LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Software
User Name
Password
Linux - Software This forum is for Software issues.
Having a problem installing a new program? Want to know which application is best for the job? Post your question in this forum.

Notices


Reply
  Search this Thread
Old 02-28-2006, 11:34 AM   #1
Azhrarn
Member
 
Registered: Aug 2005
Location: Europe
Posts: 63

Rep: Reputation: 15
Unhappy Samba 3 Domain Admins group problem


Hi,
I ve set up a PDC with Samba 3.

The domain works fine, users can log in and out, with permissions properly set, and I can share folders and printers using the DOMAIN/Groups
However, I have mapped Domain Admins to user group IT, and in IT I have 2 users
root
paul
Now, When I check on local machines, amongts the admins there's DOMAIN/Domain Admins,
but when I log on with either users I don t have Domain Admin rights, nor can I access, for instance, files which can only be accessed by Domain Admins (this was a test to see if my users were really not being recognised as Domain Admins).
I m a bit confused, could you please help me as I m not sure of what I m doing wrong.
Here's my smb.conf file.
Thanks in advance
Azh
ps->Correct me if I m wrong, but according to this, samba uses smbpasswd to identify in the Domain, but passwd to allow access control?

Quote:
[global]
name resolve order = wins lmhosts host bcast
passwd chat = "*New password:*" %n\r "*New password (again):*" %n\r \ "*Password changed*"
time server = yes
hosts allow = 127.0.0.1 192.168.0.0/255.255.255.0
dns proxy = no
netbios name = SERVER
logon script = login.bat OR %U.bat
local master = yes
workgroup = DOMAIN
os level = 65
security = user
add machine script = /usr/sbin/useradd -d /dev/null -g machines -s /bin/false -M %u
delete user script = /usr/sbin/userdel -r %u
max log size = 50
log level = 3
log file = /var/log/samba/%m.log
smb passwd file = /etc/samba/smbpasswd
add group script = /usr/sbin/groupadd %g
delete group script = /usr/sbin/groupdel %g
socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
hide unreadable = yes
add user to group script = /usr/sbin/usermod -G %g %u
logon drive = x:
interfaces = lo eth0 eth0:1
domain master = yes
null passwords = no
hide dot files = yes
encrypt passwords = yes
logon home =
wins support = true
server string = [Samba server %v]
logon path =
add user script = /usr/sbin/useradd -m %u
unix charset = ISO8859-1
bind interfaces only = yes
domain logons = yes

[netlogon]
path = /home/netlogon
guest ok = no
read only = yes
browseable = no

[profiles]
path = /home/profiles
browseable = no
writeable = yes
default case = lower
preserve case = no
short preserve case = no
case sensitive = no
hide files = /desktop.ini/ntuser.ini/NTUSER.*/
write list = @smbusers @root
create mask = 0600
directory mask = 0700

[homes]
path = /home/%u
browseable = no
valid users = %S
read only = no
guest ok = no
inherit permissions = yes

[public]
comment = Public Stuff
path = /raid/File Exchange
public = yes
read only = yes
browseable = yes
write list = @users
[File Exchange]
path = /raid/File Exchange

[Shared]
valid users = @Employees,@Management,@IT
path = /raid/Accounting
write list = @Employees,@Management,@IT
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
samba 3 problem - samba PDC can not join to the domain ananthak Linux - Networking 1 05-21-2006 10:39 AM
Samba 3.0.21a and Samba Domain Member Servers in a Windows 2003 ADS Domain ramz Linux - Networking 3 04-09-2006 08:26 PM
Domain Admins not Local ADmins - Samba 3.0.7 dlublink Linux - Networking 2 03-01-2005 11:05 AM
Samba + Winbind + Domain Users group wheeliemonster Linux - Networking 0 01-27-2004 09:56 AM
Samba 3.0.0 removed "domain admin group". What now?? eteck Linux - Networking 1 11-28-2003 10:18 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Software

All times are GMT -5. The time now is 01:14 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration