-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Misty Stanley-Jones wrote:> Hi all,
> 
> i have ACLs working fine on my PDC, but they do not work on a member
server.
> Here is a summary of my set-up:
> 
> I am using LDAP backend, with nss_ldap on all of my member servers.  Samba 
> 3.0.12pre1 on the PDC and Samba 3.0.14a on the member server.
> 
> I have winbindd running on my member server, and it is pointing at LDAP as
its
> backend.  ?wbinfo -u and wbinfo -g  both work.  I am using
"security=domain"
> on the member server and it is joined to the domain.
> 
> However when I view ACEs on a file from a Windows client, on the member
server
> the users / groups resolve to SERVER\user instead of DOMAIN\user.  I have 
> provided a screen shot of what it looks like for files on the PDC and files
> on the member server, here:  http://www.borkholder.com/admin/
Try setting 'winbind trusted domains only = yes'
cheers, jerry
====================================================================Alleviating
the pain of Windows(tm)      ------- http://www.samba.org
GnuPG Key                ----- http://www.plainjoe.org/gpg_public.asc
"I never saved anything for the swim back."     Ethan Hawk in Gattaca
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.5 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org
iD8DBQFCjjMXIR7qMdg1EfYRAu4SAJ4o6I5l2YP96tIyBGoRY+5nbg2MUACeOCsf
pueYYC82bpJlZOtmiu/cDKY=G7Fx
-----END PGP SIGNATURE-----