[Samba] Group and Client Access Problems w/Samba 3

Wil Cooley wcooley at nakedape.cc
Thu Jan 22 01:13:29 GMT 2004


On Tue, 2004-01-20 at 15:55, Wil Cooley wrote:

> [2004/01/19 19:39:14, 0] groupdb/mapping.c:init_group_mapping(139)
>   Failed to open group mapping database
> [2004/01/19 19:39:14, 0] groupdb/mapping.c:get_group_from_gid(655)
>   failed to initialize group mappingFailed to open group mapping database
> [2004/01/19 19:39:14, 0] groupdb/mapping.c:get_group_from_gid(655)
>   failed to initialize group mappingget_alias_user_groups: gid of user tmax3 doesn't exist. Check your /etc/passwd and /etc/group files

Since I've seen several people asking about this, it appears to be
caused by an smbd which has dropped root privs and is trying to read
/var/cache/samba/group_mapping.tdb.  'tdbdump' doesn't indicate that
there is anything sensitive here, so I've chmod'd it from 0600 to 0644. 
I haven't seen any more messages in the 10 minutes or so since I
effected this change, so I'm hoping it's gone.  (Whether or not it
actually fixes any errors, I cannot yet say.)

I turned debugging up to 10 to find the actual error, and here's what I
see:

[2004/01/21 16:59:57, 5] tdb/tdbutil.c:tdb_log(724)
  tdb(unnamed): tdb_open_ex: could not open file /var/cache/samba/group_mapping.tdb: Permission denied
[2004/01/21 16:59:57, 0] groupdb/mapping.c:init_group_mapping(139)
  Failed to open group mapping database
[2004/01/21 16:59:57, 0] groupdb/mapping.c:get_group_from_gid(655)
  failed to initialize group mappingtdb(unnamed): tdb_open_ex: could not open file /var/cache/samba/group_mapping.tdb: Permission denied
[2004/01/21 16:59:57, 0] groupdb/mapping.c:init_group_mapping(139)
  Failed to open group mapping database
[2004/01/21 16:59:57, 0] groupdb/mapping.c:get_group_from_gid(655)
  failed to initialize group mappingtdb(unnamed): tdb_open_ex: could not open file /var/cache/samba/group_mapping.tdb: Permission denied
[2004/01/21 16:59:57, 0] groupdb/mapping.c:init_group_mapping(139)
  Failed to open group mapping database
[2004/01/21 16:59:57, 0] groupdb/mapping.c:get_group_from_gid(655)
  failed to initialize group mappingtdb(unnamed): tdb_open_ex: could not open file /var/cache/samba/group_mapping.tdb: Permission denied
[2004/01/21 16:59:57, 0] groupdb/mapping.c:init_group_mapping(139)
  Failed to open group mapping database
[2004/01/21 16:59:57, 0] groupdb/mapping.c:get_group_from_gid(655)
  failed to initialize group mappingget_alias_user_groups: gid of user mcole doesn't exist. Check your /etc/passwd and /etc/group files

Wil
-- 
Wil Cooley                                 wcooley at nakedape.cc
Naked Ape Consulting                        http://nakedape.cc
* * * * Linux, UNIX, Networking and Security Solutions * * * *
* Naked Ape Consulting                   http://nakedape.cc  *
* Contract Sys Admin               http://nakedape.cc/r/csa  *
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba/attachments/20040121/ef891c4a/attachment.bin


More information about the samba mailing list