[Samba] AD integration checklist

simo idra at samba.org
Fri Dec 8 21:46:40 GMT 2006


On Fri, 2006-12-08 at 15:23 -0600, James A. Dinkel wrote:
> That's right.  Although, I do not have winbind after the shadow
> directive, and I've never seen any documentation saying you need it,
> just after passwd and group.

You are right, winbindd shouldn;t be used after shadow as there is no
such nss stack in winbindd

> Also, I believe this is also required in /etc/pam.d/samba:
> 
> auth  required  pam_winbind.so
> account  required  pam_winbind.so
> 
> but I've never tried it without this.

If you wish your users be authenticated via winbindd against the DC,
yes, and you should also add it to the session and password pam stacks.

Simo.

-- 
Simo Sorce
Samba Team GPL Compliance Officer
email: idra at samba.org
http://samba.org



More information about the samba mailing list