[Samba] Winbind Expand Groups option not fully funtional

Charles Johnson cjohnson at custom-mfg-eng.com
Mon Jan 4 15:23:18 MST 2010


I am trying to authenticate samba 3.3 running on Centos 5 to Windows 2003 R2 Active Directory. 

95% of my setup is working. 

The only thing that doesn't work are expanded groups. 
Whenever a group is a member of another group the permissions in samba/nss/winbind are not communicated 
correctly to the windows client but seem to work on the linux end of things. 

Here's my scenario. (All hostnames are internal) 

AD Groups and Members 
----------------- 
testgroup9 members: cjohnson,erodriguez,testuser11,testuser9 
testgroup10 members: testgroup9 

Getent group responds correctly populating the testgroup9 members into testgroup10 

testgroup9:x:111265:cjohnson,erodriguez,testuser11,testuser9 
testgroup10:x:111266:cjohnson,erodriguez,testuser11,testuser9 



More information about the samba mailing list