Bug 12389 - Samba AD domain member doesn't see machine accounts
Summary: Samba AD domain member doesn't see machine accounts
Status: NEW
Alias: None
Product: Samba 4.1 and newer
Classification: Unclassified
Component: File services (show other bugs)
Version: 4.3.11
Hardware: x64 Linux
: P5 normal (vote)
Target Milestone: ---
Assignee: Samba QA Contact
QA Contact: Samba QA Contact
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2016-10-24 09:51 UTC by Maxim
Modified: 2016-10-24 15:22 UTC (History)
1 user (show)

See Also:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Maxim 2016-10-24 09:51:25 UTC
I set up a samba AD domain member machine (Ubuntu 16.04 amd64) and configured a file and print sharing on it. The share had to be accessible by machine accounts (windows 7 64bit) so that machine scripts could install some programs from it before user logon window. I configured the ntfs and share read permissions for "Authenticated Users" which had been enough for a windows 2008R2 server.

Now the problem arose: In the system events on the windows machine there was an error event. It said that access to the resource had been denied. I tried adding the machine account to the ntfs permissions list and to the share permissions, then I added "Everybody" to the permissions. Then I added the "Computers" group.
No effect.

The "Computers" group has unix attributes enabled

As an AD user I can access that share without problems.