Hottest Free Downloads - DownloadPipe.com Over 197,000 downloads! Bookmark Now!
DownloadPipe.com - New Downloads Every Minute
 SEARCH:
FAQFAQ    SearchSearch      ProfileProfile    Private MessagesPrivate Messages   Log inLog in

[Samba] Nested Groups

 
   Linux (Home) -> Samba RSS
Next:  [Samba] Winbind not getting new membership for AD..  
Author Message
Harry Jede

External


Since: Dec 25, 2008
Posts: 3



(Msg. 1) Posted: Thu Dec 25, 2008 7:30 pm
Post subject: [Samba] Nested Groups
Archived from groups: linux>samba (more info?)

Hi all,
I'm not able to create localgroups as described
in "docs/man/Samba-HOWTO-Collection/groupmapping.html"

I have tested Samba 3.2.5 and 3.2.6 on Debian lenny.
As usual I am using openldap as backend.


First I have tested with smbldap-tools, then I have switched to
ldapsam:editposix = yes
ldapsam:trusted = yes
and removed all the script entries from smb.conf.

The result is always the same:

Localgroups are created with:
objectClass: sambaSidEntry
objectClass: sambaGroupMapping
sambaGroupType: 4

Globalgroups are created with:

objectClass: posixGroup
objectClass: sambaGroupMapping
sambaGroupType: 2

The very ugly result is, that getent is not able to resolve any local
group, as stated in groupmapping.html.


A solution may be, that the code that create the localgroups, share the
code which create global groups ???

Any Ideas?



PS

Even if I manually create a localgroup with the objectclasses from
rfc2307, like so:

objectClass: top
objectClass: sambaSidEntry
objectClass: posixGroup
objectClass: sambaGroupMapping
objectClass: extensibleObject
cn: ab38
gidNumber: 6005
sambaSID: S-1-5-21-2462391502-1360153102-2655098952-5080
sambaGroupType: 4
displayName: ab38
memberUid: domadmins
sambaSIDList: S-1-5-21-2462391502-1360153102-2655098952-512

is the reult the same.
net rpc group members
will list all members of nested groups, getent will not Sad

if I switch sambaGroupType to 2, both will work

--

Gruss
Harry Jede
--
To unsubscribe from this list go to the following URL and read the
instructions: https://lists.samba.org/mailman/listinfo/samba
Back to top
Login to vote
Display posts from previous:   
Related Topics:
[Samba] nested groups with user mapping doesn't work - Hi, i've a samba server (3.0.23d) as a domain member (not a PDC/BDC). My problem is that if I'm using user mapping with the option 'username map = user.map' the samba server doesn't see that I'm a member of several domain groups and the nested groups....

[Samba] apache, apache's mod-auth-pam, and pam_winbind : n.. - this problem might be more to do with apache than winbind, but I'll start here anyway... Problem: can't get apache httpauth to work with nested groups, though ssh auth (also using pam) to same box does Config:..

[Samba] AD groups to unix groups - I would like an AD group "Unix Admins" to have root group membership. How does one accomplish this? Thanks, George -- To unsubscribe from this list go to the following URL and read the instructions: ..

[Samba] Samba Core dump when using AD groups on the Linux .. - Hi all, smbd -V: Version 3.0.23d-19.2-1179-SUSE-SL10.2 I'm seeing a core dump in /var/log/messages when trying to access the security tab from Windows when I have Active Directory users and groups assigned to the Linux file system. I can replicate..

[Samba] Samba and file system permissions (secondary/auxil.. - Hi I have a problem with samba integrated with Active Directory (2003). I wish to have one share containing different folders and I wish access to these folders to be controlled at the file system level. So that if a connecting user is in the group(s)..
       Linux (Home) -> Samba All times are: Pacific Time (US & Canada) (change)
Page 1 of 1

 
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Categories:
 Windows Forums
 Game Forums
  Linux Forums
 Mac Forums
 PDA Forums
 Mobile Forums
  Top  |  Store  |  RSS Feeds RSS  |  Data Feeds  |  Advertise  |  Submit  |  Bookmark  |  Newsletter  |  Contact