Web lists-archives.com

Re: [Samba] [samba] Member server winbind issue




On Sun, 23 Jul 2017 13:33:05 +0200
mathias dufresne <infractory@xxxxxxxxx> wrote:


> Samba is 4.5.8+dfsg-2+deb9u1+b1 (it's a debian).

Then you need to use the 'old' way of setting up 'idmap config'

       winbind nss info = rfc2307
       idmap config * : backend = tdb
       idmap config * : range = 3000-7999
       idmap config SAMDOM : backend = ad
       idmap config SAMDOM : schema_mode = rfc2307
       idmap config SAMDOM : range = 10000-999999

You can change the ranges if required, but all normal users and groups
MUST have a uidNumber or gidNumber attribute containing a number inside
the DOMAIN range you choose.

You MUST also give 'Domain Users' a gidNumber inside the same range.

Rowland


-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba