[Samba] 3.0.20pre1 - Test in NT4 Domain using "winbind nested groups"

Grant Bigham samba at bigham.homelinux.com
Thu Jun 23 06:28:33 GMT 2005


Guys, I've been testing functionality of this new release in my playpen
setup. So far things appear to be working ok, however in an NT4 Domain
with "winbind nested groups = yes" defined I see none of the NT4 DC's 
local groups in Samba, either via wbinfo -g, getent group, or via
Windows Explorer security dialogs.

Presumably the reasonably recent nested groups support will work in an
NT4 domain, as it appears to in ADS (although I've not yet tested in ADS
envr myself, yet)?

Envr:	SLES8 2.4.21-278 Kernel, glibc-2.2.5-231
	Arch: (s390)

excerpt from smb.conf:
[global]
        workgroup = DBR05A
        netbios name = SLES81
        netbios aliases = THOME VHOME QHOME
        server string = SLES8 Samba Test Server
        os level = 65
        domain master = no
        domain logons = no
        preferred master = no
        local master = no
        wins server = 10.250.0.110
        security = DOMAIN
        encrypt passwords = yes
        password server = gollum
        max mux = 500
        winbind uid = 10000-20000
        winbind gid = 10000-20000
        winbind separator = +
        winbind nested groups = yes
        deadtime = 60
        smb ports = 139 445
###########################################################
##    Start of the default options for defined shares    ##
###########################################################
        browseable = yes
        read only = no
        nt acl support = yes
        guest ok = no
        inherit acls = yes
        inherit owner = yes
        ; inherit group = yes
        dos filetimes = yes
        map acl inherit = yes
        store dos attributes = yes
        vfs objects = audit

I plan to test this on x86 arch also, but expect the same unless this is
an endian bug.

Cheers, Grant



More information about the samba mailing list