The Samba-Bugzilla – Bug 3599
Samba failing group authorizations with Windows 2003 SP 1 domain
Last modified: 2006-04-10 07:45:29 UTC
Will not authenicate with AD using groups anymore after the windows 2003 server is upgraded to sp1. This is tested with 15 samba machines and every known patch and build .. including krb5 and heimdal .,., openldap and so on.
Samba is somehow able to see the groups with wbinfo -g but the shares are not able to authenicate users in the groups ..
Any help on this would be much apperciated.
I see a huge amount of these posts on the web with no resolv i hope this gets fixed because i need to update that last server with sp1 .
I can verify that Samba works fine with Windows 2003 sp1.
Please attach level 10 debug logs (compressed) from winbindd
and smbd. And please specificy exactly how to reproduce
Figured it out.
We changed the + for the winbindd seperator to = this for some stupid reason was stopping it for allowing the groups to be authenicated.
I can reproduce this .. all 15 are working beautifully now .. Thanks guys.
Hope this helps out.