Lin Pro
2017-Feb-21 18:49 UTC
[Samba] Setting Win ACLs via Comp Managment, connection to Member Server warning
Thank you for your guidance. I must have something seriously wrong in the settings. Here is the eACL share: root at ubuntu-dm1:~# ls -l /srv/samba/eACLshare/ -d drwxr-xr-x 2 root domain admins 4096 Feb 21 09:00 /srv/samba/eACLshare/>From Windows as an administrator of the domain, Comp Management -Connect to another computer -> System Tools I get UBUNTU-DM1 cannot be connected.... But after dismissing the warning window with "ok" I can click on the share c:\srv\samba\eACLshare and inspect the settings Unfortunately any changes or modifications in the security tab results in "Remotely setting permissions on the folder..." warning, second "permission denied" interestingly Security tab show no permissions for "Domain Admins" Is there place where I could post screenshots? thank you for hints
Rowland Penny
2017-Feb-21 18:56 UTC
[Samba] Setting Win ACLs via Comp Managment, connection to Member Server warning
On Tue, 21 Feb 2017 12:49:39 -0600 Lin Pro <linforpros at gmail.com> wrote:> Thank you for your guidance. I must have something seriously wrong in > the settings. > Here is the eACL share: > root at ubuntu-dm1:~# ls -l /srv/samba/eACLshare/ -d > drwxr-xr-x 2 root domain admins 4096 Feb 21 > 09:00 /srv/samba/eACLshare/ > > From Windows as an administrator of the domain, Comp Management - > Connect to another computer -> System Tools > I get UBUNTU-DM1 cannot be connected.... >OK, if you run 'getent group Domain\ Admins' on the Samba machine with the share on it, what output do you get ? Rowland
Lin Pro
2017-Feb-21 19:10 UTC
[Samba] Setting Win ACLs via Comp Managment, connection to Member Server warning
root at ubuntu-dm1:~# getent group Domain\ Admins domain admins:x:10004:
Lin Pro
2017-Feb-21 19:16 UTC
[Samba] Setting Win ACLs via Comp Managment, connection to Member Server warning
On the DC though I get this: root at dc1:~# getent group Domain\ Admins SAMDOM\domain admins:x:3000008: On the Member Server root at ubuntu-dm1:~# getent group Domain\ Admins domain admins:x:10004: how come? isn't it AD where everything should propagate and be uniform? Where should I look for solution to that? Lin
Maybe Matching Threads
- Setting Win ACLs via Comp Managment, connection to Member Server warning
- Setting Win ACLs via Comp Managment, connection to Member Server warning
- Setting Win ACLs via Comp Managment, connection to Member Server warning
- Setting Win ACLs via Comp Managment, connection to Member Server warning
- Setting Win ACLs via Comp Managment, connection to Member Server warning