Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Messages - badapple7

Pages: [1] 2
1
Other modules / Re: DNS setup for LAN webserver
« on: February 27, 2021, 11:28:25 pm »
hi, the "server dns of cache" is different to "server dns of zone", i think that people confuse this, post your config bind.

2
In other topic a user similar problem, possible the reset sysvol working!

3
Directory and Authentication / Re: GPO's under user configuration
« on: February 27, 2021, 11:16:04 pm »
sorry man, for the time, my english is ver bad, after delete of gpo, cretate an new gpo, but for groups, normally the gpo is created for "user authenticated"


---

other opcion is reset sysvol on samba-tool

https://wiki.samba.org/index.php/Sysvolreset

4
Directory and Authentication / Re: GPO's under user configuration
« on: January 30, 2021, 05:48:28 am »
Hi leo, you have syntax error in   
Quote
wbinfo --uid-info=3000002

sintax ok :wbinfo --uid-info= 3000002

------

I thinks in other possible solution, if not we will return to the terminal :-(

ok I think in delete gpo, but the next (on rsat admin, very easy );

well now I use "gpo_new" for example;



deleting gpo;




the next is very important, sometimes after delete the  gpo, if you verify with samba-tool gpo listall, It is there, from rsat we do not see it but it is still there .. for continue easy use editor adsi for delete gpo




the gpo is deleted really!!!

now create new gpo but, Not for "users" or "user authenticated ", you search  "groups" for gpo "active"






if all this process does not work, then we will have to work on the shell, but remember to check the syntax.

                                                                     

5
Directory and Authentication / Re: GPO's under user configuration
« on: January 27, 2021, 06:12:12 pm »
  Sorry man;


  wbinfo --uid-info= 3000002
  wbinfo --uid-info= 3000003
  wbinfo --uid-info= 3000007
  wbinfo --uid-info= 3000010
  wbinfo --uid-info= 3000019

6
Sin tener ningun log a mano es muy dificil de poder "ver" el problema, de todas manera creo que hay un concepto equivocado (disculpas si me equipo) en relación a los puertos y formas de auténticacion del servidor y de los propios clientes de correo.

Podria publicar el mail.log  y también una captura de  conf de su cliente de correo.

7
Email and Groupware / Re: Cannot send mails (Thunderbird)
« on: January 27, 2021, 04:23:29 am »
Hi, please try to send an email again and post the mail.log

8
Directory and Authentication / Re: GPO's under user configuration
« on: January 27, 2021, 04:18:14 am »
Sorry for the time, please post;

wbinfo --uid-info= (all user)

9
Directory and Authentication / Re: GPO's under user configuration
« on: January 17, 2021, 03:17:56 am »
im creating the GPO's on RSAT, it is showed on SYSVOL, on event viewer of clients there is no errors related with gpo and if u do a gpresult the gpo is there but nothing happens. ( not even a simple gpo to  map a drive )

I think "fast" solution is delete this gpo and create new one, if also dont work, could be permissions problem, please post results;

samba-tool gpo listall
samba-tool gpo show (uid gpo)
getfacl /var/lib/samba/sysvol/yourdomain/Policies/selectyougpo

10
Directory and Authentication / Re: GPO's under user configuration
« on: January 05, 2021, 10:30:03 pm »
create gpo on rsat?? or samba-tool gpo? the new policies its present in sysvol? check present gpo with samba-tool gpo listall.

11
Directory and Authentication / Re: Login limitation by time
« on: January 04, 2021, 03:51:41 am »
Hi install rsat is very easy of Windows 10 (pro), on config -> Applications and features -> add features optional..this can change, its me bad English.

----------------------

Now if your decided use console for manager your domain, I thinks in read first all man's available for samba, but here one help pdbedit(pdbedit — manage the SAM database (Database of Samba Users))

-K|--kickoff-time

    This option is used to modify the kickoff time for a certain user. Use "never" as argument to set the kickoff time to unlimited.

    Example: pdbedit -K never user


https://www.samba.org/samba/docs/current/man-html/pdbedit.8.html



12
Spanish / Re: acceso a servicio de webmail por dominio
« on: December 26, 2020, 04:03:43 am »
No se si entendi bien tu consulta....localmente quieres acceder al webmail pero tienes que hacerlo con la ip porque si tratas de ingresar con webmail.xxxx no responde? es asi tu pregunta? si es asi el error esta en servidor de dns o bien deberias crear un registro tipo A. Si
el caso es que accedes desde el "ext" bajo un dominio y luego al acceder al webmail el navegador te muestra la ip, tambien, si bien puedes "enmascarar" la ip, el problema sigue radicando en tu dns server.

13
Directory and Authentication / Re: issue not resolving?
« on: December 26, 2020, 03:46:48 am »
post your config code of bind9 isc-dhcp and samba.....

14
To display the current configuration use for example the command samba-tool domain passwordsettings show

You can modify the Samba configuration with various parameters and options:

    samba-tool domain passwordsettings set --account-lockout-threshold=5
    Defines the number of attempts users have to log in (here: 5). Thereafter the account will be locked.
    samba-tool domain passwordsettings set --account-lockout-duration=3
    Sets the amount of minutes to lock up after the users have entered an incorrect password too many times.
    samba-tool domain passwordsettings set --reset-account-lockout-after=5
    Configures the amount of minutes until the counter is reset.

If an account is automatically unlocked after the configured duration, the counter will not be reset. In consequence, the account remains under surveillance for a while. After the end of the lockout and before the counter is finally reset, a new failed attempt will lead to a lockout of the account immediately.

15
Hi! I need more info... please.. the user locked is lock on only computer or all compuerts is locked for this user? used roaming profiles? much question could create now only for reason, butr one solution fast is delete the user (before, create files user back-up ) and create again this username, this dont resolve your problem but is generate other gid for username. this usermane is probally havent more problems...

***edit1;
Quote
   Samba supports logging of successful authorization events but not unsuccessful authorization events. It can log both successful and unsuccessful authentication events.

https://wiki.samba.org/index.php/Setting_up_Audit_Logging

----

Some command pdbedit or wbinfo can great utilities!!

Pages: [1] 2