Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Messages - segelfreak

Pages: 1 [2] 3 4 ... 6
16
bump!

No one with this problem? Not needed anywhere?  :(

17
Folks,

After having switched to 5.0, I can't see any shared contacts or shared addressbooks anymore. As a consequence, it seems I can also not add any users to the permissions, i.e. cannot share my calendars anymore.
Any solution at hand?

18
Installation and Upgrades / LOG for DHCP not working under 5.0 ?
« on: October 06, 2017, 05:27:59 pm »
Dears,

Seems to me that DHCP Log is not collecting any data.
Can someone check and confirm?


19
please try with this (suggestions from realflow):
Code: [Select]
sudo mkdir -p /etc/zentyal/stubs/samba
sudo cp /usr/share/zentyal/stubs/samba/smb.conf.mas /etc/zentyal/stubs/samba/smb.conf.mas
sudo sed -i '/\[global\]/a lanman auth = yes\nntlm auth = yes' /etc/zentyal/stubs/samba/smb.conf.mas
sudo zs samba restart

Works!!!

Great Job, Thanks!

20
Hi Julio,

After having successfully installed a new 5.0 system with the radius module (as per your new instruction), I'm still struggling to get it up and running.
Wifi clients are rejected.
Please see log:
Code: [Select]
rad_recv: Access-Request packet from host 192.168.1.2 port 3072, id=0, length=165
Sat Sep 23 17:09:53 2017 : Info: Cleaning up request 8 ID 0 with timestamp +20
        User-Name = "user"
        NAS-IP-Address = 192.168.1.2
        Called-Station-Id = "0016e37246ff"
        Calling-Station-Id = "90fd6153bfc4"
        NAS-Identifier = "0016e37246ff"
        NAS-Port = 40
        Framed-MTU = 1400
        NAS-Port-Type = Wireless-802.11
        EAP-Message = 0x0208002e190017030300230bf5df21adc20eeb36f8c66f036cd7e3b97e8f593fa2b13b9763b32e9db63655c5f04b
        Message-Authenticator = 0x69f2de24306d9ee3142149f1f95e5448
Sat Sep 23 17:09:53 2017 : Info: # Executing section authorize from file /etc/freeradius/sites-enabled/default
Sat Sep 23 17:09:53 2017 : Info: +group authorize {
Sat Sep 23 17:09:53 2017 : Info: ++[preprocess] = ok
Sat Sep 23 17:09:53 2017 : Info: ++[chap] = noop
Sat Sep 23 17:09:53 2017 : Info: ++[mschap] = noop
Sat Sep 23 17:09:53 2017 : Info: [eap] EAP packet type response id 8 length 46
Sat Sep 23 17:09:53 2017 : Info: [eap] Continuing tunnel setup.
Sat Sep 23 17:09:53 2017 : Info: ++[eap] = ok
Sat Sep 23 17:09:53 2017 : Info: +} # group authorize = ok
Sat Sep 23 17:09:53 2017 : Info: Found Auth-Type = EAP
Sat Sep 23 17:09:53 2017 : Info: # Executing group from file /etc/freeradius/sites-enabled/default
Sat Sep 23 17:09:53 2017 : Info: +group authenticate {
Sat Sep 23 17:09:53 2017 : Info: [eap] Either EAP-request timed out OR EAP-response to an unknown EAP-request
Sat Sep 23 17:09:53 2017 : Info: [eap] Failed in handler
Sat Sep 23 17:09:53 2017 : Info: ++[eap] = invalid
Sat Sep 23 17:09:53 2017 : Info: +} # group authenticate = invalid
Sat Sep 23 17:09:53 2017 : Info: Failed to authenticate the user.
Sat Sep 23 17:09:53 2017 : Auth: Login incorrect: [user] (from client 192.168.1.2/32 port 40 cli 90fd6153bfc4)
Sat Sep 23 17:09:53 2017 : Info: Using Post-Auth-Type Reject
Sat Sep 23 17:09:53 2017 : Info: # Executing group from file /etc/freeradius/sites-enabled/default
Sat Sep 23 17:09:53 2017 : Info: +group REJECT {
Sat Sep 23 17:09:53 2017 : Info: [attr_filter.access_reject]    expand: %{User-Name} -> user
Sat Sep 23 17:09:53 2017 : Debug: attr_filter: Matched entry DEFAULT at line 11
Sat Sep 23 17:09:53 2017 : Info: ++[attr_filter.access_reject] = updated
Sat Sep 23 17:09:53 2017 : Info: +} # group REJECT = updated
Sat Sep 23 17:09:53 2017 : Info: Delaying reject of request 9 for 1 seconds
Sat Sep 23 17:09:53 2017 : Debug: Going to the next request
Sat Sep 23 17:09:53 2017 : Debug: Waking up in 0.9 seconds.
Sat Sep 23 17:09:54 2017 : Info: Sending delayed reject for request 9
Sending Access-Reject of id 0 to 192.168.1.2 port 3072
Sat Sep 23 17:09:54 2017 : Debug: Waking up in 4.9 seconds.

I have reset the passwords (which did the trick last time https://forum.zentyal.org/index.php/topic,25541.msg103865.html#msg103865), but luck.

Tried different settings in the Radius module, all users, domains users, etc., nothing worked.
I saw these lines in the log:
Sat Sep 23 17:09:53 2017 : Info: [eap] Either EAP-request timed out OR EAP-response to an unknown EAP-request
Sat Sep 23 17:09:53 2017 : Info: [eap] Failed in handler
Sat Sep 23 17:09:53 2017 : Info: ++[eap] = invalid
Sat Sep 23 17:09:53 2017 : Info: +} # group authenticate = invalid
Sat Sep 23 17:09:53 2017 : Info: Failed to authenticate the user.

