[Samba] Fwd: Administrator User Has no access to Remote File Server

ralph strebbing blackbirdralph at gmail.com
Tue Dec 7 17:46:32 UTC 2021


On Tue, Dec 7, 2021 at 2:50 AM L.P.H. van Belle via samba
<samba at lists.samba.org> wrote:
>
> Run :
> getfacl /storage
root at filesrv1:/# getfacl storage/
# file: storage/
# owner: root
# group: root
user::rwx
group::r-x
other::r-x

> getfacl /storage/netfiles
root at filesrv1:/# getfacl storage/netfiles
# file: storage/netfiles
# owner: root
# group: root
user::rwx
group::r-x
group:DOMAIN\\it:rwx
mask::rwx
other::r-x

> getfacl /storage/netfiles/mis
root at filesrv1:/# getfacl storage/netfiles/mis
# file: storage/netfiles/mis
# owner: root
# group: DOMAIN\\domadmins
# flags: -s-
user::rwx
user:81:rwx
user:DOMAIN\\ralph.strebbing:rwx
user:DOMAIN\\dvr:r-x
group::rwx
group:DOMAIN\\domadmins:rwx
group:DOMAIN\\it:rwx
mask::rwx
other::---
default:user::rwx
default:user:81:rwx
default:user:DOMAIN\\ralph.strebbing:rwx
default:group::rwx
default:group:DOMAIN\\domadmins:rwx
default:group:DOMAIN\\it:rwx
default:mask::rwx
default:other::---

The domadmin entries above are a separate group which used to be an
Admins group in the NT4 domain (gid 910)

> Whats set for the share security?
https://imgur.com/a/t4ex8i6
> Normaly thats everyone full controll, did you change anything here?
Under Share Permissions, nothing's been changed. Only thing we've ever
changed has been through setfacl on the commandline.

Regards,
Ralph



More information about the samba mailing list