[Samba] Share permission problem if user is member in more than 16 groups on AD

Marcis Lielturks marcis.lielturks at gmail.com
Wed Jul 14 05:39:56 MDT 2010


Running OpenSolaris snv_134 with Samba 3.0.37. Samba is successfully 
joined to AD domain. AD user "user1" is member in 17 AD groups including 
"group1", but he cannot access Samba share which have read permissions 
for "group1". If user account is modified and "group1" becomes users 
primary group, then he can access shares. If user is member of only 16 
groups, then permissions work as expected regardless of users primary group.

Operating systems "ngroups_max" is set to 1024. I tested with local user 
and was able to add user to 1024 local groups.


More information about the samba mailing list