Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- # See smb.conf.example for a more detailed config file or
- # read the smb.conf manpage.
- # Run 'testparm' to verify the config is correct after
- # you modified it.
- [global]
- workgroup = SILAR
- realm = SILAR.LOCAL
- interfaces = lo enp6s0
- template homedir = /home/%U
- template shell = /bin/bash
- kerberos method = system keytab
- dedicated keytab file = /etc/krb5.keytab
- security = ads
- map acl inherit = Yes
- vfs objects = acl_xattr
- idmap config * : backend = tdb
- idmap config * : range = 10000-20000
- idmap config SILAR : backend = rid
- idmap config SILAR : range = 2000000-29999999
- template shell = /bin/bash
- template homedir = /home/%U
- passdb backend = tdbsam
- load printers = no
- disable spoolss = Yes
- show add printer wizard = No
- cups options = raw
- winbind separator = ~
- winbind use default domain = yes
- winbind refresh tickets = yes
- winbind offline logon = yes
- winbind enum groups = no
- winbind enum users = no
- browseable = yes
- # Согласно описанию из самбы с @ начинается группа, а имя доменного юзера пишется просто так безо всяких знаков.
- # При этом перечисление идет через запятую
- # Так же для ограничения прав доступа надо сначала указать что шара доступна только в режиме r/o (read only = yes),
- # при этом порядок настроек значения не играет
- [Projects]
- comment = shared
- path = /opt/shared/Projects
- force user = admin
- force group = projects
- valid users = @group
- write list = user1, user2
- read only = yes
- force create mode = 0770
- create mask = 6775
- directory mask = 6775
- access based share enum = Yes
- hide unreadable = Yes
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement