Description of problem:
winbind doesn't return "Domain Local" groups from Windows 2008 Active Directory
Version-Release number of selected component (if applicable):3.5.10-114
How reproducible: Install and configure Samba 3.5.10-114 with idmap backend as "AD"
Steps to Reproduce:
1. Create and join the AD User to a "Global group" and a "Domain Local group"
2. the "id <AD User>" command displays both Global group and Domain Local group membership
3. After successfull login of AD User to a RHEL system, logout the AD User
4. After approx 5 mins, the "id <AD User>" command displays only Global group membership.
Actual results: Installing and configuring Samba 3.5.18 resolves the issue.
Additional info: Do we have any fixes from Red Hat to resolve this issue specific to Samba 3.5.10--14
This is https://bugzilla.samba.org/show_bug.cgi?id=9052 and has already been fixed for 6.4 due to the rebase.
The patch can be applied on 3.5.10 too.
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.
For information on the advisory, and where to find the updated
files, follow the link below.
If the solution does not work for you, open a new bug report.