So here is the Samba configuration...
- Code: Select all
[root@pusa3 SANDBOX]# cat /etc/samba/smb.conf
[global]
cups options = raw
load printers = Yes
printcap name = cups
printing = cups
printer admin = root @Administrators @"Domain Users" ittech
server string = Yun Yang Temple File Server
use client driver = no
workgroup = pusanet3
netbios name = pusa3
passdb backend = ldapsam:ldap://127.0.0.1
encrypt passwords = Yes
log level = 1
syslog = 0
os level = 255
log file = /var/log/samba/%m
max log size = 0
smb ports = 139 445
name resolve order = wins bcast hosts
add user script = /opt/IDEALX/sbin/smbldap-useradd -m '%u'
delete user script = /opt/IDEALX/sbin/smbldap-userdel -r '%u'
add group script = /opt/IDEALX/sbin/smbldap-groupadd -a '%g'
delete group script = /opt/IDEALX/sbin/smbldap-groupdel '%g'
add user to group script = /opt/IDEALX/sbin/smbldap-groupmod -m '%u' '%g'
delete user from group script = /opt/IDEALX/sbin/smbldap-groupmod -x '%u' '%g'
set primary group script = /opt/IDEALX/sbin/smbldap-usermod -g '%g' '%u'
add machine script = /opt/IDEALX/sbin/smbldap-useradd -w '%u'
logon script = logon.bat
logon path =
logon home = \\%N\%U
logon drive = H:
domain logons = Yes
domain master = Yes
preferred master = Yes
wins support = Yes
ldap admin dn = cn=Manager,dc=yunyangtemple,dc=org,dc=au
ldap group suffix = ou=Groups
ldap idmap suffix = ou=Idmap
ldap machine suffix = ou=Hosts
ldap passwd sync = Yes
ldap suffix = dc=yunyangtemple,dc=org,dc=au
ldap ssl = no
ldap timeout = 20
ldap user suffix = ou=People
idmap backend = ldap:ldap://127.0.0.1
idmap uid = 15000-20000
idmap gid = 15000-20000
winbind nested groups = Yes
ea support = Yes
map acl inherit = Yes
password server = 127.0.0.1
template shell = /bin/false
winbind use default domain = no
security = user
[****]
SHARES HAVE BEEN OMMITED BY THE KINTARO
[****]
I know little about ldap but everything here looks okay to me. It's just that when you check an account (john.tate for example) for groups none show up. By none I really mean none, not a single one to add or a single one added.
John Tate


