[Samba] winbind group membership
Eugene M. Zheganin
emz at norma.perm.ru
Sun Jan 29 10:54:58 MST 2012
On 28.01.2012 15:03, Volker Lendecke wrote:
> "id user" can not work reliably without a successful authentication
> using "wbinfo -a" before. There are just too many group combinations
> to take care of, and certain trust scenarios just can never work due
> to insufficient access to the trusted domains. If you have a problem
> with "id" after having successfully logged in to the box, this is a
> problem that we will definitely chase.
So, as I understand, I should try 'wbinfo -a username%password' ? Is
this just for test, or should this be done for every username to refresh
the groups the user is in ? Anyway, I tried id both ways and this
doesn't change group list for the user.
Should I report the bug ?
P.S. Also, what can be possible reason of 'wbinfo -a' working in
challenge/response only under the root account on some machines ?
Plaintext authentication doesn't have this problem.
More information about the samba