[Samba] New group membership not taken into account on member servers

steve steve at steve-ss.com
Sun Oct 5 02:22:25 MDT 2014

On 05/10/14 10:15, Sébastien Le Ray wrote:
> Le 05/10/2014 07:52, steve a écrit :
>> On 04/10/14 22:52, Sébastien Le Ray wrote:
>>> Yes, and it is correctly returned by getent group/wbinfo --group-info
>> Is wbinfo and getent returning the new membership on _all_ the DCs?
>> Does the user dn contain the correct memberOf and the group dn the
>> member on _all_ DCs?
> Cannot find how to look at memberOf & member on the ADSI :/ But ADUC
> gives correct results not matter which DC I'm connected to so I guess it
> should be OK.
> wbinfo is OK on all DC. No getent group since they don't have
> nss-winbind installed, only the members have.
>> Could we take winbind out of the mix for a while and try sssd. It
>> would narrow it down for us a bit more.
> I'll try to set up this tomorrow
> Thanks
There was the other suggestion of using id or a login and all the wbinfo 
stuff. All force an ldap lookup, but I think you've already tried them.

More information about the samba mailing list