Groups in trusted domains should work if the trust works.
Does "wbinfo -g" find the group in the users domain? If not then the
trust is not set up properly for winbind, winbind is otherwise
confused or the group simply does not exists in the users domain.
It is possible you need to speficy the group by domain to wb_group for
domains connected via trust relations. I do not know. Only have a
single NT server in our lab. wb_group checks group names as returned
by winbind by lookup of the group SID. Hmm.. it may be possible that
wb_group cannot lookup groups outside the primary domain.
Regards
Henrik
On Wednesday 18 December 2002 17.13, García García, Alberto wrote:
> Multidomain work fine for NTLM but when i try the authentication
> with wb_group the users will need an account in this group. Isn´t
> it?
>
> Authentication in PDC/BDC of DOMAIN1
>
> User1-Group1 in DOMAIN1 autthentication is good.
> User1-Group1 in DOMAIN2 bad authentication (user is not in PDC/BDC
> of Domain1)
Received on Thu Dec 19 2002 - 14:51:32 MST
This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 17:12:09 MST