LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Software
User Name
Password
Linux - Software This forum is for Software issues.
Having a problem installing a new program? Want to know which application is best for the job? Post your question in this forum.

Notices


Reply
  Search this Thread
Old 05-24-2013, 11:00 AM   #1
boqler
LQ Newbie
 
Registered: May 2013
Posts: 2

Rep: Reputation: Disabled
Permissions for folders on Linux in multiple AD environment


Hi.

I have a trouble with permissions for folders in my Ubuntu Server 12.04.

I have domainA and domainB with two-way trusts. My linux server authenticate with domainB via "net ads join" with Kerberos, Samba + winbind and PAM.

https://help.ubuntu.com/community/Ac...ryWinbindHowto

My realm is domainB

I can logon to the linux server via domainB windows user, e.g domainB\userB (ssh)
I can logon to the linux server via domainA windows user too (domainA\userA) (ssh)

Problem is, when I try stop samba service via user domainA\userA. I don't have permissions to stop this service, delete folders etc..

On my AD controller I have 2 groups. The first is e.g Group1 when I have 5 users from domainB and I have Group2 when I have 5 users from domainA

When I add Group1 to sudoers file - all users from Group1 (domainB) can stop services etc..but when I add Group2 (domainA) to sudoers file - no user can stop services (user is not in sudoers).. - where is mistake?

I try add domainA\userA to root, admin group and reboot the server - but when I login via domainA\userA - this user don't have permissions to stop services etc..

I don't have idea what I'm doing bad..Can anyone help me with this permissions?
 
Old 05-29-2013, 03:34 AM   #2
boqler
LQ Newbie
 
Registered: May 2013
Posts: 2

Original Poster
Rep: Reputation: Disabled
Ok, I solved problem..I not correctly typed data to sudoers file. After type "id" when logged my userA, I saw list of AD groups and AD group name have space. I tried in place of space type "^" but without success. In place of space, must be "\" and space, and after AD "\\" e.g domainA\\abc\ a\ b\ group2
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
change permissions of all folders and sub folders cad Linux - General 3 01-28-2007 10:21 AM
Changing file permissions within multiple folders cloudxiii Linux - Newbie 1 02-21-2005 12:20 AM
Permissions in a Linux/Win Environment funaroma Linux - Newbie 9 12-31-2004 11:36 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Software

All times are GMT -5. The time now is 01:04 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration