; ; /etc/samba/smb.conf ; ; Sample configuration file for the Samba suite for Debian GNU/Linux ; ; Please see the manual page for smb.conf for detailed description of ; every parameter. ; [global] guest account = nobody load printers = no name resolve order = lmhosts host wins bcast passwd chat = *Enter\snew\sUNIX\spassword:* %n\n *Retype\snew\sUNIX\spassword:* %n\n . obey pam restrictions = yes preserve case = yes socket options = IPTOS_LOWDELAY TCP_NODELAY SO_SNDBUF=4096 SO_RCVBUF=4096 encrypt passwords = true passwd program = /usr/bin/passwd %u passdb backend = tdbsam guest dns proxy = no netbios name = stu server string = printing = bsd invalid users = root unix password sync = false dos charset = CP950 workgroup = WORKGROUP os level = 20 syslog only = no printcap name = /etc/printcap security = user syslog = 0; short preserve case = yes unix charset = BIG5 panic action = /usr/share/samba/panic-action %d max log size = 1000 disable spoolss = yes # Do something sensible when Samba crashes: mail the admin a backtrace ; "security = user" is always a good idea. This will require a Unix account ; in this server for every user accessing the server. ; security = share --- let everybody access this server. ; Change this for the workgroup your Samba server will part of ; server string = %h server (Samba %v) ; parameter to 'yes'. Please note that logging through syslog in ; Samba is still experimental. ; We want Samba to log a minimum amount of information to syslog. Everything ; should go to /var/log/{smb,nmb} instead. If you want to log through ; syslog you should set the following parameter to something higher. ; This socket options really speed up Samba under Linux, according to my ; own tests. ; Passwords are encrypted by default. This way the latest Windows 95 and NT ; clients can connect to the Samba server with no problems. ; It's always a good idea to use a WINS server. If you want this server ; to be the WINS server for your network change the following parameter ; to "yes". Otherwise leave it as "no" and specify your WINS server ; below (note: only one Samba server can be the WINS server). ; Read BROWSING.txt for more details. ; If this server is not the WINS server then specify who is it and uncomment ; next line. ; wins server = 172.16.0.10 ; Please read BROWSING.txt and set the next four parameters according ; to your network setup. There is no valid default so they are commented ; out. ; os level = 0 ; domain master = no ; local master = no ; preferred master = no ; What naming service and in what order should we use to resolve host names ; to IP addresses ; This will prevent nmbd to search for NetBIOS names through DNS. ; Name mangling options ; This boolean parameter controlls whether Samba attempts to sync. the Unix ; password with the SMB password when the encrypted SMB password in the ; /etc/samba/smbpasswd file is changed. ; For Unix password sync. to work on a Debian GNU/Linux system, the following ; parameters must be set (thanks to Augustin Luton ; for sending the correct chat script for ; the passwd program in Debian Potato). ; The following parameter is useful only if you have the linpopup package ; installed. The samba maintainer and the linpopup maintainer are ; working to ease installation and configuration of linpopup and samba. ; message command = /bin/sh -c '/usr/bin/linpopup "%f" "%m" %s; rm %s' & ; The default maximum log file size is 5 MBytes. That's too big so this ; next parameter sets it to 1 MByte. Currently, Samba rotates log ; files (/var/log/{smb,nmb} in Debian) when these files reach 1000 KBytes. ; A better solution would be to have Samba rotate the log file upon ; reception of a signal, but for now on, we have to live with this. ; Some defaults for winbind (make sure you're not using the ranges ; for something else.) ; winbind uid = 10000-20000 ; winbind gid = 10000-20000 ; template shell = /bin/bash [homes] comment = Home Directories valid users = %S browseable = no ; By default, the home directories are exported read only. Change next ; parameter to "no" if you want to be able to write to them. read only = no ; File creation mask is set to 0700 for security reasons. If you want to ; create files with group=rw permissions, set next parameter to 0775. create mask = 0700 ; Directory creation mask is set to 0700 for security reasons. If you want to ; create dirs. with group=rw permissions, set next parameter to 0775. directory mask = 0700 [SHARE] comment = Share files ;guest only = yes ;only user = yes ;available = yes ;valid user = knoppix public = yes browseable = yes locking = no writable = no path=/var/samba writable=no