我用o左呢個網的方法架設
http://plog.tcc.edu.tw/post/1780/48630
而家想係samba中set權限限制
現在環境是:
samba server 已join入o左domain win2003
可以以win2003中的acc 入到 samba中的共用file
而win2003中有3組group
teacher group(當中有acc: Auser ,Buser ,Cuser)
student group(當中有acc: student)
domain admin(當中有acc: admin)
而以上的人都有domain users 呢個group入面
samba- [global]
- workgroup = domain
- netbios name = shareserver
- realm = domain.com
- security = ADS
- encrypt passwords = yes
- os level = 20
- #idmap uid = 16777000-33550000
- #idmap gid = 16777000-33550000
- idmap uid = 10000-20000
- idmap gid = 10000-20000
- password server = dc
- winbind use default domain = yes
- winbind enum users = yes
- winbind enum groups = yes
- template homedir = /home/%D/%U
- dos charset = Big5
- unix char set = Big5
- dos charset = CP950
- admin users = domain\admin
- server string = Data Server
- log file = /var/log/samba/%m%U%G.log
- max log size = 50
- [vcommon]
- path = /videodata/vcommon
- public = yes
- writable = yes
- read list = "domain\Domain users"
- write list = "domain\teacher group"
- create mask = 3777
- directory mask = 3777
- force create mode = 3777
- security mask = 3777
- force security mode = 3777
- force directory mode = 3777
- directory security mask = 3777
- vfs object = recycle
- recycle:keeptree = yes
- recycle:versions = yes
- recycle:exclude = .tmp|.temp|.o|.ob
- recycle:repository = ../recycle/vcommon/%u
- #veto files=/*.tmp/*.wmv/*.mpeg/*.dat/*.mpg/*.rm/*.rmvb/*.mov/*.db/*.flv/*.3gp/*.vob/*.asf/
複製代碼 所有用戶都可讀到個共用file
但係我想 student group的人real only呢個共用file
但係整黎整去student group中的人都係寫到野入去
唔知錯o左邊度呢
(ls -l系統中顯示寫入的資料
drwxrwsrwt 9 teacher root 4096 Jul 29 18:43 Subject
drwxrwsrwt 9 student root 4096 Jul 29 18:43 temp
)
唔知係未同呢個group分唔到有關?
[ 本帖最後由 Kc-Pro 於 2009-7-29 19:00 編輯 ] |