Displaying 20 results from an estimated 1000 matches similar to: "mapping well known groups problem (net groupmap)"
2010 May 06
1
create mask not fully working?
Hi
I have Debian/stable and samba 3.2.5.
I have set this (smb.conf):
...
create mode = 0770
directory mask = 0770
...
and the files created have those permissions:
drwxrwx--- 2 piotrlg piotrlg 22 2010-05-06 14:51 nowy3
-rwxrw---- 1 piotrlg piotrlg 10752 2010-05-06 14:51 nowy3.doc
please note the lack of x bit for group file permission (for directory
it works as expected).
I have to use force
2004 Jul 06
1
Q about net groupmap examples on samba.org
Considering the following page...
http://us3.samba.org/samba/docs/man/guide/small.html
First of, my compliments to John for some great examples to study.
In my mind I see three levels of security:
1) Linux - such as SSH'ing into the Linux server, Linux accounts and groups come into play here
2) Samba PDC - "Domain Admins" "Domain Users" come into play here. Examples
2003 Sep 09
3
rc3 net groupmap add fails
Relevant part of "net3 groupmap list" is
System Operators (S-1-5-21-1617713866-2789119093-1479812082-1007) -> sys
In howto there is the following example
net groupmap modify ntgroup="System Operators" unixgroup=sys
net groupmap modify ntgroup="Power Users" unixgroup=sys
You can add System Operators but trying to add Power Users fails. If you do it in reverse
2004 Mar 04
1
Domain Admin with tdbsam on 3.0.2a
Firstly I apologise for the length of this query but I am hoping that if I
document everything I did someone might respond / be able to help.
My Configuration is Samba 3.0.2a as a PDC on Redhat 8. I cannot for the
life of me get the "Domain Admins" functionality to work
I am hoping that another set of eyes can shed some light on this problem
as I have now spent 41 hrs googling /
2003 Sep 27
1
After Upgrading to rc4 (and still with 3.0.0) having Groupmap problems.
Hi,
Before Samba 3.0.0 RC4 I was running Samba 3.0.0 beta3, and when I
upgraded to RC4, I began having problems with group mappings. I didn't
notice at first, because on my laptop I don't normally log on to the
domain. I just noticed when I tried to use my desktop and log on to the
domain... I don't have Domain Admin privileges.
So, I look at 'net groupmap list' ... and it
2003 Dec 15
1
net rpc vampire problems
Hi all.
I'm trying to migrate our NT4 domain to Samba-3.0.1-rc3.
My smb.conf:
[global]
netbios name = vp
workgroup = NUSAUS
server string = Samba Server %v
bind interfaces only = true
# interfaces = 192.168.0.1/24
interfaces = 10.146.1.100/24
passdb backend = tdbsam
log level = 5
log file = /var/log/samba3/log.%m
max log size = 50
name resolve
2009 May 28
1
net groupmap woes
Hi all,
I've scoured the net looking for a solution but to no avail.
net groupmap list returns
Domain Admins (S-############........) -> Domain Admins
I would rather map Domain Admins to my root unix group.
net groupmap modify ntgroup="Domain Admins" unixgroupreturns type=d
returns an error;
Could not update group database.
If I delete via;
net groupmap delete
2003 Dec 22
2
uncovering groupmap problems
Should I delete them first?
net groupmap list
Domain Admins (S-1-5-21-3186189368-1246494298-1334198317-512) -> Domain
Admins #NOTE - listed only one for clarity#
# net groupmap modify sid=S-1-5-21-3186189368-1246494298-1334198317-512
unixgroup=root type=domain
[2003/12/21 20:05:22, 0]
passdb/pdb_ldap.c:ldapsam_update_group_mapping_entry(1954)
ldapsam_update_group_mapping_entry: No group to
2003 Nov 07
2
Réf. : Net groupmap fails
Stephanie,
Thank you for your help. I tryed what you suggest but no luck.. I get
this:
root@lnxsrvr2:~# /usr/local/samba/bin/net groupmap add ntgroup="Domain
Admins" unixgroup="Domain Admins" rid=512
Can't lookup UNIX group Domain Admins
Is there something with initial compiling samba 3.0.0 that would disable
this? All the documentation that I've seen makes it look so
2006 Dec 13
1
Problem with duplicated groups?
