[Samba] Ldap and "domain admin group"

Gerald Carter jerry at samba.org
Mon Jun 17 07:35:01 GMT 2002


On Wed, 12 Jun 2002, Åke Holmlund wrote:

> Hi,
> 
> I have tried to add a user (not a group) to "domain admin group" in
> smb.conf with no success. If i use the usermanager an check the
> Administrators group on the local machine there are two members,
> Administrator and DOMAIN\unix_group.2147483404 and the user does NOT

Did you by chance manually set the rid for the user in question in the 
directory?  This won't work very well in the 2.2.x releases.



> get administrative priviliges on the local machine. If I add the
> user to the Administrators group on the local machine it works as expected.
> 
> Have anyone else seen this and/or have any idea what's going on here?
> 
> I'm using Samba 2.2.4 (and 2.2.5pre1) as PDC, Ldap (OpenLdap and Netscape),
> Solaris 8 and Windows 2000 prof.




cheers, jerry

 ---------------------------------------------------------------------
 Hewlett-Packard                                     http://www.hp.com
 SAMBA Team                                       http://www.samba.org
 --                                            http://www.plainjoe.org
 "Sam's Teach Yourself Samba in 24 Hours" 2ed.      ISBN 0-672-32269-2
 --"I never saved anything for the swim back." Ethan Hawk in Gattaca--





More information about the samba mailing list