[Samba] Gpo issue

Sam sr42354 at gmail.com
Thu Feb 18 15:08:19 UTC 2016


Hi Louis! :)

I just see something strange...
Until now, I linked my GPO on the OU=Computers and it was not working...
But If I link my GPO on the whole domain it's working... ( but the gpo 
applies to all... )


Le 18/02/2016 15:29, L.P.H. van Belle a écrit :
> Hai Sam,
>
> Try the following,
>
> 1 ) ignore these messages :
>> If I create a new GPO The "samba-tool ntacl sysvolcheck" command return > this error :
>> root at S4:~# samba-tool ntacl sysvolcheck
>> ERROR(<class 'samba.provision.ProvisioningError'>): uncaught exception -
>> .....
>
> 2) add this line to you sysvol share
>          acl_xattr:ignore system acls = yes
>
> 	No other os then windows uses this share normaly so its safe to
> 	Ignore the systems rights.
It was already done with your script ;)
>
> 3) and check from within windows the sysvol share rights and the sysvol folder rights.
I have 4 groups with at least read/execute access right ( authentified 
users, system, administrators, server operators )
>
> DO NOT CHANGE ANYTHING.
>
> Now it works..   ;-)
>
> If not
>
> 4) give group "Domain Users" a GID
I'm not sure to well understand, could you explain?

>   
>
> Test again,
> Now it works.
>
> If not...
> Pff, mail us again.  ;-) something else is wrong.
>
>
> Greetz,
>
> Louis
>
>
>
Many thanks!
See you.

Sam



More information about the samba mailing list