RFC [Patch] winbind expand groups doc
L.P.H. van Belle
belle at bazuin.nl
Thu Sep 28 13:05:13 UTC 2017
If i may suggest and mentioning that winbind expand groups = 2 ,was a good minimal setting.
For example, imo, pretty normal thing, because of things like this.
Admin1 is member of Domain Admins, which is member of BUILTIN\Administrator
So 2 depth.
In my case with RDP, the users is in the domain group (NTDOM\RDP-Allowed, which is added to the local group. ( .\Remote Desktop Users )
But just a guestion.
And "define" a "high value" ... If 0 and 1 are low. is 4 high? Or 10 or 100?
Adding a sample of a high value helps.
> -----Oorspronkelijk bericht-----
> Van: samba-technical
> [mailto:samba-technical-bounces at lists.samba.org] Namens
> Rowland Penny via samba-technical
> Verzonden: donderdag 28 september 2017 13:55
> Aan: samba-technical at lists.samba.org
> Onderwerp: Re: RFC [Patch] winbind expand groups doc
> On Thu, 28 Sep 2017 12:47:01 +0100
> Noel Power via samba-technical
> <samba-technical at lists.samba.org> wrote:
> > I (and I know others) have found the man page section for 'winbind
> > expand groups' a little confusing. I'm trying to make it a
> little less
> > so. Here's my first cut, I'd be grateful for comments (and
> > suggestions for improvements) Thanks alot Noel
> You appear to have a stutter ;-)
> + <para>This option also also affects the return of non nested
> ^^^^ ^^^^
> Apart from that, it makes sense to me.
More information about the samba-technical