Thanks, but it doesn't work. I changed what you said. This is testparm: Load smb config files from /etc/samba/smb.conf rlimit_max: increasing rlimit_max (1024) to minimum Windows limit (16384) Processing section "[profile]" Loaded services file OK. Server role: ROLE_DOMAIN_MEMBER Press enter to see a dump of your service definitions # Global parameters [global] realm = EXAMPLE.LOCAL workgroup = EXAMPLE log file = /var/log/samba/log.%m max log size = 1000 security = ADS template shell = /bin/bash winbind enum groups = Yes winbind enum users = Yes winbind refresh tickets = Yes winbind use default domain = Yes idmap config EXAMPLE : range = 1000000 - 1999999 idmap config EXAMPLE : backend = rid idmap config * : range = 3000 - 7999 idmap config * : backend = tdb store dos attributes = Yes inherit acls = Yes vfs objects = acl_xattr [profile] comment = profile path = /home/ EXAMPLE/profile profile acls = Yes read only = No Any more ideas?