[Samba] NSS and group enumeration in CUPS...

Marco Gaiarin gaio at sv.lnf.it
Wed Jun 13 07:33:29 UTC 2018


I was used (in SambaNT/OpenLDAP) to put on CUPS configuration the
statement (/etc/cups/cups-files.conf):

	SystemGroup printops

and add to 'printops' group some users that can manage cups.


Now i'm in AD mode. I'm in 'printops' group:

	root at vdmpp1:~# id gaio
	uid=10000(gaio) gid=10513(domain users) gruppi=10513(domain users),11001(sir),10999(unixadm),10998(printops),5001(BUILTIN\users),5000(BUILTIN\administrators)

but still if i access the cups web interface, i can login but
administration/management tasks are 'access denied'.

Probably all came from:

	root at vdmpp1:~# getent group printops
	printops:x:10998:

and i know that i can set 'winbind enum groups = yes', but with some
performance penalty.


There's some ''workaround'' at least for a single group?


Thanks.

-- 
dott. Marco Gaiarin				        GNUPG Key ID: 240A3D66
  Associazione ``La Nostra Famiglia''          http://www.lanostrafamiglia.it/
  Polo FVG   -   Via della Bontà, 7 - 33078   -   San Vito al Tagliamento (PN)
  marco.gaiarin(at)lanostrafamiglia.it   t +39-0434-842711   f +39-0434-842797

		Dona il 5 PER MILLE a LA NOSTRA FAMIGLIA!
      http://www.lanostrafamiglia.it/index.php/it/sostienici/5x1000
	(cf 00307430132, categoria ONLUS oppure RICERCA SANITARIA)



More information about the samba mailing list