[Samba] security = ads parameter not working in samba 4.9.5

Sérgio Basto sergio at serjux.com
Fri Nov 29 16:57:13 UTC 2019


On Thu, 2019-11-28 at 20:32 +0000, Rowland penny via samba wrote:
> On 28/11/2019 20:26, Sérgio Basto wrote:
> > On Thu, 2019-11-28 at 20:09 +0000, Rowland penny via samba wrote:
> > > On 28/11/2019 20:01, Sérgio Basto wrote:
> > > > This recommendation , why ? wiki say to add it [1]
> > > > [1]
> > > > https://wiki.samba.org/index.php/Setting_up_a_Share_Using_Windows_ACLs#Enable_Extended_ACL_Support_in_the_smb.conf_File
> > > Yes, but under it, in a bright orange warning box, it says this:
> > > 
> > > On a Samba Active Directory (AD) domain controller (DC), extended
> > > ACL
> > > support is automatically enabled globally. You must not enable
> > > the
> > > support manually.
> > > 
> > > > I tried these fixed , but noting change getent passwd and
> > > > getent
> > > > group
> > > > stops to work soon as I change change /etc/samba/smb.conf with
> > > > WORKGROUP
> > > > 
> > > Did you make all the changes on the DCs that I suggested ?
> > yes
> 
> OK, then run the script you downloaded, on the Unix domain member
> and 
> paste the output in to a post here.

CentOS Linux release 7.7.1908 (Core) [1] is a testing machine called
estagiov2

[1]
https://paste.centos.org/view/2d7551e8

nothing changed I send here winbindd.log [2] lots of 
 Could not convert sid S-1-5-21-blabla : NT_STATUS_NO_SUCH_USER

[2] 
https://paste.centos.org/view/a91c3708


> Rowland
> 
> 
> 
> 
-- 
Sérgio M. B.




More information about the samba mailing list