Re: [Samba] Only administrator works in ldapsam:editposix domain

2009-07-22 Thread Kyle Schmitt
On Wed, Jul 22, 2009 at 3:08 PM, Norberto Bensa wrote:
> Always CC the list.
Didn't realize I didn't.. Oops.


> It needs LDAP for itself. Samba needs unix accounts and groups. Read the docs.
The docs are sadly sparse (at least the ones I've found), but I'm
working through it.


>> (right now it's defaulting to /home//).
>
> Use "template homedir" in smb.conf
Ahh!  Thanks!
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


Re: [Samba] Only administrator works in ldapsam:editposix domain

2009-07-22 Thread Norberto Bensa
Always CC the list.

On Wed, Jul 22, 2009 at 10:20 AM, Kyle Schmitt wrote:
> On Tue, Jul 21, 2009 at 10:36 PM, Norberto Bensa wrote:
>> If you use ldapsam:editposix, that's is automatically done for you
>> with the net command. Are you sure your nsswitch.conf is configured
>> correctly?
>
> At first I didn't have the nsswitch.conf setup, because I intended the
> server to handle LDAP & samba for remote systems, but not for itself
> (something I've done before quite successfully with straight LDAP
> setups).

It needs LDAP for itself. Samba needs unix accounts and groups. Read the docs.


> The only issue now is getting the unix password/shadow information in
> LDAP,

/etc/nsswitch.conf
/etc/ldap.conf
/etc/ldap.secret
/etc/ldap/ldap.conf

(paths are for Debian based distros)

> and somehow getting the correct homeDirectory entry by default
> (right now it's defaulting to /home//).

Use "template homedir" in smb.conf


Regards,
Norberto
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


Re: [Samba] Only administrator works in ldapsam:editposix domain

2009-07-21 Thread Norberto Bensa
On Tue, Jul 21, 2009 at 6:53 PM, Kyle Schmitt wrote:
> Nevermind, I found it.  I needed to add the user to the group in unix
> (or unix/ldap) first, then to the nt group.

If you use ldapsam:editposix, that's is automatically done for you
with the net command. Are you sure your nsswitch.conf is configured
correctly?
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


Re: [Samba] Only administrator works in ldapsam:editposix domain

2009-07-21 Thread Kyle Schmitt
Nevermind, I found it.  I needed to add the user to the group in unix
(or unix/ldap) first, then to the nt group.
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba