Samba Release Notes
ナビゲーションに移動
検索に移動
4.22.0
Parameter Name Description Default -------------- ----------- ------- smb3 directory leases New Auto vfs mkdir use tmp name New Auto client netlogon ping protocol New cldap himmelblaud hello enabled New no himmelblaud hsm pin path New default hsm pin path himmelblaud sfa fallback New no client use krb5 netlogon Experimental no reject aes netlogon servers Experimental no server reject aes schannel Experimental no server support krb5 netlogon Experimental no fruit:posix_rename Removed cldap port Removed
4.21.0
Parameter Name Description Default -------------- ----------- ------- client ldap sasl wrapping new values client use spnego principal removed ldap server require strong auth new values tls trust system cas new tls ca directories new dns hostname client dns name [netbios name].[realm] valid users Hardening invalid users Hardening read list Hardening write list Hardening veto files Added per-user and per-group vetos hide files Added per-user and per-group hides sync machine password to keytab keytabs sync machine password script script
4.20.3
Parameter Name Description Default -------------- ----------- ------- ldap server require strong auth new values
4.20.0
Parameter Name Description Default -------------- ----------- ------- acl claims evaluation new AD DC only smb3 unix extensions Per share - smb3 share cap:ASYMMETRIC new no smb3 share cap:CLUSTER new see 'man smb.conf' smb3 share cap:CONTINUOUS AVAILABILITY new no smb3 share cap:SCALE OUT new see 'man smb.conf'
4.19
Parameter Name Description Default -------------- ----------- ------- winbind debug traceid Add traceid No directory name cache size Removed
4.18
Parameter Name Description Default -------------- ----------- ------- acl_xattr:security_acl_name New security.NTACL server addresses New
4.17
Parameter Name Description Default -------------- ----------- ------- dns port New default 53 fruit:zero_file_id New default yes nt hash store New parameter always smb1 unix extensions Replaces "unix extensions" volume serial number New parameter -1 winbind debug traceid New parameter no
4.16
Parameter Name Description Default -------------- ----------- ------- kernel share modes New default No dns forwarder Changed rpc_daemon Removed rpc_server Removed rpc start on demand helpers Added true
4.15
Parameter Name Description Default -------------- ----------- ------- client use kerberos New desired client max protocol Values Removed client min protocol Values Removed client protection New default client smb3 signing algorithms New see man smb.conf client smb3 encryption algorithms New see man smb.conf preopen:posix-basic-regex New No preopen:nomatch_log_level New 5 preopen:match_log_level New 5 preopen:nodigits_log_level New 1 preopen:founddigits_log_level New 3 preopen:reset_log_level New 5 preopen:push_log_level New 3 preopen:queue_log_level New 10 server max protocol Values Removed server min protocol Values Removed server multi channel support Changed Yes (on Linux and FreeBSD) server smb3 signing algorithms New see man smb.conf server smb3 encryption algorithms New see man smb.conf winbind use krb5 enterprise principals Changed Yes winbind scan trusted domains Changed No
4.14
Parameter Name Description Default -------------- ----------- ------- smb encrypt Removed async dns timeout New 10 client smb encrypt New default honor change notify privilege New No smbd force process locks New No server smb encrypt New default
4.13
Parameter Name Description Default -------------- ----------- ------- ldap ssl ads Removed smb2 disable lock sequence checking Added No smb2 disable oplock break retry Added No domain logons Deprecated no raw NTLMv2 auth Deprecated no client plaintext auth Deprecated no client NTLMv2 auth Deprecated yes client lanman auth Deprecated no client use spnego Deprecated yes server require schannel:COMPUTER Added
4.12
Parameter Name Description Default -------------- ----------- ------- elasticsearch:address New localhost elasticsearch:port New 9200 elasticsearch:use tls New No elasticsearch:index New _all elasticsearch:mappings New DATADIR/elasticsearch_mappings.json elasticsearch:max results New 100 nfs4:acedup Changed default merge rndc command Removed write cache size Removed spotlight backend New noindex
4.11
Parameter Name Description Default
-------------- ----------- -------
allocation roundup size Default changed/ 0
Deprecated
client min protocol Changed default SMB2_02
server min protocol Changed default SMB2_02
mangled names Changed default illegal
web port Removed
fruit:zero_file_id Changed default False
debug encryption New: dump encryption keys False
rndc command Deprecated
lanman auth Deprecated
encrypt passwords Deprecated
4.10
Parameter Name Description Default
-------------- ----------- -------
prefork backoff increment Delay added to process restart 10 (seconds)
between attempts.
prefork maximum backoff Maximum delay for process between 120 (seconds)
process restart attempts
smbd search ask sharemode Name changed, old name was "smbd:search ask sharemode"
smbd async dosmode Name changed, old name was "smbd:async dosmode"
smbd max async dosmode Name changed, old name was "smbd:max async dosmode"
smbd getinfo ask sharemode New: similar to "smbd search ask yes sharemode" but for SMB getinfo
4.9
As the most popular Samba install platforms (Linux and FreeBSD) both support extended attributes by default, the parameters "map readonly", "store dos attributes" and "ea support" have had their defaults changed to allow better Windows fileserver compatibility in a default install.
