AW: SAMBA ADS PrimaryGroupID

schmieder, holger schmieder at schmieder.de
Wed Jan 5 18:06:42 GMT 2005


I cannot do su - user because the users are not allowed (in PAM) to logon
localy. In the other hand, i can see all groups with getent groups, but the
content is'nt rigth.

Regards
Holger

-----Ursprüngliche Nachricht-----
Von: Laurenz, Dirk [mailto:Dirk.Laurenz at fujitsu-siemens.com]
Gesendet: Mittwoch, 5. Januar 2005 17:45
An: schmieder, holger; samba-technical at lists.samba.org
Betreff: RE: SAMBA ADS PrimaryGroupID


Hi,

what's your base os?
In SuSE SLES 8 for example one user can only be in 32 Groups.
In SuSE SLES 9 for example one user can be in 65535 Groups.
Can you see all groups if you do an su - $USER and then the command id?

Mit freundlichem Gruß,



Dirk Laurenz
Systems Engineer	

Fujitsu Siemens Computers
Sales Central Europe Deutschland 
Professional Service Organisation Nord / Ost

Hildesheimer Strasse 25
30880 Laatzen
Germany

Telephone:	+49 (511) 84 89 - 18 08
Telefax:	+49 (511) 84 89 - 25 18 08
Mobile:	+49 (170) 22 10 781
Email:	mailto:dirk.laurenz at fujitsu-siemens.com
Internet:	http://www.fujitsu-siemens.com
 
http://www.fujitsu-siemens.de/rl/servicesupport/itdienstleistungen/competenc
ecenter.html
****************************************************************************
***************************************
  

-|  -----Original Message-----
-|  From: 
-|  samba-technical-bounces+dirk.laurenz=fujitsu-siemens.com at lis
-|  ts.samba.org 
-|  [mailto:samba-technical-bounces+dirk.laurenz=fujitsu-siemens
-|  .com at lists.samba.org] On Behalf Of schmieder, holger
-|  Sent: Wednesday, January 05, 2005 5:20 PM
-|  To: samba-technical at lists.samba.org
-|  Subject: SAMBA ADS PrimaryGroupID
-|  
-|  Hallo all,
-|  
-|  i have samba 3.0.10 connected with winbind an kerberos to 
-|  an W2K Domain.
-|  With getent passwd i can see all the users, with getent 
-|  group all groups but
-|  there are not all the members in every group. Now i findout 
-|  that all the
-|  users primaryGroupIDs where not resolved in the the 
-|  corresponding groups.
-|  For example:
-|  max is in group Domain User and Test, his prim.GID is Domain User
-|  paul is in group Domain User and Test, his prim.GID is Test
-|  
-|  getent group|grep Domain User shows me paul but not max
-|  
-|  I saw the RFC2307bis patch wich could solve that but this 
-|  patch is only for
-|  3.0.1
-|  
-|  Has someone seen or make a patch for a newer samba version 
-|  ? Or is there
-|  another solution ?
-|  
-|  Thanks for every idea
-|  
-|  Holger Schmieder
-|  


More information about the samba-technical mailing list