Re: [Samba] Samba 4.8 Config SMB.Conf File


These are all VMs I am working on. I have tried it on several different
"test" VMs. Blew away VMs and created new ones, still does not work.

It takes me a little time to type the info from the directories because I
cannot copy/past due to network separation.

Contents below:


/etc/hosts localhost localhost.localdomain localhost4 localhost4.localdomain4
:1 localhost localhost.localdomain localhost6 localhost6.localdomain6
IPADDR  testadmin.mydomain.com   testadmin
IPADDR DC1.mydomain.com            DC1

search mydomain.com
nameserver "ipaddress for DC1"
nameserver "ipaddress for DC2"

includedir /var/lib/sss/pubconf/krb5.include.d/
default = FILE:/var/log/krb5libs.log
kdc = FILE: /var/log/kadmind.log

dns_lookup_realm = false
ticket_lifetime = 24hr
renew_lifetime = 7d
forwardable = true
rdsn = false
# default_realm = EXAMPLE.COM
default_ccache_name = KEYRING:persistent:%{uid}

default_realm = MYDOMAIN.COM
# kdc = kerberos.example.com
# admin_server = kerberos.example.com

 kdc = dc1.MYDOMAIN.COM

kdc = dc1.MYDOMAIN.COM

#.example.com = EXAMPLE.COM
#example.com = EXAMPLE.COM
 mydomain.com = MYDOMAIN.COM
 .mydomain.com = MYDOMAIN.COM

workgroup = mydomain
> realm = mydomain.com
> security = ads
> idmap config * : backend = tdb
> idmap config * : range = 3000-7999
> idmap config MYDOMAIN : backend = rid
> idmap config MYDOMAIN : range = 10000-19999
> allow trusted domain = no
> template shell = /bin/bash
> winbind refresh tickets = yes
> restrict anonymous = 2

 passwd:    files  winbind
 shadow:    files
 group:       files  winbind
 #initgroups : files

 hosts: files  dns  myhostname

 bootparams:  nisplus [NOTFOUND=return]  files

 ethers:       files
 netmasks: files
 networks:  files
 protocols:  files
 rpc:            files
 services:   files

 netgroup:   files
 publickey:  nisplus

 automount:  files
 aliases:        files  nisplus

On Thu, Mar 14, 2019 at 5:20 PM Rowland Penny via samba <
samba@xxxxxxxxxxxxxxx> wrote:

> On Thu, 14 Mar 2019 14:07:33 -0400
> Tyrus Shivers <tyrus.shivers@xxxxxxxxxxxxxxx> wrote:
> > Yes global is there.
> >
> > testparm output shows everything is ok, no error.  ROLE_DOMAIN_Member
> >
> > Then I can press enter and see a dump.
> >
> > yes, wbinfo produces output of mydomain\user
> >
> > I left the domain, rejoined, and still no such user. wbinfo outputs
> > users and groups on command.
> >
> OK, I remembered that I had a Centos 7 VM, so I started it and checked
> if 'id user' worked and it did. Samba was 4.7.x at this point. Ran 'yum
> update' and Samba was updated to 4.8.3, tested 'id user' again and it
> still worked. Rebooted and tried again, it still worked.
> So, it looks like it is possibly a problem on your Computer.
> Can you post the following files (you may have already posted some of
> them already, but please post them again, so they are all in one place):
> /etc/hostname
> /etc/hosts
> /etc/resolv.conf
> /etc/krb5.conf
> /etc/samba/smb.conf
> /etc/nsswitch.conf
> Rowland
> --
