[K12OSN] Re: smb/ldap login question

Greg T. glidr_greg at yahoo.com
Fri Feb 25 02:58:07 UTC 2005


fwiw: your Doamin Admins acct has  an id of 200 but
win is looking for
domain admions group as group  513.how did domain
admins get a gid of
2025??..chuck

Heck, I don't know!

I've taken the hint and used smbldap-groupmod -s (SID)
"Group Name"
to modify the groups to:
[root at medusa samba]# net groupmap list
Domain Admins
(S-1-5-21-1526078720-2158179384-3381526886-512) ->
Domain Admins
Domain Users
(S-1-5-21-1526078720-2158179384-3381526886-513) ->
Domain Users
Domain Guests
(S-1-5-21-1526078720-2158179384-3381526886-514) ->
Domain Guests
Domain Computers
(S-1-5-21-1526078720-2158179384-3381526886-515) ->
Domain Computers
Administrators
(S-1-5-21-1526078720-2158179384-3381526886-544) ->
Administrators
Print Operators
(S-1-5-21-1526078720-2158179384-3381526886-550) ->
Print Operators
Backup Operators
(S-1-5-21-1526078720-2158179384-3381526886-551) ->
Backup Operators
Replicators
(S-1-5-21-1526078720-2158179384-3381526886-552) ->
Replicators

But still, when I try to login as user gregor, here's
what I get:

[2005/02/24 21:46:40, 1]
rpc_server/srv_netlog_nt.c:_net_sam_logon(766)
 _net_sam_logon: user MTOLYMPUS\gregor has user sid
S-1-5-21-1526078720-2158179
384-3381526886-2000
  but group sid S-1-5-32-513.


Where is "sid S-1-5-32-513" coming from.  I modified
it as shown above?  What is going on?
By the way, gregor is a Domain User... at least that's
what I wanted that login to be.



	
		
__________________________________ 
Do you Yahoo!? 
Yahoo! Mail - You care about security. So do we. 
http://promotions.yahoo.com/new_mail




More information about the K12OSN mailing list