Tema: del samba ir AD
Autorius: sergeii
Data: 2008-07-14 10:33:57
Sveiki,
Gal kas gali patarti kas ne taip
Turi samba 3.0.28 prijungiu ja prie Windows 2003 AD, noriu kad direktoriuju 
teises galima butu keisti ish Windows Mashinu, perskaichiau biski 
staraipsniu

# SAMBA
[global]
        workgroup       = WG
        security        = ADS
        realm           = WG.LT
        netbios name    = SAMBA2
        server string   = SAMBA shares server
        log level       = 1
        log file        = /var/log/samba/%m.%U.log
        max log size    = 50000
        idmap uid       = 10000-20000
        idmap gid       = 10000-20000
        winbind use default domain = yes
#        display charset        = koi8-r
#        unix charset   = koi8-r
#        dos charset    = 866
        wins server = 192.168.1.2
        preferred master = No
        template shell = /bin/bash
        winbind enum users = Yes
        winbind enum groups = Yes

acl compatibility = win2k
nt acl support = yes
acl map full control = True
admin users = WG\sergeii

[xxx]
        comment                 = Shares for Documents
        path                    = /xxx
        read list               = @"domain users"
        admin users             = @"domain admins",@"domain 
users",@"enterprise admins"
        write list              = @"domain admins"
        read only               = No
        writeable               = Yes
        create mask             = 0600
        directory mask          = 0700
        inherit owner           = yes
        inherit acls            = yes
        inherit permissions     = yes
        map acl inherit         = yes
        locking                 = no

Padariau toki konfiga prisijungiau prie domaino ir kaip ne deliochiau teiese 
teik domain users neturi teises irashimui. ar chia jei konfige yra
   write list              = @"domain admins"
 tai ka ne darichiau tik domain admins" jie gali irashineti

P.S. su tunefs ijungiau ACL-us


Achiu