Anything to do with it?


21
German / Re: Zentyal 5 Lubuntu Clients
« on: September 17, 2017, 07:40:38 pm »
Setze gerade 5.0 auf und bin noch nicht dabei die clients (wieder) einzubinden, aber unter 4,2 lief es bei mir so prima. Hoffe, es läuft auch unter 5.0, sonst hab ich selbst auch ein mega Problem...  ::)

Kleines Update dazu: Unter 5.0 läuft es ohne Probleme.

22
German / Re: Zentyal 5 Lubuntu Clients
« on: September 10, 2017, 08:18:26 pm »
Den pbis-open client gibt's übrigens hier: https://www.beyondtrust.com/products/powerbroker-identity-services-open/

Funktioniert ganz wunderbar .

23
German / Re: Zentyal 5 Lubuntu Clients
« on: September 10, 2017, 08:15:07 pm »
Moin,

hier schon mal nachgeschaut?
https://forum.zentyal.org/index.php/topic,28247.msg102024.html#msg102024
und hier:
https://forum.zentyal.org/index.php/topic,28192.msg101944.html#msg101944

Setze gerade 5.0 auf und bin noch nicht dabei die clients (wieder) einzubinden, aber unter 4,2 lief es bei mir so prima. Hoffe, es läuft auch unter 5.0, sonst hab ich selbst auch ein mega Problem...  ::)

24
Installation and Upgrades / grant AD users access to the web admin GUI
« on: September 09, 2017, 08:39:03 pm »
Dears,

Having set up a new server with 5.0, I recognize that it seems impossible to grant users from the AD Administrator Access to the Web GUI.
In 4.2 one could simply add them under "System/General/Administrator Accounts" and then they were listed along with the local admin accounts.

Now in 5.0, I can still add them and they will be still listed, however, I notice that they are now listed with the domain part added (i.e. domain\username), but login will result in a "long password" failure.
I need to give the "domain admins" access to the Dashboard, so they can add users via the gui.

Anyone having a clue what needs to be done?

(PAM is enabled under LDAP Settings)

25
Installation and Upgrades / Re: upgrade to 5.0 ends in disaster
« on: September 09, 2017, 08:33:00 pm »
Julio,

It appears that I had to build the server new form scratch.
When I tried to boot it with the broken installation, I even got a kernel panic now. I decided to not spend any more time into this.
I'm now about to setup the 5.0 version and recover as much of user information as possible.

Thanks anyway for offering your help, though!


26
Installation and Upgrades / Re: upgrade to 5.0 ends in disaster
« on: August 31, 2017, 05:26:49 pm »
Hi Julio,

No, you're not too late. I was on holiday and did not yet move forward in any way on this.
Guess I'll have the chance to plug the system back in over the next days. I can send you the logs then. Maybe we find a way to get out of this mess without too much trouble.

So, this is just to send you some temp feedback. Appreciate your help a lot!!!

More to come,...

27
Dear All,

We use a 4.23 installation in a non-profit organization, unfortunately with some more people having access as administrators then I would have preferred. Now it appears that one of the admins did run the upgrade from 4.2 to 5.0 by "mistake" and it ended in a totally destroyed system. Maybe one shouldn't be too much surprised that it didn't work as straight as it should, especially since the upgrade was offered at all times in such a prominent way. But I'd never expected to have the system left in such a bad state after all.

Without having had the chance to have a deep look into the whole mess, it seems like even the distro upgrade from 14.04 to 16.04 did not complete well and effectively most of zentyals packages, incl. core, did not correctly upgrade, either.

Now its stuck in an endless circle of uncompleted configuration attempts (for zentyal-core), incomplete php5 replacements and whatever else.
Big mess. Non of the "usual" ways worked so far, although I tried not only apt-get -f install's, etc. to forced install or removal attempts. It's always trying to configure the core, returns an error and will break the upgrade at that point.

Now, unless someone has a better approach, I seem to have two options:
Install 4.2 again from scratch and use one of the backups we made from time to time.
Alternatively, try to bring the upgrade to an end, but I don't think it makes much sense to try to repair this destroyed linux deployment by hand, as there seem to be too many libraries effected. Instead I could save all important data, make a fresh 5.0 installation and restore as much as possible from any manually saved data.

Since I can't use zentyals backup module anymore, is there any source, guide, white paper or similar which I could us to manually backup the latest states, i.e. the AD "deployment" in any way?

As you can imagine, I'm pretty open to any suggestions which will help me to save as much as possible from the installation.
Easy to do for all home directories, etc.. I also don't care too much about firewalls, etc. but setting up the AD again from nothing would be painful. It's about 50 accounts...

 


28
you have to replace {server} and {domain} with your individual real entries

p.s. same of course for {full domain}. they are just place holders

29
Gestern (mit Certbot, sonst wie im Post von Segelfreak beschrieben) umgestellt.
Bis jetzt keine Probleme, die nächsten Zentyal Updates werden zeigen, ob alle Änderungen bleiben.
Reboot-fest ist die Lösung jedenfalls ;-)

Gruß

Thomas

Das neue Modul Update für Mail killt die Zertifikatseinstellungen, weil neue stubs eingespielt werden. Musste einfach wieder die Pfade neu setzen. Fertig.

30

Code: [Select]
Linux zentyal 4.4.0-45-generic #66~14.04.1-Ubuntu SMP Wed Oct 19 15:05:38 UTC 2016 x86_64 x86_64 x86_64 GNU/Linux
Works too!

Pages: 1 [2] 3 4 ... 6