rc4 ldap backend groupmap bug?

godfrey godber at win.co.nz
Sun Sep 14 08:06:26 GMT 2003

When trying to add a groupmap entry for a unix group that already has a 
groupmap entry I get the following
error "ldapsam_add_group_mapping_entry: Group 3 already exists in LDAP"

I can reproduce this with rc1 to rc4

It does not happen if use tdb backend, is ldap backend supposed to be 

I am running mandrake samba3 packages thus net3 instead of net.

John H Terpstra in an email to samba list said *

"Not quite! You can not have more than one NT Domain Group per UNIX Group.
But you can have more than on NT Local Group per UNIX group.


net groupmap add ntgroup="Flying Pigs" unixgroup=sys type=l"

see http://lists.samba.org/pipermail/samba/2003-September/000074.html

so I assume ldap behaviour is wrong.

Commands entered below

[root at server01 samba3]# net3 groupmap list
Administrators (S-1-5-21-1617713866-2789119093-1479812082-512) -> root
Backup Operators (S-1-5-32-551) -> bin
Replicators (S-1-5-21-1617713866-2789119093-1479812082-1005) -> daemon
Power Users (S-1-5-32-547) -> sys
Print Operators (S-1-5-32-550) -> lp
Domain Admins (S-1-5-21-1617713866-2789119093-1479812082-21003) -> ntadmin
Staff (S-1-5-21-1617713866-2789119093-1479812082-22001) -> staff
Accounts (S-1-5-21-1617713866-2789119093-1479812082-22005) -> accounts
Family (S-1-5-21-1617713866-2789119093-1479812082-22007) -> family
Domain Guests (S-1-5-21-1617713866-2789119093-1479812082-514) -> nogroup
[root at server01 samba3]# net3 groupmap add ntgroup=test unixgroup=sys type=l
No rid or sid specified, choosing algorithmic mapping
[2003/09/14 19:29:06, 0] 
  ldapsam_add_group_mapping_entry: Group 3 already exists in LDAP
adding entry for group test failed!



More information about the samba-technical mailing list