Cannot assign permissions for Active Directory users

Status
Not open for further replies.

niktsl

Cadet
Joined
Jul 12, 2013
Messages
1
think that ur solution is to give rights from computer with windows that is already joined at domain to shares folders.
 

Olie

Cadet
Joined
Feb 28, 2014
Messages
4
I am using FreeNas 9.2.1.1 Release and suddenly this problem occurs on a machine that was working fine for days. AD users and groups are visible from command line, but I can not set rights with AD credentials on files. Did anybody ever find the solution to this problem?
 
D

dlavigne

Guest
It would be worthwhile to try the 9.2.1.2-RC (download URL is in the announcement forum) as a whole slew of AD bugs were fixed in the last week.
 

Daniel Alves BH

Dabbler
Joined
Dec 13, 2016
Messages
10
Hi,

I was able to join FreeNAS 9.10.1 stable in samba 4.5 through the certificate, but FreeNAS is only pulling users and groups from the system, it is not pulling the users and groups I have in my AD.

My enviroment:
Samba 4.5
CentOS 6.8
FreeNAS 9.10.1 stable - 10 GBRAM

[root@hjxxiii-app ~]# wbinfo -u
HOSP-JOAOXXIII\administrator
HOSP-JOAOXXIII\krbtgt
HOSP-JOAOXXIII\guest

[root@hjxxiii-app ~]# wbinfo -g
HOSP-JOAOXXIII\cert publishers
HOSP-JOAOXXIII\ras and ias servers
HOSP-JOAOXXIII\allowed rodc password replication group
HOSP-JOAOXXIII\denied rodc password replication group
HOSP-JOAOXXIII\dnsadmins
HOSP-JOAOXXIII\enterprise read-only domain controllers
HOSP-JOAOXXIII\domain admins
HOSP-JOAOXXIII\domain users
HOSP-JOAOXXIII\domain guests
HOSP-JOAOXXIII\domain computers
HOSP-JOAOXXIII\domain controllers
HOSP-JOAOXXIII\schema admins
HOSP-JOAOXXIII\enterprise admins
HOSP-JOAOXXIII\group policy creator owners
HOSP-JOAOXXIII\read-only domain controllers
HOSP-JOAOXXIII\dnsupdateproxy

[root@hjxxiii-app ~]# wbinfo -t
checking the trust secret for domain HOSP-JOAOXXIII via RPC calls succeeded

This is the FreeNAS log when I start the directory service in FreeNAS:

[root@hjxxiii-app] ~# tail -f /var/log/messages
Dec 13 15:42:20 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 15:42:20 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 15:42:20 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 15:42:20 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 15:42:20 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: /usr/local/bin/net -d 0 getlocalsid
Dec 13 15:42:21 hjxxiii-app notifier: Performing sanity check on Samba configuration: OK
Dec 13 15:42:21 hjxxiii-app notifier: Starting nmbd.
Dec 13 15:42:21 hjxxiii-app notifier: Starting smbd.
Dec 13 15:42:21 hjxxiii-app notifier: Starting winbindd.
Dec 13 15:42:21 hjxxiii-app DomainController: /usr/sbin/service ix-resolv quietstop
Dec 13 16:56:36 hjxxiii-app DomainController: /usr/local/bin/python /usr/local/www/freenasUI/middleware/notifier.py stop cifs
Dec 13 16:56:38 hjxxiii-app notifier: Stopping winbindd.
Dec 13 16:56:38 hjxxiii-app notifier: Waiting for PIDS: 20215.
Dec 13 16:56:38 hjxxiii-app notifier: Stopping smbd.
Dec 13 16:56:38 hjxxiii-app notifier: Waiting for PIDS: 20210.
Dec 13 16:56:38 hjxxiii-app notifier: Stopping nmbd.
Dec 13 16:56:39 hjxxiii-app notifier: Waiting for PIDS: 20206, 20206.
Dec 13 16:56:40 hjxxiii-app DomainController: /usr/sbin/service ix-kerberos quietstart
Dec 13 16:56:41 hjxxiii-app DomainController: /usr/sbin/service ix-resolv quietstart
Dec 13 16:56:42 hjxxiii-app DomainController: /usr/sbin/service ix-nsswitch quietstart
Dec 13 16:56:43 hjxxiii-app DomainController: /usr/sbin/service ix-pam quietstart
Dec 13 16:56:43 hjxxiii-app DomainController: /usr/local/bin/python /usr/local/www/freenasUI/middleware/notifier.py start cifs
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: /sbin/sysctl -n 'kern.maxfilesperproc'
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: mount
Dec 13 16:56:47 hjxxiii-app generate_smb4_conf.py: [common.pipesubr:66] Popen()ing: /usr/local/bin/net -d 0 getlocalsid
Dec 13 16:56:48 hjxxiii-app notifier: Performing sanity check on Samba configuration: OK
Dec 13 16:56:48 hjxxiii-app notifier: Starting samba.

Before I had samba 4.1.17 and FreeNAS 9.3 and pulled all users and groups, after upgrading to samba 4.5 and freenas 9.10 no longer pulls.

Does anyone have an idea of what it can be?
 
Status
Not open for further replies.
Top