All, The basic info is that I'm running Samba 2.2.8a on a Solaris 8 machine with NIS. The hostname is altair and is a NIS slave. As a standard practice every employee get's a NIS account and altair is their samba home. NIS is set to compatibility mode in /etc/nsswitch.conf. Samba security is set to server. It appears that for users to map to their samba share, we need to have an entry for them in the netgroup file. The side effect of this is that they also get command line access which we don't want. Does anyone have a solution for this problem? TIA, Spike