Help with Administrative privileges for users

Melissa Thrush mmt4q at ee.virginia.edu
Fri Dec 3 16:14:33 GMT 1999


Oops,

I should have been more specific.

I tried adding the user's domain account to the LOCAL administrator's group,
but I cannot see any USERs in the DOMAIN.  I receive the following
message:

    Unable to browse the selected domain because the following error occurred:

    The tag is invalid.

This happens whether I log in as Administrator on the local machine or login
as
myself with domain admin privileges into the domain on that machine.

It could be that this feature is not working in the MAIN branch but only with
the HEAD/cvs
branch? or maybe I don't have something set correctly in smb.conf or
NTconfig.pol?

Melissa Thrush wrote:

> Hi.
>
> Okay.  I have Samba PDC 2.0.5a working (Solaris 2.6 NIS) and have
> a user logging in getting his roaming profile.  However he
> needs to install software on his local machine which requires
> Administrative privileges.  In samba I have the UNIX "staff" group
> (me and my coworker) setup to be domain administrators with the entry:
>
>     domain admin group = @staff
>
> This works fine.  But I don't want to add this individual user to
> this group because then he'll have Admin privileges on all the pcs
> who are members of the PDC.
>
> Is my only option to create a "local" profile on his machine and give
> him administrative privileges?  But then he'll have two separate profiles,
> and it's likely they won't both be kept in sync.

Melissa
--
Melissa Thrush
Dept. of Electrical Engineering
University of Virginia
Thornton Hall - C213
Phone: 804-924-6072
Fax:   804-924-8818




More information about the samba-ntdom mailing list