Bug 12389 - Samba AD domain member doesn't see machine accounts
Samba AD domain member doesn't see machine accounts
Status: NEW
Product: Samba 4.1 and newer
Classification: Unclassified
Component: File services
4.3.11
x64 Linux
: P5 normal
: ---
Assigned To: Samba QA Contact
Samba QA Contact
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2016-10-24 09:51 UTC by Maxim
Modified: 2016-10-24 15:22 UTC (History)
1 user (show)

See Also:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Maxim 2016-10-24 09:51:25 UTC
I set up a samba AD domain member machine (Ubuntu 16.04 amd64) and configured a file and print sharing on it. The share had to be accessible by machine accounts (windows 7 64bit) so that machine scripts could install some programs from it before user logon window. I configured the ntfs and share read permissions for "Authenticated Users" which had been enough for a windows 2008R2 server.

Now the problem arose: In the system events on the windows machine there was an error event. It said that access to the resource had been denied. I tried adding the machine account to the ntfs permissions list and to the share permissions, then I added "Everybody" to the permissions. Then I added the "Computers" group.
No effect.

The "Computers" group has unix attributes enabled

As an AD user I can access that share without problems.