[Samba] GPO

sandy.napoles at eccmg.cupet.cu sandy.napoles at eccmg.cupet.cu
Sat Jan 11 15:35:07 UTC 2020

Collected config  --- 2020-01-11-10:14 -----------

Hostname: ccmg7
DNS Domain: eccmg.cupet.cu
FQDN: CCMG7.eccmg.cupet.cu
Kerberos SRV _kerberos._tcp.eccmg.cupet.cu record verified ok, sample output:

_kerberos._tcp.eccmg.cupet.cu   service = 0 100 88 ccmg7.eccmg.cupet.cu.
Samba is running as an AD DC
       Checking file: /etc/os-release
PRETTY_NAME="Debian GNU/Linux 9 (stretch)"
NAME="Debian GNU/Linux"
VERSION="9 (stretch)"

This computer is running Debian 9.11 i686
running command : ip a
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1
    link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
    inet scope host lo
    inet6 ::1/128 scope host
2: ens192: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000
    link/ether 00:50:56:b9:45:29 brd ff:ff:ff:ff:ff:ff
    inet brd scope global ens192
    inet6 fe80::250:56ff:feb9:4529/64 scope link
       Checking file: /etc/hosts       localhost            localhost.localdomain     CCMG7.eccmg.cupet.cu CCMG7
       Checking file: /etc/resolv.conf
search eccmg.cupet.cu
       Checking file: /etc/krb5.conf
        default_realm = ECCMG.CUPET.CU
        dns_lookup_realm = false
        dns_lookup_kdc = true
       Checking file: /etc/nsswitch.conf
# /etc/nsswitch.conf
# Example configuration of GNU Name Service Switch functionality.
# If you have the `glibc-doc-reference' and `info' packages installed, try:
# `info libc "Name Service Switch"' for information about this file.

passwd:         compat
group:          compat
shadow:         compat
gshadow:        files

hosts:          files dns
networks:       files

protocols:      db files
services:       db files
ethers:         db files
rpc:            db files

netgroup:       nis
    Warning,  does not exist
BIND_DLZ not detected in smb.conf
Installed packages:
ii  acl                              2.2.52-3+b1                    i386         Access control list utilities
ii  attr                             1:2.4.47-2+b2                  i386         Utilities for manipulating filesystem extended attributes
ii  krb5-config                      2.6                            all          Configuration files for Kerberos Version 5
ii  krb5-user                        1.15-1+deb9u1                  i386         basic programs to authenticate using MIT Kerberos
ii  libacl1:i386                     2.2.52-3+b1                    i386         Access control list shared library
ii  libacl1-dev                      2.2.52-3+b1                    i386         Access control list static libraries and headers
ii  libattr1:i386                    1:2.4.47-2+b2                  i386         Extended attribute shared library
ii  libattr1-dev:i386                1:2.4.47-2+b2                  i386         Extended attribute static libraries and headers
ii  libgssapi-krb5-2:i386            1.15-1+deb9u1                  i386         MIT Kerberos runtime libraries - krb5 GSS-API Mechanism
ii  libkrb5-3:i386                   1.15-1+deb9u1                  i386         MIT Kerberos runtime libraries
ii  libkrb5support0:i386             1.15-1+deb9u1                  i386         MIT Kerberos runtime libraries - Support library

January 11, 2020 6:17 AM, "Rowland penny via samba" <samba at lists.samba.org> wrote:

> On 10/01/2020 18:16, Sandy via samba wrote:
>> update some dependencies that appear to be missing and the same error continues.
>> ./samba-tool gpo create WSUS -Usandy
>> Password for [ECCMG\sandy]:
>> Using temporary directory /tmp/tmpgcft6ubs (use --tmpdir to change)
>> ERROR(runtime): uncaught exception - (3221225524, 'The object name is not found.')
>> File "/usr/local/samba/lib/python3.5/site-packages/samba/netcmd/__init__.py", line 186, in _run
>> return self.run(*args, **kwargs)
>> File "/usr/local/samba/lib/python3.5/site-packages/samba/netcmd/gpo.py", line 1277, in run
>> copy_directory_local_to_remote(conn, gpodir, sharepath)
>> File "/usr/local/samba/lib/python3.5/site-packages/samba/netcmd/gpo.py", line 374, in
>> copy_directory_local_to_remote
>> conn.savefile(r_name, data)
> As I said, neither I or Louis can reproduce your problem, so it looks like the problem is at your
> end, especially has a lack of a required package has now been ruled out
> I can only think of two possibilities, is Apparmor running ?
> If it is, try turning it off and see if this fixes your problem.
> Is PATH set correctly ?
> If you run (in a terminal): echo "$PATH"
> Does it start with '/usr/local/samba/bin:/usr/local/samba/sbin:.....' ?
> Failing that, please go here:
> https://github.com/thctlo/samba4/blob/master/samba-collect-debug-info.sh
> Download the script, run it on the failing DC and paste the output into a reply to this thread, do
> not attach it, this mailing list strips attachments.
> Rowland
