For testing purposes I removed the membership from XXXXXXX_user of the group cn=Domain Guests. In the userenv.log no lines like
USERENV(b8.a0) 17:11:29:906 RestoreUserProfile: Entering USERENV(b8.a0) 17:11:29:906 RestoreUserProfile: User is a Guest appeared, but the profile of the user was stored on the server remote then. Also it got loaded after the initial creation. My question is (I still can't find an error in my LDAP hirarchy alone), does take membership in Domain Guests group take precedence over Domain Users? Kind Regards, Konsti -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