Parameter Name Description Default -------------- ----------- ------- map readonly Default changed no store dos attributes Default changed yes ea support Default changed yes full_audit:success Default changed none full_audit:failure Default changed none
4.8
Parameter Name Description Default
-------------- ----------- -------
apply group policies New no
auth methods Removed
binddns dir New
client schannel Default changed/ yes
Deprecated
gpo update command New
ldap ssl ads Deprecated
map untrusted to domain Removed
oplock contention limit Removed
prefork children New 1
mdns name New netbios
fruit:time machine New false
profile acls Removed
use spnego Removed
server schannel Default changed/ yes
Deprecated
unicode Deprecated
winbind scan trusted domains New yes (4.15 - No)
winbind trusted domains only Removed
4.7
Parameter Name Description Default
-------------- ----------- -------
allow unsafe cluster upgrade New parameter no
auth event notification New parameter no
auth methods Deprecated (Removed 4.8)
client max protocol Effective SMB3_11
default changed
map untrusted to domain New value/ auto (Removed 4.8)
Default changed/
Deprecated
mit kdc command New parameter
profile acls Deprecated
rpc server dynamic port range New parameter 49152-65535
strict sync Default changed yes
password hash userPassword schemes New parameter
ntlm auth New values ntlmv2-only
4.6
Parameter Name Description Default -------------- ----------- ------- kerberos encryption types New all inherit owner New option fruit:resource Spelling correction lsa over netlogon New (deprecated) no rpc server port New 0
4.5
Parameter Name Description Default -------------- ----------- ------- kccsrv:samba_kcc Changed default yes ntlm auth Changed default no only user Removed password hash gpg key ids New shadow:snapprefix New shadow:delimiter New _GMT smb2 leases Changed default yes username Removed
4.4
Parameter Name Description Default -------------- ----------- ------- aio max threads New 100 ldap page size Changed default 1000 server multi channel support New No (4.15 - Yes) interfaces Extended syntax
4.3
Parameter Name Description Default -------------- ----------- ------- logging New (empty) msdfs shuffle referrals New no smbd profiling level New off spotlight New no tls priority New NORMAL:-VERS-SSL3.0 use ntdb Removed change notify Changed to [global] kernel change notify Changed to [global] client max protocol Changed default SMB3_11 server max protocol Changed default SMB3_11
4.2
Parameter Name Description Default -------------- ----------- ------- allow nt4 crypto New no neutralize nt4 emulation New no reject md5 client New no reject md5 servers New no require strong key New yes smb2 max read Changed default 8388608 smb2 max write Changed default 8388608 smb2 max trans Changed default 8388608 winbind expand groups Changed default 0
4.1
Parameter Name Description Default -------------- ----------- ------- acl allow execute always New False password level Removed set directory Removed use ntdb New No
4.0
Parameter Name Description -------------- ----------- acl compatibility Removed allow dns updates New announce as Removed announce version Removed cldap port New client max protocol New client min protocol New client signing Changed default dcerpc endpoint servers New dgram port New directory security mask Removed display charset Removed dns forwarder New dns update command New force security mode Removed force directory security mode Removed homedir map Changed default kernel oplocks Changed default kernel share modes New kpasswd port New krb5 port New nbt client socket address New nbt port New nsupdate command New ntp signd socket directory New ntvfs handler New paranoid server security Removed pid directory New printer admin Removed rndc command New rpc big endian New samba kcc command New security mask Removed send spnego principal Removed server max protocol New server min protocol New server role New server services New server signing Changed default share backend New share modes Removed smb2 max read Changed default smb2 max write Changed default smb2 max trans Changed default socket address Removed spn update command New time offset Removed tls cafile New tls certfile New tls crlfile New tls dh params file New tls enabled New tls keyfile New unicode New web port New winbindd privileged socket directory New winbind sealed pipes New winbindd socket directory New
3.6
Parameter Name Description Default -------------- ----------- ------- async smb echo handler New No client ntlmv2 auth Changed Default Yes client use spnego principal New No ctdb locktime warn threshold New 0 idmap alloc backend Removed log writeable files on exit New No multicast dns register New Yes ncalrpc dir New send spnego principal New No smb2 max credits New 8192 smb2 max read New 1048576 smb2 max trans New 1048576 smb2 max write New 1048576 username map cache time New 0 winbind max clients New 200
3.5
Parameter Name Description Default -------------- ----------- ------- create krb5 conf New yes ctdb timeout New 0 cups encrypt New no debug hires timestamp Changed Default yes ldap deref New auto ldap follow referral New auto nmbd bind explicit broadcast New no wide links Changed Default no
3.4
Parameter Name Description Default -------------- ----------- ------- access based share enum New No dedicated keytab file New "" kerberos method New default map untrusted to domain New No max open files Changed Default auto detected passdb backend Changed Default tdbsam perfcount module New "" use kerberos keytab Removed
3.3
Parameter Name Description Default
-------------- ----------- -------
cups connection timeout New 30
idmap config DOM:range Removed
idmap domains Removed
init logon delayed hosts New ""
init logon delay New 100
ldap ssl Changed Default start tls
share modes Deprecated
winbind reconnect delay New 30