Hello,
Share the printer via "Print Management -> Deploy with GPO" it
works,
but then the Printer is default on all users which is not an option.
So I try to share it per User, but this does not work, the printer is
not added after login.
My GPO look like:
Brother_HL-L5100DN
Data collected on: 12/17/2018 4:38:22 PM
General
Details
Domain samdom.example.com
Owner SAMDOM\Domain Admins
Created 12/17/2018 3:56:44 PM
Modified 12/17/2018 4:28:26 PM
User Revisions 35 (AD), 35 (SYSVOL)
Computer Revisions 0 (AD), 0 (SYSVOL)
Unique ID {CCA8170A-EED3-4DD2-8BFE-5EEEFEAF813E}
GPO Status Enabled
Links
Location Enforced Link Status Path
SAMDOM No Enabled samdom.example.com
This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users,
and computers:Name
NT-AUTORITÄT\Authentifizierte Benutzer
Delegation
These groups and users have the specified permission for this GPOName
Allowed Permissions Inherited
SAMDOM\Domain Admins Edit settings, delete, modify security No
SAMDOM\Domain Users Read No
SAMDOM\Enterprise Admins Edit settings, delete, modify security No
NT-AUTORITÄT\Authentifizierte Benutzer Read (from Security Filtering) No
NT-AUTORITÄT\DOMÄNENCONTROLLER DER ORGANISATION Read No
NT-AUTORITÄT\SYSTEM Edit settings, delete, modify security No
Computer Configuration (Enabled)
No settings defined.
User Configuration (Enabled)
Preferences
Control Panel Settings
Printers
Shared Printer (Name: \\dc2.samdom.example.com\SAMDOM-PTR-004)
SAMDOM-PTR-004 (Order: 1)
General
Action Update
PropertiesShare Path \\dc2.samdom.example.com\SAMDOM-PTR-004
Set this printer as default printer True
Only if a local printer is not present True
Local Port
Common
OptionsStop processing items on this extension if an error occurs on
this item No
Run in logged-on user's security context (user policy option) Yes
Remove this item when it is no longer applied No
Apply once and do not reapply No
Item-level targeting: Security GroupAttribute Value
bool AND
not 0
name SAMDOM\Domain Users
sid S-1-5-21-3008661040-3046359653-1299078886-513
userContext 1
primaryGroup 0
localGroup 0
Best Regards,
P.S. use "Domain Users" just for testing
Im at the point of going home, but a quick reply.. Create groups, a group per printer. Then in GPO preferences,/ settings control pannel, printers. Here you can set things as, if user is member of group, deploy printer. As said, short mail but what your looking for it possible. Have a look there, and see if you can get it working. Greetz, Louis> -----Oorspronkelijk bericht----- > Van: samba [mailto:samba-bounces at lists.samba.org] Namens > basti via samba > Verzonden: maandag 17 december 2018 17:10 > Aan: samba at lists.samba.org > Onderwerp: [Samba] Share Printer via GPO per User > > Hello, > > Share the printer via "Print Management -> Deploy with GPO" it works, > but then the Printer is default on all users which is not an option. > > So I try to share it per User, but this does not work, the printer is > not added after login. > > My GPO look like: > > Brother_HL-L5100DN > > Data collected on: 12/17/2018 4:38:22 PM > > > > General > > Details > > Domain samdom.example.com > > Owner SAMDOM\Domain Admins > > Created 12/17/2018 3:56:44 PM > > Modified 12/17/2018 4:28:26 PM > > User Revisions 35 (AD), 35 (SYSVOL) > > Computer Revisions 0 (AD), 0 (SYSVOL) > > Unique ID {CCA8170A-EED3-4DD2-8BFE-5EEEFEAF813E} > > GPO Status Enabled > > > > Links > > Location Enforced Link Status Path > > SAMDOM No Enabled samdom.example.com > > > > This list only includes links in the domain of the GPO. > > Security Filtering > > The settings in this GPO can only apply to the following > groups, users, > and computers:Name > > NT-AUTORITÄT\Authentifizierte Benutzer > > > > Delegation > > These groups and users have the specified permission for this GPOName > Allowed Permissions Inherited > > SAMDOM\Domain Admins Edit settings, delete, modify security No > > SAMDOM\Domain Users Read No > > SAMDOM\Enterprise Admins Edit settings, delete, modify security No > > NT-AUTORITÄT\Authentifizierte Benutzer Read (from Security > Filtering) No > > NT-AUTORITÄT\DOMÄNENCONTROLLER DER ORGANISATION Read No > > NT-AUTORITÄT\SYSTEM Edit settings, delete, modify security No > > > > Computer Configuration (Enabled) > > No settings defined. > > User Configuration (Enabled) > > Preferences > > Control Panel Settings > > Printers > > Shared Printer (Name: \\dc2.samdom.example.com\SAMDOM-PTR-004) > > SAMDOM-PTR-004 (Order: 1) > > General > > Action Update > > PropertiesShare Path \\dc2.samdom.example.com\SAMDOM-PTR-004 > > Set this printer as default printer True > > Only if a local printer is not present True > > Local Port > > > > Common > > OptionsStop processing items on this extension if an error occurs on > this item No > > Run in logged-on user's security context (user policy option) Yes > > Remove this item when it is no longer applied No > > Apply once and do not reapply No > > Item-level targeting: Security GroupAttribute Value > > bool AND > > not 0 > > name SAMDOM\Domain Users > > sid S-1-5-21-3008661040-3046359653-1299078886-513 > > userContext 1 > > primaryGroup 0 > > localGroup 0 > > Best Regards, > > P.S. use "Domain Users" just for testing > > -- > To unsubscribe from this list go to the following URL and read the > instructions: https://lists.samba.org/mailman/options/samba >
I have not set "run in logged-on security context" (Group Policy Error 0x80070005) On 17.12.18 17:25, L.P.H. van Belle via samba wrote:> Im at the point of going home, but a quick reply.. > > > Create groups, a group per printer. > > Then in GPO preferences,/ settings control pannel, printers. > Here you can set things as, if user is member of group, deploy printer. > > As said, short mail but what your looking for it possible. > > Have a look there, and see if you can get it working. > > > Greetz, > > Louis > > > >> -----Oorspronkelijk bericht----- >> Van: samba [mailto:samba-bounces at lists.samba.org] Namens >> basti via samba >> Verzonden: maandag 17 december 2018 17:10 >> Aan: samba at lists.samba.org >> Onderwerp: [Samba] Share Printer via GPO per User >> >> Hello, >> >> Share the printer via "Print Management -> Deploy with GPO" it works, >> but then the Printer is default on all users which is not an option. >> >> So I try to share it per User, but this does not work, the printer is >> not added after login. >> >> My GPO look like: >> >> Brother_HL-L5100DN >> >> Data collected on: 12/17/2018 4:38:22 PM >> >> >> >> General >> >> Details >> >> Domain samdom.example.com >> >> Owner SAMDOM\Domain Admins >> >> Created 12/17/2018 3:56:44 PM >> >> Modified 12/17/2018 4:28:26 PM >> >> User Revisions 35 (AD), 35 (SYSVOL) >> >> Computer Revisions 0 (AD), 0 (SYSVOL) >> >> Unique ID {CCA8170A-EED3-4DD2-8BFE-5EEEFEAF813E} >> >> GPO Status Enabled >> >> >> >> Links >> >> Location Enforced Link Status Path >> >> SAMDOM No Enabled samdom.example.com >> >> >> >> This list only includes links in the domain of the GPO. >> >> Security Filtering >> >> The settings in this GPO can only apply to the following >> groups, users, >> and computers:Name >> >> NT-AUTORITÄT\Authentifizierte Benutzer >> >> >> >> Delegation >> >> These groups and users have the specified permission for this GPOName >> Allowed Permissions Inherited >> >> SAMDOM\Domain Admins Edit settings, delete, modify security No >> >> SAMDOM\Domain Users Read No >> >> SAMDOM\Enterprise Admins Edit settings, delete, modify security No >> >> NT-AUTORITÄT\Authentifizierte Benutzer Read (from Security >> Filtering) No >> >> NT-AUTORITÄT\DOMÄNENCONTROLLER DER ORGANISATION Read No >> >> NT-AUTORITÄT\SYSTEM Edit settings, delete, modify security No >> >> >> >> Computer Configuration (Enabled) >> >> No settings defined. >> >> User Configuration (Enabled) >> >> Preferences >> >> Control Panel Settings >> >> Printers >> >> Shared Printer (Name: \\dc2.samdom.example.com\SAMDOM-PTR-004) >> >> SAMDOM-PTR-004 (Order: 1) >> >> General >> >> Action Update >> >> PropertiesShare Path \\dc2.samdom.example.com\SAMDOM-PTR-004 >> >> Set this printer as default printer True >> >> Only if a local printer is not present True >> >> Local Port >> >> >> >> Common >> >> OptionsStop processing items on this extension if an error occurs on >> this item No >> >> Run in logged-on user's security context (user policy option) Yes >> >> Remove this item when it is no longer applied No >> >> Apply once and do not reapply No >> >> Item-level targeting: Security GroupAttribute Value >> >> bool AND >> >> not 0 >> >> name SAMDOM\Domain Users >> >> sid S-1-5-21-3008661040-3046359653-1299078886-513 >> >> userContext 1 >> >> primaryGroup 0 >> >> localGroup 0 >> >> Best Regards, >> >> P.S. use "Domain Users" just for testing >> >> -- >> To unsubscribe from this list go to the following URL and read the >> instructions: https://lists.samba.org/mailman/options/samba >> > >