LinuxQuestions.org
Did you know LQ has a Linux Hardware Compatibility List?
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices

Reply
 
LinkBack Search this Thread
Old 08-04-2002, 10:44 AM   #1
gene12
LQ Newbie
 
Registered: Aug 2002
Posts: 6

Rep: Reputation: 0
samba and linux file permissions?


It has beena couple years since I have set up samba and I have read the samba howtos and docs that I can find, but i do not seem to see any explanation for my problem.

How does samba users map to linux users on the system?
I see alot of mention of samba users but no mention of acutal linux users, and how would you set file permissions for a user that doesnt exist?
Am I wrong in thinking that you need a linux username to with groups to decide file permissions regardless of samba share information?
I realize that you can use different methods, pam with winbind, ldap etc to manage the passwords of that user, but if i wanted to set up two file servers one for /home one for /usr/local then I would have to set up a username regardless of auth method on each of those boxes wouldnt I?
How does /etc/samba/smbpasswd work into linux user security? Is it like "share" security on nt?
I was also wondering it there was any samab support guys out there that use a best practices type guide to decide how to setup user/group security on the samba server? How does samba groups map to the local groups on a linux server?
If someone could clear the file/samba permissions scheme for me that would be great. tldp doesnt have any information on that type of stuff.
 
Old 08-05-2002, 02:58 PM   #2
GAVollink
Member
 
Registered: Apr 2002
Location: St. Paul, Minnesota
Distribution: UbuntuStudio, Ubuntu
Posts: 357

Rep: Reputation: 31
Quote:
How does samba users map to linux users on the system?
This from my SMB.CONF file...

# Unix users can map to different SMB User names
username map = /usr/local/samba/etc/smbusers

Quote:
how would you set file permissions for a user that doesnt exist?
smbpasswd requires that a user be a valid UNIX user prior to being allowed into smbpasswd. Otherwise, map the users to "nobody", or a generic user that you create.

Quote:
How does /etc/samba/smbpasswd work into linux user security?
Because of the requirement of a REAL UNIX userid, after the usermap (from above) is applied - there is no difference.

Quote:
...Is it like "share" security on nt?
Yes, in that the direct filesystem security cannot be overridden by a share permission. A user (after usermap) either can or cannot read or write a file. The share permissions are one up in that a [share] section in smb.conf can specifically set a share to be available to a particular list of users, and force access to be read-only.

Quote:
How does samba groups map to the local groups on a linux server?
One to one. Although there is not a "group" mapping, a username (after usermapping) either belongs to a unix group or it doesn't.

Good luck.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
file permissions in samba jmarsh Linux - Networking 5 09-07-2006 09:35 AM
Samba file permissions technochef Linux - Networking 1 09-25-2004 01:59 PM
Samba - File Permissions eklug Linux - Newbie 1 10-09-2003 05:28 PM
samba and file permissions jkraeger Linux - General 2 02-24-2003 02:06 PM
Changing file permissions on a SAMBA file share apenney Linux - Software 0 02-11-2002 04:42 PM


All times are GMT -5. The time now is 06:42 PM.

Main Menu
 
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: @linuxquestions
Open Source Consulting | Domain Registration