Security Groups in Samba4

Nadezhda Ivanova nadezhda.ivanova at postpath.com
Fri Jan 8 04:17:52 MST 2010


Hi Rojit,
Unfortunately I do not have enough experience with file permissions, I dealt with DS permissions mostly. I am not sure who the right person to help would be, perhaps Tridge?

Regards,
Nadya
----- Original Message -----
> From: Rohit Rajan <rohit.rajan at catalyst-us.com>
> To: Nadezhda Ivanova <nadezhda.ivanova at postpath.com>, samba-technical at lists.samba.org <samba-technical at lists.samba.org>
> Sent: Friday, January 8, 2010 1:15:13 PM GMT+0200 Europe;Athens
> Subject: RE: Security Groups in Samba4

> > Hi,
> 
> Any luck with this if you have any process to follow please let me 
> know so that I can follow that and try.
> 
> Thanks
> Rohit
> 
> -----Original Message-----
> From: samba-technical-bounces at lists.samba.org 
> [mailto:samba-technical-bounces at lists.samba.org] On Behalf Of Rohit 
> Rajan
> Sent: Wednesday, January 06, 2010 3:27 PM
> To: 'Nadezhda Ivanova'; samba-technical at lists.samba.org
> Subject: RE: Security Groups in Samba4
> 
> What I have done is created a group "test" in samba4 using "Active 
> Directory users and computers" then created the similar group "test" 
> in linux using the groupadd command, since there is no swat to link 
> the samba4 group to unix group I logged on to phpldapadmin and added 
> the attribute "posixgroup" in the Objectclass of the "test" group.
> 
> Then I assigned the "test" group to a folder and changed the 
> permissions for user and group to rwx, now this folder is accessible 
> to everyone.
> 
> I went back to phpldapadmin and removed the attribute "posixgroup" 
> also removed the 2 users I added earlier to this group.
> 
> And even now the directory is accessible to every one.
> 
> Thanks
> 
> Rohit
> 
> -----Original Message-----
> From: Nadezhda Ivanova [mailto:nadezhda.ivanova at postpath.com]
> Sent: Wednesday, January 06, 2010 3:04 PM
> To: rohit.rajan at catalyst-us.com; samba-technical at lists.samba.org
> Subject: Re: Security Groups in Samba4
> 
> Hello,
> Its quite possible to have a bug in the permissions checks. Also, 
> permissions checks on searches are not completely ready yet, so can 
> you please give us more details on how permissions are not working - 
> steps to reproduce, etc.
> 
> Regards,
> Nadya
> ----- Original Message -----
> > From: samba-technical-bounces at lists.samba.org 
> <samba-technical-bounces at lists.samba.org>
> > To: samba-technical at lists.samba.org 
> <samba-technical at lists.samba.org>, Rohit Rajan 
> <rohit.rajan at catalyst-us.com>
> > Sent: Wednesday, January 6, 2010 9:32:32 AM GMT+0200 Europe;Athens
> > Subject: Security Groups in Samba4
> 
> > > Hi,
> >
> >
> >
> > I'm new this mailing list, I have installed samba
> > 4.0.0alpha11-GIT-802e932
> > on CentOS release 5.4 (Final), everything works well, I'm yet to 
> test
> > the
> > replication from child domain.
> >
> >
> >
> > The pain for me as of now are the security groups in samba4 after
> > creating a
> > group using Active directory user and computers and also creating a
> > similar
> > group in the linux using the "groupadd" command, the permission are
> > not
> > working
> >
> >
> >
> > I have followed the HOWTO on samba wiki
> > http://wiki.samba.org/index.php/Samba4/HOWTO , there is a mention of
> > using
> > swat but I believe the swat has been discontinued after ALPHA5 or so
> >
> >
> >
> > After lots of google search I still do not find the answer to this.
> >
> >
> >
> > Please Help!!
> >
> >
> >
> > Thanks
> >
> >
> >
> > Rohit
> >
> >
> >
> > This message may contain confidential, proprietary or legally
> > privileged information. In case you are not the original intended
> > recipient of the message, you must not, directly or indirectly, use,
> > disclose, distribute, print, or copy any part of this message and 
> you
> > are requested to delete it and inform the sender.
> >
> > Any views expressed in this message are those of the individual 
> sender
> > unless otherwise stated. Nothing contained in this message shall be
> > construed as an offer or acceptance of any offer by "Catalyst 
> Business
> > Partners" or any of its subsidiaries unless sent with that express
> > intent and with due authority of Catalyst Business Partners.
> >
> > Catalyst Business Partners has taken sufficient measures and
> > precautions to prevent the spread of viruses. However the company
> > accepts no liability for any damage caused by any virus transmitted 
> by
> > this email.
> 
> No virus found in this incoming message.
> Checked by AVG - www.avg.com
> Version: 9.0.725 / Virus Database: 270.14.126/2602 - Release Date: 
> 01/06/10 01:05:00
> 
> This message may contain confidential, proprietary or legally 
> privileged information. In case you are not the original intended 
> recipient of the message, you must not, directly or indirectly, use, 
> disclose, distribute, print, or copy any part of this message and you 
> are requested to delete it and inform the sender.
> 
> Any views expressed in this message are those of the individual sender 
> unless otherwise stated. Nothing contained in this message shall be 
> construed as an offer or acceptance of any offer by "Catalyst Business 
> Partners" or any of its subsidiaries unless sent with that express 
> intent and with due authority of Catalyst Business Partners.
> 
> Catalyst Business Partners has taken sufficient measures and 
> precautions to prevent the spread of viruses. However the company 
> accepts no liability for any damage caused by any virus transmitted by 
> this email.
> 
> 
> No virus found in this incoming message.
> Checked by AVG - www.avg.com
> Version: 9.0.725 / Virus Database: 270.14.126/2602 - Release Date: 
> 01/06/10 01:05:00
> 
> This message may contain confidential, proprietary or legally 
> privileged information. In case you are not the original intended 
> recipient of the message, you must not, directly or indirectly, use, 
> disclose, distribute, print, or copy any part of this message and you 
> are requested to delete it and inform the sender.
> 
> Any views expressed in this message are those of the individual sender 
> unless otherwise stated. Nothing contained in this message shall be 
> construed as an offer or acceptance of any offer by "Catalyst Business 
> Partners" or any of its subsidiaries unless sent with that express 
> intent and with due authority of Catalyst Business Partners.
> 
> Catalyst Business Partners has taken sufficient measures and 
> precautions to prevent the spread of viruses. However the company 
> accepts no liability for any damage caused by any virus transmitted by 
> this email.


More information about the samba-technical mailing list