[Samba] LDAP group objects?

Rowland Penny rpenny at samba.org
Thu Dec 21 18:02:03 UTC 2017


On Thu, 21 Dec 2017 11:53:03 -0600
Daniel Turner <daniel.turner at eliciotech.com> wrote:

> Sorry, I didn't include enough information.
> 
> Samba installed on Ubuntu 16.04, using ldapsam:ldaps:// as my auth
> "DB" (instead of tdbsam).
> 
> Share created on local storage.
> 
> When I connect to the share from a windows machine and attempt to
> change the security settings for a folder or file I can search for
> users and see all of the users on the LDAP server - as expected.
> However, I don't see any LDAP groups.
> 
> Really my question is, what objectClass type does Samba look for when
> querying LDAP for groups? I'm wondering if the LDAP server I'm
> connected to is configured to use the wrong objectClass for groups.
> 
> Or, does Samba simply not show the groups listed in LDAP in this
> situation? I.E, is this expected behavior?
> 

No, it is not expected behaviour, It might help if you could post your
smb.conf.

Depending on how you have Samba set up, you may need different
objectclasse, but the main ones for a group are 'posixGroup' and
'sambaGroupMapping'

Rowland




More information about the samba mailing list