[Samba] nested groups with user mapping doesn't work

Gerald (Jerry) Carter jerry at samba.org
Fri Mar 2 13:50:44 GMT 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Rainer Weber wrote:
> Sorry,
> after the user mapping the nt_user_token is
> 
> [2007/02/02 15:21:17, 10] auth/auth_util.c:debug_nt_user_token(454)
>   NT user token of user S-1-22-1-10002
>   contains 6 SIDs
>   SID[  0]: S-1-22-1-10002
>   SID[  1]: S-1-5-21-781721396-396832292-1671184278-513
>   SID[  2]: S-1-1-0
>   SID[  3]: S-1-5-2
>   SID[  4]: S-1-5-11
>   SID[  5]: S-1-5-32-545
>   SE_PRIV  0x0 0x0 0x0 0x0
> 
> So you can see that the user has no domain groups.

This is by intention.  If you map to a local user, you get
the user's local groups.






cheers, jerry
=====================================================================
Samba                                    ------- http://www.samba.org
Centeris                         -----------  http://www.centeris.com
"What man is a man who does not make the world better?"      --Balian
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.2 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFF6Cu0IR7qMdg1EfYRAr6CAKCHvO5oiVILbPX+zSvGIeOpWtPloACfTB/j
kvUdIGnsbQun9tU/2cb7JKg=
=l+TC
-----END PGP SIGNATURE-----


More information about the samba mailing list