[Samba] classicupgrade error

Marco Querci mquerci75 at gmail.com
Sun Feb 9 09:48:59 MST 2014


Hi all.
I'm doing an upgrade from samba 3.4.8 domain to samba 4.1
I followed this guide: 
http://wiki.samba.org/index.php/Samba4/samba-tool/domain/classicupgrade/HOWTO
I'm upgrading on a new virtual server (for testing purposes).
Executing the command /usr/local/samba/bin/samba-tool domain 
classicupgrade --dbdir=/root/samba3/ --use-xattrs=yes /root/smb.conf 
(where /root/samba3/ contains all samba3 .tdb files and /root/smb.conf 
is the samba3 configuration), I get this error (repeated many times):

Initialising default vfs hooks
Initialising custom vfs hooks from [/[Default VFS]/]
Initialising custom vfs hooks from [acl_xattr]
Initialising custom vfs hooks from [dfs_samba4]
connect_acl_xattr: setting 'inherit acls = true' 'dos filemode = true' 
and 'force unknown acl user = true' for service sysvol
unpack_nt_owners: owner sid mapped to uid 0
unpack_nt_owners: group sid mapped to gid 512
set_nt_acl: chown 
/var/lib/samba/sysvol/cormatex.lan/Policies/{6AC1786C-016F-11D2-945F-00C04FB984F9}/MACHINE. 
uid = 0, gid = 512.
idmap range not specified for domain '*'
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-1000]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-512]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-572]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-513]
get_privileges: No privileges assigned to SID [S-1-5-32-545]
get_privileges: No privileges assigned to SID [S-1-22-2-512]
get_privileges: No privileges assigned to SID [S-1-22-2-544]
get_privileges: No privileges assigned to SID [S-1-22-2-3000000]
get_privileges: No privileges assigned to SID [S-1-22-2-513]
get_privileges: No privileges assigned to SID [S-1-22-2-3000001]
get_privileges: No privileges assigned to SID [S-1-5-2]
get_privileges: No privileges assigned to SID [S-1-5-11]
get_privileges: No privileges assigned to SID [S-1-5-32-554]
idmap range not specified for domain '*'
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-1000]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-512]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-572]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-513]
get_privileges: No privileges assigned to SID [S-1-5-32-545]
get_privileges: No privileges assigned to SID [S-1-22-2-512]
get_privileges: No privileges assigned to SID [S-1-22-2-544]
get_privileges: No privileges assigned to SID [S-1-22-2-3000000]
get_privileges: No privileges assigned to SID [S-1-22-2-513]
get_privileges: No privileges assigned to SID [S-1-22-2-3000001]
get_privileges: No privileges assigned to SID [S-1-5-2]
get_privileges: No privileges assigned to SID [S-1-5-11]
get_privileges: No privileges assigned to SID [S-1-5-32-554]
idmap range not specified for domain '*'
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-1000]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-512]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-572]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-513]
get_privileges: No privileges assigned to SID [S-1-5-32-545]
get_privileges: No privileges assigned to SID [S-1-22-2-512]
get_privileges: No privileges assigned to SID [S-1-22-2-544]
get_privileges: No privileges assigned to SID [S-1-22-2-3000000]
get_privileges: No privileges assigned to SID [S-1-22-2-513]
get_privileges: No privileges assigned to SID [S-1-22-2-3000001]
get_privileges: No privileges assigned to SID [S-1-5-2]
get_privileges: No privileges assigned to SID [S-1-5-11]
get_privileges: No privileges assigned to SID [S-1-5-32-554]
idmap range not specified for domain '*'
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-1000]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-512]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-572]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-513]
get_privileges: No privileges assigned to SID [S-1-5-32-545]
get_privileges: No privileges assigned to SID [S-1-22-2-512]
get_privileges: No privileges assigned to SID [S-1-22-2-544]
get_privileges: No privileges assigned to SID [S-1-22-2-3000000]
get_privileges: No privileges assigned to SID [S-1-22-2-513]
get_privileges: No privileges assigned to SID [S-1-22-2-3000001]
get_privileges: No privileges assigned to SID [S-1-5-2]
get_privileges: No privileges assigned to SID [S-1-5-11]
get_privileges: No privileges assigned to SID [S-1-5-32-554]
idmap range not specified for domain '*'
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-1000]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-512]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-572]
get_privileges: No privileges assigned to SID 
[S-1-5-21-1989517481-1145787036-873022862-513]
get_privileges: No privileges assigned to SID [S-1-5-32-545]
get_privileges: No privileges assigned to SID [S-1-22-2-512]
get_privileges: No privileges assigned to SID [S-1-22-2-544]
get_privileges: No privileges assigned to SID [S-1-22-2-3000000]
get_privileges: No privileges assigned to SID [S-1-22-2-513]
get_privileges: No privileges assigned to SID [S-1-22-2-3000001]
get_privileges: No privileges assigned to SID [S-1-5-2]
get_privileges: No privileges assigned to SID [S-1-5-11]
get_privileges: No privileges assigned to SID [S-1-5-32-554]


