Toon posts:

Samba doet het alleen ingestelt op share

Pagina: 1
Acties:
  • 128 views sinds 30-01-2008

Verwijderd

Topicstarter
Win 98 clients doen het maar windows 2000 zegt: KAN GEEN VERTROUWENSRELATIE MET PRIMAIRE DOMEIN OPBOUWEN :?
[edit]
Nieuwe foutmelding:
De referenties kloppen niet met een bepaalde groep referentie. in de Knowledge Base staat niets over deze foutmelding
[edit]
o, ja ik heb samba 2.2 op een REDHAT 6.2 systeem
smb.conf file:
# This is the main Samba configuration file. You should read the
# smb.conf(5) manual page in order to understand the options listed
#
# Any line which starts with a ; (semi-colon) or a # (hash)
# is a comment and is ignored. In this example we will use a #
# for commentry and a ; for parts of the config file that you
# may wish to enable
#
# NOTE: Whenever you modify this file you should run the command "testparm"
# to check that you have not many any basic syntactic errors.
#
#======================= Global Settings =====================================
[global]
# workgroup = NT-Domain-Name or Workgroup-Name
workgroup = TALG
netbios name = server
announce version = 4.5
announce as = NT
# server string is the equivalent of the NT Description field
server string = Samba Server %v on (%h)
; add user script = /usr/bin/useradd -d /dev/null -g 100 -s /bin/false -M %u
# This option is important for security. It allows you to restrict
# connections to machines which are on your local network. The
# following example restricts access to two C class networks and
# the "loopback" interface. For more examples of the syntax see
# the smb.conf man page
; hosts allow = 192.168.1. 127.

# if you want to automatically load your printer list rather
# than setting them up individually then you'll need this
printcap name = /etc/printcap
load printers = yes

# It should not be necessary to spell out the print system type unless
# yours is non-standard. Currently supported print systems include:
# bsd, sysv, plp, lprng, aix, hpux, qnx
; printing = bsd

# Uncomment this if you want a guest account, you must add this to /etc/passwd
# otherwise the user "nobody" is used
; guest account = pcguest

# this tells Samba to use a separate log file for each machine
# that connects
log file = /var/log/samba/log.%m

# Put a capping on the size of the log files (in Kb).
max log size = 1000
socket options = TCP_NODELAY IPTOS_LOWDELAY

# Security mode. Most people will want user level security. See
# security_level.txt for details.
security = user

# Use password server option only with security = server
; password server = <NT-Server-Name>

# Password Level allows matching of _n_ characters of the password for
# all combinations of upper and lower case.
; password level = 8
; username level = 8

# You may wish to use password encryption. Please read
# ENCRYPTION.txt, Win95.txt and WinNT.txt in the Samba documentation.
# Do not enable this option unless you have read those documents
encrypt passwords = yes
smb passwd file = /etc/samba/smbpasswd

# The following are needed to allow password changing from Windows to
# update the Linux sytsem password also.
# NOTE: Use these with 'encrypt passwords' and 'smb passwd file' above.
# NOTE2: You do NOT need these to allow workstations to change only
# the encrypted SMB passwords. They allow the Unix password
# to be kept in sync with the SMB password.
unix password sync = Yes
passwd program = /usr/bin/passwd %u
passwd chat = *New*UNIX*password* %n\n *ReType*new*UNIX*password* %n\n *passwd:*all*authentication*tokens*updated*successfully*

# Unix users can map to different SMB User names
username map = /etc/samba/smbusers

# Using the following line enables you to customise your configuration
# on a per machine basis. The %m gets replaced with the netbios name
# of the machine that is connecting
; include = /etc/smb.conf.%m

# Most people will find that this option gives better performance.
# See speed.txt and the manual pages for details
socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192

# Configure Samba to use multiple interfaces
# If you have multiple network interfaces then you must list them
# here. See the man page for details.
; interfaces = 192.168.12.2/24 192.168.13.2/24

