[Samba] Samba 4.5.3 AD DC - issues with sysvol when setting up Group Policies

Rowland Penny rpenny at samba.org
Thu Jan 12 19:09:47 UTC 2017


On Thu, 12 Jan 2017 20:46:15 +0200
Richard via samba <samba at lists.samba.org> wrote:

> Hi James
> 
> The output is as follows...
> 
> wbinfo --gid-info=10013    =>  CT\domain admins:x:10013:
> 
> wbinfo --uid-info=3000008 => CT\domain
> admins:*:3000008:3000008::/home/CT/domain admins:/bin/false

If you remove the gidNumber from Domain Admins, you will find that it
gets the same GID as its UID '3000008'

> 
> Yes I have set "domain admins" to have NIS domain "CT" and GID
> "10013"  - I can remove this no problem

See above and I would suggest removing the gidNumber, then run 'net
cache flush'

> 
> Yes I have set "domain users" to have NIS domain "CT" and GID
> "10014"  - I can remove this no problem

No that is OK

> 
> No I haven't set a UID or GID for Administrator

Good, you just Administrator into a normal Unix user if you do.

> 
> I do indeed have 'idmap_ldb:use rfc2307 = Yes' - should I remove this
> from smb.conf? 

No, you need it

Rowland



More information about the samba mailing list