Re: [Samba] ACLS without winbind (but WITH correct user mapping)

2012-07-04 Thread Colin Fowler
On 26/06/12 11:54, Colin Fowler wrote: On 26/06/12 06:48, Andrew Bartlett wrote: On Fri, 2012-06-22 at 16:11 +0100, Colin Fowler wrote: On 21/06/12 17:50, Jeremy Allison wrote: On Thu, Jun 21, 2012 at 05:50:45PM +0100, Colin Fowler wrote: Note the DOMAIN and not "Unix User". Clicking apply si

Re: [Samba] ACLS without winbind (but WITH correct user mapping)

2012-06-25 Thread Andrew Bartlett
On Fri, 2012-06-22 at 16:11 +0100, Colin Fowler wrote: > On 21/06/12 17:50, Jeremy Allison wrote: > > On Thu, Jun 21, 2012 at 05:50:45PM +0100, Colin Fowler wrote: > >> Note the DOMAIN and not "Unix User". Clicking apply simply makes the > >> new entry disappear. > >> > >> If username mapping is wo

Re: [Samba] ACLS without winbind (but WITH correct user mapping)

2012-06-22 Thread Colin Fowler
On 21/06/12 17:50, Jeremy Allison wrote: On Thu, Jun 21, 2012 at 05:50:45PM +0100, Colin Fowler wrote: Note the DOMAIN and not "Unix User". Clicking apply simply makes the new entry disappear. If username mapping is working correctly, why does adding an ACL for DOMAIN\nigel not set an ACL for U

Re: [Samba] ACLS without winbind (but WITH correct user mapping)

2012-06-22 Thread Colin Fowler
On 22/06/12 12:22, steve wrote: On 22/06/12 12:50, Colin Fowler wrote: On 22/06/12 11:46, steve wrote: On 22/06/12 11:41, Colin Fowler wrote: On 21/06/12 17:50, Jeremy Allison wrote: On Thu, Jun 21, 2012 at 05:50:45PM +0100, Colin Fowler wrote: Am I corect in thinking that this is somethi

Re: [Samba] ACLS without winbind (but WITH correct user mapping)

2012-06-22 Thread steve
On 22/06/12 12:50, Colin Fowler wrote: On 22/06/12 11:46, steve wrote: On 22/06/12 11:41, Colin Fowler wrote: On 21/06/12 17:50, Jeremy Allison wrote: On Thu, Jun 21, 2012 at 05:50:45PM +0100, Colin Fowler wrote: Am I corect in thinking that this is something that would be desireable for o

Re: [Samba] ACLS without winbind (but WITH correct user mapping)

2012-06-22 Thread Colin Fowler
On 22/06/12 11:46, steve wrote: On 22/06/12 11:41, Colin Fowler wrote: On 21/06/12 17:50, Jeremy Allison wrote: On Thu, Jun 21, 2012 at 05:50:45PM +0100, Colin Fowler wrote: Am I corect in thinking that this is something that would be desireable for others and not just me and my rather oddb

Re: [Samba] ACLS without winbind (but WITH correct user mapping)

2012-06-22 Thread steve
On 22/06/12 11:41, Colin Fowler wrote: On 21/06/12 17:50, Jeremy Allison wrote: On Thu, Jun 21, 2012 at 05:50:45PM +0100, Colin Fowler wrote: Am I corect in thinking that this is something that would be desireable for others and not just me and my rather oddball configuration? For people usi

Re: [Samba] ACLS without winbind (but WITH correct user mapping)

2012-06-22 Thread Colin Fowler
On 21/06/12 17:50, Jeremy Allison wrote: On Thu, Jun 21, 2012 at 05:50:45PM +0100, Colin Fowler wrote: Note the DOMAIN and not "Unix User". Clicking apply simply makes the new entry disappear. If username mapping is working correctly, why does adding an ACL for DOMAIN\nigel not set an ACL for U

Re: [Samba] ACLS without winbind (but WITH correct user mapping)

2012-06-21 Thread Jeremy Allison
On Thu, Jun 21, 2012 at 05:50:45PM +0100, Colin Fowler wrote: > > Note the DOMAIN and not "Unix User". Clicking apply simply makes the > new entry disappear. > > If username mapping is working correctly, why does adding an ACL for > DOMAIN\nigel not set an ACL for Unix User\nigel? I'm not sure u

[Samba] ACLS without winbind (but WITH correct user mapping)

2012-06-21 Thread Colin Fowler
Thanks to some of the guys on #samba-technical (obnox in particular!), I now have a working samba configuration. The environment: In our setup each user has an entry in both openldap (no samba schemes) and AD. Each account has the same name and even has a Unix UID entry in AD. Our users ssh i