On Wed, Jul 8, 2009 at 4:29 PM, Dale Schroeder<d...@briannassaladdressing.com> wrote: > Are you in a domain trust? Otherwise, for a single domain, pdc's don't need > winbind.
Nope. This is a PDC. But from the link I posted: "A running winbind daemon is required to use ldapsam:editposix EVEN ON A SAMBA PDC." Also. On this list someone told me that I "need windbind for ACL to work correctly" Oh BTW, "winbind enum users = yes" didn't do anything. zool...@kvm-test-samba1:/var/log/samba$ wbinfo -p Ping to winbindd succeeded on fd 3 zool...@kvm-test-samba1:/var/log/samba$ wbinfo -t checking the trust secret via RPC calls succeeded zool...@kvm-test-samba1:/var/log/samba$ wbinfo -g BUILTIN\administrators BUILTIN\users zool...@kvm-test-samba1:/var/log/samba$ wbinfo -u Error looking up domain users zool...@kvm-test-samba1:/var/log/samba$ testparm -s | grep winbind winbind enum users = Yes winbind enum groups = Yes winbind use default domain = Yes -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba