[Samba] Help with active directory integration

Rowland penny rpenny at samba.org
Wed Mar 2 20:20:56 UTC 2016

On 02/03/16 18:42, Jonathan Dotson wrote:
> I have samba installed and joined to a Windows domain as a member server. I would like windows admins to be able to manage shares.
> I have followed the docs on samba.org and I am on the last step which is to run net rpc rights grant 'SAMDOM\Domain Admins' SeDiskOperatorPrivilege -U'SAMDOM\administrator'
> but it fails with an access denied error.
> So my question is:
> 1.What user account should I use instead of "administrator"?

Well, any user that has the required rights, but Administrator should work.

> 2.Does this user need to be an admin on AD or on the local Linux server?

AD admin, but could be both.
Have you given 'Administrator' a uidNumber attribute ?

Can we see your smb.conf


More information about the samba mailing list