 July 2012
  • ...llow SMB clients to connect as root to existing unix domain sockets on the file system. ...user with the GET_CHANGES right can view all attributes, including secrets and passwords. Additionally, the access check fails open on error conditions.
    47 KB (6,842 words) - 08:32, 28 March 2024
  • ...a maliciously crafted request can trigger an out-of-bounds read in winbind and possibly crash it. ...protocol Samba discloses the server-side absolute path of shares and files and directories in search results.
    43 KB (6,283 words) - 12:59, 6 September 2023
  • ==='/' and maybe other chars are not allowed in sAMAccountName=== and use an internal backlink attribute, for exampleDNAttribute it would be @BL-
    24 KB (4,087 words) - 23:01, 18 June 2014
  • ...ation changes to continue to talk to domain controllers (see "file servers and domain members" below). ...name=CVE-2020-1472 CVE-2020-1472]. Since the bug is a protocol level flaw, and Samba implements the protocol, Samba is also vulnerable.
    63 KB (9,242 words) - 20:37, 22 September 2020
  • For more details and workarounds, please refer to the security advisory. ...e.org/cgi-bin/cvename.cgi?name=CVE-2019-3880 CVE-2019-3880] (Save registry file outside share as unprivileged user)
    56 KB (8,271 words) - 21:43, 17 September 2019
  • ....samba.org/show_bug.cgi?id=12021 BUG #12021]: Fix smbd crash (Signal 4) on File Delete. ...12139 BUG #12139]: s3: oplock: Fix race condition when closing an oplocked file.
    76 KB (11,563 words) - 22:02, 17 September 2019
  • :The implementation of ACL inheritance in the Samba AD DC was not complete, and so absent a 'full-sync' replication, ACLs could get out of sync between dom For more details and workarounds, please refer to the security advisories.
    76 KB (11,334 words) - 15:03, 3 March 2020
  • ...http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5330 CVE-2015-5330] and [http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3223 CVE-2015-3223] ...vided by the AD DC in the samba daemon process to consume unlimited memory and be terminated.
    80 KB (11,979 words) - 22:04, 17 September 2019
  • ...ry DC will issue weak rc4-hmac session keys for use between modern clients and servers despite all modern Kerberos implementations supporting the aes256-c ...e rc4-hmac as a client even if the server supports aes128-cts-hmac-sha1-96 and/or aes256-cts-hmac-sha1-96.
    57 KB (8,418 words) - 16:59, 9 March 2023
  • ...ns that the attacker can impersonate a server being connected to by Samba, and return malicious results. ..."client ipc max protocol" in their effective default settings ("mandatory" and "SMB3_11").
    94 KB (14,313 words) - 22:03, 17 September 2019
  • :A man in the middle attack can read and may alter confidential documents transferred via a client connection, which ...te access to a share can cause server memory contents to be written into a file or printer.
    78 KB (11,799 words) - 22:01, 17 September 2019
  • * [[Samba Security Process]] for how to report and what happens to security vulnerabilities in Samba. Samba is the standard Windows interoperability suite of programs for Linux and Unix.
    130 KB (20,385 words) - 02:43, 9 May 2024