[K12OSN] smbldap - adding ldap users to local groups

Peter Scheie peter at scheie.homedns.org
Thu Oct 25 19:07:17 UTC 2007



David Hopkins wrote:
> 
> 
>     That way I decide which local group matches up with which ldap group,
>     but I only have to establish that relationship once on each machine.
>     Unfortunately, local groups do not seem to accept other groups as
>     members -- they only accept users.  That is what my testing suggests,
>     anyway.
> 
> 
> 
>  
> Unfortunately, I think that is a rather correct perception.  I have 
> asked around and no one here knows of a way to embed groups like can be 
> done with MS.
> 
Not being able to have groups within groups is a Unix thing; always been 
that way, probably always will be.  When you consider the permissions 
model for Unix--user,group,other--it prevents circular things like group 
A being a member of group B and group B being a member of group A.

Peter




More information about the K12OSN mailing list