winbindd: local unix users vs. NTdomain users ........

m.o.tigchelaar at kpn.com m.o.tigchelaar at kpn.com
Mon Dec 17 00:00:04 GMT 2001


You should not be using double user-names in the first place. One of THE
advantages of eth Winbindd daemon is that you do NOT have to create all your
users locally...




Met vriendelijke groet,


Martijn Olivier Tigchelaar
Systems Management
KPN Services Online DATA

E-mail:	m.o.tigchelaar at kpn.com


Junior IT Consultant
Flex Information Technology

e-mail:	m.tigchelaar at flex-it.nl

> -----Original Message-----
> From:	Savchuk Valery [SMTP:volsk at mail.ru]
> Sent:	Saturday, December 15, 2001 8:38 PM
> To:	samba at samba.org
> Subject:	winbindd: local unix users vs. NTdomain users ........
> 
> Hi!
> 
> I use Samba 2.2.2 on Linux Red Hat 7.1.
> 
> My Samba server is NT domain member (security = domain),
> and I use winbindd.
> 
> I detect some strange situation, as I look. See below.
> 
> For example, my NT domain is MYDOMAIN (PDC implemented
> on NT4), and this domain have user myuser (MYDOMAIN+myuser 
> as see him Samba&Winbindd).
> Linux, which run Samba&winbindd, have local user myuser too.
> 
> Local unix user myuser have uid 542 and home 
> directory /home/myuser.
> Domain user MYDOMAIN+myuser have uid 10012 and 
> template home directory /smbhome/MYDOMAIN/myuser.
> 
> Strange thing: after connect myuser into domain MYDOMAIN
> from Windows2000 machine and connect into [homes] share
> onto Samba server, this user get uid 10012 (as MYDOMAIN+myuser)
> but his home directory is /home/myuser (as local unix user myuser).
> But /home/myuser have owner uid 542, not 10012 !!!!!!!!!!!!!!!!!
> 
> I must run "chown -R MYDOMAIN+myuser /home/myuser" to 
> provide for this user right access in his home directory.
> I think, what it's very ugly situation.
> 
> Also, what will be, if myuser (see above) is enumered 
> into "print admin" line of smb.conf: "print admin = myuser"?
> How myuser will be to "admin" print$, if he is MYDOMAIN+myuser
> (uid 10012) instead myuser (uid 542)?
> 
> I not found, how to make this situation rightly.
> 
> I think, what local user myuser must have more high
> priority under NT domain user myuser (MYDOMAIN+myuser) 
> in any time and in any shares.
> Or have posible manually control order of selection 
> doubled users.
> 
> Also:
> I think what need have commands like "winbind add user script
> (winbind delete user script)" which will run, when winbindd
> detect adding(deleting) user from NTdomain. For creating
> (deleting) template home directories, for example.
> Now I must to create homedirs manually :(((
> 
> ------
> Valery Savchuk
> volsk at mail.ru
> svl at volskcement.ru
> 
> 
> 
> -- 
> To unsubscribe from this list go to the following URL and read the
> instructions:  http://lists.samba.org/mailman/listinfo/samba




More information about the samba mailing list