Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

[Samba] Samba4 how to remove a machine from the domain

4,839 views
Skip to first unread message

steve

unread,
Mar 8, 2012, 9:50:02 AM3/8/12
to
Hi

How do I remove a machine which is o longer connected to the domain?
e.g. the has been stolen or just moved without having unjoined before. I
want to be able to replace the machine with with a new box with same
hostname.

Thanks,
Steve
--
To unsubscribe from this list go to the following URL and read the
instructions: https://lists.samba.org/mailman/options/samba

Mark Rutherford

unread,
Mar 8, 2012, 10:00:01 AM3/8/12
to
Active directory users and computers. (dsa.msc)
Just right-click the computer you want to delete and hit delete.

Mark Rutherford

unread,
Mar 8, 2012, 10:10:01 AM3/8/12
to
Hmmm.... possibly.
I just use the windows tools to manage AD myself.

A quick look at the functionality of samba-tool does not yield anything
that looks like a way to delete a machine account.
You can probably do this with LDAP but the safest way would probably be
by using the AD tools from MS.

I am sure someone will chime in if this is possible.


On 3/8/2012 10:04 AM, steve wrote:
> On 08/03/12 15:49, Mark Rutherford wrote:
>> Active directory users and computers. (dsa.msc)
>> Just right-click the computer you want to delete and hit delete.
>>
>>
>> On 3/8/2012 9:47 AM, steve wrote:
>>> Hi
>>>
>>> How do I remove a machine which is o longer connected to the domain?
>>> e.g. the has been stolen or just moved without having unjoined before.
>>> I want to be able to replace the machine with with a new box with same
>>> hostname.
>>>
>>> Thanks,
>>> Steve
>>
>
> Thanks Mark.
>
> Is there a samba-tool cli way to do that?
>
> Cheers,
> steve.

steve

unread,
Mar 8, 2012, 10:10:02 AM3/8/12
to
On 08/03/12 15:49, Mark Rutherford wrote:
> Active directory users and computers. (dsa.msc)
> Just right-click the computer you want to delete and hit delete.
>
>
> On 3/8/2012 9:47 AM, steve wrote:
>> Hi
>>
>> How do I remove a machine which is o longer connected to the domain?
>> e.g. the has been stolen or just moved without having unjoined before.
>> I want to be able to replace the machine with with a new box with same
>> hostname.
>>
>> Thanks,
>> Steve
>

Thanks Mark.

Is there a samba-tool cli way to do that?

Cheers,
steve.

steve

unread,
Mar 8, 2012, 10:20:01 AM3/8/12
to
On 08/03/12 16:08, Mark Rutherford wrote:
> Hmmm.... possibly.
> I just use the windows tools to manage AD myself.
>
> A quick look at the functionality of samba-tool does not yield anything
> that looks like a way to delete a machine account.
> You can probably do this with LDAP but the safest way would probably be
> by using the AD tools from MS.
>
> I am sure someone will chime in if this is possible.
>
>
> On 3/8/2012 10:04 AM, steve wrote:
>> On 08/03/12 15:49, Mark Rutherford wrote:
>>> Active directory users and computers. (dsa.msc)
>>> Just right-click the computer you want to delete and hit delete.
>>>
>>>
>>> On 3/8/2012 9:47 AM, steve wrote:
>>>> Hi
>>>>
>>>> How do I remove a machine which is o longer connected to the domain?
>>>> e.g. the has been stolen or just moved without having unjoined before.
>>>> I want to be able to replace the machine with with a new box with same
>>>> hostname.
>>>>
>>>> Thanks,
>>>> Steve
>>>
>>
>> Thanks Mark.
>>
>> Is there a samba-tool cli way to do that?
>>
>> Cheers,
>> steve.
>
Yea. Thanks. Not a problem. It's just that we are trying not to have a
box tied up just for admin, that's all.

NdK

unread,
Mar 9, 2012, 5:20:02 AM3/9/12
to
Il 08/03/2012 15:47, steve ha scritto:

> How do I remove a machine which is o longer connected to the domain?
> e.g. the has been stolen or just moved without having unjoined before. I
> want to be able to replace the machine with with a new box with same
> hostname.
Join another machine w/ the same name -- that should change macine
account's password so the stolen one can't reconnect any more.
But to be absolutely sure, join it, use "net ads leave" (that removes
machine account from AD) and rejoin it.

Just my two cents...

BYtE,
Diego.

Andrew Bartlett

unread,
Mar 10, 2012, 12:30:01 PM3/10/12
to
On Thu, 2012-03-08 at 15:47 +0100, steve wrote:
> Hi
>
> How do I remove a machine which is o longer connected to the domain?
> e.g. the has been stolen or just moved without having unjoined before. I
> want to be able to replace the machine with with a new box with same
> hostname.

Unlike domain controllers, workstations (member servers) can just be
deleted by removing the machine account. ldbdel on the DN for example.

Or just join the replacement under the same name, it should take over
the account.

Andrew Bartlett

--
Andrew Bartlett http://samba.org/~abartlet/
Authentication Developer, Samba Team http://samba.org
0 new messages