Уважаемые. Плиз, нид хелп... Всю неделю бьюсь - решения не нашел...
Поднял домен по статье. Спасибо, все вроде работает. Только не до конца

)
Хочу, чтобы у пользователей netlogon скрипт отрабатывался, да и политики привинтить бы не помешало.
Однако, папка netlogon недоступна из под винды никакими средствами - вылетает ошибка "не найден сетевой путь или нет доступа". Заходить пытаюсь под логином доменного админа.
Конфиг самбы:
Код: Выделить всё
[global]
workgroup = schenker
server string = main.schenker
netbios name = main
security = user
hosts allow = 10.0.1. 127.
load printers = no
log file = /var/log/samba/log.%m
log level = 0
syslog = 0
printing = bsd
printcap name = /dev/null
max log size = 50
acl compatibility = win2k
encrypt passwords = yes
admin users = admin
passdb backend = ldapsam:ldap://127.0.0.1/
password level = 0
username level = 0
ldap passwd sync = yes
ldap suffix = dc=schenker,dc=local
ldap user suffix = ou=users
ldap group suffix = ou=groups
ldap machine suffix = ou=computers
ldap admin dn = "cn=root,dc=schenker,dc=local"
ldap delete dn = no
ldap ssl = off
winbind uid = 10000-20000
winbind gid = 10000-20000
winbind separator = @
winbind use default domain = yes
socket options = TCP_NODELAY
local master = yes
os level = 64
domain master = yes
preferred master = yes
domain logons = yes
load printers = no
log file = /var/log/samba/log.%m
log level = 0
syslog = 0
printing = bsd
printcap name = /dev/null
max log size = 50
acl compatibility = win2k
encrypt passwords = yes
admin users = admin
passdb backend = ldapsam:ldap://127.0.0.1/
password level = 0
username level = 0
ldap passwd sync = yes
ldap suffix = dc=schenker,dc=local
ldap user suffix = ou=users
ldap group suffix = ou=groups
ldap machine suffix = ou=computers
ldap admin dn = "cn=root,dc=schenker,dc=local"
ldap delete dn = no
ldap ssl = off
winbind uid = 10000-20000
winbind gid = 10000-20000
winbind separator = @
winbind use default domain = yes
socket options = TCP_NODELAY
local master = yes
os level = 64
domain master = yes
preferred master = yes
domain logons = yes
logon script = allusers.bat
logon script = allusers.bat
logon path =
logon home =
logon drive =
wins support = yes
dns proxy = yes
display charset = koi8-r
unix charset = koi8-r
dos charset = cp866
timeserver = yes
add machine script = /usr/local/sbin/ldapaddmachine '%u' computers
add user script = /usr/local/sbin/ldapadduser '%u' users
add group script = /usr/local/sbin/ldapaddgroup '%g'
add user to group script = /usr/local/sbin/ldapaddusertogroup '%u' '%g'
delete user script = /usr/local/sbin/ldapdeleteuser '%u'
delete group script = /usr/local/sbin/ldapdeletegroup '%g'
delete user from group script = /usr/local/sbin/ldapdeleteuserfromgroup '%u' '%g'
set primary group script = /usr/local/sbin/ldapsetprimarygroup '%u' '%g'
rename user script = /usr/local/sbin/ldaprenameuser '%uold' '%unew'
[netlogon]
comment = Network Logon Service
path = /usr/local/etc/samba/netlogon
guest ok = yes
writable = no
share modes = yes
browseable = yes
Папка с самбой:
Код: Выделить всё
/usr/local/etc/samba/>ll
total 14
drwxrwxrwx 2 luchinskym users 512 Dec 11 14:01 netlogon
-rw------- 1 root wheel 4096 Dec 15 14:38 schannel_store.tdb
-rw------- 1 root wheel 8192 Dec 10 11:51 secrets.tdb
В логах на мою WS вылетает:
Код: Выделить всё
[2008/12/11 00:40:00, 0] smbd/service.c:make_connection_snum(1003)
'/usr/local/etc/samba/netlogon' does not exist or permission denied when connecting to [netlogon] Error was Permission denied