Projet

Général

Profil

Tâche #37545

Scénario #37541: droit de /var/lib/samba/private trop "ouverts" suite a restauration seth en 2.10

test

Ajouté par Ludwig Seys il y a 3 mois. Mis à jour il y a environ un mois.

Statut:
Fermé
Priorité:
Normal
Assigné à:
Début:
06/07/2026
Echéance:
% réalisé:

100%

Restant à faire (heures):
0.0

Description

Jouer une migration avec le script migration210.sh.
utiliser :
aca.dc1-2.8.1-instance-avecimport
aca.dc1-2.10-daily

VM source Seth 2.8.1
1. copier le script sur la machine (récupéré sur https://eole.ac-dijon.fr/pub/Outils/migration/ )
2. lui accorder les droits chmod +x
3. lancer migration210.sh (récupéré sur https://eole.ac-dijon.fr/pub/Outils/migration/ )
4. récupérer la sauvegarde backup/seth-0000000A/

VM cible Seth 2.10 fresh install non instanciée
5. copier backup sur /root/backup
6. cp /root/backup/seth-0000000A/seth-2.8.eol /etc/eole/config.eol
7. gen_config => enregistrer la config importé
8. instance
9. lancer migration210.sh pour restaurer les données
10. valider les droits :

root@dc1:~# ll /var/lib/samba/private/
total 12088
drwx------ 8 root root    4096 juil.  6 13:36 ./
drwxr-xr-x 9 root root    4096 juil.  6 13:36 ../
-rw------- 1 root root     526 juil.  6 13:03 dns.keytab
-rw------- 1 root root    2131 juil.  6 13:03 dns_update_cache
-rw-r--r-- 1 root root    3663 juil.  6 13:03 dns_update_list
-rw------- 1 root root      16 juil.  6 13:03 encrypted_secrets.key
-rw------- 1 root root 1286144 juil.  6 13:03 hklm.ldb
-rw------- 1 root root 1609728 juil.  6 13:03 idmap.ldb
-rw-r--r-- 1 root root     266 juil.  6 13:03 krb5.conf
srwxrwxrwx 1 root root       0 juil.  6 13:36 ldapi=
drwxr-x--- 2 root root    4096 juil.  6 13:36 ldap_priv/
drwxr-xr-x 2 root root    4096 juil.  6 13:03 managed_account/
drwx------ 2 root root    4096 juil.  6 13:02 msg.sock/
-rw------- 1 root root    8888 juil.  6 13:36 netlogon_creds_cli.tdb
-rw------- 1 root root  421888 juil.  6 13:03 passdb.tdb
-rw------- 1 root root 1286144 juil.  6 13:03 privilege.ldb
-rw------- 1 root root 4694016 juil.  6 13:02 sam.ldb
drwx------ 2 root root    4096 juil.  6 13:02 sam.ldb.d/
-rw------- 1 root root     696 juil.  6 13:36 schannel_store.tdb
-rw------- 1 root root     758 juil.  6 13:03 secrets.keytab
-rw------- 1 root root 1286144 juil.  6 13:03 secrets.ldb
-rw------- 1 root root  430080 juil.  6 13:03 secrets.tdb
-rw------- 1 root root 1286144 juil.  6 13:02 share.ldb
drwxr-xr-x 2 root root    4096 juil.  6 13:36 smbd.tmp/
-rw-r--r-- 1 root root     955 juil.  6 13:03 spn_update_list
drwxr-xr-x 4 root root    4096 juil.  6 13:02 tls/

Historique

#1 Mis à jour par Benjamin Bohard il y a environ 2 mois

Une différence entre le listing présenté dans cette demande et ce qui est fait : dns.keytab récupère bien le groupe bind (c’est mieux ainsi).

#2 Mis à jour par Benjamin Bohard il y a environ 2 mois

  • Statut changé de Nouveau à Résolu

#3 Mis à jour par Joël Cuissinat il y a environ un mois

  • Statut changé de Résolu à Fermé
  • Assigné à mis à Benjamin Bohard
  • % réalisé changé de 0 à 100
  • Restant à faire (heures) mis à 0.0

Formats disponibles : Atom PDF