[Samba] Can't edit Domain computers group with USRMGR.EXE

Alex Domoradov alex.hha at gmail.com
Mon May 31 04:51:13 MDT 2010


I have CentOS-5.5 box with all updates. I use samba (3.4.7) as PDC with ldap
backend. All works fine. But when I run USRMGR.EXE on Windows XP
client and open Domain computers group
I have the following error message

------------------------------------------------------------------------------------

The following error occurred accessing the properties of the group
Domain Computers

The group name could not be found

The group properties cannot be edited or viewed at this time.

------------------------------------------------------------------------------------

This error occur only with this one group. I can view/modify all other
groups/users without any errors

Info about Domain computers group in OpenLDAP

# smbldap-groupshow "Domain computers"
dn: cn=Domain Computers,ou=groups,dc=w3,dc=lan
objectClass: top,posixGroup,sambaGroupMapping
gidNumber: 515
cn: Domain Computers
description: Netbios Domain Computers accounts
sambaSID: S-1-5-21-250625134-237382211-2379110221-515
sambaGroupType: 2
displayName: Domain Computers
memberUid: pc1029$,pc1024$


I have the following group mapping

# net groupmap list | grep -i computers
Domain Computers (S-1-5-21-250625134-237382211-2379110221-515) ->
Domain Computers

My samba setting to manage users/groups

# testparm | grep script
add user script = /usr/sbin/smbldap-useradd -a -m "%u"
rename user script = /usr/sbin/smbldap-usermod -r '%unew' '%uold'
delete user script = /usr/sbin/smbldap-userdel "%u"
add group script = /usr/sbin/smbldap-groupadd -a "%g"
delete group script = /usr/sbin/smbldap-groupdel "%g"
add user to group script = /usr/sbin/smbldap-groupmod -m "%u" "%g"
delete user from group script = /usr/sbin/smbldap-groupmod -x "%u" "%g"
set primary group script = /usr/sbin/smbldap-usermod -g "%g" "%u"
add machine script = /usr/sbin/smbldap-useradd -w '%u' -g 515


Any idea?


More information about the samba mailing list