Samba issues - Any one see anything odd

William Muriithi william.muriithi-Re5JQEeQqe8AvxtiuMwx3w at public.gmane.org
Wed Oct 26 23:30:14 UTC 2011


Hi pals,

I am having a problem with samba that I have not been able to overcome
and I wonder if a fresh pair of eyes would find what I am missing.
Would really appreciate any suggestion.

We have samba authenticating users through openLDAP running in a
separate boxes. OpenLDAP is setup with  samba.schema schema and all
have been running fine.  I added a new share today and restarted samba
but have  not been able to use it.  I get permission related error
when I attempt to connect to the share. Below is how the share looks
like:

[Facility]
path = /media/storage/facility
read only = no
guest ok = no
printable = no
comment = For facility usage
create mask = 0770
directory mask = 0770
force create mode = 0770
force directory mode = 0770
writable = yes
browsable = yes
#force group = facility
#valid users = @facility
force group = facility
valid users = @facility

Below is how the file system looks like:

samba:~# ls -al /media/shares/facility/
total 4
drwxrws---  2 root facility  32 2011-10-07 09:12 .
drwxr-xr-x 17 root root     456 2011-10-04 10:33 ..
-rw-rwSr--  1 root facility  83 2011-10-07 09:12 William_testing.txt

samba:~# mount
/dev/sdak1 on /media/shares/facility type xfs (rw,noexec,nosuid,nodev,_netdev)

When I attempt to connect to the share, these is what openLDAP dump on the logs

Oct 26 19:03:30 ldap slapd[2272]: conn=1370019 op=16 SRCH
base="ou=group,dc=example,dc=local" scope=2 deref=0
filter="(&(objectClass=sambaGroupMapping)(|(displayName=facility)(cn=facility)))"
Oct 26 19:03:30 ldap slapd[2272]: conn=1370019 op=16 SRCH
attr=gidNumber sambaSID sambaGroupType sambaSIDList description
displayName cn objectClass
Oct 26 19:03:30 ldap slapd[2272]: conn=1370019 op=16 SEARCH RESULT
tag=101 err=0 nentries=0 text=
Oct 26 19:03:30 ldap slapd[2272]: conn=1370019 op=17 SRCH
base="ou=group,dc=example,dc=local" scope=2 deref=0
filter="(&(objectClass=sambaGroupMapping)(|(displayName=facility)(cn=facility)))"
Oct 26 19:03:30 ldap slapd[2272]: conn=1370019 op=17 SRCH
attr=gidNumber sambaSID sambaGroupType sambaSIDList description
displayName cn objectClass
Oct 26 19:03:30 ldap slapd[2272]: conn=1370019 op=17 SEARCH RESULT
tag=101 err=0 nentries=0 text=
Oct 26 19:03:30 ldap slapd[2272]: conn=372036 op=18920 SRCH
base="dc=example,dc=local" scope=2 deref=0
filter="(&(sambaSID=s-1-5-21-3488853230-4045497441-2260166743-3524)(objectClass=sambaSamAccount))"
Oct 26 19:03:30 ldap slapd[2272]: conn=372036 op=18920 SRCH attr=uid
uidNumber gidNumber homeDirectory sambaPwdLastSet sambaPwdCanChange
sambaPwdMustChange sambaLogonTime sambaLogoffTime sambaKickoffTime cn
sn displayName sambaHomeDrive sambaHomePath sambaLogonScript
sambaProfilePath description sambaUserWorkstations sambaSID
sambaPrimaryGroupSID sambaLMPassword sambaNTPassword sambaDomainName
objectClass sambaAcctFlags sambaMungedDial sambaBadPasswordCount
sambaBadPasswordTime sambaPasswordHistory modifyTimestamp
sambaLogonHours modifyTimestamp uidNumber
Oct 26 19:03:30 ldap slapd[2272]: <= bdb_equality_candidates:
(sambaSID) not indexed
Oct 26 19:03:30 ldap slapd[2272]: conn=372036 op=18920 SEARCH RESULT
tag=101 err=0 nentries=1 text=
Oct 26 19:03:30 ldap slapd[2272]: conn=1370019 op=18 SRCH
base="ou=group,dc=example,dc=local" scope=2 deref=0
filter="(&(objectClass=sambaGroupMapping)(|(displayName=facility)(cn=facility)))"
Oct 26 19:03:30 ldap slapd[2272]: conn=1370019 op=18 SRCH
attr=gidNumber sambaSID sambaGroupType sambaSIDList description
displayName cn objectClass
Oct 26 19:03:30 ldap slapd[2272]: conn=1370019 op=18 SEARCH RESULT
tag=101 err=0 nentries=0 text=

On the file server running Samba version 3.2.5, below are the
corresponding logs when I attempted to connect to the share

Oct 26 19:02:59 samba smbd_audit[16126]: connect to service Facility
by user william
Oct 26 19:02:59 samba smbd_audit[16126]: opendir ./
Oct 26 19:02:59 samba smbd_audit[16126]: disconnected
Oct 26 19:02:59 samba smbd_audit[16126]: opendir ./

Anyone notice anything I may be overlooking somewhere?


Regards,

William
--
The Toronto Linux Users Group.      Meetings: http://gtalug.org/
TLUG requests: Linux topics, No HTML, wrap text below 80 columns
How to UNSUBSCRIBE: http://gtalug.org/wiki/Mailing_lists





More information about the Legacy mailing list