[Samba] classicupgrade

Rowland Penny rpenny at samba.org
Fri Oct 26 12:44:00 UTC 2018


On Fri, 26 Oct 2018 14:10:05 +0200
"L.P.H. van Belle via samba" <samba at lists.samba.org> wrote:

> Hai, 
> 
> 
> I see :  ldap://lxcerruti.com 
> So its setup with a top level domain internaly. Correct ? 
> 
> Check if resolv.conf contains: 
> search lxcerruti.com 
> nameserver IP-OF_THE_DC1
> 
> And make very sure you DNS request dont goto the internet. 
> Monitor you gateway and outgoing dns traffic. Just a warning about
> this.

Worth checking, but I do not think this is the OP's problem.
 
> 
> 
> > > > What does 'wbinfo --group-info Domain\ Users' return ?
> > > on dc
> > > LXCERRUTI\domain users:x:100:
> 
> This is probley an old NT4DOM group mapping. 
> Check with : net groupmap list 

No, it is the ID for the Unix group 'users'

cat /etc/group | grep '[u]sers'

users:x:100:

It is mapped from Domain Users in idmap.ldb and is what you get on
a DC if Domain Users does not have a gidNumber.

It looks like (for whatever reason) there are no uidNumber and/or
gidNumber attributes in AD.

Rowland




More information about the samba mailing list