Am setting up a test box running the Samba authenticating against Zimbra's Ldap. All works fine except for 2 items.. Both have been brought up before, but I could not find answers for them.

I can't get users to be members of more than one group. I've put in the

nss_base_group ou=groups,dc=pinehurst,dc=k12,dc=or,dc=us?one

getent group shows:
Domain Users:*:100009:10011,10010,10012,10013,500

getent passwd shows:
testing:*:10010:100007:Testing Account:/home/students/testing:/bin/false

Directory is:
drwxrwx--- 3 root Domain Users 4096 2008-08-19 16:04 data

Testing cannot access the directory unless i make the primary group 100009 like:
testing:*:10010:100009:Testing Account:/home/students/testing:/bin/false

Second issue is the autocreation of home directories. I've got:
session required skel=/etc/skel umask=0077
in /etc/pam.d/common-session, and I've also tried:
session required skel=/etc/skel/ umask=0077
No Joy. I also cant figure out where/if this gets logged somewhere.

This is Fedora 7 running Zimbra 5.08 selinux turned off.