I am having a very strange.. (or maybe it's a normal) behavior with using smb/cifs on Nas4Free with AD authentication w/ ACL.
I have all the AD stuff working. So I will not go in to that part. I will start from the NAS4Free side.
Once I created a dataset, I created a bunch of folders in them some for different departments etc...
I first use 'chown -R <AD_Administrator_name>:<domain_admins> *' and 'chmod -R 755 *' ex: chown -R administrator:domain_admins * and then chmod -R 755 * as such, in Windows all those folders are now owned by Administrator and group set to Domain Admins... and Everyone referencing to the AD accounts
Once that is done, I go in to the Windows machine and modify the folder's share with the appropriate groups. (I am sure you can do this with setfacl, but I suck with *nix). So that is all great and fine. HOWEVER here is my problem. Creating a new folder or file in these "inherit permissoin" folders. IT WILL NOT INHERIT the Window's Permssion from the top of that folder! instead it always inherit <AD_Administrator_name> and <domain_admins> and everyone base on freebsd/nas4free side.
My question to you *nix master is how can I change the behavior of this. Right now anyone on a Windows machine that creates a folder/file on to the share running of NAS4Free it ALWAYS give permission based on the the initial chown/chmod settings on the NAS4Free side. Normally in Windows folders/files that is created under a folder inherits that top folder's permission. This is not the case. I have a feeling it has to do with a setting or needs a modification on FreeBSD/NAS4Free.
IF anyone know, please chime in.
This is the old XigmaNAS forum in read only mode,
it will taken offline by the end of march 2021!
I like to aks Users and Admins to rewrite/take over important post from here into the new fresh main forum!
Its not possible for us to export from here and import it to the main forum!
it will taken offline by the end of march 2021!
I like to aks Users and Admins to rewrite/take over important post from here into the new fresh main forum!
Its not possible for us to export from here and import it to the main forum!
Samba w/AD + ACL
-
mbze430
- experienced User

- Posts: 95
- Joined: 20 Nov 2014 05:41
- Status: Offline
Samba w/AD + ACL
NAS #1 - 11.2.0.4 - Omnius (revision 6625) - SuperMicro X10SL7-F w/ 24GB ECC - LSI SAS 9207-16i - 2x RAIDZ1 (10x3TB) Pools and 1x (2x4TB) Stripe Pool
NAS #2 - 11.2.0.4 - Omnius (revision 6625) - SuperMicro X10SLM-F w/32GB ECC - LSI SAS 9207-8i (RAID10) - IBM M1015-IT Mode (RAID10)
NAS #2 - 11.2.0.4 - Omnius (revision 6625) - SuperMicro X10SLM-F w/32GB ECC - LSI SAS 9207-8i (RAID10) - IBM M1015-IT Mode (RAID10)
-
tdrivas
- NewUser

- Posts: 3
- Joined: 01 Jun 2015 03:34
- Status: Offline
Re: Samba w/AD + ACL
Try following this ...
http://n4f.siftusystems.com/index.php/2 ... ions-acls/
http://n4f.siftusystems.com/index.php/2 ... ions-acls/