a way to disable ADS in winbind in samba3

Gerald (Jerry) Carter jerry at samba.org
Mon May 28 13:16:54 GMT 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Volker Lendecke wrote:

> This touches the issue why security=domain does ADS style
> calls again. In our SerNet packages we have the 'undo the
> right thing' patch that removes this behavior to give the
> admin a fall back. I would very much like to see this
> behavior back instead of yet another option.

I'm strongly opposed to either change.  Mainly because
we are simply shifting the responsibility of who is
supposed to know what they are doing.  The original
intent of forcing winbindd to use the winbindd_ads
methods if possible was that the the solely rpc
methods would not always retrieve the data in a consistent
manner.

So rather than expecting the AD admin to know what they
are doing, we are shifting the burden on the samba admin
which is not really any better.

Perhaps if someone gave an example of how the AD install
was not working it would help to win me over.






cheers, jerry
=====================================================================
Samba                                    ------- http://www.samba.org
Centeris                         -----------  http://www.centeris.com
"What man is a man who does not make the world better?"      --Balian
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.4 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFGWtZGIR7qMdg1EfYRAuFJAJ4/9xS8o1Yw/ZTbRdkBRB0fx0D45QCggJWj
BKyiS8FkLTHEGYc6Q2XWah0=
=3r5k
-----END PGP SIGNATURE-----


More information about the samba-technical mailing list