[Samba] No full administrator-permissions on local machines withsamba 3 domain login

Alex Forrow alex-mailinglists at forrow.com
Fri Mar 12 23:38:32 GMT 2004

When you say domainmember is a member of the admin group, what admin
group do you mean? The admin group as set in the smb.conf or the NT
'Domain Admins' group?

By the details you are describing, it sounds as though it's not the NT
'Domain Admins' group, but just added in smb.conf. I say this because
Samba seems to think you are an admin because it allows you to make
users. If this is the case, you must map the admin group to the NT
'Domain Admins' group using 

net groupmap add......

Now the windows computers should see you their admin, 

Hope this helps

Alex Forrow

-----Original Message-----
From: samba-bounces+alex-mailinglists=forrow.com at lists.samba.org
[mailto:samba-bounces+alex-mailinglists=forrow.com at lists.samba.org] On
Behalf Of Joern Frenzel
Sent: 10 March 2004 10:34
To: samba at lists.samba.org
Subject: [Samba] No full administrator-permissions on local machines
withsamba 3 domain login


does anybody know about the following situatuion and it's solution ? we 
configured an samba3 as pdc - sure in the way it was often described.
but if 
we login on a windowsXP as domainmember (member of the admin group)  it
like we do not really have full administrator-permissions. we can add
and can do some other tasks only an administraor is allowed to do. but
stuff is still not possible to do. i.e. we can not disable the 

thanks for your help.

Jörn Fenzel

To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba

More information about the samba mailing list