summaryrefslogtreecommitdiff
path: root/samba/smb-shares.conf.m4
blob: abe0e8ba179cf290a46cd56020658b55210a0d6d (plain)
  1. ifelse(`
  2. /etc/samba/smb-shares.m4
  3. Copyright 2002 Jonas Smedegaard <dr@jones.dk>
  4. $Id: smb-shares.conf.m4,v 1.16 2002-09-12 08:24:44 jonas Exp $
  5. m4 share definitions for generating Samba server smb.conf include file
  6. Usage: m4 -DFQDN=<FQDN> /etc/local-COMMON/samba/smb-shares.conf.m4 > /etc/samba/smb-shares.conf
  7. Depend on file /etc/local-COMMON/file-<FQDN>.m4 containing lines of
  8. the following syntax:
  9. _dir(<path>,<uid>,<gid>,<modes>)dnl
  10. _homefiles(<os>,<mount>,<desc>,<path>[,ro])dnl
  11. _files(<os>,<mount>,<desc>,<path>,<uid>,<gid>,<modes>[,ro[,<group>]|,rw,<group>[,<othergroup>]])dnl
  12. where
  13. <os>: Client operating systems (mac|win|any)
  14. <mount>: Mount point name
  15. Some mount points are handled specially:
  16. "netlogon" has browsing and share modes disabled
  17. "userprofiles" sets "force user" and pre-creates user subdirectory mode 700
  18. "reference" allows guests
  19. "homes" has read/write access and pre-creates directory mode 750
  20. Samba: Use single word and max. 8 characters for WfW compatibility
  21. <desc>: Mount point description. Full(?) support for iso8859-1.
  22. <path>: Full path to mount point directory
  23. <uid>: user name of owner of mount point directory
  24. <gid>: group name of owner of mount point directory
  25. <modes>: Numeric access modes of mount point directory
  26. ro|rw|rop|rwp: Read-only or read/write access to mount point, and wether it should be private (not publically announced).
  27. Read-only access if undefined.
  28. _homefiles are always private.
  29. _homefiles are by default read-only, except "homes" (see above).
  30. <group>: Primary group with access to mountpoint.
  31. If mount point has access "rw" then primary group has read/write access as well.
  32. <othergroup>: Secondary group with readonly access
  33. Example:
  34. _dir(/home/fsadmin/COMMON,fsadmin,fsadmin,755)dnl
  35. _files(win,netlogon,Network logon,/etc/samba/netlogon,root,root,755,ro)
  36. _files(win,userprofiles,User profiles,/home/fsadmin/COMMON/samba/userprofiles,root,root,755)
  37. _files(win,reference,DEBIAN: Samba Linux server,/home/fsadmin/COMMON/reference)
  38. _homefiles(win,homes,Personal files,%H/pc))
  39. _homefiles(mac,,Personal files,~/mac))
  40. _files(win,soft,softshare,/home/fsadmin/COMMON/software,fsadmin,fsadmin,775)dnl
  41. _printer(win,LW,Networkprinter queue for Apple LaserWriter 16/600,/tmp,lw)
  42. TODO:
  43. Support for netatalk is not yet implemented.
  44. <othergroup> is not yet implemented.
