[Samba] acl and winbindd woes

Robert Gehr robert.gehr at baumann-gmbh.de
Mon Feb 27 15:45:13 GMT 2006


Hello 

We have got a samba PDC and BDC running openldap as a backend and it works 
pretty well.

I set up another samba File-Server and joined the domain all right. 
Also set up winbindd using the idmap facility via ldap.

On the File-Server when I do a

"wbinfo -n joe"	I get 
"S-1-5-21-1133090748-3639176701-2116357234-1062 User (1)"

"wbinfo -s S-1-5-21-1133090748-3639176701-2116357234-1062" gives me

My-Domain\joe

"wbinfo -S "S-1-5-21-1133090748-3639176701-2116357234-1062" gives

10329

So far so good.

Setting acls using the the explorer in Windows I add joe to directory "temp" 
works also but when I run the command

"getfacl temp" I get

# file: temp
# owner: jack
# group: Domain_Users
user::rwx
user:10329:rwx
group::---
mask::rwx
other::---
default:user::rwx
default:user:10329:rwx
default:group::---
default:mask::rwx
default:other::---

User joe does not get listed by name, but only via its idmap ID.
Now the problem is, user joe has no access to directory "temp" even though he 
should. 


What have I done wrong??

Anyone any ideas??

Thanks for helping.


-- 
Best Regards
Robert Gehr


	"We make a living by what we get, but we make a life by what we give."

							~ Winston Churchill


         o
      /\ /_      o__
    o*  ~(_)     ,>/'_      o__
Robert Gehr     (_)\(_)     ,>/'_   o__       o__
Baumann GmbH, 92224 Amberg (_)\(_)  ,>/'_     ,>/'
visit: http://www.baumann-gmbh.de  (_)\(_)   (_)\(_)


More information about the samba mailing list