On 10/03/2021 01:33, Samuel Taylor Liston wrote:> Christof, > Thank you. Yes. Winbind is running on this server. I should have mentioned that.Winbind might be running, but you are not using it, you need to remove sssd, but this may be where your troubles start unless you have been using uidNumber & gidNumber attributes in AD. From Samba 4.8.0 you can only use sssd for authentication, if you want shares, you must use winbind and this means you cannot use sssd. Rowland
Rowland, That?s a good point: I believe we are using uidNumber and gidNumber from the AD, which may be why samba only knows about the the primary group given it as the gidNumber. I think I may have found a workaround and that is to set ?force group? on each share. I?m going to do some testing today. Sam Liston (sam.liston at utah.edu<mailto:sam.liston at utah.edu>) =========================================Center for High Performance Computing - Univ. of Utah 155 S. 1452 E. Rm 405 Salt Lake City, Utah 84112 (801)232-6932 ========================================= On Mar 10, 2021, at 2:04 AM, Rowland penny via samba <samba at lists.samba.org<mailto:samba at lists.samba.org>> wrote: uidNumber & gidNumber