[Samba] winbind group membership

Eugene M. Zheganin emz at norma.perm.ru
Sun Jan 29 10:54:58 MST 2012


On 28.01.2012 15:03, Volker Lendecke wrote:
> "id user" can not work reliably without a successful authentication
> using "wbinfo -a" before. There are just too many group combinations
> to take care of, and certain trust scenarios just can never work due
> to insufficient access to the trusted domains. If you have a problem
> with "id" after having successfully logged in to the box, this is a
> problem that we will definitely chase.
So, as I understand, I should try 'wbinfo -a username%password' ? Is 
this just for test, or should this be done for every username to refresh 
the groups the user is in ? Anyway, I tried id both ways and this 
doesn't change group list for the user.

Should I report the bug ?

P.S. Also, what can be possible reason of 'wbinfo -a' working in 
challenge/response only under the root account on some machines ? 
Plaintext authentication doesn't have this problem.


More information about the samba mailing list