Recent Posts

Pages: [1] 2 3 ... 10
1
I had to do the backup with the scripts / usr / share / zentyal-samba / Zentyal, if someone can do the export and import with apache DS or any tool I hope they share it in the right way.
Thanks!
2
Portuguese / Bloqueio de sites porno e maliciosos
« Last post by always_humble on Today at 02:22:07 pm »
Bom dia,

alguem pode me ajudar como faco para bloquear esses sites? Ja baixei a lista de shallalit...

Usando o Zentyal como controlador de dominio e proxy transparente

2 placas de rede

Se precisarem de mais info, me avisem.
3
Directory and Authentication / Re: can't create or edit users
« Last post by a.chirkov on Today at 07:26:13 am »
up
4
Hi for everyone and thanks in advance for your help.
I have an old Zentyal server with 70 users, we need to export and import to another server, I try to do it with LDAP Admin and Apache DS but I get this error, I have not found some way to resolve it, I hope any help.
Thanks!

Complete log error:

Error while importing LDIF
 - 00002035: The primary group isn't settable on add operations!
org.apache.directory.api.ldap.model.exception.LdapUnwillingToPerformException: 00002035: The primary group isn't settable on add operations!
   at org.apache.directory.api.ldap.model.message.ResultCodeEnum.processResponse(ResultCodeEnum.java:2003)
   at org.apache.directory.studio.connection.core.io.api.DirectoryApiConnectionWrapper.checkResponse(DirectoryApiConnectionWrapper.java:1355)
   at org.apache.directory.studio.connection.core.io.api.DirectoryApiConnectionWrapper.access$11(DirectoryApiConnectionWrapper.java:1351)
   at org.apache.directory.studio.connection.core.io.api.DirectoryApiConnectionWrapper$6.run(DirectoryApiConnectionWrapper.java:911)
   at org.apache.directory.studio.connection.core.io.api.DirectoryApiConnectionWrapper.runAndMonitor(DirectoryApiConnectionWrapper.java:1277)
   at org.apache.directory.studio.connection.core.io.api.DirectoryApiConnectionWrapper.checkConnectionAndRunAndMonitor(DirectoryApiConnectionWrapper.java:1222)
   at org.apache.directory.studio.connection.core.io.api.DirectoryApiConnectionWrapper.createEntry(DirectoryApiConnectionWrapper.java:929)
   at org.apache.directory.studio.ldapbrowser.core.jobs.ImportLdifRunnable.importLdifRecord(ImportLdifRunnable.java:445)
   at org.apache.directory.studio.ldapbrowser.core.jobs.ImportLdifRunnable.importLdif(ImportLdifRunnable.java:272)
   at org.apache.directory.studio.ldapbrowser.core.jobs.ImportLdifRunnable.run(ImportLdifRunnable.java:218)
   at org.apache.directory.studio.connection.core.jobs.StudioConnectionJob.run(StudioConnectionJob.java:109)
   at org.eclipse.core.internal.jobs.Worker.run(Worker.java:63)

00002035: The primary group isn't settable on add operations!



5
Installation and Upgrades / Block Porn and Malicious sites
« Last post by always_humble on July 22, 2021, 02:50:25 pm »
Hi there,

just installed version 7, running on Hyper-V... 2 NICs, Domain Controller

How do I block PORN and MALICIOUS sites ?

Thanks
6
Directory and Authentication / Re: can't create or edit users
« Last post by a.chirkov on July 22, 2021, 12:31:24 pm »
No errors:
Quote
root@zentyal:/home/user# samba-tool dbcheck --cross-ncs
Checking 3808 objects
Checked 3808 objects (0 errors)
7
Directory and Authentication / Re: can't create or edit users
« Last post by turalyon on July 22, 2021, 12:11:25 pm »
Did you check the status of the internal database of Samba?

* https://wiki.samba.org/index.php/Dbcheck
8
Directory and Authentication / can't create or edit users
« Last post by a.chirkov on July 22, 2021, 09:21:34 am »
Hi. I have Zentyal 6.2 as addition ad controller to windows server 2008r2.
Connects to the domain without errors, I see users in the web interface.
But then i try edit or create users I get the error:
Quote
There was an error updating LDAP: The request referenced an attribute that does not exist .<br/> Operation parameters:'modify [ \'add\', [ \'objectClass\', [ \'systemQuotas\' ] ] ] ' at /usr/share/perl5/EBox/Samba/LdapObject.pm line 433
In logs:
Quote
Command output: .
Exit value: 1 at root command set -e
rm -f '/var/lib/zentyal/conf/samba.keytab'
samba-tool domain exportkeytab '/var/lib/zentyal/conf/samba.keytab' --principal='ÐÑÑаÑоÑ@EP.LOC'
chown 'ebox:ebox' '/var/lib/zentyal/conf/samba.keytab'
chmod 400 '/var/lib/zentyal/conf/samba.keytab' failed.
Error output: GENSEC backend 'gssapi_spnego' registered
 GENSEC backend 'gssapi_krb5' registered
 GENSEC backend 'gssapi_krb5_sasl' registered
 GENSEC backend 'spnego' registered
 GENSEC backend 'schannel' registered
 GENSEC backend 'naclrpc_as_system' registered
 GENSEC backend 'sasl-EXTERNAL' registered
 GENSEC backend 'ntlmssp' registered
 GENSEC backend 'ntlmssp_resume_ccache' registered
 GENSEC backend 'http_basic' registered
 GENSEC backend 'http_ntlm' registered
 GENSEC backend 'krb5' registered
 GENSEC backend 'fake_gssapi_krb5' registered
 Export one principal to /var/lib/zentyal/conf/samba.keytab
 chown: cannot access '/var/lib/zentyal/conf/samba.keytab': No such file or directory

