[Samba] setting up W7 profiles

Rowland Penny rowlandpenny at googlemail.com
Fri Mar 6 11:49:20 MST 2015

On 06/03/15 17:45, Bob of Donelson Trophy wrote:
> Okay, so I did this to myself. I overlooked an important sentence on the
> "https://wiki.samba.org/index.php/Samba_%26_Windows_Profiles". The
> sentence that instructs to do "Profile share using Windows ACLs"
> ***OR*** "Profile share with using POSIX ACLs".
> So, I have reset the permissions to how they were before I messed them
> up doing the "POSIX ACLs" part. Went back through the W7 client and
> correctly set permissions (via Windows Explorer) as instructed on the
> wiki.
> I still cannot write profiles to the /home/samba/NTDOM/profiles
> directory. I think I am confused on the "Administrator" portion of the
> wiki page.
> In the text box, the top line discusses the "Administrator" permission
> settings. (Below "Administrator" lists "Domain Users" and "CREATOR
> OWNER".) In the graphic that appears just above the text box, the
> graphic illustrates setting permissions for the "\SAMDOMadmin . . ." so,
> am I setting for my DCAdministrator or the member server administrator?

If you replace 'SAMDOM' with your domain name does it make it any easier 
to understand, it means the administrator with the SID 
'S-1-5-21-domainsid-500' who gets mapped to '0' on samba AD DC servers 
as standard.

> And then begs the question, am I looking for 'getent group Domain Users'
> on the DC or the member server?

The member server, if this is where you are storing the profiles.


More information about the samba mailing list