[Samba] id <username> - doesnt list all groups

Rowland Penny rpenny at samba.org
Tue Aug 7 11:49:04 UTC 2018


On Tue, 7 Aug 2018 13:15:00 +0200
Micha Ballmann <ballmann at uni-landau.de> wrote:

> Thank for your answer:
> 
> But i dont know understand why is following not working:
> 
> I want to restrict the ssh access for a special domain member:
> 
> In my "sshd_config" i added:
> 
> AllowGroups restrictaccess root
> 
> With user2 im able to login via ssh!
> 
> log: pam_krb5(sshd:auth): user user2 authenticated as
> user2 at ROOTRUDI.DE
> 
> With user1 im not!
> 
> log: User user1 from 192.168.0.100 not allowed because none of user's 
> groups are listed in AllowGroups.
> 
> Have a look to my email previously "id user2" shows the group 
> "restrictaccess " and "id user1" doesn't show. And i guess thats the 
> reason why user2 is able to login and user1 not?

No, once a user logs in (or attempts to) winbind should be able to fill
in the missing info.

What 'lib*.*' packages did you install with Samba ?

Rowland



More information about the samba mailing list