Here is my samba3 smb.conf:

[global]
         workgroup = <domain>
         netbios name = <server name>
         realm = <domain>.LAN
         server string = PDC server - Samba %v
         case sensitive = no
         username map = /etc/samba/usermap

         os level = 255
         preferred master = yes
         local master = yes
         domain master = yes
         domain logons = yes
         admin users = Administrator root @"Domain Admins"

         client ntlmv2 auth = yes
         security = user
         guest ok = no
         encrypt passwords = yes
         null passwords = no
         hosts allow = 127.0.0.1 192.168.20.0/255.255.255.0
         wins support = no
         idmap uid = 10000-90000
         idmap gid = 10000-90000
         idmap backend = ldap:ldap://192.168.20.50
         dns proxy = no
         time server = yes
         socket options = TCP_NODELAY IPTOS_LOWDELAY SO_SNDBUF=8192 
SO_RCVBUF=8192
         preserve case = yes
         short preserve case = yes

         log file = /var/log/samba/log.%m
         log level = 4
         max log size = 100000

         hide unreadable = yes
         hide dot files = yes
         unix charset = ISO8859-1
         dos charset = CP850

         panic action = /usr/share/samba/panic-action %d

         passdb backend = ldapsam:"ldap://192.168.20.50/"
         ldap suffix = dc=cormatex
         ldap machine suffix = ou=Computers
         ldap user suffix = ou=Users
         ldap group suffix = ou=Groups
         ldap idmap suffix = ou=Idmap
         ldap admin dn = cn=admin,dc=cormatex
         ldap delete dn = yes
         ldap ssl = no
         idmap config * : backend = ldap
         idmap config * : range = 10000-90000
         idmap config * : ldap_url = ldap://192.168.20.50
         idmap config * : ldap_base_dn = ou=idmap,dc=cormatex
         idmap config * : ldap_user_dn = cn=admin,dc=cormatex

         ldap passwd sync = yes
         logon home =
         logon drive =
         logon path =
         logon script = %U.pdc.bat

         passwd program = /usr/sbin/smbldap-passwd %u
         passwd chat = *New*password* %n\n *Retype*new*password* %n\n 
*all*authen$
         add user script = /usr/sbin/smbldap-useradd -m "%u"
         delete user script = /usr/sbin/smbldap-userdel "%u"
         add machine script = /usr/sbin/smbldap-useradd -w "%u"
         add group script = /usr/sbin/smbldap-groupadd -p "%g"
         delete group script = /usr/sbin/smbldap-groupdel "%g"
         add user to group script = /usr/sbin/smbldap-groupmod -m "%u" "%g"
         delete user from group script = /usr/sbin/smbldap-groupmod -x 
"%u" "%g"
         set primary group script = /usr/sbin/smbldap-usermod -g "%g" "%u"

         ### SHARES ###
         ....


Anyone can help me?

Thanks in advance.


More information about the samba mailing list