Command output: .
Exit value: 1 at /usr/share/perl5/EBox/Module/Service.pm line 971
EBox::Module::Service::restartService('EBox::Samba=HASH(0x561a5296b3d0)', 'restartModules', 1) called at /usr/share/perl5/EBox/Util/Init.pm line 121
eval {...} at /usr/share/perl5/EBox/Util/Init.pm line 119
EBox::Util::Init::moduleAction('samba', 'restartService', 'start') called at /usr/share/perl5/EBox/Util/Init.pm line 87
EBox::Util::Init::start at /usr/bin/zs line 35
main::main at /usr/bin/zs line 82
2021/07/22 11:55:42 INFO> Service.pm:965 EBox::Module::Service::restartService - Restarting service for module: webadmin
2021/07/22 11:55:45 INFO> Init.pm:90 EBox::Util::Init::start - Start modules finished
2021/07/22 11:55:49 INFO> SyncDaemon.pm:340 EBox::Samba::SyncDaemon::run - Samba sync daemon started
2021/07/22 11:56:06 ERROR> LdapObject.pm:433 EBox::Samba::LdapObject::save - There was an error updating LDAP: The request referenced an attribute that does not exist
Ok, based on this instruction https://wiki.samba.org/index.php/Keytab_Extraction created a keytab on the windows server and copied to  /var/lib/zentyal/conf/samba.keytab', but it didn't help and after restarting the service the keytab file was gone.
if i run command manualy:
Quote
user@zentyal:~$ sudo samba-tool domain exportkeytab '/var/lib/zentyal/conf/samba.keytab' --principal='ÐÑÑаÑоÑ@EP.LOC'
Quote
GENSEC backend 'gssapi_spnego' registered
GENSEC backend 'gssapi_krb5' registered
GENSEC backend 'gssapi_krb5_sasl' registered
GENSEC backend 'spnego' registered
GENSEC backend 'schannel' registered
GENSEC backend 'naclrpc_as_system' registered
GENSEC backend 'sasl-EXTERNAL' registered
GENSEC backend 'ntlmssp' registered
GENSEC backend 'ntlmssp_resume_ccache' registered
GENSEC backend 'http_basic' registered
GENSEC backend 'http_ntlm' registered
GENSEC backend 'krb5' registered
GENSEC backend 'fake_gssapi_krb5' registered
Export one principal to /var/lib/zentyal/conf/samba.keytab
When i edit or create user from windows on zentyal controller - all work fine, in zentual log:
Quote
INFO> SyncDaemon.pm:125 EBox::Samba::SyncDaemon::checkUsers - Set user 'CN=test2,CN=Users,DC=EP,DC=LOC' uidNumber=65727
SyncDaemon.pm:131 EBox::Samba::SyncDaemon::checkUsers - Set user 'CN=test2,CN=Users,DC=EP,DC=LOC' gidNumber=2513

How do I fix this problem?
9
Spanish / Integración de Zimbra con autenticación en Zentyal
« Last post by GuidoC on July 21, 2021, 09:27:44 pm »
Este método funciona desde la versión de Zentyal 4.2 hasta Zentyal 7 y desde la versión de Zimbra 7.x hasta Zimbra 9.x.

  • Primero ingresamos a Zentyal y creamos un usuario que este en el grupo de administradores de dominio, este usuario servirá para la sincronización de cuentas y autenticación entre Zentyal y Zimbra.
  • En la pantalla inicial de Zimbra configuramos un nuevo dominio
  • En el modo de autenticación usaremos los siguientes valores:
    • Filtro LDAP = (samAccountName=%u):  Se tienen 2 opciones %n para validar nombre de usuario y dominio "usuario@dominio.com" y %u si se quiere validar el nombre de usuario sin @ "usuario", este último parámetro es muy útil cuando se tiene un nombre de  dominio interno (guidocutipa.local) diferente al nombre de dominio publicado en internet (guidocutipa.blog.bo)
    • Base de búsqueda de LDAP = DC=guidocutipa,DC=blog,DC=bo
  • En configuración de autenticación, se debe escribir el nombre de usuario y contraseña creado en el primer punto de esta lista

Una descripción más detalla se puede encontrar en el siguiente enlace https://guidocutipa.blog.bo/integracion-de-zimbra-con-autenticacion-de-usuarios-en-zenyal/
10
Installation and Upgrades / Re: Zentyal 7.0 Install on a LXC Container
« Last post by Daniel Joven on July 20, 2021, 04:48:34 pm »
Hi Deslack,

The command that you used to fix the Suricata public key is defined in the script:

Code: [Select]
## Adding Suricata repositorio for zentyal-ips module
if ! grep -qR 'http://ppa.launchpad.net/oisf/suricata-stable/ubuntu' /etc/apt/sources.list*
  then
    echo "deb http://ppa.launchpad.net/oisf/suricata-stable/ubuntu $(lsb_release -sc) main" >> /etc/apt/sources.list
    apt-key adv --keyserver keyserver.ubuntu.com --recv-keys ${SURI_KEY}
fi

Is it possible that you already had that repository in your Ubuntu server? How many times times did you run the script?

Best regards, Daniel Joven.
Pages: [1] 2 3 ... 10