[Samba] Missing secondary groups

Peter Trifonov petert at dcn.ftk.spbstu.ru
Sat Nov 27 09:57:50 MST 2010

Hello all,

There is a FreeBSD 8.1 system with Samba 3.5.6. It is a member of Active
Directory domain (domain controllers are WinSrv2008R2 and WinSrv2008).
wbinfo correctly provides user and group lists, as well as group membership
information. It is possible to use domain user and group names in commands
like chown and chgrp.
However, the id command displays only the primary group for domain users.
Furthermore,  domain users  are not able to
access any files owned by  their non-primary domain groups.

For example, running 
$ id petert
results in the following output:
uid=10000(petert) gid=10009(domain users) groups=10009(domain users)

There is also an error message " failed: NT_STATUS_NO_MORE_ENTRIES" in the
log.winbind file:

[2010/11/27 19:47:43.856773,  6] winbindd/winbindd.c:768(new_connection)
  accepted socket 29
[2010/11/27 19:47:43.856837,  3]
  getpwnam petert
[2010/11/27 19:47:43.856966,  6]
  closing socket 28, client exited
[2010/11/27 19:47:43.859876,  3]
  [69874]: getgrent
[2010/11/27 19:47:43.859904,  5]
  getgrent failed: NT_STATUS_NO_MORE_ENTRIES
[2010/11/27 19:47:43.860164,  3]
  getgrgid 10009
[2010/11/27 19:47:43.872512,  3]
  getgrgid 10009
[2010/11/27 19:47:43.872770,  6]
  closing socket 29, client exited

Please let me know how can this be fixed?

With best regards,
P. Trifonov

More information about the samba mailing list