[Samba] valid users and groups with winbind

Michael MacIsaac mikemac at us.ibm.com
Thu Sep 26 19:57:43 GMT 2002


Hi,

Just starting on this list.

I have samba (2.2.5a) on Linux/s390 and winbind authenticating and
providing shares.
I add the global to smb.conf:

  valid users = '@Domain Users'

After that, I can no longer get the share even though I am in the 'Domain
Users' group.

  # id poklcc+mikem
  uid=10001(POKLCC+mikem) gid=10000(POKLCC+Domain Users)
groups=10000(POKLCC+Domain Users)

I am using the same password, but log.smbd says:

[2002/09/26 14:06:45, 2] smbd/service.c:make_connection(331)
  Invalid username/password for smbshare [poklcc+mikem]
[2002/09/26 14:06:45, 3] smbd/error.c:error_packet(110)
  error packet at smbd/reply.c(167) cmd=117 (SMBtconX)
NT_STATUS_WRONG_PASSWORD
[2002/09/26 14:06:45, 3] smbd/process.c:process_smb(877)

The documentation in smb.conf says:

               "A name starting with a '@' is interpreted as an NIS
              netgroup first (if your system supports  NIS),  and
              then  as  a UNIX group if the name was not found in
              the NIS netgroup database."

but it says nothing about winbind.  Is a Windows Domain group equal to an
NIS or UNIX group, or neither?

Thanks.

          -Mike MacIsaac,  IBM   mikemac at us.ibm.com   (845) 433-7061





More information about the samba mailing list