[SCM] Samba Shared Repository - branch v3-2-test updated - release-3-2-0pre2-3016-ga2c3131

Karolin Seeger ks at sernet.de
Mon Sep 15 12:26:12 GMT 2008


Simo,

On Fri, Sep 12, 2008 at 01:10:02PM +0000, simo wrote:
> I think you have to change 'winbind expand groups'.
> By default it is set to 1 (therefore no nesting), I had it set to
> something like 32 IIRC.

You are right, setting 'winbind expand groups = 32' fixes the issue.

What I noticed today:
Without your patch, listing nested group memberships works with 'security
= domain', but not with 'security = ads'. Your patch fixes this issue.

The strange gid changes cannot be reproduced reliably. I saw it again
today, but couldn't reproduce after that. I didn't see this without your
patch, but that might have been pure chance.

Additionally, I noticed another issue. 'net groupmap list' showed a
strange group mapping entry:

-----8<------------------snip--------------8<--------------
bando:/usr/local/samba # ./bin/net groupmap list
Administrators (S-1-5-32-544) -> domänen-benutzer
Users (S-1-5-32-545) -> hilfedienstgruppe
----->8------------------snap-------------->8--------------

After removing the group_mapping.ldb, I couldn't reproduce that either...

Karolin

-- 
SerNet GmbH, Bahnhofsallee 1b, 37081 Göttingen
phone: +49-551-370000-0, fax: +49-551-370000-9
AG Göttingen, HRB 2816, GF: Dr. Johannes Loxen
http://www.SerNet.DE, mailto: Info @ SerNet.DE

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 194 bytes
Desc: not available
Url : http://lists.samba.org/archive/samba-technical/attachments/20080915/75eaa4fe/attachment.bin


More information about the samba-technical mailing list