[Samba] weird valid users trouble in 3.0.24

2007-05-25 Thread Sven Geggus
Dear Samba List,

I just updated my samba setup from an older Version (3.0.22) to 3.0.24
(Debian Version).

Now unfortunately valid users does not work anymore.

I have a Samba Server with security=ADS (win 2003 SP2 Domain Controller) in
an all local Unix Users Setup!

Thus all my usernames are available either way, by Unix getent and winbind
-u. Probably this may cause the trouble here, just a suspicion though.

idmap uid and idmap gid are mapped to a range where they can not
interface with my real userids, as they are not used in my Unix centric
setup at all.

Now any share with a valid users entry does not work anymore! No matter if
the share does contain a username or +someunixgroup

I End up with the following messages:

[2007/05/25 12:34:28, 2, effective(0, 0), real(0, 0)] 
smbd/service.c:make_connection_snum(580)
  user 'foo' (from session setup) not permitted to access this share 
(foo-valid-users)
[2007/05/25 12:34:28, 3, effective(0, 0), real(0, 0)] 
smbd/error.c:error_packet(146)
  error packet at smbd/reply.c(676) cmd=117 (SMBtconX) NT_STATUS_ACCESS_DENIED

Any hint?

Regards

Sven

-- 
The American news-media is no longer a news source; it is a
cheerleading squad. (unknown source)

/me is [EMAIL PROTECTED], http://sven.gegg.us/ on the Web
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba


Re: [Samba] weird valid users trouble in 3.0.24

2007-05-25 Thread Gerald (Jerry) Carter
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Sven Geggus wrote:
 Dear Samba List,
 
 I just updated my samba setup from an older Version (3.0.22) to 3.0.24
 (Debian Version).
 
 Now unfortunately valid users does not work anymore.
 
 I have a Samba Server with security=ADS (win 2003 SP2 Domain Controller) in
 an all local Unix Users Setup!
 
 Thus all my usernames are available either way, by Unix getent and winbind
 -u. Probably this may cause the trouble here, just a suspicion though.
 
 idmap uid and idmap gid are mapped to a range where they can not
 interface with my real userids, as they are not used in my Unix centric
 setup at all.
 
 Now any share with a valid users entry does not work anymore! No matter if
 the share does contain a username or +someunixgroup


Please read all the relevant release notes in WHATSNEW.txt regarding
token handling changes in 3.0.23 and review the numerous threads
about this on this ml.  Thanks.




cheers, jerry
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.4.2.2 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFGVvUjIR7qMdg1EfYRAoEmAJ0Uc7VV4uRbPrPztQaEuA6aD3l0WwCdH9uu
Slyl3HjKRWZGgKoeA4iZdm4=
=ik2q
-END PGP SIGNATURE-
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba