[Samba] Odd behavior on group membership

Rowland Penny rpenny at samba.org
Wed Nov 28 11:17:04 UTC 2018


On Wed, 28 Nov 2018 08:48:07 -0200
Marcio Vogel Merlone dos Santos via samba <samba at lists.samba.org> wrote:

> Hi Rowland,
> 
> Those tests were made on DC (araucaria), not a domain member.
> 
> root at araucaria:~# testparm /etc/samba/smb.conf
> Load smb config files from /etc/samba/smb.conf
> rlimit_max: increasing rlimit_max (1024) to minimum Windows limit
> (16384) Processing section "[netlogon]"
> Processing section "[sysvol]"
> Loaded services file OK.
> Server role: ROLE_ACTIVE_DIRECTORY_DC
> 
> Press enter to see a dump of your service definitions
> 
> # Global parameters
> [global]
>          passdb backend = samba_dsdb
>          wins support = Yes
>          rpc_server:tcpip = no
>          rpc_daemon:spoolssd = embedded
>          rpc_server:spoolss = embedded
>          rpc_server:winreg = embedded
>          rpc_server:ntsvcs = embedded
>          rpc_server:eventlog = embedded
>          rpc_server:srvsvc = embedded
>          rpc_server:svcctl = embedded
>          rpc_server:default = external
>          winbindd:use external pipes = true
>          idmap config * : backend = tdb
>          map archive = No
>          map readonly = no
>          store dos attributes = Yes
>          vfs objects = dfs_samba4 acl_xattr
> 
> 

I would remove the above lines from your smb.conf, most are defaults,
but some are actually wrong for an AD DC, see 'man smb.conf' for more
details

Rowland



More information about the samba mailing list