[Samba] debian 10: errors with my server samba-ad

Rowland Penny rpenny at samba.org
Mon May 13 10:35:05 UTC 2019

On Mon, 13 May 2019 12:16:52 +0200
"L.P.H. van Belle via samba" <samba at lists.samba.org> wrote:

> Hai Nathalie, 
> The generation/provioning is ok. 
> The "local SID message is normal, that because your joining the
> domain and havent started samba at that point. You can ignore that. 
> Did you install and configure bind9? 
> The provisioning command shows that you are setting up with it. 
> But this shows bind is not found, which is a bit off. 
> > BIND version unknown, please modify 
> > /var/lib/samba/bind-dns/named.conf manually.
> > See /var/lib/samba/bind-dns/named.conf for an example 
> > configuration include file for BIND
> > and /var/lib/samba/bind-dns/named.txt for further 
> > documentation required for secure DNS updates
> > Setting up sam.ldb rootDSE marking as synchronized  
> Your configs and all output except above and this part : 
> > LENZSPITZE2\administrator:*:0:100::/home/LENZSPITZE2/administrator:/bin/bash  
> This can be correct, but i dont trust the 100 as GID here, because
> thats the users group in debian. And i would expected to see "domain
> users"  / ( minimaal GID) 10000

Out of the box, on a DC 'Domain Users' gets the gid for 'users', it is
mapped in idmap.ldb 
'Domain Users' would only get a different ID if a gidNumber attribute
was added to its object in AD.

> Or did you map "Domain users" into "user" 

It has always been like this.


More information about the samba mailing list