[Pkg-samba-maint] Bug#912193: samba: Ignores UNIX groups

L.P.H. van Belle belle at bazuin.nl
Fri Feb 22 07:49:07 GMT 2019


Hai, 

Last week something related to this is detected/confirmed as bug. 

And no Paul, we dont tell you to use the latest, we first look at it on the samba list. 
We are nice there, a quick look at you smb.conf shows multiple (incorrect) things..  ( a lot ..sorry.. ) 

For an AD DC, a resulting smb.conf is about this, this is my production config of one of my AD-DC'.s 
AD-DC server with bind9 DNS and without printing. 
So compaired to you smb.conf there is a lot todo. 

[global]

        log level = 0

        workgroup = NTDOM
        realm = YOUR.REALM.TLD
        netbios name = HOSTNAME

        server role = active directory domain controller

	  # -dns = disable internal dns, assign bind9 dns.
	  # -spoolss, disable printing.
        server services = -dns -spoolss

        interfaces = 192.168.0.1 127.0.0.1
        bind interfaces only = yes

        # Dont forget to set the idmap_ldb on ALL DC's if you use it
        idmap_ldb:use rfc2307 = yes

        # Since we cant use : winbind nss info = rfc2307 : on the DC's.
        template shell = /bin/bash
        template homedir = /home/users/%U

        # Disable printing completely, when this is set, no unneeded log error messages.
        load printers = no
        printing = bsd
        printcap name = /dev/null
        disable spoolss = yes

        # Disable usershares creating, when this is set, no unneeded log error messages.
        usershare path =

[sysvol]
       path = /var/lib/samba/sysvol
       read only = No

[netlogon]
        path = /home/samba/sysvol/rotterdam.bazuin.nl/scripts
        read only = No


Because or your smb.conf and so many setting that we(I) normaly dont see, tells me, you've mixed member settings with AD-DC settings. 
Why im asking to post it on the samba list, is because, my Samba team member Rowland, is much better in analyzing your smb.conf. 
Your config also shows the comment, 

# We do not have xattr,  Not ? Sure you have. Maybe not on wheezy.. But stretch and jessie not problems here. 
apt-get install attr   (xattr is'nt working.. ) 

I suspect this is an attempt to upgrade an NT4 Domain to AD..? Correct 

So resume, yes, we can assign this as a bug but not based on you config, because i know its a bug. 
I just cant find the correct one in samba's bugzilla. 
Would be upstream bugnr https://bugzilla.samba.org/show_bug.cgi?id=13371 
Or https://bugzilla.samba.org/show_bug.cgi?id=11362

Best assumption here, its bug 11371, but please check that Mattieu. 
This affects samba 4.5 upto 4.9 as far i know. 


Greetz, 

Louis



> -----Oorspronkelijk bericht-----
> Van: Pkg-samba-maint 
> [mailto:pkg-samba-maint-bounces+belle=bazuin.nl at alioth-lists.d
> ebian.net] Namens Mathieu Parent
> Verzonden: donderdag 21 februari 2019 21:43
> Aan: Paul Szabo; 912193 at bugs.debian.org
> Onderwerp: [Pkg-samba-maint] Bug#912193: Post message upstream
> 
> Hello,
> 
> As Louis said (in
> https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=912193#25), please
> ask on the samba mailing list, and add a pointer here.
> 
> Regards
> 
> -- 
> Mathieu Parent
> 
> _______________________________________________
> Pkg-samba-maint mailing list
> Pkg-samba-maint at alioth-lists.debian.net
> https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/pkg-s
> amba-maint
> 



More information about the Pkg-samba-maint mailing list