[Samba] centos 6.5 sernet-samba 4.1.6 member server winbind idmap fail

Rowland Penny rowlandpenny at googlemail.com
Thu Apr 10 11:21:03 MDT 2014


On 10/04/14 17:15, Lorenzo Faleschini wrote:
> I have
>
> Domain Admins GID=10000
> Domain Users GID=10001
>
> Administator UID=10000
> userx UID=10001
>
> getent and wbinfo are working now (only if I call the users or groups 
> that I've configured UNIX attributes for)
> eg: getent group "MY\\Domain Admins" - works
>       getent group - doesn't show anything
>

You have a problem somewhere, getent should display all users, local and 
domain. There seems to be bug in getent (or is a feature) when it comes 
to groups, you must use 'getent group <domain group name>'

> I've added to /etc/samba/smb.conf
> username map = /etc/samba/samba_usermapping
>
> and in /etc/samba/samba_usermapping
> !root = DOMAINNAME\Administrator DOMAINNAME\administrator
>
> as suggested by L.P.H. van Belle
>
> Now my problem is that if I try to setup share permissions I can 
> manage the share only if I leave "Full Control" to "Everyone".. and 
> this is quite useless.
>
Where are the shares stored, on the Samba DC or or on the fileserver ?

Rowland


More information about the samba mailing list