Web lists-archives.com

Re: [Samba] Can't set SeDiskOperatorPrivilege to Domain Admins. (NT_STATUS_NO_SUCH_USER) Error.




Yes, I’m using sssd.

> On Sep 19, 2017, at 1:33 PM, Rowland Penny <rpenny@xxxxxxxxx> wrote:
> 
> On Tue, 19 Sep 2017 13:13:45 -0700
> Jamie McParland via samba <samba@xxxxxxxxxxxxxxx> wrote:
> 
>> Thanks for everyone chiming in on my problem. I really do appreciate
>> it.
>> 
>> Just to clarify, I’m working on a share called Edwards_Public. I’m
>> trying to get it so the members of the AD group called
>> do_superintendent are the only people able to read and write any
>> files in that directory.
>> 
>> Here is my global config:
>> 
>> workgroup = NSD
>> client signing = yes
>> client use spnego = yes
>> kerberos method = secrets and keytab
>> log file = /var/log/samba/%m.log
>> log level = 5
>> realm = NSD.NEWBERG.K12.OR.US
>> security = ads
>> wide links = yes
>> unix extensions = no
>> obey pam restrictions = yes
>> hide files = /$*/
>> hide files = /*.tmp
>> hide special files = yes
>> hide dot files = yes
>> veto files = /.DS_Store/
>> delete veto files = yes
>> 
> 
> If that is the full [global] part of your smb.conf, you have a problem,
> you don't seem to be using Samba for authentication, are you also using
> sssd ?
> 
> Rowland

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba