racone
asked on
Samba 4.9 Causing guest Account Problems on RHEL 7
Upgraded from Samba 4.8.3 to Samba 4.9.1 on RHEL 7. Now, guest account shares do not appear to be working the same (or at all). I need some precise assistance with a Samba expert for the required smb.conf changes to get us back to working like we have been for the past 10 years.
ASKER
[global]
netbios name = t7serv1
server string = Samba
local master = no
preferred master = no
security = user
map to guest = bad user
username map = /etc/samba/users.map
wins support = no
wins server = 192.168.101.3
workgroup = SPS1
log level = 1
guest account = samba
max xmit = 65535
interfaces = team0
bind interfaces only = yes
hosts allow = 192.168.101.0/24
browseable = no
nt acl support = no
[t7serv1]
comment = t7serv1
force user = dl4ub
force group = dl4ub
create mode = 0000
force create mode = 0660
directory mode = 0000
force directory mode = 0770
path = /
read only = no
guest ok = yes
guest only = yes
mangled names = no
hide special files = yes
hide unreadable = yes
hide unwriteable files = yes
veto files = /.*/bin/boot/cgroup/chroot /dev/dtr/e tc/home/li b/lib64/lo st+fou
nd/media/misc/mnt/net/opt/ proc/root/ run/sbin/s elinux/sps ntint/srv/ sys/tftpbo ot/t
mp/u_newsystem/u_snapshot/ usr/var/ \
veto files = /.*/ach/achdirect/achpc/ac tum/apache /arc/axos/ blast/bofa /bu/da
ily/dl4/dl4ub/dxf/dxport/e arlywarnin g/eftcanad a/eftnetwo rk/email/e mailb.sps/ enca
sh/epc/fil/ \
veto files = /ftp9xd/ftpaid/ftpbck/ftpb dt/ftpbzi/ ftpccv/ftp cdc/ftpchs /ftpck
v/ftpdbb/ftpdpb/ftpe4u/ftp eco/ftpecp /ftpedc/ft peft/ftpeg v/ftpepn/f tpeps/ftpe st/f
tpevt/ftpews/ftpezc/ftpfhm /ftpfwf/ft pget/ftpgm s/ftphms/f tpide/ftpi ma/ftpipp/ ftpj
db/ftplls/ftplsr/ftpmal/ft pmam/ftpmb s/ftpmdf/f tpmrp/ftpm ye/ \
veto files = /ftpnet/ftpnpp/ftpnrg/ftpo rl/ftppac/ ftppay/ftp pin/ftpppi /ftppp
t/ftpral/ftprdm/ftprem/ftp rnn/ftprsr /ftpsgm/ft psgs/ftpsi m/ftpslp/f tpspp/ftps ps/f
tpsun/ftptbi/ftptlg/ftptpy /ftpupa/ft pval/ftpvc k/ftpvrc/f tpwdc/ftpy mc/ftpzip/ \
veto files = /g/geti/htm/httpdsp/httpdw n/httpmjm/ httprdm/if inance/iss /micro
bilt/mlink/mysql/nabco/nbc al/odbcdl4 /payliance /paywithmy bank/rcone /rem/rep/r opp/
sallard/scanzmod/scn/sme/s sh/svb/tmp /ub/ub2dl4 /uucp/vme/ wnb/zmdsol /
dont descend = u/lanhostimaging u/prt
netbios name = t7serv1
server string = Samba
local master = no
preferred master = no
security = user
map to guest = bad user
username map = /etc/samba/users.map
wins support = no
wins server = 192.168.101.3
workgroup = SPS1
log level = 1
guest account = samba
max xmit = 65535
interfaces = team0
bind interfaces only = yes
hosts allow = 192.168.101.0/24
browseable = no
nt acl support = no
[t7serv1]
comment = t7serv1
force user = dl4ub
force group = dl4ub
create mode = 0000
force create mode = 0660
directory mode = 0000
force directory mode = 0770
path = /
read only = no
guest ok = yes
guest only = yes
mangled names = no
hide special files = yes
hide unreadable = yes
hide unwriteable files = yes
veto files = /.*/bin/boot/cgroup/chroot
nd/media/misc/mnt/net/opt/
mp/u_newsystem/u_snapshot/
veto files = /.*/ach/achdirect/achpc/ac
ily/dl4/dl4ub/dxf/dxport/e
sh/epc/fil/ \
veto files = /ftp9xd/ftpaid/ftpbck/ftpb
v/ftpdbb/ftpdpb/ftpe4u/ftp
tpevt/ftpews/ftpezc/ftpfhm
db/ftplls/ftplsr/ftpmal/ft
veto files = /ftpnet/ftpnpp/ftpnrg/ftpo
t/ftpral/ftprdm/ftprem/ftp
tpsun/ftptbi/ftptlg/ftptpy
veto files = /g/geti/htm/httpdsp/httpdw
bilt/mlink/mysql/nabco/nbc
sallard/scanzmod/scn/sme/s
dont descend = u/lanhostimaging u/prt
ASKER
Anybody have any input on this?
I am just looking for the changes to my smb.conf so that guest account usage works the same as it has for the past 15 years.
I am just looking for the changes to my smb.conf so that guest account usage works the same as it has for the past 15 years.
This question needs an answer!
Become an EE member today
7 DAY FREE TRIALMembers can start a 7-Day Free trial then enjoy unlimited access to the platform.
View membership options
or
Learn why we charge membership fees
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.
ASKER
● smb.service - Samba SMB Daemon
Loaded: loaded (/usr/lib/systemd/system/s
disabled)
Active: failed (Result: exit-code) since Mon 2019-10-28 14:09:55 MDT; 7min ag
o
Docs: man:smbd(8)
man:samba(7)
man:smb.conf(5)
Process: 2438 ExecStart=/usr/sbin/smbd --foreground --no-process-group $SMBDOP
TIONS (code=exited, status=255)
Main PID: 2438 (code=exited, status=255)
Oct 28 14:09:55 t7serv1 systemd[1]: Starting Samba SMB Daemon...
Oct 28 14:09:55 t7serv1 smbd[2438]: [2019/10/28 14:09:55.463277, 0] ../sou...t)
Oct 28 14:09:55 t7serv1 smbd[2438]: create_local_token failed: NT_STATUS_...RY
Oct 28 14:09:55 t7serv1 smbd[2438]: [2019/10/28 14:09:55.463622, 0] ../sou...n)
Oct 28 14:09:55 t7serv1 systemd[1]: smb.service: main process exited, code=.../a
Oct 28 14:09:55 t7serv1 systemd[1]: Failed to start Samba SMB Daemon.
Oct 28 14:09:55 t7serv1 systemd[1]: Unit smb.service entered failed state.
Oct 28 14:09:55 t7serv1 systemd[1]: smb.service failed.
Hint: Some lines were ellipsized, use -l to show in full.