summaryrefslogtreecommitdiff
path: root/samba/smb-shares.conf.m4
blob: df0935884e9bc6f3c54ba951d9b364a700d33eca (plain)
  1. ifelse(`
  2. /etc/samba/smb-shares.m4
  3. Copyright 2002 Jonas Smedegaard <dr@jones.dk>
  4. $Id: smb-shares.conf.m4,v 1.18 2002-09-19 11:35:40 jonas Exp $
  5. m4 share definitions for generating Samba server smb.conf include file
  6. Usage: m4 -DFQDN=<FQDN> /etc/local-COMMON/samba/smb-shares.conf.m4 > /etc/samba/smb-shares.conf
  7. Depend on file /etc/local-COMMON/file-<FQDN>.m4 containing lines of
  8. the following syntax:
  9. _dir(<path>,<uid>,<gid>,<modes>)dnl
  10. _homefiles(<os>,<mount>,<desc>,<path>[,ro])dnl
  11. _files(<os>,<mount>,<desc>,<path>,<uid>,<gid>,<modes>[,ro[,<group>]|,rw,<group>[,<othergroup>]])dnl
  12. where
  13. <os>: Client operating systems (mac|win|any)
  14. <mount>: Mount point name
  15. Some mount points are handled specially:
  16. "netlogon" has browsing and share modes disabled
  17. "userprofiles" sets "force user" and pre-creates user subdirectory mode 700
  18. "reference" allows guests
  19. "homes" has read/write access and pre-creates directory mode 750
  20. Samba: Use single word and max. 8 characters for WfW compatibility
  21. <desc>: Mount point description. Full(?) support for iso8859-1.
  22. <path>: Full path to mount point directory
  23. <uid>: user name of owner of mount point directory
  24. <gid>: group name of owner of mount point directory
  25. <modes>: Numeric access modes of mount point directory
  26. ro|rw|rop|rwp: Read-only or read/write access to mount point, and wether it should be private (not publically announced).
  27. Read-only access if undefined.
  28. _homefiles are always private.
  29. _homefiles are by default read-only, except "homes" (see above).
  30. <group>: Primary group with access to mountpoint.
  31. If mount point has access "rw" then primary group has read/write access as well.
  32. <othergroup>: Secondary group with readonly access
  33. Example:
  34. _dir(/home/fsadmin/COMMON,fsadmin,fsadmin,755)dnl
  35. _files(win,netlogon,Network logon,/etc/samba/netlogon,root,root,755,ro)
  36. _files(win,userprofiles,User profiles,/home/fsadmin/shares_win/userprofiles,root,root,755)
  37. _files(win,reference,DEBIAN: Samba Linux server,/home/fsadmin/shares_win/reference)
  38. _homefiles(win,homes,Personal files,%H/pc))
  39. _homefiles(mac,,Personal files,~/mac))
  40. _files(win,soft,softshare,/home/fsadmin/shares_win/software,fsadmin,fsadmin,775)dnl
  41. _printer(win,LW,Networkprinter queue for Apple LaserWriter 16/600,/tmp,lw)
  42. TODO:
  43. Support for netatalk is not yet implemented.
  44. <othergroup> is not yet implemented.