Hello, i have some problems migrating a Windows 2000 PDC to a Debian
GNU/Linux Samba Server, i want to migrate it to a LDAP backend.. but as
i'm kind of newbie with ldap and samba migration stuff, i preffered to
migrate it to tdbsam first and try it for a while, if everything works
fine, then switch to a ldap backend.
The problem is that Essential Windows Groups are automatically created,
so
2005 Jul 21
2
i can't delete groupmap
Hi, i can't delete groupmap in my samba 3.0.12:
# net groupmap list
Domain Users (S-1-5-21-3984604316-2900431957-2958281145-513) -> products
Domain Admins (S-1-5-21-3984604316-2900431957-2958281145-513) -> man
Domain Admins (S-1-5-21-3984604316-2900431957-2958281145-512) -> domadmin
Domain Users (S-1-5-21-3984604316-2900431957-2958281145-513) -> domuser
# net groupmap delete
2004 Aug 15
2
Samba not honouring write/admin lists on shares
I'm running debian testing, so samba 3.05 atm. As of a few upgrades ago,
which i think coincided with a library restructure or somewhat samba is no
longer honouring read/write/admin lists on share definitions. Using the
below share as an example, previously all users could access the share with
read access, and those in the ntadmins group had write access. Since the
upgrade users can only
2004 Apr 02
2
GROUPMAP data in LDAP?
Hi list,
If I have multiple Samba member servers in a domain can I store the groupmap data in LDAP? When I try this I get this error
# net groupmap add ntgroup=Everyone unixgroup=nobody
No rid or sid specified, choosing algorithmic mapping
adding entry for group nobody failed!
But this works correctly (creates account in LDAP server)
smbpasswd -a username password
the LDAP config in my
2004 Jul 09
1
Regarding net groupmap
Well, my Samba 3.0.4 is joined to a w2k AD and works fairly well so far,
as it's not in a production environment yet. I am now testing it for
such a release and have encountered a permission problem. Unless I
chmod -R 777 the Samba share directroy, users can only read files on the
share, including the ADS users in Domain Admins. Reading the Samba
online manual, I figured the groupmap
2003 Oct 15
3
net groupmap modify ntgroup="Domain Admins" ... succeeds but fails
After reading through the documentation, I realized that as a part of the
migration process from Samba-2.2.X to Samba-3.0.0 I needed to convert
everyone in my smbadmin group (previously domain admin group = @smbadmin) to
the "Domain Admins" group w/rid=512. So, I issued the following command:
[root@localhost profile]# net groupmap modify ntgroup="Domain Admins"
2005 Jun 07
6
Group Problems
Hello all, I am having a some problems with groups. If I use this
command "net rpc group list -Uroot%not24get" as the root users I get
an error. "Could not connect to server 127.0.0.1
The username or password was not correct"
If I try to add groups I also get the same error.
and I don't know if this is relevent or not but when I try to join win
groups and Unix groups
2008 Oct 13
1
Samba builtin groups and LDAP
I just set up a fresh Samba PDC using OpenLDAP as the passdb. When I
start smbd, I notice some log messages about failing to create some
builtin groups: Administrators and Users. Is Samba trying to run a
group add script which I have not setup or to create posixGroups in LDAP
which it does not have permission to do? I turned up debugging output
and saw that it complained about not getting gids
2004 Feb 06
1
problem with ¨net groupmap¨ and ¨net groupmap list¨ command
Hi,
i get this error when i run the net command to mapp unix group to nt groups.
[root@samba smbldap-tools]# net3 groupmap add ntgroup=?Domain Admins? unixgroup=?Domain Admins? rid=512
Bad option: Admins?
[root@samba smbldap-tools]#
and also when i try to list the current groups in the domain, i get this error but i can see all entries if i use gq
[root@samba smbldap-tools]# net3 groupmap
2003 Oct 28
1
groupmap on member server
Greetings,
My setup is a multimaster win2k domain with full trusts established. My
samba server has joined one of the master domains as a member server.
smb.conf has encrypted passwords enabled and security=domain and running
on Samba Version 3.0.1pre1 on Linux 2.4.20-20.9smp.
Groupmap seems not to work as I was expecting it to. I am trying to map
the local unix group
2005 Mar 28
1
domain admins group in samba 3.0.7 question
I have a samba 3.0.7 pdc (suse 9.2 pro) and want to automatically add
the ntadmins group to the local administrators group on each domain
member workstation. The mydomain/Domain Admins group seems to be added
automatically to the Administrators group on the local workstation but I
can't find a way to either map or directly create members of this group.
I have looked a the "net