Re: [Samba] Fwd: Can somebody explain the file ownership of a

On Tue, 31 Jan 2017 15:39:48 +1300
Kosala Atapattu <kosala.atapattu@xxxxxxxxx> wrote:

> Hi Rowland,
> Thanx for the response. For certain configurations idmap would be
> suitable, in our case we cannot use idmap, as the OS users are AD
> users, where UIDs and GIDs are mapped through Unix Attributes from AD
> and Samba mix up the GID permissions with idmap from the tdb backend
> end and map incorrect GIDs.

Have you got Unix users with the same name as AD users ?
If so, what you are trying to do will never work, you cannot have a
user in /etc/passwd and AD.

> I do not think the problem we have is related to the IDMAP, in fact
> the GIDs and UIDs are the same for Samba / AD and AIX since they'r
> the same. Shares obey GID permisions and UID permissions, except that
> shares need to be **world readable**, which is not ideal in our case.
> We're unable to explain, why it's need to be world readable!!!

An AIX Unix user != an AD user with the same name.
i.e. the AIX user 'fred' is NOT the AD user 'fred'


