Aiko Barz
2008-Jun-19 15:18 UTC
[Samba] idmap_ad - Unix attributes vs. Windows attributes vs. Winbind
Hi, I'm using Debian Stable with Samba from SerNet (3.0.28-21). Most of it is working, but there is one issue:> filer01 ~ # getent passwd user > user:*:1024:10000:Aiko Barz:/home/DOMAIN/user:/bin/false > filer01 ~ # getent passwd | grep user > user:*:1024:10000:Aiko Barz:/net/server.domain.local/home/user:/bin/bash > filer01 ~ # getent passwd user > user:*:1024:100:Aiko Barz:/net/server.domain.local/home/user:/bin/bash5 minutes later:> filer01 ~ # getent passwd user > user:*:1024:10000:Aiko Barz:/home/DOMAIN/user:/bin/false1) The first command uses a generated $HOME and $SHELL. The GID is the one from the main windows group. 2) The second command shows the $HOME and $SHELL from the Active Directory UNIX TAB. But the GID is the one from the main windows group. 3) The command from 1) again. The GID is now the GID from the UNIX TAB. 4) All parameters have the same values like in 1) again... During that time, nothing has been changed. I simply executed those commands. Samba/Winbind is mixing up some parameters. Is there hope? So long, Aiko -- :wq ? -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 189 bytes Desc: Digital signature Url : http://lists.samba.org/archive/samba/attachments/20080619/9d1c5857/attachment.bin
Gerald (Jerry) Carter
2008-Jun-20 20:35 UTC
[Samba] idmap_ad - Unix attributes vs. Windows attributes vs. Winbind
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Aiko Barz wrote:> Hi, > > I'm using Debian Stable with Samba from SerNet (3.0.28-21). > > Most of it is working, but there is one issue: > >> filer01 ~ # getent passwd user >> user:*:1024:10000:Aiko Barz:/home/DOMAIN/user:/bin/false >> filer01 ~ # getent passwd | grep user >> user:*:1024:10000:Aiko Barz:/net/server.domain.local/home/user:/bin/bash >> filer01 ~ # getent passwd user >> user:*:1024:100:Aiko Barz:/net/server.domain.local/home/user:/bin/bash > > 5 minutes later: > >> filer01 ~ # getent passwd user >> user:*:1024:10000:Aiko Barz:/home/DOMAIN/user:/bin/falsenscd running ? jerry -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iD8DBQFIW7AUIR7qMdg1EfYRAi1XAKDcPxNOBua+kKFhF60qm5Vo4/nnlQCg8kRP aByb4JeIW1hBhTda4k3CaW0=MeMA -----END PGP SIGNATURE-----