Hottest Free Downloads - DownloadPipe.com Over 197,000 downloads! Bookmark Now!
DownloadPipe.com - New Downloads Every Minute
 SEARCH:
FAQFAQ    SearchSearch      ProfileProfile    Private MessagesPrivate Messages   Log inLog in

[Samba] Samba and file system permissions (secondary/auxil..

 
   Linux (Home) -> Samba RSS
Next:  [Samba] wpkg for Samba  
Author Message
list

External


Since: Sep 02, 2008
Posts: 1



(Msg. 1) Posted: Tue Sep 02, 2008 11:30 pm
Post subject: [Samba] Samba and file system permissions (secondary/auxillary/non-primary groups)
Archived from groups: linux>samba (more info?)

Hi
I have a problem with samba integrated with Active Directory (2003).
I wish to have one share containing different folders and I wish access to
these folders to be controlled at the file system level. So that if a
connecting user is in the group(s) specified at the filesystem level he or
she is permitted access to that folder according to the folders
permissions.

I'm running Ubuntu 8.04.1, Likewise-open and Samba 3.0.28a .
I have successfully gotten to the point where by samba recognises the
groups at the share level but not at the folder level unless the users
primary group is set to the folder group.

Can anyone shed any light as to why this is so?
I really need to be able to set permissions via group by folder in order
to directly replace a windows file server.

Below are sanitised versions of my config files.

Thanks in advance for any help
Regards
Jon

smb.conf
---------------------

[global]
security = ads
workgroup = MYDOMAIN
realm = MYDOMAIN.LOCAL

idmap backend = lwopen
idmap uid = 50 - 999999999
idmap gid = 50 - 999999999

server string = %h server (Samba, Ubuntu)
wins server = server1.mydomain.local
dns proxy = no
interfaces = 127.0.0.0/8 eth0
bind interfaces only = true

log file = /var/log/samba/log.%m
max log size = 1000
syslog = 0
panic action = /usr/share/samba/panic-action %d

passdb backend = tdbsam
encrypt passwords = yes
obey pam restrictions = yes
invalid users = root
unix password sync = no
socket options = TCP_NODELAY
domain master = no

map acl inherit = yes

veto files = /.DS_Store/._*/

winbind use default domain = no

#======================= Share Definitions =======================

[srv]
path = /srv/
comment = DEV
browseable = no

valid users = @MYDOMAIN\group
write list = @MYDOMAIN\group
writable = yes
create mask = 0775
directory mask = 0775

guest ok = no
inherit permissions = yes
nt acl support = yes

lwiauthd.conf
---------------------
[global]
workgroup = MYDOMAIN
security = ads
passdb backend = tdbsam
disable netbios = yes
idmap domains = default
idmap config default:default = yes
idmap config default:backend = lwopen
idmap config default:readonly = yes
idmap alloc backend = tdb
idmap alloc config:range = 9000 - 9999
idmap cache time = 3600
idmap negative cache time = 300
winbind cache time = 900
winbind offline logon = yes
winbind refresh tickets = yes
winbind replacement character = ^
winbind normalize names = yes
winbind expand groups = 10
winbind enum users = Yes
winbind enum groups = Yes
template shell = /bin/bash
template homedir = /home/%D/%U
machine password timeout = 2592000
realm = MYDOMAIN.LOCAL
use kerberos keytab = yes

nt acl support = yes
map acl inherit = yes
veto files = /.DS_Store/._*/
winbind nss info = sfu











--
To unsubscribe from this list go to the following URL and read the
instructions: https://lists.samba.org/mailman/listinfo/samba
Back to top
Login to vote
Display posts from previous:   
Related Topics:
[Samba] Samba Core dump when using AD groups on the Linux .. - Hi all, smbd -V: Version 3.0.23d-19.2-1179-SUSE-SL10.2 I'm seeing a core dump in /var/log/messages when trying to access the security tab from Windows when I have Active Directory users and groups assigned to the Linux file system. I can replicate..

[Samba] file permissions - hi all. apologies for the double post, i omitted the subject line (doh!) i've installed samba with samba-vscan. the only way i can get this combination to work is to set permissions on the folder to be at least drwx---r-- (or in other words, the window...

[Samba] setting file permissions - I have a very upset client and I can not find an answer. How do I set the read-only flag using the Windows Explorer? I right-click, select properties, select the read-only check box, click apply and the check mark goes away. No errors it just does not...

[Samba] Share file permissions - I have not been able to find this exact problem on the mailing list; apologize if I missed it. I have tried both samba versions 3.0.20 and 3.0.21pre1. The file share in smb.conf has these entries: path = /home/samba/myshare guest ok = no ..

[Samba] changing file permissions from Windows - I don't know if this is a Windows problem or if I don't have the correct Samba configuration... each time that I want to change permissions for a shared file, it asks me to log in with an account which has permissions in my domain !!, no matter if I..
       Linux (Home) -> Samba All times are: Pacific Time (US & Canada) (change)
Page 1 of 1

 
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Categories:
 Windows Forums
 Game Forums
  Linux Forums
 Mac Forums
 PDA Forums
 Mobile Forums
  Top  |  Store  |  RSS Feeds RSS  |  Data Feeds  |  Advertise  |  Submit  |  Bookmark  |  Newsletter  |  Contact