# Configure remote browse list synchronisation here
# request announcement to, or browse list sync from:
#a specific host or from / to a whole subnet (see below)
; remote browse sync = 192.168.3.25 192.168.5.255
# Cause this host to announce itself to local subnets here
; remote announce = 192.168.1.255 192.168.2.44

# Browser Control Options:
# set local master to no if you don't want Samba to become a master
# browser on your network. Otherwise the normal election rules apply
; local master = no

# OS Level determines the precedence of this server in master browser
# elections. The default value should be reasonable
os level = 64

# Domain Master specifies Samba to be the Domain Master Browser. This
# allows Samba to collate browse lists between subnets. Don't use this
# if you already have a Windows NT domain controller doing this job
domain master = yes

# Preferred Master causes Samba to force a local browser election on startup
# and gives it a slightly higher chance of winning the electio
preferred master = yes

# Use only if you have an NT server on your network that has been
# configured at install time to be a primary domain controller.
; domain controller = <NT-Domain-Controller-SMBName>

# Enable this if you want Samba to be a domain logon server for
# Windows95 workstations.
domain logons = yes

# if you enable domain logons then you may want a per-machine or
# per user logon script
# run a specific logon batch file per workstation (machine)
logon script = login.bat
# run a specific logon batch file per usernam
; logon script = %U.bat

# Where to store roving profiles (only for Win95 and WinNT)
# %L substitutes for this servers netbios name, %U is username
# You must uncomment the [Profiles] share below
; logon path = \\%L\Profiles\%U

# All NetBIOS names must be resolved to IP Addresses
# 'Name Resolve Order' allows the named resolution mechanism to be specified
# the default order is "host lmhosts wins bcast". "host" means use the unix
# system gethostbyname() function call that will use either /etc/hosts OR
# DNS or NIS depending on the settings of /etc/host.config, /etc/nsswitch.conf
# and the /etc/resolv.conf file. "host" therefore is system configuration
# dependant. This parameter is most often of use to prevent DNS lookups
# in order to resolve NetBIOS names to IP Addresses. Use with care!
# The example below excludes use of name resolution for machines that are NOT
# on the local network segment
# - OR - are not deliberately to be known via lmhosts or via WINS.
; name resolve order = wins lmhosts bcast

# Windows Internet Name Serving Support Section:
# WINS Support - Tells the NMBD component of Samba to enable it's WINS Server
wins support = yes

# WINS Server - Tells the NMBD components of Samba to be a WINS Client
#Note: Samba can be either a WINS Server, or a WINS Client, but NOT both
; wins server = w.x.y.z

# WINS Proxy - Tells Samba to answer name resolution queries on
# behalf of a non WINS capable client, for this to work there must be
# at least oneWINS Server on the network. The default is NO.
; wins proxy = yes

# DNS Proxy - tells Samba whether or not to try to resolve NetBIOS names
# via DNS nslookups. The built-in default for versions 1.9.17 is yes,
# this has been changed in version 1.9.18 to no.
dns proxy = no

# Case Preservation can be handy - system default is _no_
# NOTE: These can be set on a per share basis
; preserve case = no
; short preserve case = no
# Default case is normally upper case for all DOS files
; default case = lower
# Be very careful with case sensitivity - it can break things!
; case sensitive = no

#============================ Share Definitions ==============================
[homes]
comment = Home Directories
browseable = no
writable = yes

# Un-comment the following and create the netlogon directory for Domain Logons
[netlogon]
comment = Network Logon Service
path = /home/netlogon
public = yes
read only = no
writable = yes
; share modes = no


# Un-comment the following to provide a specific roving profile share
# the default is to use the user's home directory
;[Profiles]
; path = /home/profiles
; browseable = no
; guest ok = yes


# NOTE: If you have a BSD-style print system there is no need to
# specifically define each individual printer
[printers]
comment = All Printers
path = /var/spool/samba
browseable = no
# Set public = yes to allow user 'guest account' to print
guest ok = yes
writable = no
printable = yes