  45. Get rid of <os>: <othergroup> is now 10nth parameter which is only available in GNU m4.
  46. All _homefiles (including "homes") should probably have similar access default (read-only).
  47. ')dnl
  48. changequote(<, >)dnl
  49. define(<_veto_mac>, </.AppleDouble/.AppleDesktop/Network Trash Folder/DesktopFolderDB/resource.frk/Icon^M/TheVolumeSettingsFolder/>)dnl
  50. define(<_warn>,
  51. < // WARNING: $1
  52. >)dnl
  53. define(<_masks>,
  54. < create mask = $1
  55. directory mask = $2
  56. >)dnl
  57. define(<_pre_mkdir>,
  58. < root preexec = '/bin/mkdir -p $1 \
  59. /bin/chown $2 $1 \
  60. /bin/chmod $3 $1'
  61. >)dnl
  62. define(<_dir>, <>)dnl
  63. define(<_files>,
  64. <ifelse($1,win,
  65. undefine(<_mkdir>)dnl
  66. undefine(<_group_read>)dnl
  67. undefine(<_world_read>)dnl
  68. undefine(<_user_write>)dnl
  69. undefine(<_group_write>)dnl
  70. undefine(<_private>)dnl
  71. [$2]
  72. path = $4
  73. ifelse($3,,,
  74. < comment = $3
  75. >)ifelse($2,<netlogon>,
  76. < share modes = no
  77. define(<_private>)dnl
  78. >,
  79. $2,<userprofiles>,
  80. < force user = %u
  81. define(<_user_write>)dnl
  82. define(<_mkdir>, <$4/%U>)dnl
  83. define(<_chown>, <%U>)dnl
  84. define(<_chmod>, <700>)dnl
  85. >,
  86. $2,<reference>,
  87. < guest ok = yes
  88. >,
  89. $2,<homes>,
  90. <dnl
  91. define(<_mkdir>, <$4>)dnl
  92. define(<_chown>, <%S>)dnl
  93. define(<_chmod>, <750>)dnl
  94. define(<_user_write>)dnl
  95. define(<_group_read>)dnl
  96. define(<_private>)dnl
  97. >,
  98. <>)dnl
  99. ifdef(<_mkdir>,
  100. _pre_mkdir(<_mkdir>, <_chown>, <_chmod>)dnl
  101. )dnl
  102. ifdef($8,
  103. ifelse($8,ro,
  104. <dnl
  105. define(<_group_read>)dnl
  106. >,
  107. $8,rop,
  108. <dnl
  109. define(<_group_read>)dnl
  110. define(<_private>)dnl
  111. >,
  112. $8,rw,
  113. <dnl
  114. define(<_user_write>)dnl
  115. ifdef($9,
  116. ifelse($9,,,
  117. define(<_group_write>)dnl
  118. ))dnl
  119. >,
  120. $8,rwp,
  121. <dnl
  122. define(<_user_write>)dnl
  123. define(<_private>)dnl
  124. >,
  125. _warn(<share access is wrong. Must be either "ro", "rop", "rw" or "rwp">)dnl
  126. ))dnl
  127. ifdef(<_user_write>,
  128. < writeable = yes
  129. >ifdef(<_group_write>,
  130. ifdef(<_world_read>,
  131. _masks(0664,0775),
  132. _masks(0660,0770)),
  133. ifdef(<_group_read>,
  134. ifdef(<_world_read>,
  135. _masks(0644,0755),
  136. _masks(0640,0750)),
  137. _masks(0600,0700))dnl
  138. ifdef(<_veto>,
  139. < delete veto files = Yes
  140. >)dnl
  141. ),
  142. dnl ***user read, group read***(?)
  143. dnl ***user read***
  144. )dnl
  145. ifelse($9,,,
  146. < valid users = @$9
  147. >ifdef(<_group_write>,
  148. < force group = +$9
  149. >))dnl
  150. ifdef(<_private>,
  151. < browseable = no
  152. >)dnl
  153. ifdef(<_veto>,
  154. < veto files = _veto_mac
  155. >)dnl
  156. )dnl
  157. >)dnl
  158. define(<_homefiles>,
  159. <ifelse($1,win,
  160. define(<_homefiles_access>, <rwp>)dnl
  161. ifdef($5,
  162. ifelse($5,ro,
  163. define(<_homefiles_access>, <rop>)))dnl
  164. <_files($1,$2,$3,$4,,,,<_homefiles_access>)>dnl
  165. )>)dnl
  166. define(<_printer>,
  167. <ifelse($1,win,
  168. [$2]
  169. ifelse($3,,,
  170. < comment = $3
  171. >)dnl
  172. path = $4
  173. printable = yes
  174. printer name = $5
  175. ,<>)dnl
  176. >)dnl
  177. dnl
  178. include(/etc/local-COMMON/file-FQDN.m4)dnl