[Samba] id <username> - doesnt list all groups
Rowland Penny
rpenny at samba.org
Tue Aug 7 11:49:04 UTC 2018
On Tue, 7 Aug 2018 13:15:00 +0200
Micha Ballmann <ballmann at uni-landau.de> wrote:
> Thank for your answer:
>
> But i dont know understand why is following not working:
>
> I want to restrict the ssh access for a special domain member:
>
> In my "sshd_config" i added:
>
> AllowGroups restrictaccess root
>
> With user2 im able to login via ssh!
>
> log: pam_krb5(sshd:auth): user user2 authenticated as
> user2 at ROOTRUDI.DE
>
> With user1 im not!
>
> log: User user1 from 192.168.0.100 not allowed because none of user's
> groups are listed in AllowGroups.
>
> Have a look to my email previously "id user2" shows the group
> "restrictaccess " and "id user1" doesn't show. And i guess thats the
> reason why user2 is able to login and user1 not?
No, once a user logs in (or attempts to) winbind should be able to fill
in the missing info.
What 'lib*.*' packages did you install with Samba ?
Rowland
More information about the samba
mailing list