Hello, Share the printer via "Print Management -> Deploy with GPO" it works, but then the Printer is default on all users which is not an option. So I try to share it per User, but this does not work, the printer is not added after login. My GPO look like: Brother_HL-L5100DN Data collected on: 12/17/2018 4:38:22 PM General Details Domain samdom.example.com Owner SAMDOM\Domain Admins Created 12/17/2018 3:56:44 PM Modified 12/17/2018 4:28:26 PM User Revisions 35 (AD), 35 (SYSVOL) Computer Revisions 0 (AD), 0 (SYSVOL) Unique ID {CCA8170A-EED3-4DD2-8BFE-5EEEFEAF813E} GPO Status Enabled Links Location Enforced Link Status Path SAMDOM No Enabled samdom.example.com This list only includes links in the domain of the GPO. Security Filtering The settings in this GPO can only apply to the following groups, users, and computers:Name NT-AUTORITÄT\Authentifizierte Benutzer Delegation These groups and users have the specified permission for this GPOName Allowed Permissions Inherited SAMDOM\Domain Admins Edit settings, delete, modify security No SAMDOM\Domain Users Read No SAMDOM\Enterprise Admins Edit settings, delete, modify security No NT-AUTORITÄT\Authentifizierte Benutzer Read (from Security Filtering) No NT-AUTORITÄT\DOMÄNENCONTROLLER DER ORGANISATION Read No NT-AUTORITÄT\SYSTEM Edit settings, delete, modify security No Computer Configuration (Enabled) No settings defined. User Configuration (Enabled) Preferences Control Panel Settings Printers Shared Printer (Name: \\dc2.samdom.example.com\SAMDOM-PTR-004) SAMDOM-PTR-004 (Order: 1) General Action Update PropertiesShare Path \\dc2.samdom.example.com\SAMDOM-PTR-004 Set this printer as default printer True Only if a local printer is not present True Local Port Common OptionsStop processing items on this extension if an error occurs on this item No Run in logged-on user's security context (user policy option) Yes Remove this item when it is no longer applied No Apply once and do not reapply No Item-level targeting: Security GroupAttribute Value bool AND not 0 name SAMDOM\Domain Users sid S-1-5-21-3008661040-3046359653-1299078886-513 userContext 1 primaryGroup 0 localGroup 0 Best Regards, P.S. use "Domain Users" just for testing
Im at the point of going home, but a quick reply.. Create groups, a group per printer. Then in GPO preferences,/ settings control pannel, printers. Here you can set things as, if user is member of group, deploy printer. As said, short mail but what your looking for it possible. Have a look there, and see if you can get it working. Greetz, Louis> -----Oorspronkelijk bericht----- > Van: samba [mailto:samba-bounces at lists.samba.org] Namens > basti via samba > Verzonden: maandag 17 december 2018 17:10 > Aan: samba at lists.samba.org > Onderwerp: [Samba] Share Printer via GPO per User > > Hello, > > Share the printer via "Print Management -> Deploy with GPO" it works, > but then the Printer is default on all users which is not an option. > > So I try to share it per User, but this does not work, the printer is > not added after login. > > My GPO look like: > > Brother_HL-L5100DN > > Data collected on: 12/17/2018 4:38:22 PM > > > > General > > Details > > Domain samdom.example.com > > Owner SAMDOM\Domain Admins > > Created 12/17/2018 3:56:44 PM > > Modified 12/17/2018 4:28:26 PM > > User Revisions 35 (AD), 35 (SYSVOL) > > Computer Revisions 0 (AD), 0 (SYSVOL) > > Unique ID {CCA8170A-EED3-4DD2-8BFE-5EEEFEAF813E} > > GPO Status Enabled > > > > Links > > Location Enforced Link Status Path > > SAMDOM No Enabled samdom.example.com > > > > This list only includes links in the domain of the GPO. > > Security Filtering > > The settings in this GPO can only apply to the following > groups, users, > and computers:Name > > NT-AUTORITÄT\Authentifizierte Benutzer > > > > Delegation > > These groups and users have the specified permission for this GPOName > Allowed Permissions Inherited > > SAMDOM\Domain Admins Edit settings, delete, modify security No > > SAMDOM\Domain Users Read No > > SAMDOM\Enterprise Admins Edit settings, delete, modify security No > > NT-AUTORITÄT\Authentifizierte Benutzer Read (from Security > Filtering) No > > NT-AUTORITÄT\DOMÄNENCONTROLLER DER ORGANISATION Read No > > NT-AUTORITÄT\SYSTEM Edit settings, delete, modify security No > > > > Computer Configuration (Enabled) > > No settings defined. > > User Configuration (Enabled) > > Preferences > > Control Panel Settings > > Printers > > Shared Printer (Name: \\dc2.samdom.example.com\SAMDOM-PTR-004) > > SAMDOM-PTR-004 (Order: 1) > > General > > Action Update > > PropertiesShare Path \\dc2.samdom.example.com\SAMDOM-PTR-004 > > Set this printer as default printer True > > Only if a local printer is not present True > > Local Port > > > > Common > > OptionsStop processing items on this extension if an error occurs on > this item No > > Run in logged-on user's security context (user policy option) Yes > > Remove this item when it is no longer applied No > > Apply once and do not reapply No > > Item-level targeting: Security GroupAttribute Value > > bool AND > > not 0 > > name SAMDOM\Domain Users > > sid S-1-5-21-3008661040-3046359653-1299078886-513 > > userContext 1 > > primaryGroup 0 > > localGroup 0 > > Best Regards, > > P.S. use "Domain Users" just for testing > > -- > To unsubscribe from this list go to the following URL and read the > instructions: https://lists.samba.org/mailman/options/samba >
I have not set "run in logged-on security context" (Group Policy Error 0x80070005) On 17.12.18 17:25, L.P.H. van Belle via samba wrote:> Im at the point of going home, but a quick reply.. > > > Create groups, a group per printer. > > Then in GPO preferences,/ settings control pannel, printers. > Here you can set things as, if user is member of group, deploy printer. > > As said, short mail but what your looking for it possible. > > Have a look there, and see if you can get it working. > > > Greetz, > > Louis > > > >> -----Oorspronkelijk bericht----- >> Van: samba [mailto:samba-bounces at lists.samba.org] Namens >> basti via samba >> Verzonden: maandag 17 december 2018 17:10 >> Aan: samba at lists.samba.org >> Onderwerp: [Samba] Share Printer via GPO per User >> >> Hello, >> >> Share the printer via "Print Management -> Deploy with GPO" it works, >> but then the Printer is default on all users which is not an option. >> >> So I try to share it per User, but this does not work, the printer is >> not added after login. >> >> My GPO look like: >> >> Brother_HL-L5100DN >> >> Data collected on: 12/17/2018 4:38:22 PM >> >> >> >> General >> >> Details >> >> Domain samdom.example.com >> >> Owner SAMDOM\Domain Admins >> >> Created 12/17/2018 3:56:44 PM >> >> Modified 12/17/2018 4:28:26 PM >> >> User Revisions 35 (AD), 35 (SYSVOL) >> >> Computer Revisions 0 (AD), 0 (SYSVOL) >> >> Unique ID {CCA8170A-EED3-4DD2-8BFE-5EEEFEAF813E} >> >> GPO Status Enabled >> >> >> >> Links >> >> Location Enforced Link Status Path >> >> SAMDOM No Enabled samdom.example.com >> >> >> >> This list only includes links in the domain of the GPO. >> >> Security Filtering >> >> The settings in this GPO can only apply to the following >> groups, users, >> and computers:Name >> >> NT-AUTORITÄT\Authentifizierte Benutzer >> >> >> >> Delegation >> >> These groups and users have the specified permission for this GPOName >> Allowed Permissions Inherited >> >> SAMDOM\Domain Admins Edit settings, delete, modify security No >> >> SAMDOM\Domain Users Read No >> >> SAMDOM\Enterprise Admins Edit settings, delete, modify security No >> >> NT-AUTORITÄT\Authentifizierte Benutzer Read (from Security >> Filtering) No >> >> NT-AUTORITÄT\DOMÄNENCONTROLLER DER ORGANISATION Read No >> >> NT-AUTORITÄT\SYSTEM Edit settings, delete, modify security No >> >> >> >> Computer Configuration (Enabled) >> >> No settings defined. >> >> User Configuration (Enabled) >> >> Preferences >> >> Control Panel Settings >> >> Printers >> >> Shared Printer (Name: \\dc2.samdom.example.com\SAMDOM-PTR-004) >> >> SAMDOM-PTR-004 (Order: 1) >> >> General >> >> Action Update >> >> PropertiesShare Path \\dc2.samdom.example.com\SAMDOM-PTR-004 >> >> Set this printer as default printer True >> >> Only if a local printer is not present True >> >> Local Port >> >> >> >> Common >> >> OptionsStop processing items on this extension if an error occurs on >> this item No >> >> Run in logged-on user's security context (user policy option) Yes >> >> Remove this item when it is no longer applied No >> >> Apply once and do not reapply No >> >> Item-level targeting: Security GroupAttribute Value >> >> bool AND >> >> not 0 >> >> name SAMDOM\Domain Users >> >> sid S-1-5-21-3008661040-3046359653-1299078886-513 >> >> userContext 1 >> >> primaryGroup 0 >> >> localGroup 0 >> >> Best Regards, >> >> P.S. use "Domain Users" just for testing >> >> -- >> To unsubscribe from this list go to the following URL and read the >> instructions: https://lists.samba.org/mailman/options/samba >> > >