[Samba-it] Problema con permessi nella cartella profiles
Pignedoli Luca
lucap78 at interfree.it
Tue Dec 6 13:23:42 MST 2005
>Samba deve girare come root, ma se configuri bene le cose, ogni utente che
>accede al server (ameno che non sia un "admin user"), ci accede con le sue
>credenziali, quindi apre un'istanza di smbd che gira con le credenziali
>dell'utente.
>
>
>
Ecco, questo non mi accade, ogni utente che accede al server apre
un'istanza smbd come nobody.
Queste sono le info che vedo con un utente test:
#id test3
uid=1008(test3) gid=513(Domain Users) gruppi=513(Domain Users)
E questo e' il file smb.conf:
#======================= Global Settings
=====================================
[global]
unix charset = LOCALE
workgroup = test
server string = Domain test
netbios name = DOMAIN
interfaces = eth0, lo
bind interfaces only = Yes
dns proxy = no
name resolve order = wins bcast hosts
time server = Yes
os level = 255
domain master = yes
preferred master = yes
domain logons = yes
socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
#### Debugging/Accounting ####
log level = 1
syslog = 0
log file = /var/log/samba/%m.log
max log size = 1000
panic action = /usr/share/samba/panic-action %d
wins support = yes
username map = /etc/samba/smbusers
template shell = /bin/false
winbind use default domain = no
####### Authentication #######
security = user
encrypt passwords = true
passdb backend = ldapsam:ldap://127.0.0.1
obey pam restrictions = no
passwd program = /opt/IDEALX/sbin/smbldap-passwd %u
passwd chat = *New*password* %n\n *Retype*new*password* %n\n
*all*authentication*tokens*updated*
####### LDAP SERVERS #######
ldap admin dn = cn=admin,dc=test
ldap suffix = dc=test
ldap group suffix = ou=Groups
ldap user suffix = ou=Users
ldap machine suffix = ou=Computers
ldap idmap suffix = ou=Idmap
ldap passwd sync = Yes
ldap delete dn = Yes
####### Configurazione Utenti #######
add user script = /opt/IDEALX/sbin/smbldap-useradd -m "%u"
delete user script = /opt/IDEALX/sbin/smbldap-userdel "%u"
add machine script = /opt/IDEALX/sbin/smbldap-useradd -w "%u"
add group script = /opt/IDEALX/sbin/smbldap-groupadd -p "%g"
delete group script = /opt/IDEALX/sbin/smbldap-groupdel "%g"
add user to group script = /opt/IDEALX/sbin/smbldap-groupmod -m "%u" "%g"
delete user from group script = /opt/IDEALX/sbin/smbldap-groupmod -x
"%u" "%g"
set primary group script = /usr/opt/IDEALX/smbldap-usermod -g "%g" "%u"
idmap backend = ldap:ldap://127.0.0.1
idmap uid = 10000-20000
idmap gid = 10000-20000
enable privileges = Yes
logon script = %U.bat
logon path = \\%L\profiles\%U
logon home = \\%L\%U
logon drive = Z:
veto files = /*.eml/*.nws/*.{*}/*.mp3/
veto oplock files = /*.doc/*.xls/*.mdb/
abort shutdown script = /sbin/shutdown -c
inherit acls = yes
inherit owner = yes
inherit permissions = yes
map acl inherit = Yes
acl compatibility = Auto
acl group control = yes
nt acl support = yes
check password script = /usr/bin/crackcheck -d /usr/lib64/cracklib_dict
########## Printing ##########
printcap name = CUPS
load printers = yes
printing = cups
cups options = raw
show add printer wizard = no
[homes]
comment = Home Directories
browseable = no
writeable = yes
create mask = 0700
directory mask = 0700
[netlogon]
comment = Network Logon Service
path = /w1/samba/netlogon
guest ok = yes
writable = no
share modes = no
[Profiles]
path = /w1/samba/profiles
read only = no
create mask = 0600
directory mask = 0700
browseable = no
guest ok = yes
nt acl support = no
[printers]
comment = All Printers
path = /var/spool/samba
browseable = no
Dove puo' essere l'errore?
More information about the samba-it
mailing list