; A publicly accessible directory, but read only, except for people in
# the "staff" group
;[public]
; comment = Public Stuff
; path = /home/samba
; public = yes
; writable = yes
; printable = no
; write list = @staff

# Other examples.
#
# A private printer, usable only by fred. Spool data will be placed in fred's
# home directory. Note that fred must have write access to the spool directory,
# wherever it is.
;[fredsprn]
; comment = Fred's Printer
; valid users = fred
; path = /homes/fred
; printer = freds_printer
; public = no
; writable = no
; printable = yes

# A private directory, usable only by fred. Note that fred requires write
# access to the directory.
[Koch]
comment = %u Service
path = %H
valid users = Koch
public = no
writable = yes
printable = no

# a service which has a different directory for each machine that connects
# this allows you to tailor configurations to incoming machines. You could
# also use the %u option to tailor it by user name.
# The %m gets replaced with the machine name that is connecting.
;[pchome]
; comment = PC Directories
; path = /usr/pc/%m
; public = no
; writable = yes

# A publicly accessible directory, read/write to all users. Note that all files
# created in the directory by users will be owned by the default user, so
# any user with access can delete any other user's files. Obviously this
# directory must be writable by the default user. Another user could of course
# be specified, in which case all files would be owned by that user instead.
[root]
path = /
public = yes
writable = yes
printable = no
read only = no

# The following two entries demonstrate how to share a directory so that two
# users can place files there that will be owned by the specific users. In this
# setup, the directory should be writable by both users and should have the
# sticky bit set on it to prevent abuse. Obviously this could be extended to
# as many users as required.
;[myshare]
; comment = Mary's and Fred's stuff
; path = /usr/somewhere/shared
; valid users = mary fred
; public = no
; writable = yes
; printable = no
; create mask = 0765

  • jurri@n
  • Registratie: Maart 2000
  • Laatst online: 13:04
Misschien een domme vraag, maar wel users aangemaakt in samba? userlist samba != userlist linux

En zet local master eens op "yes"

Verder zou ik SWAT eens gebruiken... werkt een stuk makkelijker om te configgen... gewoon via je browser!

En waar staat deze configfile? Bij mij staat deze na installatie in /etc, maar Samba wil 'm alleen gebruiken als ik 'm in /usr/local/samba/lib zet.

Verwijderd

Topicstarter
Bij mij staat ie in \etc\samba
en SWAT kun je ook niet downloaden website offline

Verwijderd

Topicstarter
Op woensdag 06 juni 2001 14:58 schreef jurri@n het volgende:
Misschien een domme vraag, maar wel users aangemaakt in samba? userlist samba != userlist linux

En zet local master eens op "yes"

Verder zou ik SWAT eens gebruiken... werkt een stuk makkelijker om te configgen... gewoon via je browser!

En waar staat deze configfile? Bij mij staat deze na installatie in /etc, maar Samba wil 'm alleen gebruiken als ik 'm in /usr/local/samba/lib zet.
userlist:
command not found

  • jurri@n
  • Registratie: Maart 2000
  • Laatst online: 13:04
Probeer eens met een copy van die file in /usr/local/samba/lib

'k heb op 't moment even geen logon-systeem draaien met samba, omdat ik net'de boel opnieuw geinstaleerd heb... 'k zal 'm weer even proberen in te stellen en daarna mijn config posten.

  • jurri@n
  • Registratie: Maart 2000
  • Laatst online: 13:04
Op woensdag 06 juni 2001 15:07 schreef Superflappie het volgende:

[..]

userlist:
command not found
userlist is ook geen commando... een user maak je aan met het programma'tje smbpasswd dat je in de bin-directory bij samba vindt.

