[Samba-it] Problema con gruppi e usrmgr.exe

cucca liste at cuccarini.it
Tue Jun 7 08:28:01 MDT 2005


Provo a riproporre il mio problema sperando in un vostro aiuto: quando
eseguo usrmgr per aggiungere un utente a un gruppo e/o rimuoverlo da un
gruppo usrmgr.exe mi risponde dicendomi "Accesso negato"... Puo' dipendere
dal fatto che come "superutente" samba uso administrator piuttosto che root?

Ringrazio tutti e chiedo venia per aver riproposto il mio problema ma
nonostante le mie ricerche/tentativi non sono riuscito a trovare quale possa
essere il problema.

Saluti
Denis


Questa e' la mappatura dei gruppi:
sirio:~# net groupmap list
Domain Admins (S-1-5-21-3155700216-2377338514-2295902335-512) -> Domain
Admins
Domain Users (S-1-5-21-3155700216-2377338514-2295902335-513) -> Domain Users
Domain Guests (S-1-5-21-3155700216-2377338514-2295902335-514) -> Domain
Guests
Administrators (S-1-5-21-3155700216-2377338514-2295902335-544) ->
Administrators
NT Users (S-1-5-21-3155700216-2377338514-2295902335-545) -> NT Users
Guests (S-1-5-21-3155700216-2377338514-2295902335-1445) -> Guests
Power Users (S-1-5-21-3155700216-2377338514-2295902335-547) -> Power Users
Account operators (S-1-5-21-3155700216-2377338514-2295902335-548) -> Account
operators
Server operators (S-1-5-21-3155700216-2377338514-2295902335-549) -> Server
operators
Print operators (S-1-5-21-3155700216-2377338514-2295902335-550) -> Print
operators
Backup operators (S-1-5-21-3155700216-2377338514-2295902335-551) -> Backup
operators
Replicator (S-1-5-21-3155700216-2377338514-2295902335-552) -> Replicator
Hosts (S-1-5-21-3155700216-2377338514-2295902335-1601) -> Hosts


Questo il mio smb.conf:
#======================= Global Settings =======================
[global]
workgroup = BLABLABLA
server string = Server
interfaces = 192.168.50.3/24 127.0.0.1/24
dns proxy = no
log level = 3
log file = /var/log/samba/log.%m
max log size = 1000
syslog = 0
panic action = /usr/share/samba/panic-action %d
security = user
encrypt passwords = true
passdb backend = ldapsam:ldap://127.0.0.1
obey pam restrictions = no
passwd program = /usr/local/sbin/smbldap-passwd.pl -o %u
passwd chat = *new*password* %n\n *new*password* %n\n *successfully*
hide dot files = yes
default case = Lower
veto files = /.*/
use sendfile = no
admin users = administrator
wins support = no
time server = yes
kernel change notify = yes

######### TUNNING ###########

socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
read raw = yes
write raw = yes
oplocks = yes
max xmit = 65535
dead time = 15
getwd cache = yes
lpq cache time = 30

########## PRINTING ##########

printing = cups
printcap name = CUPS
printcap = cups
load printers = yes



############ LDAP ############
os level = 33
preferred master = yes
domain master = yes
local master = yes
domain logons = yes
logon path =
logon home =
logon script = startup.bat

#### GESTIONE USER DA WIN ####

add user script = /usr/local/sbin/smbldap-useradd.pl -m "%u"
ldap delete dn = Yes
delete user script = /usr/local/sbin/smbldap-userdel.pl "%u"
add machine script = /usr/local/sbin/smbldap-useradd.pl -w "%u"
add group script = /usr/local/sbin/smbldap-groupadd.pl -p "%g"
delete group script = /usr/local/sbin/smbldap-groupdel.pl "%g"
add user to group script = /usr/local/sbin/smbldap-groupmod.pl -m "%u" "%g"
delete user from group script = /usr/local/sbin/smbldap-groupmod -x "%u"
"%g"
set primary group script = /usr/sbin/smbldap-usermod -g "%g" "%u"

#======================= Share Definitions =======================

[homes]
        comment = Home Directories
        browseable = no
        writable = no
        create mask = 0700
        directory mask = 0700









More information about the samba-it mailing list