Steven Rice schrieb: Hi, This looks as if your BDC gets its user and group info via winbind. As BDC it should point to the same ldap server as the PDC (or to a replica).
Kind regards > Hi, > > I have server setup as BDC on a subnet different from > the PDC. The BDC can auth fine against the PDC and > they can browse each other just fine. The problem is > on Unix side of the BDC. When I do a 'wbinfo -g' or > 'getent group' each group fit the format > 'DOMAIN\group_name' and the PDC does not. This is > causing problems when synchronizing as the group perm > is being set by name, not uid. > > I have configured both the PDC and BDC with the > following entries: > > winbind trusted domains only = yes > winbind use default domain = yes > obey pam restrictions = Yes > > Yet the domain name still show in in the groups on the > BDC. I tired every I know but with no luck. > > What can I do to remove the domain from the group > entries on the BDC? > > Thnaks! > > __________________________________________________ > Do You Yahoo!? > Tired of spam? Yahoo! Mail has the best spam protection around > http://mail.yahoo.com -- Wolfgang Ratzka Phone: +49 6421 2823531 FAX: +49 6421 2826994 Uni Marburg, HRZ, Hans-Meerwein-Str., D-35032 Marburg, Germany -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/listinfo/samba