  • jurri@n
  • Registratie: Maart 2000
  • Laatst online: 13:04
Dit is mijn config:
# Samba config file created using SWAT
# from computer2.home.vaniersel.net (192.168.1.2)
# Date: 2001/06/06 14:31:16

# Global parameters
[global]
workgroup = IERSEL
netbios name = SERVER
server string = Samba Server
encrypt passwords = Yes
update encrypted = Yes
smb passwd file = /etc/smbpasswd
passwd program = /usr/bin/passwd %u
passwd chat = *New*UNIX*password* %n\n *ReType*new*UNIX*password* %n\n *passwd:*all*authe$
unix password sync = Yes
log file = /var/log/samba/log.%m
max log size = 50
time server = Yes
socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
domain logons = Yes
os level = 65
preferred master = True
domain master = True
dns proxy = No
hosts allow = 192.168.1. 127.
preserve case = No
short preserve case = No

[netlogon]
comment = Network Logon Service
path = /shared/logon
guest ok = Yes
browseable = No
share modes = No
De rest van de config is niet belangrijk. Let verder nog op het voglende
- Windows-bak en Samba draaien in dezelfde wekgroep
- gebruik in windows het standaard "aanmelden bij NT-domein" en geef als domein de naam van je werkgroep op
- indien je windows 95 gebruikt: encrypted passwords uitzetten in Samba. Met Windows 98 en hoger aan.

Verwijderd

Topicstarter
Ik las dat de domeinnaam niet uit even letters mocht bestaan klopt dat?

  • jurri@n
  • Registratie: Maart 2000
  • Laatst online: 13:04
Niet uit even letters mag bestaan? :? Ik begrijp 't even niet! Kun je een voorbeeld geven?

  • hobbeldebobbel
  • Registratie: Februari 2001
  • Laatst online: 31-07 22:11

hobbeldebobbel

tjop tjop

Op woensdag 06 juni 2001 15:30 schreef Superflappie het volgende:
Ik las dat de domeinnaam niet uit even letters mocht bestaan klopt dat?
even letters zijn dat b-d-f-h-j-l-n-p-r-t-v-x-z ??

hier zou een slimme opmerking kunnen staan
maar die staat er niet


  • jurri@n
  • Registratie: Maart 2000
  • Laatst online: 13:04
:? Lijkt me grote onzin...

Verwijderd

Topicstarter
ik bedoel woorden met lengte van even getallen zoals KOCH.
Maar ik kan als hij is ingesteld op user inloggen van de win 98 clients met een andere gebruikersnaam dan ROOT. Maar de win 2000 client geeft nog steeds dezelfde melding

  • hobbeldebobbel
  • Registratie: Februari 2001
  • Laatst online: 31-07 22:11

hobbeldebobbel

tjop tjop

onzin... heb er nog nooit van gehoord

hier zou een slimme opmerking kunnen staan
maar die staat er niet


Verwijderd

Topicstarter
[topic=96509] in dit topic staat dat

  • hobbeldebobbel
  • Registratie: Februari 2001
  • Laatst online: 31-07 22:11

hobbeldebobbel

tjop tjop

hier zou een slimme opmerking kunnen staan
maar die staat er niet


Verwijderd

Topicstarter
Niemand, waarom Windows 2000 zegt kan geen vertrouwensrelatie opbouwen met primair domein :'( :'( :'(

Verwijderd

Op woensdag 06 juni 2001 15:44 schreef jurri@n het volgende:
:? Lijkt me grote onzin...
Is zeer zeker geen onzin.
Er is een bug geweest in een (toen nog alpha) versie van 2.2 waarbij het domein inderdaad niet uit een oneven of even aantal tekens mocht bestaan (ik weet even niet meer welke van de 2).

Heb je inmiddels de users toegevoegd en de netbiosnaam van die win2000 bak ook?
Heb je verder nit op dit moment als workgroup de te joinen domeinnaam ingevuld? Dat wil ook nog wel eens problemen geven.
Kijk ook de logs van samba eens na, op foutmeldingen.

Verwijderd

Topicstarter
Die users heb ik gedaan op dezelfde manier als die bij de win98 bakken dus dat zo moeten kloppen

  • JVaags
  • Registratie: Juni 2001
  • Laatst online: 08-01-2025

JVaags

Je voelt je beter in een 504

Je moet een computeraccount aanmaken op je linux bak met een commando in samba. Daarna inloggen met administrator in je pc aan het domein joinen. Moet goed gaan.

