From: Cory on
Good evening,

I am running a port of FreeBSD (FreeNAS) that is running SAMBA/winbind
and is joined to a Windows Server 2008 domain. I, and a number of
users on the FreeNAS forums, have encountered a problem when, after
joining, mounting, sharing the drives, a user or administrator on the
domain can create directories and files, but cannot change permissions
(i.e. add users or groups permissions).

Default permissions on the file and directories are root 777 and wheel
777. When trying to add users or groups or change owners of a file or
directory, a dialog opens stating that you do not have permission to
perform that action. wbinfo and getent both report that winbind has
created bindings for all of the domain groups, however, winbind also
logs errors saying the following :

winbindd[3318]: [2009/09/06 02:57:22, 0] nsswitch/
winbindd_group.c:winbindd_getgrent(1110)
winbindd[3318]: could not lookup domain group cert publishers

I have read through a lot of manuals and I am not the Unix/Linux guru
I wish I was, so I have as yet not found the problem. Anyone know of/
encountered this problem or know what I can do to fix it.

Really it is not really a big problem as I can access the shares and
create/delete files as I like, but it is not suitable to host user
profiles until I can set a user as the owner of a directory and the
files under it.

Let me know if you have any questions that would help you diagnose
this infernal problem. Thanks for reading!

Cory