Are you running winbindd on the member server?  I would
recommend it but since the posixAccount information is being
shared via LDAP, make sure to set 'winbind trusted domains only = yes'

Yes, winbind is running and I set 'winbind trusted domains only = yes'.

I found out that I need to use 'fake' 'idmap uid' and 'idmap gid' to get it to work. Is that a winbind bug? In contrast to the documentation, 'nscd' must be running, otherwise I am not able to logon to the member server.

-Remy

--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/listinfo/samba

Reply via email to