  45. Get rid of <os>: <othergroup> is now 10nth parameter which is only available in GNU m4.
  46. All _homefiles (including "homes") should probably have similar access default (read-only, private).
  47. BROKEN: Homefiles are *not* private currently :-(
  48. ')dnl
  49. changequote(<, >)dnl
  50. define(<_veto_mac>, </.AppleDouble/.AppleDesktop/Network Trash Folder/DesktopFolderDB/resource.frk/Icon^M/TheVolumeSettingsFolder/>)dnl
  51. define(<_warn>,
  52. < // WARNING: $1
  53. >)dnl
  54. define(<_masks>,
  55. < create mask = $1
  56. directory mask = $2
  57. >)dnl
  58. define(<_pre_mkdir>,
  59. < root preexec = '/bin/mkdir -p $1 \
  60. /bin/chown $2 $1 \
  61. /bin/chmod $3 $1'
  62. >)dnl
  63. define(<_dir>, <>)dnl
  64. define(<_files>,
  65. <ifelse($1,win,
  66. undefine(<_mkdir>)dnl
  67. undefine(<_group_read>)dnl
  68. undefine(<_world_read>)dnl
  69. undefine(<_user_write>)dnl
  70. undefine(<_group_write>)dnl
  71. undefine(<_private>)dnl
  72. [$2]
  73. path = $4
  74. ifelse($3,,,
  75. < comment = $3
  76. >)ifelse($2,<netlogon>,
  77. < share modes = no
  78. define(<_private>)dnl
  79. >,
  80. $2,<userprofiles>,
  81. < force user = %u
  82. define(<_user_write>)dnl
  83. define(<_mkdir>, <$4/%U>)dnl
  84. define(<_chown>, <%U>)dnl
  85. define(<_chmod>, <700>)dnl
  86. >,
  87. $2,<reference>,
  88. < guest ok = yes
  89. >,
  90. $2,<homes>,
  91. <dnl
  92. define(<_mkdir>, <$4>)dnl
  93. define(<_chown>, <%S>)dnl
  94. define(<_chmod>, <750>)dnl
  95. define(<_user_write>)dnl
  96. define(<_group_read>)dnl
  97. define(<_private>)dnl
  98. >,
  99. <>)dnl
  100. ifdef(<_mkdir>,
  101. _pre_mkdir(<_mkdir>, <_chown>, <_chmod>)dnl
  102. )dnl
  103. ifdef($8,
  104. ifelse($8,ro,
  105. <dnl
  106. define(<_group_read>)dnl
  107. >,
  108. $8,rop,
  109. <dnl
  110. define(<_group_read>)dnl
  111. define(<_private>)dnl
  112. >,
  113. $8,rw,
  114. <dnl
  115. define(<_user_write>)dnl
  116. ifdef($9,
  117. ifelse($9,,,
  118. define(<_group_write>)dnl
  119. ))dnl
  120. >,
  121. $8,rwp,
  122. <dnl
  123. define(<_user_write>)dnl
  124. define(<_private>)dnl
  125. >,
  126. _warn(<share access is wrong. Must be either "ro", "rop", "rw" or "rwp">)dnl
  127. ))dnl
  128. ifdef(<_user_write>,
  129. < writeable = yes
  130. >ifdef(<_group_write>,
  131. ifdef(<_world_read>,
  132. _masks(0664,0775),
  133. _masks(0660,0770)),
  134. ifdef(<_group_read>,
  135. ifdef(<_world_read>,
  136. _masks(0644,0755),
  137. _masks(0640,0750)),
  138. _masks(0600,0700))dnl
  139. ifdef(<_veto>,
  140. < delete veto files = Yes
  141. >)dnl
  142. ),
  143. dnl ***user read, group read***(?)
  144. dnl ***user read***
  145. )dnl
  146. ifelse($9,,,
  147. < valid users = @$9
  148. >ifdef(<_group_write>,
  149. < force group = +$9
  150. >))dnl
  151. ifdef(<_private>,
  152. < browseable = no
  153. >)dnl
  154. ifdef(<_veto>,
  155. < veto files = _veto_mac
  156. >)dnl
  157. )dnl
  158. >)dnl
  159. define(<_homefiles>,
  160. <ifelse($1,win,
  161. <_files($1,$2,$3,$4,,,,$5)>dnl
  162. )>)dnl
  163. define(<_printer>,
  164. <ifelse($1,win,
  165. [$2]
  166. ifelse($3,,,
  167. < comment = $3
  168. >)dnl
  169. path = $4
  170. printable = yes
  171. printer name = $5
  172. ,<>)dnl
  173. >)dnl
  174. dnl
  175. include(/etc/local-COMMON/file-FQDN.m4)dnl