[Samba] Permission Issues with GPO

Viktor Trojanovic viktor at troja.ch
Tue Nov 17 18:30:27 UTC 2015



On 17.11.2015 18:45, Rowland Penny wrote:
> On 17/11/15 17:33, Viktor Trojanovic wrote:
>> [global]
>>
>>   netbios name = FILESERVER
>>   workgroup = SAMDOM
>>   security = ADS
>>   realm = SAMDOM.EXAMPLE.COM
>>   dedicated keytab file = /etc/krb5.keytab
>>   kerberos method = secrets and keytab
>>
>>   username map = /etc/samba/samba_usermap
>>
>>   idmap config *:backend = tdb
>>   idmap config *:range = 2000-9999
>>   idmap config OFFICE:backend = ad
>>   idmap config OFFICE:schema_mode = rfc2307
>>   idmap config OFFICE:range = 10000-99999
>>
>>   winbind nss info = rfc2307
>>   winbind trusted domains only = no
>>   winbind use default domain = yes
>>   winbind enum users  = yes
>>   winbind enum groups = yes
>>   winbind refresh tickets = Yes
>>
>>   vfs objects = acl_xattr
>>   map acl inherit = Yes
>>   store dos attributes = yes
>>
>>
>> [packages]
>>   path = /srv/samba/packages
>>   read only = no
>>   browsable = yes
>>   comment = "Software Packages"
>>
>>
>> Viktor
>
> Does 'getent passwd adomainuser' work ?
>
> Rowland
>
>

Yes, it does, for all users and groups I have manually assigned an ID. 
That includes the groups domain users, domain admins, domain computers, 
and a few single users.

Viktor




More information about the samba mailing list