[Samba] Samba domain member - force group not working

Rowland penny rpenny at samba.org
Thu Dec 17 13:01:00 UTC 2020

On 17/12/2020 12:38, Michal Bruncko via samba wrote:
> hello all
> we use:
> - Domain controller (NT4 style): samba4-4.2.10-15.el6.x86_64 (dist 
> packages), CentOS release 6.10 (Final)

Probably preaching to the converted, but Centos 6 is EOL

> the problem is with "force group" setting on share on domain member 
> server.
> Samba log:
>   string_to_sid: SID +Domain Users is not in a valid format
Try removing the '+' sign from here:
> [store]
>         valid users = +"Domain Users"
You should also remove sssd if it is still installed, you cannot have 
sssd and winbind installed together, they both have their versions of 
the winbind libs.

Finally, you really should look into upgrading to Samba AD, the 
NT4-style domains will go away, the work is being done now.


More information about the samba mailing list