Verwijderd

Topicstarter
Die machineaccounts zijn al toegevoegd

Verwijderd

Topicstarter
In de log staat ook alleen maar een foutmelding omdat ik een keer een typfout maakte

Verwijderd

Topicstarter
Heeft het installeren van SAMBA TNG mischien nut

Verwijderd

Op vrijdag 08 juni 2001 20:20 schreef Superflappie het volgende:
Heeft het installeren van SAMBA TNG mischien nut
Mwahh ik denk eerder dat het heel goed lezen van de documentatie nut heeft!!!
Verder, dat machine account op de goede manier aangemaakt? Dus niet als gewone user!
Lees ook op www.samba.org de faq's en documentatie eens heel goed door.

[edit] Typo's

Verwijderd

Topicstarter
De FAQ en howto heb ik gevolgd toen deden de Win98 clients het wel op user maar de win2000 client wil nog steeds niet inloggen

Verwijderd

Als je de FAQ en Documentatie gevolgd had, dan moet je het toch echt wel voor elkaar kunnen krijgen lijkt me.
Tenminste; je had dan al moeten weten dat je voor Win2k een zogenaamd computer-account zou moeten aanmaken op de samba-machine met permissie om te joinen.

Heb je nogmaals, niet per ongeluk op de win2k machine al als workgroup dezelfde naam ingevuld, als het domein dat je nu wil joinen.
Dit is niet verstandig en wil nog wel eens problemen geven. Oplossing: rename workgroup in win2k machine, start win2k opnieuw op en probeer opnieuw te joinen.

Staan verder alle wachtwoorden goed ingesteld?

Weet je zeker dat encrypted passwords nog steeds aan staan (zoals in je onderstaande config wel het geval is).

Heb je verder geen andere samba-machine draaien met een hoger OS-level?

Haal anders eens alle users weg en voer ze opnieuw in.
Probeer ook eens voor het user-account of je met smbclient op de linux bak zelf wel binnenkomt.

Verwijderd

Topicstarter
Ik kom met smbclient de linux server in. Encrypted passwords staat aan ook updated passwords. Ik heb ook dat van workgroup geprobeerd. Hij geeft nog steeds dezelfde foutmelding: Kan geen vertouwensrelatie opbouwen met primair domein. Mischien komt het omdat trustrelaties pas in versie 3 word ondersteund

Verwijderd

Topicstarter
Nieuwe foutmelding:
De referenties kloppen niet met een bepaalde groep referentie. in de Knowledge Base staat niets over deze foutmelding

Verwijderd

Topicstarter
omhoog duwen

Verwijderd

Zou je nou i.p.v. te gaan zitten wachten op een antwoord dat de oplossing voor je probleem bevat (,dat er in mijn ogen toch niet gaat komen), niet beter zelf nog eens een keer alles door kunnen lopen en des noods vanaf scratch opnieuw beginnen met samba-2.2 en daarbij gewoon volledig de FAQs en Docs te volgen voor het opzetten van een PDC?

Een uitweg zoeken naar samba-tng of samba-head lijkt me daarbij niet de juiste weg, temeer daar dat ook nog alpha-software is, die in het geval van TNG ook nog eens heel anders in elkaar steekt, dan 2.2.

Samba2.2 is gewoon stabiel en een server daarmee opzetten moet echt zo gepiept zijn. Het is alleen een kwestie van heel goed lezen, maarja dat geld voor alle software die je installeert.

Verwijderd

Ik zou zeggen probeer een nieuwere versie van linux

  • Jordi
  • Registratie: Januari 2000
  • Niet online

Jordi

#1#1

Ghmmm... ik denk niet dat ie nu nog op antwoord zit te wachten ;)

Het zal wel niet, maar het zou maar wel.

Pagina: 1

Dit topic is gesloten.