[Samba] Samba 3.0 + LDAP

Gonzalo Servat gonzalo at unixpac.com.au
Tue May 28 22:32:03 GMT 2002


On Wed, 2002-05-29 at 15:12, abartlet at samba.org wrote:
> On Wed, May 29, 2002 at 02:56:09PM +1000, Gonzalo Servat wrote:
> > On Wed, 2002-05-29 at 14:29, abartlet at samba.org wrote:
> > Ah, right. So even if I do 'admin users = @domadm' I still need to
> > create a 'root' user in the ldap tree?
> 
> No, you should be able to get away without 'root'.  But this is in Samba 3.0
> ONLY.

Ok. so have you got any ideas as to why I get "Access is Denied" ? I'm
trying to join the domain using 'smbadmin' who is a member of the
'domadm' group (now set as 'admin users = @domadm' in smb.conf as well
as in smbgroupedit for Domain Admins -> domadm)

You don't need to create the computer account before joining the domain,
right?

> 
> > Why would I use the 'admin users = @domadm' if I can use smbgroupedit to
> > map a NT group to a Unix group? Out of curiosity..
> 
> One is unix side (admin users =) the other is windows side, and has no impact
> on unix (and samba) internal operations.

Okay. Gotcha.

> 
> Andrew Bartlett
> 






More information about the samba mailing list